Vulnerability index

Browse CVEs

48 matching
Filters 2 Clear all
Severity

Filters apply as you choose them.

Mjs MEDIUM 5.5
CVE-2020-36373

Stack overflow vulnerability in parse_shifts Cesanta MJS 1.20.1, allows remote attackers to cause a Denial of Service (DoS) via a crafted file.

No fix yet
Fix from $1,600 2021-05-28
Mjs MEDIUM 5.5
CVE-2020-36374

Stack overflow vulnerability in parse_comparison Cesanta MJS 1.20.1, allows remote attackers to cause a Denial of Service (DoS) via a crafted file.

No fix yet
Fix from $1,600 2021-05-28
Mjs MEDIUM 5.5
CVE-2020-36375

Stack overflow vulnerability in parse_equality Cesanta MJS 1.20.1, allows remote attackers to cause a Denial of Service (DoS) via a crafted file.

No fix yet
Fix from $1,600 2021-05-28
Mongoose CRITICAL 9.1
CVE-2021-26528

The mg_http_serve_file function in Cesanta Mongoose HTTP server 7.0 is vulnerable to remote OOB write attack via connection request after exhausting …

No fix yet
Fix from $2,300 2021-02-08
Mongoose CRITICAL 9.1
CVE-2021-26530

The mg_tls_init function in Cesanta Mongoose HTTPS server 7.0 (compiled with OpenSSL support) is vulnerable to remote OOB write attack via connection…

No fix yet
Fix from $2,300 2021-02-08
Mongoose CRITICAL 9.8
CVE-2019-19307EPSS 42%

An integer overflow in parse_mqtt in mongoose.c in Cesanta Mongoose 6.16 allows an attacker to achieve remote DoS (infinite loop), or possibly cause …

No fix yet
Fix from $2,300 2019-11-26
Mongoose MEDIUM 6.5
CVE-2018-19587

In Cesanta Mongoose 6.13, a SIGSEGV exists in the mongoose.c mg_mqtt_add_session() function.

No fix yet
Fix from $1,600 2018-11-27
Mongoose CRITICAL 9.1
CVE-2018-18764

An exploitable arbitrary memory read vulnerability exists in the MQTT packet-parsing functionality of Cesanta Mongoose 6.13. It is a heap-based buffe…

No fix yet
Fix from $2,300 2018-10-29
Mongoose CRITICAL 9.1
CVE-2018-18765

An exploitable arbitrary memory read vulnerability exists in the MQTT packet-parsing functionality of Cesanta Mongoose 6.13. It is a heap-based buffe…

No fix yet
Fix from $2,300 2018-10-29
Mongoose HIGH 7.5
CVE-2018-10945

The mg_handle_cgi function in mongoose.c in Mongoose 6.11 allows remote attackers to cause a denial of service (heap-based buffer over-read and appli…

No fix yet
Fix from $1,950 2018-06-19
Mongoose CRITICAL 9.8
CVE-2017-2921

An exploitable memory corruption vulnerability exists in the Websocket protocol implementation of Cesanta Mongoose 6.8. A specially crafted websocket…

No fix yet
Fix from $2,300 2017-11-07
Mongoose CRITICAL 9.8
CVE-2017-2922

An exploitable memory corruption vulnerability exists in the Websocket protocol implementation of Cesanta Mongoose 6.8. A specially crafted websocket…

No fix yet
Fix from $2,300 2017-11-07
Mongoose CRITICAL 9.8
CVE-2017-2891

An exploitable use-after-free vulnerability exists in the HTTP server implementation of Cesanta Mongoose 6.8. An ordinary HTTP POST request with a CG…

No fix yet
Fix from $2,300 2017-11-07
Mongoose CRITICAL 9.8
CVE-2017-2892

An exploitable arbitrary memory read vulnerability exists in the MQTT packet parsing functionality of Cesanta Mongoose 6.8. A specially crafted MQTT …

Mitigation only
Fix from $2,300 2017-11-07
Mongoose CRITICAL 9.8
CVE-2017-2894EPSS 31%

An exploitable stack buffer overflow vulnerability exists in the MQTT packet parsing functionality of Cesanta Mongoose 6.8. A specially crafted MQTT …

No fix yet
Fix from $2,300 2017-11-07
Mongoose HIGH 8.2
CVE-2017-2895

An exploitable arbitrary memory read vulnerability exists in the MQTT packet parsing functionality of Cesanta Mongoose 6.8. A specially crafted MQTT …

Mitigation only
Fix from $1,950 2017-11-07
Mongoose HIGH 7.5
CVE-2017-2893EPSS 25%

An exploitable NULL pointer dereference vulnerability exists in the MQTT packet parsing functionality of Cesanta Mongoose 6.8. An MQTT SUBSCRIBE pack…

No fix yet
Fix from $1,950 2017-11-07
Mongoose HIGH 7.5
CVE-2017-2909

An infinite loop programming error exists in the DNS server functionality of Cesanta Mongoose 6.8 library. A specially crafted DNS request can cause …

Mitigation only
Fix from $1,950 2017-11-07