Vulnerability index

Browse CVEs

131 matching
Filters 2 Clear all
Severity

Filters apply as you choose them.

Fabric Operating System CRITICAL 9.8
CVE-2020-15373

Multiple buffer overflow vulnerabilities in REST API in Brocade Fabric OS versions v8.2.1 through v8.2.1d, and 8.2.2 versions before v8.2.2c could al…

Mitigation only
Fix from $2,300 2020-09-25
Fabric Operating System CRITICAL 9.8
CVE-2020-15374

Rest API in Brocade Fabric OS v8.2.1 through v8.2.1d, and 8.2.2 versions before v8.2.2c is vulnerable to multiple instances of reflected input.

Mitigation only
Fix from $2,300 2020-09-25
Fabric Operating System HIGH 8.8
CVE-2020-15369

Supportlink CLI in Brocade Fabric OS Versions v8.2.1 through v8.2.1d, and 8.2.2 versions before v8.2.2c does not obfuscate the password field, which …

Mitigation only
Fix from $1,950 2020-09-25
Fabric Operating System MEDIUM 5.4
CVE-2018-6447

A Reflective XSS Vulnerability in HTTP Management Interface in Brocade Fabric OS versions before Brocade Fabric OS v9.0.0, v8.2.2c, v8.2.1e, v8.1.2k,…

Mitigation only
Fix from $1,600 2020-09-25
Ca Automic Dollar Universe HIGH 7.8
CVE-2019-19544

CA Automic Dollar Universe 5.3.3 contains a vulnerability, related to the uxdqmsrv binary being setuid root, that allows local attackers to elevate p…

No fix yet
Fix from $1,950 2020-01-08
Ca Client Automation HIGH 7.8
CVE-2019-19231

An insecure file access vulnerability exists in CA Client Automation 14.0, 14.1, 14.2, and 14.3 Agent for Windows that can allow a local attacker to …

No fix yet
Fix from $1,950 2019-12-20
Symantec Critical System Protection CRITICAL 9.8
CVE-2019-18374

Symantec Critical System Protection (CSP), versions 8.0, 8.0 HF1 & 8.0 MP1, may be susceptible to an authentication bypass vulnerability, which is a …

Mitigation only
Fix from $2,300 2019-11-25
Ca Client Automation CRITICAL 9.8
CVE-2019-13656EPSS 6%

An access vulnerability in CA Common Services DIA of CA Technologies Client Automation 14 and Workload Automation AE 11.3.5, 11.3.6 allows a remote a…

No fix yet
Fix from $2,300 2019-09-06
Bcm4335c0 Firmware HIGH 8.8
CVE-2018-19860

Broadcom firmware before summer 2014 on Nexus 5 BCM4335C0 2012-12-11, Raspberry Pi 3 BCM43438A1 2014-06-02, and unspecifed other devices does not pro…

Mitigation only
Fix from $1,950 2019-06-07
Tcpreplay MEDIUM 5.5
CVE-2018-17974

An issue was discovered in Tcpreplay 4.3.0 beta1. A heap-based buffer over-read was triggered in the function dlt_en10mb_encode() of the file plugins…

No fix yet
Fix from $1,600 2018-10-03
Tcpreplay HIGH 7.5
CVE-2018-13112

get_l2len in common/get.c in Tcpreplay 4.3.0 beta1 allows remote attackers to cause a denial of service (heap-based buffer over-read and application …

No fix yet
Fix from $1,950 2018-07-03
Advanced Secure Gateway CRITICAL 9.8
CVE-2018-5241

Symantec Advanced Secure Gateway (ASG) 6.6 and 6.7, and ProxySG 6.5, 6.6, and 6.7 are susceptible to a SAML authentication bypass vulnerability. The …

Mitigation only
Fix from $2,300 2018-05-29
Ssl Visibility Appliance MEDIUM 5.9
CVE-2017-15533

Symantec SSL Visibility (SSLV) 3.8.4FC, 3.10 prior to 3.10.4.1, 3.11, and 3.12 prior to 3.12.2.1 are vulnerable to the Return of the Bleichenbacher O…

Mitigation only
Fix from $1,600 2018-05-17
Symantec Intelligencecenter MEDIUM 5.9
CVE-2017-18268

Symantec IntelligenceCenter 3.3 is vulnerable to the Return of the Bleichenbacher Oracle Threat (ROBOT) attack. A remote attacker, who has captured a…

Mitigation only
Fix from $1,600 2018-05-17
Tcpreplay HIGH 7.8
CVE-2017-14266

tcprewrite in Tcpreplay 3.4.4 has a Heap-Based Buffer Overflow vulnerability triggered by a crafted PCAP file, a related issue to CVE-2016-6160.

No fix yet
Fix from $1,950 2017-09-12
Bcm43xx Wi Fi Chipset Firmware CRITICAL 9.8
CVE-2017-9417EPSS 48%

Broadcom BCM43xx Wi-Fi chips allow remote attackers to execute arbitrary code via unspecified vectors, aka the "Broadpwn" issue.

Mitigation only
Fix from $2,300 2017-06-04
Advanced Secure Gateway HIGH 7.2
CVE-2016-9097

The Symantec Advanced Secure Gateway (ASG) 6.6 prior to 6.6.5.8, ProxySG 6.5 prior 6.5.10.6, ProxySG 6.6 prior to 6.6.5.8, and ProxySG 6.7 prior to 6…

Mitigation only
Fix from $1,950 2017-05-11
Hardmac Wi Fi Soc Firmware HIGH 8.8
CVE-2017-6956

On the Broadcom Wi-Fi HardMAC SoC with fbt firmware, a stack buffer overflow occurs when handling an 802.11r (FT) authentication response, leading to…

Mitigation only
Fix from $1,950 2017-04-05
Bcm4339 Soc Firmware HIGH 8.1
CVE-2017-6957

Stack-based buffer overflow in the firmware in Broadcom Wi-Fi HardMAC SoC chips, when the firmware supports CCKM Fast and Secure Roaming and the feat…

No fix yet
Fix from $1,950 2017-03-27
Ca Workload Automation Ae HIGH 7.8
CVE-2016-9795

The casrvc program in CA Common Services, as used in CA Client Automation 12.8, 12.9, and 14.0; CA SystemEDGE 5.8.2 and 5.9; CA Systems Performance f…

Mitigation only
Fix from $1,950 2017-01-27
Rabbitmq Server CRITICAL 9.8
CVE-2016-9877

An issue was discovered in Pivotal RabbitMQ 3.x before 3.5.8 and 3.6.x before 3.6.6 and RabbitMQ for PCF 1.5.x before 1.5.20, 1.6.x before 1.6.12, an…

Mitigation only
Fix from $2,300 2016-12-29
Symantec Critical System Protection HIGH 7.3
CVE-2015-8800

Symantec Embedded Security: Critical System Protection (SES:CSP) 1.0.x before 1.0 MP5, Embedded Security: Critical System Protection for Controllers …

Mitigation only
Fix from $1,950 2016-06-08
Api Gateway MEDIUM 6.5
CVE-2016-3118

CRLF injection vulnerability in CA API Gateway (formerly Layer7 API Gateway) 7.1 before 7.1.04, 8.0 through 8.3 before 8.3.01, and 8.4 before 8.4.01 …

Mitigation only
Fix from $1,600 2016-04-06
Single Sign On CRITICAL 9.1
CVE-2015-6854

The non-Domino web agents in CA Single Sign-On (aka SSO, formerly SiteMinder) R6, R12.0 before SP3 CR13, R12.0J before SP3 CR1.2, and R12.5 before CR…

Mitigation only
Fix from $2,300 2016-03-24
Single Sign On CRITICAL 9.1
CVE-2015-6853

The Domino web agent in CA Single Sign-On (aka SSO, formerly SiteMinder) R6, R12.0 before SP3 CR13, R12.0J before SP3 CR1.2, R12.5 before CR5, R12.51…

Mitigation only
Fix from $2,300 2016-03-24
Spectrum HIGH 9.0
CVE-2015-2828

CA Spectrum 9.2.x and 9.3.x before 9.3 H02 does not properly validate serialized Java objects, which allows remote authenticated users to obtain admi…

No fix yet
Fix from $1,950 2015-04-08
Rabbitmq Server MEDIUM 5.0
CVE-2014-9650

CRLF injection vulnerability in the management plugin in RabbitMQ 2.1.0 through 3.4.x before 3.4.1 allows remote attackers to inject arbitrary HTTP h…

Mitigation only
Fix from $1,600 2015-01-27
Symantec Critical System Protection HIGH 7.2
CVE-2014-9226

The management server in Symantec Critical System Protection (SCSP) 5.2.9 through MP6 and Symantec Data Center Security: Server Advanced (SDCS:SA) 6.…

No fix yet
Fix from $1,950 2015-01-21
Symantec Critical System Protection MEDIUM 6.5
CVE-2014-7289

SQL injection vulnerability in the management server in Symantec Critical System Protection (SCSP) 5.2.9 before MP6 and Symantec Data Center Security…

No fix yet
Fix from $1,600 2015-01-21
Symantec Critical System Protection HIGH 9.0
CVE-2014-3440

The Agent Control Interface in the management server in Symantec Critical System Protection (SCSP) 5.2.9 before MP6 and Symantec Data Center Security…

Mitigation only
Fix from $1,950 2015-01-21