Vulnerability index

Browse CVEs

11 matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

Commerce Paybox HIGH 7.5
CVE-2026-0750

Improper Verification of Cryptographic Signature vulnerability in Drupal Drupal Commerce Paybox Commerce Paybox on Drupal 7.X allows Authentication B…

Fix: after 7.x-1.5
Fix from $1,950 2026-01-28
Mx900 Firmware HIGH 7.8
CVE-2019-14719

Verifone MX900 series Pinpad Payment Terminals with OS 30251000 allow multiple arbitrary command injections, as demonstrated by the file manager.

Mitigation only
Fix from $1,950 2020-10-23
Verix Os HIGH 7.8
CVE-2019-14712

Verifone VerixV Pinpad Payment Terminals with QT000530 allow bypass of integrity and origin control for S1G file generation.

Mitigation only
Fix from $1,950 2020-10-23
Verix Os HIGH 7.8
CVE-2019-14717

Verifone Verix OS on VerixV Pinpad Payment Terminals with QT000530 have a Buffer Overflow via the Run system call.

Mitigation only
Fix from $1,950 2020-10-23
Mx900 Firmware HIGH 7.0
CVE-2019-14711

Verifone MX900 series Pinpad Payment Terminals with OS 30251000 have a race condition for RBAC bypass.

Mitigation only
Fix from $1,950 2020-10-23
P400 Firmware MEDIUM 6.8
CVE-2019-14715

Verifone Pinpad Payment Terminals allow undocumented physical access to the system via an SBI bootloader memory write operation.

Mitigation only
Fix from $1,600 2020-10-23
Mx900 Firmware MEDIUM 6.7
CVE-2019-14718

Verifone MX900 series Pinpad Payment Terminals with OS 30251000 have Insecure Permissions, with resultant svc_netcontrol arbitrary command injection …

Mitigation only
Fix from $1,600 2020-10-23
Verix Os MEDIUM 6.6
CVE-2019-14716

Verifone VerixV Pinpad Payment Terminals with QT000530 have an undocumented physical access mode (aka VerixV shell.out).

Mitigation only
Fix from $1,600 2020-10-23
Mx900 Firmware MEDIUM 5.5
CVE-2019-14713

Verifone MX900 series Pinpad Payment Terminals with OS 30251000 allow installation of unsigned packages.

No fix yet
Fix from $1,600 2020-10-23
Verix Multi App Conductor HIGH 8.1
CVE-2019-10060

The Verix Multi-app Conductor application 2.7 for Verifone Verix suffers from a buffer overflow vulnerability that allows attackers to execute arbitr…

Mitigation only
Fix from $1,950 2019-03-26
Vericentre Web Console HIGH 7.5
CVE-2012-4951

Multiple SQL injection vulnerabilities in terminal/paramedit.aspx in VeriFone VeriCentre Web Console before 2.2 build 36 allow remote attackers to ex…

Fix: after 2.2
Fix from $1,950 2012-11-15