Search

Published: All 7d 30d 90d 12m
Severity: All Critical High Medium Low

15,629 CVEs · Low severity

CVEs (15,629, showing first 500)

Only the first 500 CVEs (by current sort) are shown when searching without a keyword. Add a search term above to narrow the results.

Showing 476–500 of 15,629 (capped at 500)

CVE ID Severity Patch CVSS Published Description
CVE-2013-0527 LOW Patched 1.9 2013-06-21 The Browser in IBM Sterling Connect:Direct 1.4 before 1.4.0.11 and 1.5 through 1.5.0.1 does not close pages upon the timeout of a session, which allows physically proximate…
CVE-2013-0534 LOW 1.9 2013-06-21 The Connect client in IBM Sametime 8.5.1, 8.5.1.1, 8.5.1.2, 8.5.2, and 8.5.2.1, as used in the Lotus Notes client and separately, might allow local users to obtain sensitiv…
CVE-2011-2693 LOW 1.9 2013-06-08 The perf subsystem in the kernel package 2.6.32-122.el6.x86_64 in Red Hat Enterprise Linux (RHEL) 6 does not properly handle NMIs, which might allow local users to cause a …
CVE-2011-4098 LOW Patched 1.9 2013-06-08 The fallocate implementation in the GFS2 filesystem in the Linux kernel before 3.2 relies on the page cache, which might allow local users to cause a denial of service by p…
CVE-2013-1952 LOW 1.9 2013-05-13 Xen 4.x, when using Intel VT-d for a bus mastering capable PCI device, does not properly check the source when accessing a bridge device's interrupt remapping table entries…
CVE-2013-1917 LOW 1.9 2013-05-13 Xen 3.1 through 4.x, when running 64-bit hosts on Intel CPUs, does not clear the NT flag when using an IRET after a SYSENTER instruction, which allows PV guest users to cau…
CVE-2013-1958 LOW Patched 1.9 2013-04-24 The scm_check_creds function in net/core/scm.c in the Linux kernel before 3.8.6 does not properly enforce capability requirements for controlling the PID value associated w…
CVE-2012-6140 LOW Patched 1.9 2013-04-24 pam_google_authenticator.c in the PAM module in Google Authenticator before 1.0 requires user-readable permissions for the secret file, which allows local users to bypass i…
CVE-2013-0541 LOW Patched 1.9 2013-04-24 Buffer overflow in IBM WebSphere Application Server (WAS) 6.1 before 6.1.0.47, 7.0 before 7.0.0.29, 8.0 before 8.0.0.6, and 8.5 before 8.5.0.2 on Windows, when a localOS re…
CVE-2013-0122 LOW Patched 1.9 2013-04-22 The avast! Mobile Security application before 2.0.4400 for Android allows attackers to cause a denial of service (application crash) via a crafted application that sends an…
CVE-2013-0403 LOW 1.9 2013-04-17 Unspecified vulnerability in Oracle Sun Solaris 8, 9, 10, and 11 allows local users to affect availability via unknown vectors related to Utility.
CVE-2013-2302 LOW 1.9 2013-04-04 TransWARE Active! mail 6, when an external public interface is used, allows local users to obtain sensitive information belonging to arbitrary users by leveraging shell acc…
CVE-2013-2636 LOW Patched 1.9 2013-03-22 net/bridge/br_mdb.c in the Linux kernel before 3.8.4 does not initialize certain structures, which allows local users to obtain sensitive information from kernel memory via…
CVE-2013-2634 LOW Patched 1.9 2013-03-22 net/dcb/dcbnl.c in the Linux kernel before 3.8.4 does not initialize certain structures, which allows local users to obtain sensitive information from kernel stack memory v…
CVE-2013-2635 LOW Patched 1.9 2013-03-22 The rtnl_fill_ifinfo function in net/core/rtnetlink.c in the Linux kernel before 3.8.4 does not initialize a certain structure member, which allows local users to obtain se…
CVE-2013-1427 LOW Patched 1.9 2013-03-21 The configuration file for the FastCGI PHP support for lighttpd before 1.4.28 on Debian GNU/Linux creates a socket file with a predictable name in /tmp, which allows local …
CVE-2013-0979 LOW Patched 1.9 2013-03-20 lockdownd in Lockdown in Apple iOS before 6.1.3 does not properly consider file types during the permission-setting step of a backup restoration, which allows local users t…
CVE-2012-6549 LOW Patched 1.9 2013-03-15 The isofs_export_encode_fh function in fs/isofs/export.c in the Linux kernel before 3.6 does not initialize a certain structure member, which allows local users to obtain s…
CVE-2012-6537 LOW Patched 1.9 2013-03-15 net/xfrm/xfrm_user.c in the Linux kernel before 3.6 does not initialize certain structures, which allows local users to obtain sensitive information from kernel memory by l…
CVE-2012-6538 LOW Patched 1.9 2013-03-15 The copy_to_user_auth function in net/xfrm/xfrm_user.c in the Linux kernel before 3.6 uses an incorrect C library function for copying a string, which allows local users to…
CVE-2012-6539 LOW Patched 1.9 2013-03-15 The dev_ifconf function in net/socket.c in the Linux kernel before 3.6 does not initialize a certain structure, which allows local users to obtain sensitive information fro…
CVE-2012-6540 LOW Patched 1.9 2013-03-15 The do_ip_vs_get_ctl function in net/netfilter/ipvs/ip_vs_ctl.c in the Linux kernel before 3.6 does not initialize a certain structure for IP_VS_SO_GET_TIMEOUT commands, wh…
CVE-2012-6541 LOW Patched 1.9 2013-03-15 The ccid3_hc_tx_getsockopt function in net/dccp/ccids/ccid3.c in the Linux kernel before 3.6 does not initialize a certain structure, which allows local users to obtain sen…
CVE-2012-6542 LOW Patched 1.9 2013-03-15 The llc_ui_getname function in net/llc/af_llc.c in the Linux kernel before 3.6 has an incorrect return value in certain circumstances, which allows local users to obtain se…
CVE-2012-6543 LOW Patched 1.9 2013-03-15 The l2tp_ip6_getname function in net/l2tp/l2tp_ip6.c in the Linux kernel before 3.6 does not initialize a certain structure member, which allows local users to obtain sensi…