Top technology
Linux 13140
Google 12536
Microsoft 12379
Oracle 6843
Apple 6692
Adobe 6387
Ibm 6336
Cisco 5759
Debian 3919
Mozilla 2895
Apache 2864
Redhat 2592
HIGH 7.5
CVE-2019-18976EPSS 7%
An issue was discovered in res_pjsip_t38.c in Sangoma Asterisk through 13.x and Certified Asterisk through 13.21-x. If it receives a re-invite initia…
Debian Linux
after 13.29.1
MEDIUM 6.5
CVE-2019-18790
An issue was discovered in channels/chan_sip.c in Sangoma Asterisk 13.x before 13.29.2, 16.x before 16.6.2, and 17.x before 17.0.1, and Certified Ast…
Debian Linux
13.29.2 / 16.6.2+
MEDIUM 6.1
CVE-2012-0812
PostfixAdmin 2.3.4 has multiple XSS vulnerabilities
Debian Linux
Mitigation only
MEDIUM 5.5
CVE-2019-19221
In Libarchive 3.4.0, archive_wstring_append_from_mbs in archive_string.c has an out-of-bounds read because of an incorrect mbrtowc or mbtowc call. Fo…
Debian Linux
Patch available
HIGH 7.0
CVE-2014-5255
xcfa before 5.0.1 creates temporary files insecurely which could allow local users to launch a symlink attack and overwrite arbitrary files. Note: A …
Debian Linux
5.0.1+
HIGH 7.5
CVE-2019-19204EPSS 7%
An issue was discovered in Oniguruma 6.x before 6.9.4_rc2. In the function fetch_interval_quantifier (formerly known as fetch_range_quantifier) in re…
Debian Linux
6.9.4+
MEDIUM 6.5
CVE-2019-18890
A SQL injection vulnerability in Redmine through 3.2.9 and 3.3.x before 3.3.10 allows Redmine users to access protected information via a crafted obj…
Debian Linux
3.3.10+
HIGH 8.8
CVE-2019-5087
An exploitable integer overflow vulnerability exists in the flattenIncrementally function in the xcf2png and xcf2pnm binaries of xcftools 1.0.7. An i…
Debian Linux
No fix yet
HIGH 8.8
CVE-2019-5086
An exploitable integer overflow vulnerability exists in the flattenIncrementally function in the xcf2png and xcf2pnm binaries of xcftools, version 1.…
Debian Linux
No fix yet
HIGH 7.5
CVE-2014-1936
rc before 1.7.1-5 insecurely creates temporary files.
Debian Linux
1.7.1-5+
MEDIUM 5.3
CVE-2014-1935
9base 1:6-6 and 1:6-7 insecurely creates temporary files which results in predictable filenames.
Debian Linux
No fix yet
HIGH 7.5
CVE-2012-2350
pam_shield before 0.9.4: Default configuration does not perform protective action
Debian Linux
0.9.4+
HIGH 7.5
CVE-2013-1817
MediaWiki before 1.19.4 and 1.20.x before 1.20.3 contains an error in the api.php script which allows remote attackers to obtain sensitive informatio…
Debian Linux
1.19.4 / 1.20.3+
HIGH 7.5
CVE-2013-1816
MediaWiki before 1.19.4 and 1.20.x before 1.20.3 allows remote attackers to cause a denial of service (application crash) by sending a specially craf…
Debian Linux
1.19.4 / 1.20.3+
MEDIUM 5.5
CVE-2015-1606
The keyring DB in GnuPG before 2.1.2 does not properly handle invalid packets, which allows remote attackers to cause a denial of service (invalid re…
Debian Linux
2.1.2+
HIGH 7.5
CVE-2011-0529
Weborf before 0.12.5 is affected by a Denial of Service (DOS) due to malformed fields in HTTP.
Debian Linux
0.12.5+
CRITICAL 9.8
CVE-2011-1028
The $smarty.template variable in Smarty3 allows attackers to possibly execute arbitrary PHP code via the sysplugins/smarty_internal_compile_private_s…
Debian Linux
3.0.7+
MEDIUM 5.5
CVE-2011-2924
foomatic-rip filter v4.0.12 and prior used insecurely creates temporary files for storage of PostScript data by rendering the data when the debug mod…
Debian Linux
after 4.0.12
MEDIUM 5.5
CVE-2011-2923
foomatic-rip filter, all versions, used insecurely creates temporary files for storage of PostScript data by rendering the data when the debug mode w…
Debian Linux
Mitigation only
HIGH 7.5
CVE-2012-6071
nuSOAP before 0.7.3-5 does not properly check the hostname of a cert.
Debian Linux
0.7.3-5+
HIGH 7.8
CVE-2014-5439
Multiple Stack-based Buffer Overflow vulnerabilities exists in Sniffit prior to 0.3.7 via a crafted configuration file that will bypass Non-eXecutabl…
Debian Linux
after 0.3.7
MEDIUM 5.5
CVE-2012-0843
uzbl: Information disclosure via world-readable cookies storage file
Debian Linux
Mitigation only
MEDIUM 5.5
CVE-2012-0842
surf: cookie jar has read access from other local user
Debian Linux
0.5+
CRITICAL 9.8
CVE-2019-19012EPSS 11%
An integer overflow in the search_in_range function in regexec.c in Oniguruma 6.x before 6.9.4_rc2 leads to an out-of-bounds read, in which the offse…
Debian Linux
after 6.9.3
CRITICAL 9.8
CVE-2011-0703
In gksu-polkit before 0.0.3, the source file for xauth may contain arbitrary commands that may allow an attacker to overtake an administrator X11 ses…
Debian Linux
0.0.3+
MEDIUM 6.7
CVE-2011-2910
The AX.25 daemon (ax25d) in ax25-tools before 0.0.8-13 does not check the return value of a setuid call. The setuid call is responsible for dropping …
Debian Linux
0.0.8-13+
HIGH 7.5
CVE-2016-5285
A Null pointer dereference vulnerability exists in Mozilla Network Security Services due to a missing NULL check in PK11_SignWithSymKey / ssl3_Comput…
Debian Linux
3.26+
CRITICAL 9.8
CVE-2013-7087
ClamAV before 0.97.7 has WWPack corrupt heap memory
Debian Linux
0.97.7+
CRITICAL 9.8
CVE-2013-7088
ClamAV before 0.97.7 has buffer overflow in the libclamav component
Debian Linux
0.97.7+
HIGH 7.5
CVE-2013-7089
ClamAV before 0.97.7: dbg_printhex possible information leak
Debian Linux
0.97.7+