search menu icon-carat-right cmu-wordmark

CERT Coordination Center

CERT/CC Vulnerability Notes Database


Published Public Updated ID CVSS Title
2014-01-09 2013-12-13 2014-01-09 VU#612076 4.1 VASCO IDENTIKEY Authentication Server contains an authentication bypass vulnerability
2014-01-02 2013-12-13 2014-01-02 VU#553166 1.1 BlogEngine.net information disclosure vulnerability
2014-01-09 2013-12-19 2014-01-09 VU#650142 2.5 libpng 1.6.1 through 1.6.7 contain a null-pointer dereference vulnerability
2013-12-30 2013-12-20 2014-01-10 VU#698278 1.3 RealPlayer version 16.0.3.51 contains a buffer overflow vulnerability
2014-01-20 2013-12-20 2014-01-20 VU#219470 5.7 MW6 Technologies ActiveX controls contain multiple vulnerabilities
2014-01-10 2014-01-02 2014-08-26 VU#348126 4.6 NTP can be abused to amplify denial-of-service attack traffic
2014-01-07 2014-01-07 2014-01-07 VU#615910 2.0 Synology DiskStation Manager arbitrary file modification
2014-01-08 2014-01-08 2014-01-08 VU#487078 1.7 QNAP QTS path traversal vulnerability
2014-01-23 2014-01-17 2014-07-24 VU#869702 1.4 Avanset Visual CertExam Manager 3.3 SQL injection vulnerability
2014-01-17 2014-01-17 2014-01-17 VU#122582 4.3 Dell PowerConnect 3348, 3524p, and 5324 switches are vulnerable to denial-of-service attacks
2014-01-28 2014-01-20 2014-01-28 VU#686662 4.8 Fail2ban postfix and cyrus-imap filters contain denial-of-service vulnerabilities
2014-02-03 2014-01-23 2014-04-07 VU#252294 0.8 Mediatrix 4402 digital gateway web interface contains a cross-site scripting (XSS) vulnerability
2014-01-23 2014-01-23 2014-02-07 VU#168751 0.9 Emerson Network Power Avocent MergePoint Unity 2016 KVM and possibly other model switches contain a directory traversal vulnerability
2014-01-23 2014-01-23 2014-02-10 VU#105686 2.4 Thecus NAS Server N8800 contains multiple vulnerabilities
2014-01-27 2014-01-27 2014-01-28 VU#863369 2.9 Mozilla Thunderbird does not adequately restrict HTML elements in email message content

Sponsored by CISA.