Vulnerability index

Browse CVEs

680 matching
Filters 2 Clear all
Severity

Filters apply as you choose them.

HIGH 7.5 CVE-2014-3495 duplicity 0.6.24 has improper verification of SSL certificates Duplicity No fix yet Fix from $1,9502019-12-13 HIGH 7.3 CVE-2013-4245 Orca has arbitrary code execution due to insecure Python module load Debian Linux Mitigation only Fix from $1,9502019-12-11 CRITICAL 9.8 CVE-2012-1577 lib/libc/stdlib/random.c in OpenBSD returns 0 when seeded with 0. Debian Linux Mitigation only Fix from $2,3002019-12-10 HIGH 7.8 CVE-2019-19630 HTMLDOC 1.9.7 allows a stack-based buffer overflow in the hd_strlcpy() function in string.c (when called from render_contents in ps-pdf.cxx) via a cr… Debian Linux No fix yet Fix from $1,9502019-12-08 MEDIUM 6.1 CVE-2012-1114 A Cross-Site Scripting (XSS) vulnerability exists in LDAP Account Manager (LAM) Pro 3.6 in the filter parameter to cmd.php in an export and exporter_… Debian Linux Mitigation only Fix from $1,6002019-12-05 MEDIUM 6.1 CVE-2012-1115 A Cross-Site Scripting (XSS) vulnerability exists in LDAP Account Manager (LAM) Pro 3.6 in the export, add_value_form, and dn parameters to cmd.php. Debian Linux Mitigation only Fix from $1,6002019-12-05 MEDIUM 5.3 CVE-2012-1104 A Security Bypass vulnerability exists in the phpCAS 1.2.2 library from the jasig project due to the way proxying of services are managed. Debian Linux No fix yet Fix from $1,6002019-12-05 MEDIUM 5.5 CVE-2013-0326 OpenStack nova base images permissions are world readable Debian Linux Mitigation only Fix from $1,6002019-12-05 HIGH 7.5 CVE-2012-4428EPSS 10% openslp: SLPIntersectStringList()' Function has a DoS vulnerability Debian Linux Mitigation only Fix from $1,9502019-12-02 CRITICAL 9.8 CVE-2011-2523EPSS 96% vsftpd 2.3.4 downloaded between 20110630 and 20110703 contains a backdoor which opens a shell on port 6200/tcp. Debian Linux No fix yet Fix from $2,3002019-11-27 MEDIUM 5.3 CVE-2011-2515 PackageKit 0.6.17 allows installation of unsigned RPM packages as though they were signed which may allow installation of non-trusted packages and ex… Debian Linux Mitigation only Fix from $1,6002019-11-27 HIGH 8.1 CVE-2012-2248 An issue was discovered in dhclient 4.3.1-6 due to an embedded path variable. Debian Linux Mitigation only Fix from $1,9502019-11-27 MEDIUM 6.5 CVE-2011-4350EPSS 16% Yaws 1.91 has a directory traversal vulnerability in the way certain URLs are processed. A remote authenticated user could use this flaw to obtain co… Debian Linux No fix yet Fix from $1,6002019-11-26 MEDIUM 6.5 CVE-2012-5521 quagga (ospf6d) 0.99.21 has a DoS flaw in the way the ospf6d daemon performs routes removal Debian Linux Mitigation only Fix from $1,6002019-11-25 MEDIUM 6.1 CVE-2012-0812 PostfixAdmin 2.3.4 has multiple XSS vulnerabilities Debian Linux Mitigation only Fix from $1,6002019-11-22 HIGH 8.8 CVE-2019-5087 An exploitable integer overflow vulnerability exists in the flattenIncrementally function in the xcf2png and xcf2pnm binaries of xcftools 1.0.7. An i… Debian Linux No fix yet Fix from $1,9502019-11-21 HIGH 8.8 CVE-2019-5086 An exploitable integer overflow vulnerability exists in the flattenIncrementally function in the xcf2png and xcf2pnm binaries of xcftools, version 1.… Debian Linux No fix yet Fix from $1,9502019-11-21 MEDIUM 5.3 CVE-2014-1935 9base 1:6-6 and 1:6-7 insecurely creates temporary files which results in predictable filenames. Debian Linux No fix yet Fix from $1,6002019-11-21 MEDIUM 5.5 CVE-2011-2923 foomatic-rip filter, all versions, used insecurely creates temporary files for storage of PostScript data by rendering the data when the debug mode w… Debian Linux Mitigation only Fix from $1,6002019-11-19 MEDIUM 5.5 CVE-2012-0843 uzbl: Information disclosure via world-readable cookies storage file Debian Linux Mitigation only Fix from $1,6002019-11-19 MEDIUM 6.0 CVE-2019-11139 Improper conditions check in the voltage modulation interface for some Intel(R) Xeon(R) Scalable Processors may allow a privileged user to potentiall… Debian Linux Mitigation only Fix from $1,6002019-11-14 HIGH 7.5 CVE-2010-5108 Trac 0.11.6 does not properly check workflow permissions before modifying a ticket. This can be exploited by an attacker to change the status and res… Debian Linux Mitigation only Fix from $1,9502019-11-13 MEDIUM 6.5 CVE-2012-4385 letodms 3.3.6 has CSRF via change password Debian Linux No fix yet Fix from $1,6002019-11-13 MEDIUM 6.5 CVE-2010-3439 It is possible to cause a DoS condition by causing the server to crash in alien-arena 7.33 by supplying various invalid parameters to the download co… Debian Linux No fix yet Fix from $1,6002019-11-12 CRITICAL 9.8 CVE-2007-6745 clamav 0.91.2 suffers from a floating point exception when using ScanOLE2. Debian Linux Mitigation only Fix from $2,3002019-11-07 HIGH 7.5 CVE-2007-5743 viewvc 1.0.3 allows improper access control to files in a repository when using the "forbidden" configuration option. Debian Linux No fix yet Fix from $1,9502019-11-07 HIGH 7.4 CVE-2012-0051 Tahoe-LAFS 1.9.0 fails to ensure integrity which allows remote attackers to corrupt mutable files or directories upon retrieval. Debian Linux No fix yet Fix from $1,9502019-11-07 HIGH 7.5 CVE-2019-18804 DjVuLibre 3.5.27 has a NULL pointer dereference in the function DJVU::filter_fv at IW44EncodeCodec.cpp. Debian Linux No fix yet Fix from $1,9502019-11-07 HIGH 8.8 CVE-2013-6364 Horde Groupware Webmail Edition has CSRF and XSS when saving search as a virtual address book Debian Linux No fix yet Fix from $1,9502019-11-05 HIGH 7.5 CVE-2013-2227EPSS 13% GLPI 0.83.7 has Local File Inclusion in common.tabs.php. Debian Linux No fix yet Fix from $1,9502019-11-01