All vulnerabilities
258 / 258
Sort
7.5
CVE-2023-44487ANC KEV
The HTTP/2 protocol allows a denial of service (server resource consumption) because request ca…
2023-01-01MicrosoftKEV
EPSS100.0%
pct 100
9.8
CVE-2014-6271DEB KEV
GNU Bash through 4.3 processes trailing strings after function definitions in the values of env…
2014-01-01KEV
EPSS100.0%
pct 100
9.8
CVE-2014-7169DEB KEV
GNU Bash through 4.3 bash43-025 processes trailing strings after certain malformed function def…
2014-01-01KEV
EPSS99.9%
pct 99
7.5
CVE-2019-11477AST
Jonathan Looney discovered that the TCP_SKB_CB(skb)->tcp_gso_segs value was subject to an integ…
2019-01-01Pre-auth
EPSS98.7%
pct 99
9.8
CVE-2023-46747CVE KEV
Undisclosed requests may bypass configuration utility authentication, allowing an attacker with…
2023-01-01KEV
EPSS96.5%
pct 99
5.3
CVE-2019-11478AST
Jonathan Looney discovered that the TCP retransmission queue implementation in tcp_fragment in …
2019-01-01Pre-auth
EPSS94.7%
pct 99
5.3
CVE-2019-11479AST
Jonathan Looney discovered that the Linux kernel default MSS is hard-coded to 48 bytes. This al…
2019-01-01Pre-auth
EPSS91.7%
pct 99
7.5
CVE-2018-5390AST
Linux kernel versions 4.9+ can be forced to make very expensive calls to tcp_collapse_ofo_queue…
2018-01-01Pre-auth
EPSS73.5%
pct 99
9.0
CVE-2015-3628CVE
The iControl API in F5 BIG-IP LTM, AFM, Analytics, APM, ASM, Link Controller, and PEM 11.3.0 be…
2015-01-01
EPSS68.5%
pct 99
7.1
CVE-2014-2928CVE
The iControl API in F5 BIG-IP LTM, APM, ASM, GTM, Link Controller, and PSM 10.0.0 through 10.2.…
2014-01-01
EPSS39.1%
pct 98
8.5
CVE-2025-31644CVE
When running in Appliance mode, a command injection vulnerability exists in an undisclosed iCon…
2025-01-01
EPSS24.7%
pct 97
7.5
CVE-2018-5391AST
The Linux kernel, versions 3.9+, is vulnerable to a denial of service attack with low rates of …
2018-01-01Pre-auth
EPSS24.1%
pct 97
7.5
CVE-2002-20001CVE
The Diffie-Hellman Key Agreement Protocol allows remote attackers (from the client side) to sen…
2002-01-01Pre-auth
EPSS23.1%
pct 97
5.5
CVE-2014-0196DEB KEV
The n_tty_write function in drivers/tty/n_tty.c in the Linux kernel through 3.14.3 does not pro…
2014-01-01KEV
EPSS22.5%
pct 97
5.9
CVE-2019-1559AST
If an application encounters a fatal protocol error and then calls SSL_shutdown() twice (once t…
2019-01-01Pre-auth
EPSS17.1%
pct 96
6.1
CVE-2019-8331DEB
In Bootstrap before 3.4.1 and 4.3.x before 4.3.1, XSS is possible in the tooltip or popover dat…
2019-01-01Pre-auth
EPSS16.9%
pct 96
7.8
CVE-2019-6974AST
In the Linux kernel before 4.20.8, kvm_ioctl_create_device in virt/kvm/kvm_main.c mishandles re…
2019-01-01
EPSS16.5%
pct 96
7.8
CVE-2018-14634DEB KEV
An integer overflow flaw was found in the Linux kernel's create_elf_tables() function. An unpri…
2018-01-01KEV
EPSS14.8%
pct 96
7.2
CVE-2018-5511CVE
On F5 BIG-IP 13.1.0-13.1.0.3 or 13.0.0, when authenticated administrative users execute command…
2018-01-01
EPSS14.8%
pct 96
5.0
CVE-2014-8730CVE
The SSL profiles component in F5 BIG-IP LTM, APM, and ASM 10.0.0 through 10.2.4 and 11.0.0 thro…
2014-01-01
EPSS13.7%
pct 96
8.6
CVE-2018-5743AST
By design, BIND is intended to limit the number of TCP clients that can be connected at any giv…
2018-01-01Pre-auth
EPSS11.6%
pct 95
8.6
CVE-2024-45844CVE
BIG-IP monitor functionality may allow an attacker to bypass access control restrictions, regar…
2024-01-01
EPSS10.6%
pct 95
4.3
CVE-2015-4047DEB
racoon/gssapi.c in IPsec-Tools 0.8.2 allows remote attackers to cause a denial of service (NULL…
2015-01-01
EPSS9.6%
pct 94
9.3
CVE-2014-2927CVE
The rsync daemon in F5 BIG-IP 11.6 before 11.6.0, 11.5.1 before HF3, 11.5.0 before HF4, 11.4.1 …
2014-01-01
EPSS7.9%
pct 93
8.7
CVE-2025-20029CVE
Command injection vulnerability exists in iControl REST and BIG-IP TMOS Shell (tmsh) save comma…
2025-01-01
EPSS7.8%
pct 93
7.1
CVE-2014-0101DEB
The sctp_sf_do_5_1D_ce function in net/sctp/sm_statefuns.c in the Linux kernel through 3.13.6 d…
2014-01-01
EPSS7.0%
pct 93
4.0
CVE-2015-4040CVE
Directory traversal vulnerability in the configuration utility in F5 BIG-IP before 12.0.0 and E…
2015-01-01
EPSS6.8%
pct 93
9.3
CVE-2013-0150CVE
Directory traversal vulnerability in an unspecified signed Java applet in the client-side compo…
2013-01-01
EPSS6.3%
pct 92
5.9
CVE-2013-3587CVE
The HTTPS protocol, as used in unspecified web applications, can encrypt compressed data withou…
2013-01-01Pre-auth
EPSS6.0%
pct 92
9.1
CVE-2011-3188DEB
The (1) IPv4 and (2) IPv6 implementations in the Linux kernel before 3.1 use a modified MD4 alg…
2011-01-01Pre-auth
EPSS5.7%
pct 91
7.5
CVE-2018-14880DEB
The OSPFv3 parser in tcpdump before 4.9.3 has a buffer over-read in print-ospf6.c:ospf6_print_l…
2018-01-01Pre-auth
EPSS5.3%
pct 91
6.5
CVE-2012-3163DEB
Unspecified vulnerability in the MySQL Server component in Oracle MySQL 5.1.64 and earlier, and…
2012-01-01
EPSS5.1%
pct 91
9.1
CVE-2019-10744DEB
Versions of lodash lower than 4.17.12 are vulnerable to Prototype Pollution. The function defau…
2019-01-01Pre-auth
EPSS5.0%
pct 91
8.1
CVE-2018-5504CVE
In some circumstances, the Traffic Management Microkernel (TMM) does not properly handle certai…
2018-01-01Pre-auth
EPSS4.5%
pct 90
8.8
CVE-2023-46748CVE KEV
An authenticated SQL injection vulnerability exists in the BIG-IP Configuration utility which
…
2023-01-01KEV
EPSS4.5%
pct 90
7.5
CVE-2018-5514CVE
On F5 BIG-IP 13.1.0-13.1.0.5, maliciously crafted HTTP/2 request frames can lead to denial of s…
2018-01-01Pre-auth
EPSS4.0%
pct 89
7.5
CVE-2018-14468DEB
The FRF.16 parser in tcpdump before 4.9.3 has a buffer over-read in print-fr.c:mfr_print().
2018-01-01Pre-auth
EPSS4.0%
pct 89
8.1
CVE-2017-6164CVE
In F5 BIG-IP LTM, AAM, AFM, Analytics, APM, ASM, DNS, Edge Gateway, GTM, Link Controller, PEM, …
2017-01-01Pre-auth
EPSS3.9%
pct 89
9.0
CVE-2015-7394CVE
The datastor kernel module in F5 BIG-IP Analytics, APM, ASM, Link Controller, and LTM 11.1.0 be…
2015-01-01
EPSS3.9%
pct 88
5.9
CVE-2019-6471AST
A race condition which may occur when discarding malformed packets can result in BIND exiting d…
2019-01-01Pre-auth
EPSS3.8%
pct 88
Select a vulnerability on the left to open the preview.