Vulnerability index

Browse CVEs

680 matching
Filters 2 Clear all
Severity

Filters apply as you choose them.

Duplicity HIGH 7.5
CVE-2014-3495

duplicity 0.6.24 has improper verification of SSL certificates

No fix yet
Fix from $1,950 2019-12-13
Debian Linux HIGH 7.3
CVE-2013-4245

Orca has arbitrary code execution due to insecure Python module load

Mitigation only
Fix from $1,950 2019-12-11
Debian Linux CRITICAL 9.8
CVE-2012-1577

lib/libc/stdlib/random.c in OpenBSD returns 0 when seeded with 0.

Mitigation only
Fix from $2,300 2019-12-10
Debian Linux HIGH 7.8
CVE-2019-19630

HTMLDOC 1.9.7 allows a stack-based buffer overflow in the hd_strlcpy() function in string.c (when called from render_contents in ps-pdf.cxx) via a cr…

No fix yet
Fix from $1,950 2019-12-08
Debian Linux MEDIUM 6.1
CVE-2012-1114

A Cross-Site Scripting (XSS) vulnerability exists in LDAP Account Manager (LAM) Pro 3.6 in the filter parameter to cmd.php in an export and exporter_…

Mitigation only
Fix from $1,600 2019-12-05
Debian Linux MEDIUM 6.1
CVE-2012-1115

A Cross-Site Scripting (XSS) vulnerability exists in LDAP Account Manager (LAM) Pro 3.6 in the export, add_value_form, and dn parameters to cmd.php.

Mitigation only
Fix from $1,600 2019-12-05
Debian Linux MEDIUM 5.3
CVE-2012-1104

A Security Bypass vulnerability exists in the phpCAS 1.2.2 library from the jasig project due to the way proxying of services are managed.

No fix yet
Fix from $1,600 2019-12-05
Debian Linux MEDIUM 5.5
CVE-2013-0326

OpenStack nova base images permissions are world readable

Mitigation only
Fix from $1,600 2019-12-05
Debian Linux HIGH 7.5
CVE-2012-4428EPSS 10%

openslp: SLPIntersectStringList()' Function has a DoS vulnerability

Mitigation only
Fix from $1,950 2019-12-02
Debian Linux CRITICAL 9.8
CVE-2011-2523EPSS 96%

vsftpd 2.3.4 downloaded between 20110630 and 20110703 contains a backdoor which opens a shell on port 6200/tcp.

No fix yet
Fix from $2,300 2019-11-27
Debian Linux MEDIUM 5.3
CVE-2011-2515

PackageKit 0.6.17 allows installation of unsigned RPM packages as though they were signed which may allow installation of non-trusted packages and ex…

Mitigation only
Fix from $1,600 2019-11-27
Debian Linux HIGH 8.1
CVE-2012-2248

An issue was discovered in dhclient 4.3.1-6 due to an embedded path variable.

Mitigation only
Fix from $1,950 2019-11-27
Debian Linux MEDIUM 6.5
CVE-2011-4350EPSS 16%

Yaws 1.91 has a directory traversal vulnerability in the way certain URLs are processed. A remote authenticated user could use this flaw to obtain co…

No fix yet
Fix from $1,600 2019-11-26
Debian Linux MEDIUM 6.5
CVE-2012-5521

quagga (ospf6d) 0.99.21 has a DoS flaw in the way the ospf6d daemon performs routes removal

Mitigation only
Fix from $1,600 2019-11-25
Debian Linux MEDIUM 6.1
CVE-2012-0812

PostfixAdmin 2.3.4 has multiple XSS vulnerabilities

Mitigation only
Fix from $1,600 2019-11-22
Debian Linux HIGH 8.8
CVE-2019-5087

An exploitable integer overflow vulnerability exists in the flattenIncrementally function in the xcf2png and xcf2pnm binaries of xcftools 1.0.7. An i…

No fix yet
Fix from $1,950 2019-11-21
Debian Linux HIGH 8.8
CVE-2019-5086

An exploitable integer overflow vulnerability exists in the flattenIncrementally function in the xcf2png and xcf2pnm binaries of xcftools, version 1.…

No fix yet
Fix from $1,950 2019-11-21
Debian Linux MEDIUM 5.3
CVE-2014-1935

9base 1:6-6 and 1:6-7 insecurely creates temporary files which results in predictable filenames.

No fix yet
Fix from $1,600 2019-11-21
Debian Linux MEDIUM 5.5
CVE-2011-2923

foomatic-rip filter, all versions, used insecurely creates temporary files for storage of PostScript data by rendering the data when the debug mode w…

Mitigation only
Fix from $1,600 2019-11-19
Debian Linux MEDIUM 5.5
CVE-2012-0843

uzbl: Information disclosure via world-readable cookies storage file

Mitigation only
Fix from $1,600 2019-11-19
Debian Linux MEDIUM 6.0
CVE-2019-11139

Improper conditions check in the voltage modulation interface for some Intel(R) Xeon(R) Scalable Processors may allow a privileged user to potentiall…

Mitigation only
Fix from $1,600 2019-11-14
Debian Linux HIGH 7.5
CVE-2010-5108

Trac 0.11.6 does not properly check workflow permissions before modifying a ticket. This can be exploited by an attacker to change the status and res…

Mitigation only
Fix from $1,950 2019-11-13
Debian Linux MEDIUM 6.5
CVE-2012-4385

letodms 3.3.6 has CSRF via change password

No fix yet
Fix from $1,600 2019-11-13
Debian Linux MEDIUM 6.5
CVE-2010-3439

It is possible to cause a DoS condition by causing the server to crash in alien-arena 7.33 by supplying various invalid parameters to the download co…

No fix yet
Fix from $1,600 2019-11-12
Debian Linux CRITICAL 9.8
CVE-2007-6745

clamav 0.91.2 suffers from a floating point exception when using ScanOLE2.

Mitigation only
Fix from $2,300 2019-11-07
Debian Linux HIGH 7.5
CVE-2007-5743

viewvc 1.0.3 allows improper access control to files in a repository when using the "forbidden" configuration option.

No fix yet
Fix from $1,950 2019-11-07
Debian Linux HIGH 7.4
CVE-2012-0051

Tahoe-LAFS 1.9.0 fails to ensure integrity which allows remote attackers to corrupt mutable files or directories upon retrieval.

No fix yet
Fix from $1,950 2019-11-07
Debian Linux HIGH 7.5
CVE-2019-18804

DjVuLibre 3.5.27 has a NULL pointer dereference in the function DJVU::filter_fv at IW44EncodeCodec.cpp.

No fix yet
Fix from $1,950 2019-11-07
Debian Linux HIGH 8.8
CVE-2013-6364

Horde Groupware Webmail Edition has CSRF and XSS when saving search as a virtual address book

No fix yet
Fix from $1,950 2019-11-05
Debian Linux HIGH 7.5
CVE-2013-2227EPSS 13%

GLPI 0.83.7 has Local File Inclusion in common.tabs.php.

No fix yet
Fix from $1,950 2019-11-01