Vulnerabilities

Aggregated CVE / GHSA / KEV / OSV — filter by tag and category.

ID Title
CVE-2017-2211 Vulnerability in gsi (CVE-2017-2211)
vulnerability in gsi (CVE-2017-2211). Successful exploitation can lead to full system takeover.
CVE-2017-2212 Vulnerability in gsi (CVE-2017-2212)
vulnerability in gsi (CVE-2017-2212). Successful exploitation can lead to full system takeover.
CVE-2016-4902 Vulnerability in jpki (CVE-2016-4902)
vulnerability in jpki (CVE-2016-4902). Successful exploitation can lead to full system takeover.
CVE-2016-4907 Cybozu Garoon 3.0.0 to 4.2.2 allow remote attackers to obtain CSRF tokens via unspecified vectors.
Cybozu Garoon 3.0.0 to 4.2.2 allow remote attackers to obtain CSRF tokens via unspecified vectors.
CVE-2016-7803 SQL Injection in sqli (CVE-2016-7803)
SQL injection in sqli (CVE-2016-7803). Successful exploitation can lead to full system takeover.
CVE-2016-7807 Vulnerability in iodata (CVE-2016-7807)
vulnerability in iodata (CVE-2016-7807). Confidential information can be exposed externally.
CVE-2016-7809 Cross-Site Request Forgery (CSRF) in csrf (CVE-2016-7809)
vulnerability in csrf (CVE-2016-7809). Successful exploitation can lead to full system takeover.
CVE-2016-7811 Vulnerability in corega (CVE-2016-7811)
vulnerability in corega (CVE-2016-7811). Successful exploitation can lead to full system takeover.
CVE-2016-7814 Information Disclosure in iodata (CVE-2016-7814)
vulnerability in iodata (CVE-2016-7814). Confidential information can be exposed externally.
CVE-2016-7818 Vulnerability in japan-pension-service (CVE-2016-7818)
vulnerability in japan-pension-service (CVE-2016-7818). Successful exploitation can lead to full system takeover.
CVE-2016-7819 OS Command Injection in iodata (CVE-2016-7819)
OS command injection in iodata (CVE-2016-7819). Successful exploitation can lead to full system takeover.
CVE-2016-7820 Buffer Overflow in dos (CVE-2016-7820)
vulnerability in dos (CVE-2016-7820). Successful exploitation can lead to full system takeover.
CVE-2016-7822 Cross-Site Request Forgery (CSRF) in csrf (CVE-2016-7822)
vulnerability in csrf (CVE-2016-7822). Successful exploitation can lead to full system takeover.
CVE-2015-1379 Vulnerability in dos (CVE-2015-1379)
vulnerability in dos (CVE-2015-1379). Risk of unauthorized operations or information disclosure.
CVE-2015-1786 Cross-Site Request Forgery (CSRF) in csrf (CVE-2015-1786)
vulnerability in csrf (CVE-2015-1786). Successful exploitation can lead to full system takeover.
CVE-2015-3634 Information Disclosure in wordpress (CVE-2015-3634)
vulnerability in wordpress (CVE-2015-3634). Confidential information can be exposed externally.
CVE-2015-3913 Vulnerability in dos (CVE-2015-3913)
vulnerability in dos (CVE-2015-3913). Risk of unauthorized operations or information disclosure.
CVE-2016-6098 Vulnerability in ibm (CVE-2016-6098)
vulnerability in ibm (CVE-2016-6098). Confidential information can be exposed externally.
CVE-2016-9698 XXE (XML External Entity) in dos (CVE-2016-9698)
vulnerability in dos (CVE-2016-9698). Confidential information can be exposed externally.
CVE-2016-9991 Cross-Site Request Forgery (CSRF) in ibm (CVE-2016-9991)
vulnerability in ibm (CVE-2016-9991). Successful exploitation can lead to full system takeover.
CVE-2017-1319 Vulnerability in ibm (CVE-2017-1319)
vulnerability in ibm (CVE-2017-1319). Confidential information can be exposed externally.
CVE-2014-7919 Vulnerability in cpp (CVE-2014-7919)
vulnerability in cpp (CVE-2014-7919). Risk of unauthorized operations or information disclosure.
CVE-2016-6594 Vulnerability in bluecoat (CVE-2016-6594)
vulnerability in bluecoat (CVE-2016-6594). Data can be tampered with by attackers.
CVE-2016-3099 Vulnerability in redhat (CVE-2016-3099)
vulnerability in redhat (CVE-2016-3099). Data can be tampered with by attackers.
CVE-2016-4992 Information Disclosure in redhat (CVE-2016-4992)
vulnerability in redhat (CVE-2016-4992). Confidential information can be exposed externally.
CVE-2016-5416 Information Disclosure in redhat (CVE-2016-5416)
vulnerability in redhat (CVE-2016-5416). Confidential information can be exposed externally.
CVE-2014-3498 Vulnerability in ansible (CVE-2014-3498)
vulnerability in ansible (CVE-2014-3498). Successful exploitation can lead to full system takeover. Mitigation: upgrade to `8ed6350e65c82292a631f08845dfaacffe7f07f5, 1.6.6` or later.
CVE-2016-3091 Cloud Foundry Diego 0.1468.0 through 0.1470.0 allows remote attackers to cause a denial of service.
Cloud Foundry Diego 0.1468.0 through 0.1470.0 allows remote attackers to cause a denial of service.
CVE-2016-3108 Vulnerability in pulpproject (CVE-2016-3108)
vulnerability in pulpproject (CVE-2016-3108). Confidential information can be exposed externally.
CVE-2016-3112 Vulnerability in pulpproject (CVE-2016-3112)
vulnerability in pulpproject (CVE-2016-3112). Confidential information can be exposed externally.
CVE-2016-4457 CloudForms Management Engine before 5.8 includes a default SSL/TLS certificate.
CloudForms Management Engine before 5.8 includes a default SSL/TLS certificate.
CVE-2016-4471 ManageIQ in CloudForms before 4.1 allows remote authenticated users to execute arbitrary code.
ManageIQ in CloudForms before 4.1 allows remote authenticated users to execute arbitrary code.
CVE-2015-2251 Information Disclosure in huawei (CVE-2015-2251)
vulnerability in huawei (CVE-2015-2251). Confidential information can be exposed externally.
CVE-2015-2252 Code Injection in huawei (CVE-2015-2252)
code injection in huawei (CVE-2015-2252). Successful exploitation can lead to full system takeover.
CVE-2015-2800 Authentication Bypass in dos (CVE-2015-2800)
authentication bypass in dos (CVE-2015-2800). Risk of unauthorized operations or information disclosure.
CVE-2017-8108 Vulnerability in cisofy (CVE-2017-8108)
vulnerability in cisofy (CVE-2017-8108). Successful exploitation can lead to full system takeover.
CVE-2017-9022 Vulnerability in dos (CVE-2017-9022)
vulnerability in dos (CVE-2017-9022). Risk of unauthorized operations or information disclosure.
CVE-2017-9023 Vulnerability in dos (CVE-2017-9023)
vulnerability in dos (CVE-2017-9023). Risk of unauthorized operations or information disclosure.
CVE-2017-9517 atmail before 7.8.0.2 has CSRF, allowing an attacker to upload and import users via CSV.
atmail before 7.8.0.2 has CSRF, allowing an attacker to upload and import users via CSV.
CVE-2017-9518 Cross-Site Request Forgery (CSRF) in csrf (CVE-2017-9518)
vulnerability in csrf (CVE-2017-9518). Successful exploitation can lead to full system takeover.
CVE-2017-9519 atmail before 7.8.0.2 has CSRF, allowing an attacker to create a user account.
atmail before 7.8.0.2 has CSRF, allowing an attacker to create a user account.
CVE-2017-4908 Buffer Overflow in dos (CVE-2017-4908)
vulnerability in dos (CVE-2017-4908). Successful exploitation can lead to full system takeover.
CVE-2017-4909 Buffer Overflow in dos (CVE-2017-4909)
vulnerability in dos (CVE-2017-4909). Successful exploitation can lead to full system takeover.
CVE-2017-4910 Out-of-Bounds Read in dos (CVE-2017-4910)
vulnerability in dos (CVE-2017-4910). Successful exploitation can lead to full system takeover.
CVE-2017-4911 Out-of-Bounds Write in dos (CVE-2017-4911)
out-of-bounds write in dos (CVE-2017-4911). Successful exploitation can lead to full system takeover.
CVE-2017-4912 Out-of-Bounds Read in dos (CVE-2017-4912)
vulnerability in dos (CVE-2017-4912). Successful exploitation can lead to full system takeover.
CVE-2017-4913 Vulnerability in dos (CVE-2017-4913)
vulnerability in dos (CVE-2017-4913). Successful exploitation can lead to full system takeover.
CVE-2017-6638 Vulnerability in cisco (CVE-2017-6638)
vulnerability in cisco (CVE-2017-6638). Successful exploitation can lead to full system takeover.
CVE-2017-6648 Vulnerability in dos (CVE-2017-6648)
vulnerability in dos (CVE-2017-6648). Risk of unauthorized operations or information disclosure.
CVE-2017-7180 Vulnerability in privilege-escalation (CVE-2017-7180)
vulnerability in privilege-escalation (CVE-2017-7180). Successful exploitation can lead to full system takeover.

🍪 About cookies

We use cookies to keep you logged in, remember your language, and improve the service.

Details →