Vulnerability index

Browse CVEs

3,919 matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

Debian Linux MEDIUM 6.5
CVE-2019-20917

An issue was discovered in InspIRCd 2 before 2.0.28 and 3 before 3.3.0. The mysql module contains a NULL pointer dereference when built against maria…

Fix: 2.0.28 / 3.3.0+
Fix from $1,600 2020-09-11
Debian Linux MEDIUM 6.5
CVE-2020-25269

An issue was discovered in InspIRCd 2 before 2.0.29 and 3 before 3.6.0. The pgsql module contains a use after free vulnerability. When combined with …

Fix: 2.0.29 / 3.6.0+
Fix from $1,600 2020-09-11
Debian Linux HIGH 7.5
CVE-2020-6097

An exploitable denial of service vulnerability exists in the atftpd daemon functionality of atftp 0.7.git20120829-3.1+b1. A specially crafted sequenc…

No fix yet
Fix from $1,950 2020-09-10
Debian Linux HIGH 7.5
CVE-2020-25219

url::recvline in url.cpp in libproxy 0.4.x through 0.4.15 allows a remote HTTP server to trigger uncontrolled recursion via a response composed of an…

Fix: after 0.4.15
Fix from $1,950 2020-09-09
Debian Linux MEDIUM 6.5
CVE-2020-3702

u'Specifically timed and handcrafted traffic can cause internal errors in a WLAN device that lead to improper layer 2 Wi-Fi encryption with a consequ…

Mitigation only
Fix from $1,600 2020-09-08
Debian Linux HIGH 7.5
CVE-2019-20916

The pip package before 19.2 for Python allows Directory Traversal when a URL is given in an install command, because a Content-Disposition header can…

Fix: 19.2+
Fix from $1,950 2020-09-04
Debian Linux MEDIUM 6.5
CVE-2020-24977

GNOME project libxml2 v2.9.10 has a global buffer over-read vulnerability in xmlEncodeEntitiesInternal at libxml2/entities.c. The issue has been fixe…

Patch available
Fix from $1,600 2020-09-04
Debian Linux HIGH 7.1
CVE-2020-7729

The package grunt before 1.3.0 are vulnerable to Arbitrary Code Execution due to the default usage of the function load() instead of its secure repla…

Fix: 1.3.0+
Fix from $1,950 2020-09-03
Freedombox MEDIUM 5.3
CVE-2020-25073

FreedomBox through 20.13 allows remote attackers to obtain sensitive information from the /server-status page of the Apache HTTP Server, because a co…

Fix: after 20.13
Fix from $1,600 2020-09-02
Debian Linux HIGH 7.5
CVE-2020-25032

An issue was discovered in Flask-CORS (aka CORS Middleware for Flask) before 3.0.9. It allows ../ directory traversal to access private resources bec…

Fix: 3.0.9+
Fix from $1,950 2020-08-31
Debian Linux MEDIUM 6.5
CVE-2020-8244

A buffer over-read vulnerability exists in bl <4.0.3, <3.0.1, <2.2.1, and <1.2.3 which could allow an attacker to supply user input (even typed) that…

Fix: 1.2.3 / 2.2.1+
Fix from $1,600 2020-08-30
Debian Linux HIGH 7.5
CVE-2020-24368

Icinga Icinga Web2 2.0.0 through 2.6.4, 2.7.4 and 2.8.2 has a Directory Traversal vulnerability which allows an attacker to access arbitrary files th…

Fix: 2.6.4 / 2.7.4+
Fix from $1,950 2020-08-19
Debian Linux CRITICAL 9.8
CVE-2020-24361

SNMPTT before 1.4.2 allows attackers to execute shell code via EXEC, PREXEC, or unknown_trap_exec.

Fix: 1.4.2+
Fix from $2,300 2020-08-16
Debian Linux MEDIUM 5.5
CVE-2020-16304

A buffer overflow vulnerability in image_render_color_thresh() in base/gxicolor.c of Artifex Software GhostScript v9.18 to v9.50 allows a remote atta…

Fix: after 9.52
Fix from $1,600 2020-08-13
Debian Linux MEDIUM 5.5
CVE-2020-16305

A buffer overflow vulnerability in pcx_write_rle() in contrib/japanese/gdev10v.c of Artifex Software GhostScript v9.50 allows a remote attacker to ca…

No fix yet
Fix from $1,600 2020-08-13
Debian Linux MEDIUM 5.5
CVE-2020-16306

A null pointer dereference vulnerability in devices/gdevtsep.c of Artifex Software GhostScript v9.50 allows a remote attacker to cause a denial of se…

No fix yet
Fix from $1,600 2020-08-13
Debian Linux MEDIUM 5.5
CVE-2020-16307

A null pointer dereference vulnerability in devices/vector/gdevtxtw.c and psi/zbfont.c of Artifex Software GhostScript v9.50 allows a remote attacker…

No fix yet
Fix from $1,600 2020-08-13
Debian Linux MEDIUM 5.5
CVE-2020-16308

A buffer overflow vulnerability in p_print_image() in devices/gdevcdj.c of Artifex Software GhostScript v9.50 allows a remote attacker to cause a den…

Fix: 9.52+
Fix from $1,600 2020-08-13
Debian Linux MEDIUM 5.5
CVE-2020-16309

A buffer overflow vulnerability in lxm5700m_print_page() in devices/gdevlxm.c of Artifex Software GhostScript v9.50 allows a remote attacker to cause…

No fix yet
Fix from $1,600 2020-08-13
Debian Linux MEDIUM 5.5
CVE-2020-16310

A division by zero vulnerability in dot24_print_page() in devices/gdevdm24.c of Artifex Software GhostScript v9.50 allows a remote attacker to cause …

No fix yet
Fix from $1,600 2020-08-13
Debian Linux MEDIUM 5.5
CVE-2020-17538

A buffer overflow vulnerability in GetNumSameData() in contrib/lips4/gdevlips.c of Artifex Software GhostScript from v9.18 to v9.50 allows a remote a…

Fix: 9.52+
Fix from $1,600 2020-08-13
Debian Linux HIGH 7.8
CVE-2020-16303

A use-after-free vulnerability in xps_finish_image_path() in devices/vector/gdevxps.c of Artifex Software GhostScript v9.50 allows a remote attacker …

No fix yet
Fix from $1,950 2020-08-13
Debian Linux MEDIUM 5.5
CVE-2020-16292

A buffer overflow vulnerability in mj_raster_cmd() in contrib/japanese/gdevmjc.c of Artifex Software GhostScript v9.50 allows a remote attacker to ca…

Fix: 9.52+
Fix from $1,600 2020-08-13
Debian Linux MEDIUM 5.5
CVE-2020-16293

A null pointer dereference vulnerability in compose_group_nonknockout_nonblend_isolated_allmask_common() in base/gxblend.c of Artifex Software GhostS…

Fix: 9.52+
Fix from $1,600 2020-08-13
Debian Linux MEDIUM 5.5
CVE-2020-16294

A buffer overflow vulnerability in epsc_print_page() in devices/gdevepsc.c of Artifex Software GhostScript v9.50 allows a remote attacker to cause a …

Fix: 9.52+
Fix from $1,600 2020-08-13
Debian Linux MEDIUM 5.5
CVE-2020-16295

A null pointer dereference vulnerability in clj_media_size() in devices/gdevclj.c of Artifex Software GhostScript v9.50 allows a remote attacker to c…

Fix: 9.52+
Fix from $1,600 2020-08-13
Debian Linux MEDIUM 5.5
CVE-2020-16296

A buffer overflow vulnerability in GetNumWrongData() in contrib/lips4/gdevlips.c of Artifex Software GhostScript from v9.18 to v9.50 allows a remote …

Fix: 9.52+
Fix from $1,600 2020-08-13
Debian Linux MEDIUM 5.5
CVE-2020-16297

A buffer overflow vulnerability in FloydSteinbergDitheringC() in contrib/gdevbjca.c of Artifex Software GhostScript v9.18 to v9.50 allows a remote at…

Fix: 9.52+
Fix from $1,600 2020-08-13
Debian Linux MEDIUM 5.5
CVE-2020-16298

A buffer overflow vulnerability in mj_color_correct() in contrib/japanese/gdevmjc.c of Artifex Software GhostScript v9.50 allows a remote attacker to…

Fix: 9.52+
Fix from $1,600 2020-08-13
Debian Linux MEDIUM 5.5
CVE-2020-16299

A Division by Zero vulnerability in bj10v_print_page() in contrib/japanese/gdev10v.c of Artifex Software GhostScript v9.50 allows a remote attacker t…

Fix: 9.52+
Fix from $1,600 2020-08-13