Vulnerability index

Browse CVEs

192 matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

Active Iq Config Advisor HIGH 8.8
CVE-2026-22054

Active IQ Config Advisor version 6.7.3 contains hard-coded credentials that could allow an authenticated attacker with low privileges to perform unau…

Mitigation only
Fix from $1,950 2026-06-03
Active Iq Onecollect HIGH 8.8
CVE-2026-22055

Active IQ OneCollect version 2.7.3 contains hard-coded credentials that could allow an authenticated attacker with low privileges to perform unauthor…

Mitigation only
Fix from $1,950 2026-06-03
Storagegrid HIGH 7.5
CVE-2025-26515

StorageGRID (formerly StorageGRID Webscale) versions prior to 11.8.0.15 and 11.9.0.8 without Single Sign-on enabled are susceptible to a Server-Sid…

Fix: 11.8.0.15 / 11.9.0.8+
Fix from $1,950 2025-09-19
Storagegrid MEDIUM 6.4
CVE-2025-26514

StorageGRID (formerly StorageGRID Webscale) versions prior to 11.8.0.15 and 11.9.0.8 are susceptible to a Reflected Cross-Site Scripting vulnerabil…

Fix: 11.8.0.15 / 11.9.0.8+
Fix from $1,600 2025-09-19
Storagegrid MEDIUM 5.4
CVE-2025-26517

StorageGRID (formerly StorageGRID Webscale) versions prior to 11.8.0.15 and 11.9.0.8 are susceptible to a privilege escalation vulnerability. Succe…

Fix: 11.8.0.15 / 11.9.0.8+
Fix from $1,600 2025-09-19
Storagegrid MEDIUM 5.3
CVE-2025-26516

StorageGRID (formerly StorageGRID Webscale) versions prior to 11.8.0.15 and 11.9.0.8 are susceptible to a Denial of Service vulnerability. Successf…

Fix: 11.8.0.15 / 11.9.0.8+
Fix from $1,600 2025-09-19
San Host Utilities HIGH 7.8
CVE-2025-26513

The installer for SAN Host Utilities for Windows versions prior to 8.0 is susceptible to a vulnerability which when successfully exploited could allo…

Fix: 8.0+
Fix from $1,950 2025-08-07
Snapcenter CRITICAL 9.9
CVE-2025-26512

SnapCenter versions prior to 6.0.1P1 and 6.1P1 are susceptible to a vulnerability which may allow an authenticated SnapCenter Server user to become…

Fix: 6.0.1+
Fix from $2,300 2025-03-24
Active Iq Unified Manager HIGH 7.7
CVE-2025-24928

libxml2 before 2.12.10 and 2.13.x before 2.13.6 has a stack-based buffer overflow in xmlSnprintfElements in valid.c. To exploit this, DTD validation …

Fix: 2.12.10 / 2.13.6+
Fix from $1,950 2025-02-18
Active Iq Unified Manager MEDIUM 5.0
CVE-2025-1181

A vulnerability classified as critical was found in GNU Binutils 2.43. This vulnerability affects the function _bfd_elf_gc_mark_rsec of the file bfd/…

No fix yet
Fix from $1,600 2025-02-11
Active Iq Unified Manager HIGH 7.5
CVE-2025-24970

Netty, an asynchronous, event-driven network application framework, has a vulnerability starting in version 4.1.91.Final and prior to version 4.1.118…

Fix: 4.1.118+
Fix from $1,950 2025-02-10
Active Iq Unified Manager HIGH 7.0
CVE-2025-0411 KEVEPSS 67%

7-Zip Mark-of-the-Web Bypass Vulnerability. This vulnerability allows remote attackers to bypass the Mark-of-the-Web protection mechanism on affected…

Fix: 24.09+
Fix from $1,950 2025-01-25
Oncommand Insight MEDIUM 6.5
CVE-2024-21262

Vulnerability in the MySQL Connectors product of Oracle MySQL (component: Connector/ODBC). Supported versions that are affected are 9.0.0 and prior.…

Fix: after 9.0.0
Fix from $1,600 2024-10-15
Active Iq Unified Manager HIGH 7.5
CVE-2024-9823

There exists a security vulnerability in Jetty's DosFilter which can be exploited by unauthorized users to cause remote denial-of-service (DoS) attac…

Fix: 9.4.54 / 10.0.18+
Fix from $1,950 2024-10-14
Active Iq Unified Manager HIGH 7.4
CVE-2024-21147

Vulnerability in the Oracle Java SE, Oracle GraalVM for JDK, Oracle GraalVM Enterprise Edition product of Oracle Java SE (component: Hotspot). Suppo…

Mitigation only
Fix from $1,950 2024-07-16
Snapcenter MEDIUM 6.5
CVE-2024-21993

SnapCenter versions prior to 5.0p1 are susceptible to a vulnerability which could allow an authenticated attacker to discover plaintext credentials.

Fix: 5.0+
Fix from $1,600 2024-07-09
Storagegrid MEDIUM 5.3
CVE-2024-21988

StorageGRID (formerly StorageGRID Webscale) versions prior to 11.7.0.9 and 11.8.0.5 are susceptible to disclosure of sensitive information via comp…

Fix: 11.7.0.9 / 11.8.0.5+
Fix from $1,600 2024-06-14
Ontap Select Deploy Administration Utility CRITICAL 9.8
CVE-2024-21990

ONTAP Select Deploy administration utility versions 9.12.1.x, 9.13.1.x and 9.14.1.x contain hard-coded credentials that could allow an attacker to …

Fix: after 9.14.1
Fix from $2,300 2024-04-17
Ontap Select Deploy Administration Utility HIGH 8.8
CVE-2024-21989

ONTAP Select Deploy administration utility versions 9.12.1.x, 9.13.1.x and 9.14.1.x are susceptible to a vulnerability which when successfully expl…

Fix: after 9.14.1
Fix from $1,950 2024-04-17
Oncommand Insight MEDIUM 6.1
CVE-2023-38359

IBM Cognos Analytics 11.1.7, 11.2.4, and 12.0.0 is vulnerable to cross-site scripting. This vulnerability allows users to embed arbitrary JavaScript …

Fix: 11.1.7 / 11.2.4+
Fix from $1,600 2024-02-26
Oncommand Insight MEDIUM 5.4
CVE-2023-43051

IBM Cognos Analytics 11.1.7, 11.2.4, and 12.0.0 is vulnerable to cross-site scripting. This vulnerability allows users to embed arbitrary JavaScript …

Fix: 11.1.7 / 11.2.4+
Fix from $1,600 2024-02-26
Oncommand Insight MEDIUM 5.3
CVE-2023-30996

IBM Cognos Analytics 11.1.7, 11.2.4, and 12.0.0 could be vulnerable to information leakage due to unverified sources in messages sent between Windows…

Fix: 11.1.7 / 11.2.4+
Fix from $1,600 2024-02-26
Oncommand Insight MEDIUM 6.5
CVE-2022-34357

IBM Cognos Analytics Mobile Server 11.1.7, 11.2.4, and 12.0.0 is vulnerable to Denial of Service due to due to weak or absence of rate limiting. By m…

Fix: 11.1.7 / 11.2.4+
Fix from $1,600 2024-02-26
Active Iq Unified Manager HIGH 7.5
CVE-2024-1635

A vulnerability was found in Undertow. This vulnerability impacts a server that supports the wildfly-http-client protocol. Whenever a malicious user …

Mitigation only
Fix from $1,950 2024-02-19
Storagegrid MEDIUM 6.9
CVE-2024-21984

StorageGRID (formerly StorageGRID Webscale) versions prior to 11.8 are susceptible to a difficult to exploit Reflected Cross-Site Scripting (XSS) v…

Fix: 11.7.0.8+
Fix from $1,600 2024-02-16
Storagegrid MEDIUM 6.5
CVE-2024-21983

StorageGRID (formerly StorageGRID Webscale) versions prior to 11.8 are susceptible to a Denial of Service (DoS) vulnerability. Successful exploit b…

Fix: 11.7.0.8+
Fix from $1,600 2024-02-16
Snapcenter MEDIUM 5.4
CVE-2024-21987

SnapCenter versions 4.8 prior to 5.0 are susceptible to a vulnerability which could allow an authenticated SnapCenter Server user to modify system …

Fix: 5.0+
Fix from $1,600 2024-02-16
Storagegrid HIGH 7.5
CVE-2023-27318

StorageGRID (formerly StorageGRID Webscale) versions 11.6.0 through 11.6.0.13 are susceptible to a Denial of Service (DoS) vulnerability. A success…

Fix: after 11.6.0.13
Fix from $1,950 2024-02-05
Clustered Data Ontap HIGH 7.6
CVE-2024-21985

ONTAP 9 versions prior to 9.9.1P18, 9.10.1P16, 9.11.1P13, 9.12.1P10 and 9.13.1P4 are susceptible to a vulnerability which could allow an authentica…

Fix: 9.9.1 / 9.10.1+
Fix from $1,950 2024-01-26
Clustered Data Ontap MEDIUM 6.5
CVE-2024-21982

ONTAP versions 9.4 and higher are susceptible to a vulnerability which when successfully exploited could lead to disclosure of sensitive informatio…

Fix: 9.8+
Fix from $1,600 2024-01-12