| CVE ID | CVSS3.1 | Exploitable | Vendor | Product | Vulnerability | Date added |
|---|---|---|---|---|---|---|
| CVE-2026-20127 | 10.0 | True | Cisco | Catalyst SD-WAN Controller and Manager | Cisco Catalyst SD-WAN Controller and Manager Authentication Bypass Vulnerability | 2026-02-25 00:00:00 |
| CVE-2022-20775 | 7.8 | True | Cisco | SD-WAN | Cisco SD-WAN Path Traversal Vulnerability | 2026-02-25 00:00:00 |
| CVE-2026-25108 | 8.8 | True | Soliton Systems K.K | FileZen | Soliton Systems K.K FileZen OS Command Injection Vulnerability | 2026-02-24 00:00:00 |
| CVE-2025-68461 | 7.2 | True | Roundcube | Webmail | RoundCube Webmail Cross-site Scripting Vulnerability | 2026-02-20 00:00:00 |
| CVE-2025-49113 | 9.9 | True | Roundcube | Webmail | RoundCube Webmail Deserialization of Untrusted Data Vulnerability | 2026-02-20 00:00:00 |
| CVE-2026-22769 | 10.0 | True | Dell | RecoverPoint for Virtual Machines (RP4VMs) | Dell RecoverPoint for Virtual Machines (RP4VMs) Use of Hard-coded Credentials Vulnerability | 2026-02-18 00:00:00 |
| CVE-2021-22175 | 6.8 | True | GitLab | GitLab | GitLab Server-Side Request Forgery (SSRF) Vulnerability | 2026-02-18 00:00:00 |
| CVE-2026-2441 | 8.8 | True | Chromium | Google Chromium CSS Use-After-Free Vulnerability | 2026-02-17 00:00:00 | |
| CVE-2008-0015 | 8.8 | True | Microsoft | Windows | Microsoft Windows Video ActiveX Control Remote Code Execution Vulnerability | 2026-02-17 00:00:00 |
| CVE-2024-7694 | 7.2 | True | TeamT5 | ThreatSonar Anti-Ransomware | TeamT5 ThreatSonar Anti-Ransomware Unrestricted Upload of File with Dangerous Type Vulnerability | 2026-02-17 00:00:00 |
| CVE-2020-7796 | 9.8 | True | Synacor | Zimbra Collaboration Suite | Synacor Zimbra Collaboration Suite (ZCS) Server-Side Request Forgery Vulnerability | 2026-02-17 00:00:00 |
| CVE-2026-1731 | -.- | True | BeyondTrust | Remote Support (RS) and Privileged Remote Access (PRA) | BeyondTrust Remote Support (RS) and Privileged Remote Access (PRA) OS Command Injection Vulnerability | 2026-02-13 00:00:00 |
| CVE-2025-40536 | 8.1 | True | SolarWinds | Web Help Desk | SolarWinds Web Help Desk Security Control Bypass Vulnerability | 2026-02-12 00:00:00 |
| CVE-2025-15556 | -.- | True | Notepad++ | Notepad++ | Notepad++ Download of Code Without Integrity Check Vulnerability | 2026-02-12 00:00:00 |
| CVE-2024-43468 | 9.8 | True | Microsoft | Configuration Manager | Microsoft Configuration Manager SQL Injection Vulnerability | 2026-02-12 00:00:00 |
| CVE-2026-20700 | 7.8 | True | Apple | Multiple Products | Apple Multiple Buffer Overflow Vulnerability | 2026-02-12 00:00:00 |
| CVE-2026-21514 | 7.8 | True | Microsoft | Office | Microsoft Office Word Reliance on Untrusted Inputs in a Security Decision Vulnerability | 2026-02-10 00:00:00 |
| CVE-2026-21519 | 7.8 | True | Microsoft | Windows | Microsoft Windows Type Confusion Vulnerability | 2026-02-10 00:00:00 |
| CVE-2026-21533 | 7.8 | True | Microsoft | Windows | Microsoft Windows Improper Privilege Management Vulnerability | 2026-02-10 00:00:00 |
| CVE-2026-21510 | 8.8 | True | Microsoft | Windows | Microsoft Windows Shell Protection Mechanism Failure Vulnerability | 2026-02-10 00:00:00 |
| CVE-2026-21525 | 6.2 | True | Microsoft | Windows | Microsoft Windows NULL Pointer Dereference Vulnerability | 2026-02-10 00:00:00 |
| CVE-2026-21513 | 8.8 | True | Microsoft | Windows | Microsoft MSHTML Framework Protection Mechanism Failure Vulnerability | 2026-02-10 00:00:00 |
| CVE-2026-24423 | -.- | True | SmarterTools | SmarterMail | SmarterTools SmarterMail Missing Authentication for Critical Function Vulnerability | 2026-02-05 00:00:00 |
| CVE-2025-11953 | 9.8 | True | React Native Community | CLI | React Native Community CLI OS Command Injection Vulnerability | 2026-02-05 00:00:00 |
| CVE-2025-40551 | 9.8 | True | SolarWinds | Web Help Desk | SolarWinds Web Help Desk Deserialization of Untrusted Data Vulnerability | 2026-02-03 00:00:00 |
| CVE-2019-19006 | 9.8 | True | Sangoma | FreePBX | Sangoma FreePBX Improper Authentication Vulnerability | 2026-02-03 00:00:00 |
| CVE-2025-64328 | -.- | True | Sangoma | FreePBX | Sangoma FreePBX OS Command Injection Vulnerability | 2026-02-03 00:00:00 |
| CVE-2021-39935 | 6.8 | True | GitLab | Community and Enterprise Editions | GitLab Community and Enterprise Editions Server-Side Request Forgery (SSRF) Vulnerability | 2026-02-03 00:00:00 |
| CVE-2026-1281 | 9.8 | True | Ivanti | Endpoint Manager Mobile (EPMM) | Ivanti Endpoint Manager Mobile (EPMM) Code Injection Vulnerability | 2026-01-29 00:00:00 |
| CVE-2026-24858 | 9.4 | True | Fortinet | Multiple Products | Fortinet Multiple Products Authentication Bypass Using an Alternate Path or Channel Vulnerability | 2026-01-27 00:00:00 |
| CVE-2026-21509 | 7.8 | True | Microsoft | Office | Microsoft Office Security Feature Bypass Vulnerability | 2026-01-26 00:00:00 |
| CVE-2026-24061 | 9.8 | True | GNU | InetUtils | GNU InetUtils Argument Injection Vulnerability | 2026-01-26 00:00:00 |
| CVE-2026-23760 | -.- | True | SmarterTools | SmarterMail | SmarterTools SmarterMail Authentication Bypass Using an Alternate Path or Channel Vulnerability | 2026-01-26 00:00:00 |
| CVE-2025-52691 | 10.0 | True | SmarterTools | SmarterMail | SmarterTools SmarterMail Unrestricted Upload of File with Dangerous Type Vulnerability | 2026-01-26 00:00:00 |
| CVE-2018-14634 | 7.8 | True | Linux | Kernal | Linux Kernel Integer Overflow Vulnerability | 2026-01-26 00:00:00 |
| CVE-2024-37079 | 9.8 | True | Broadcom | VMware vCenter Server | Broadcom VMware vCenter Server Out-of-bounds Write Vulnerability | 2026-01-23 00:00:00 |
| CVE-2025-54313 | 7.5 | True | Prettier | eslint-config-prettier | Prettier eslint-config-prettier Embedded Malicious Code Vulnerability | 2026-01-22 00:00:00 |
| CVE-2025-31125 | 5.3 | True | Vite | Vitejs | Vite Vitejs Improper Access Control Vulnerability | 2026-01-22 00:00:00 |
| CVE-2025-34026 | -.- | True | Versa | Concerto | Versa Concerto Improper Authentication Vulnerability | 2026-01-22 00:00:00 |
| CVE-2025-68645 | 8.8 | True | Synacor | Zimbra Collaboration Suite (ZCS) | Synacor Zimbra Collaboration Suite (ZCS) PHP Remote File Inclusion Vulnerability | 2026-01-22 00:00:00 |
| CVE-2026-20045 | 8.2 | True | Cisco | Unified Communications Manager | Cisco Unified Communications Products Code Injection Vulnerability | 2026-01-21 00:00:00 |
| CVE-2026-20805 | 5.5 | True | Microsoft | Windows | Microsoft Windows Information Disclosure Vulnerability | 2026-01-13 00:00:00 |
| CVE-2025-8110 | -.- | True | Gogs | Gogs | Gogs Path Traversal Vulnerability | 2026-01-12 00:00:00 |
| CVE-2025-37164 | 10.0 | True | Hewlett Packard Enterprise (HPE) | OneView | Hewlett Packard Enterprise (HPE) OneView Code Injection Vulnerability | 2026-01-07 00:00:00 |
| CVE-2009-0556 | 8.8 | True | Microsoft | Office | Microsoft Office PowerPoint Code Injection Vulnerability | 2026-01-07 00:00:00 |
| CVE-2025-14847 | 7.5 | True | MongoDB | MongoDB and MongoDB Server | MongoDB and MongoDB Server Improper Handling of Length Parameter Inconsistency Vulnerability | 2025-12-29 00:00:00 |
| CVE-2023-52163 | 8.8 | True | Digiever | DS-2105 Pro | Digiever DS-2105 Pro Missing Authorization Vulnerability | 2025-12-22 00:00:00 |
| CVE-2025-14733 | -.- | True | WatchGuard | Firebox | WatchGuard Firebox Out of Bounds Write Vulnerability | 2025-12-19 00:00:00 |
| CVE-2025-20393 | 10.0 | True | Cisco | Multiple Products | Cisco Multiple Products Improper Input Validation Vulnerability | 2025-12-17 00:00:00 |
| CVE-2025-40602 | 6.6 | True | SonicWall | SMA1000 appliance | SonicWall SMA1000 Missing Authorization Vulnerability | 2025-12-17 00:00:00 |
| CVE-2025-59374 | -.- | True | ASUS | Live Update | ASUS Live Update Embedded Malicious Code Vulnerability | 2025-12-17 00:00:00 |
| CVE-2025-59718 | 9.1 | True | Fortinet | Multiple Products | Fortinet Multiple Products Improper Verification of Cryptographic Signature Vulnerability | 2025-12-16 00:00:00 |
| CVE-2025-43529 | 8.8 | True | Apple | Multiple Products | Apple Multiple Products Use-After-Free WebKit Vulnerability | 2025-12-15 00:00:00 |
| CVE-2025-14611 | -.- | True | Gladinet | CentreStack and Triofox | Gladinet CentreStack and Triofox Hard Coded Cryptographic Vulnerability | 2025-12-15 00:00:00 |
| CVE-2025-14174 | 8.8 | True | Chromium | Google Chromium Out of Bounds Memory Access Vulnerability | 2025-12-12 00:00:00 | |
| CVE-2018-4063 | 8.8 | True | Sierra Wireless | AirLink ALEOS | Sierra Wireless AirLink ALEOS Unrestricted Upload of File with Dangerous Type Vulnerability | 2025-12-12 00:00:00 |
| CVE-2025-58360 | 8.2 | True | OSGeo | GeoServer | OSGeo GeoServer Improper Restriction of XML External Entity Reference Vulnerability | 2025-12-11 00:00:00 |
| CVE-2025-62221 | 7.8 | True | Microsoft | Windows | Microsoft Windows Use After Free Vulnerability | 2025-12-09 00:00:00 |
| CVE-2025-6218 | 7.8 | True | RARLAB | WinRAR | RARLAB WinRAR Path Traversal Vulnerability | 2025-12-09 00:00:00 |
| CVE-2025-66644 | 7.2 | True | Array Networks | ArrayOS AG | Array Networks ArrayOS AG OS Command Injection Vulnerability | 2025-12-08 00:00:00 |
| CVE-2022-37055 | 9.8 | True | D-Link | Routers | D-Link Routers Buffer Overflow Vulnerability | 2025-12-08 00:00:00 |
| CVE-2025-55182 | 10.0 | True | Meta | React Server Components | Meta React Server Components Remote Code Execution Vulnerability | 2025-12-05 00:00:00 |
| CVE-2021-26828 | 8.8 | True | OpenPLC | ScadaBR | OpenPLC ScadaBR Unrestricted Upload of File with Dangerous Type Vulnerability | 2025-12-03 00:00:00 |
| CVE-2025-48572 | 7.8 | True | Android | Framework | Android Framework Privilege Escalation Vulnerability | 2025-12-02 00:00:00 |
| CVE-2025-48633 | 5.5 | True | Android | Framework | Android Framework Information Disclosure Vulnerability | 2025-12-02 00:00:00 |
| CVE-2021-26829 | 5.4 | True | OpenPLC | ScadaBR | OpenPLC ScadaBR Cross-site Scripting Vulnerability | 2025-11-28 00:00:00 |
| CVE-2025-61757 | 9.8 | True | Oracle | Fusion Middleware | Oracle Fusion Middleware Missing Authentication for Critical Function Vulnerability | 2025-11-21 00:00:00 |
| CVE-2025-13223 | 8.8 | True | Chromium V8 | Google Chromium V8 Type Confusion Vulnerability | 2025-11-19 00:00:00 | |
| CVE-2025-58034 | 6.7 | True | Fortinet | FortiWeb | Fortinet FortiWeb OS Command Injection Vulnerability | 2025-11-18 00:00:00 |
| CVE-2025-64446 | 9.4 | True | Fortinet | FortiWeb | Fortinet FortiWeb Path Traversal Vulnerability | 2025-11-14 00:00:00 |
| CVE-2025-9242 | -.- | True | WatchGuard | Firebox | WatchGuard Firebox Out-of-Bounds Write Vulnerability | 2025-11-12 00:00:00 |
| CVE-2025-62215 | 7.0 | True | Microsoft | Windows | Microsoft Windows Race Condition Vulnerability | 2025-11-12 00:00:00 |
| CVE-2025-12480 | 9.1 | True | Gladinet | Triofox | Gladinet Triofox Improper Access Control Vulnerability | 2025-11-12 00:00:00 |
| CVE-2025-21042 | 8.8 | True | Samsung | Mobile Devices | Samsung Mobile Devices Out-of-Bounds Write Vulnerability | 2025-11-10 00:00:00 |
| CVE-2025-11371 | 7.5 | True | Gladinet | CentreStack and Triofox | Gladinet CentreStack and Triofox Files or Directories Accessible to External Parties Vulnerability | 2025-11-04 00:00:00 |
| CVE-2025-48703 | 9.0 | True | CWP | Control Web Panel | CWP Control Web Panel OS Command Injection Vulnerability | 2025-11-04 00:00:00 |
| CVE-2025-24893 | 9.8 | True | XWiki | Platform | XWiki Platform Eval Injection Vulnerability | 2025-10-30 00:00:00 |
| CVE-2025-41244 | 7.8 | True | Broadcom | VMware Aria Operations and VMware Tools | Broadcom VMware Aria Operations and VMware Tools Privilege Defined with Unsafe Actions Vulnerability | 2025-10-30 00:00:00 |
| CVE-2025-6205 | 9.1 | True | Dassault Systèmes | DELMIA Apriso | Dassault Systèmes DELMIA Apriso Missing Authorization Vulnerability | 2025-10-28 00:00:00 |
| CVE-2025-6204 | 8.0 | True | Dassault Systèmes | DELMIA Apriso | Dassault Systèmes DELMIA Apriso Code Injection Vulnerability | 2025-10-28 00:00:00 |
| CVE-2025-59287 | 9.8 | True | Microsoft | Windows | Microsoft Windows Server Update Service (WSUS) Deserialization of Untrusted Data Vulnerability | 2025-10-24 00:00:00 |
| CVE-2025-54236 | 9.1 | True | Adobe | Commerce and Magento | Adobe Commerce and Magento Improper Input Validation Vulnerability | 2025-10-24 00:00:00 |
| CVE-2025-61932 | 9.8 | True | Motex | LANSCOPE Endpoint Manager | Motex LANSCOPE Endpoint Manager Improper Verification of Source of a Communication Channel Vulnerability | 2025-10-22 00:00:00 |
| CVE-2025-61884 | 7.5 | True | Oracle | E-Business Suite | Oracle E-Business Suite Server-Side Request Forgery (SSRF) Vulnerability | 2025-10-20 00:00:00 |
| CVE-2025-33073 | 8.8 | True | Microsoft | Windows | Microsoft Windows SMB Client Improper Access Control Vulnerability | 2025-10-20 00:00:00 |
| CVE-2025-2747 | 9.8 | True | Kentico | Xperience CMS | Kentico Xperience CMS Authentication Bypass Using an Alternate Path or Channel Vulnerability | 2025-10-20 00:00:00 |
| CVE-2025-2746 | 9.8 | True | Kentico | Xperience CMS | Kentico Xperience CMS Authentication Bypass Using an Alternate Path or Channel Vulnerability | 2025-10-20 00:00:00 |
| CVE-2022-48503 | 8.8 | True | Apple | Multiple Products | Apple Multiple Products Unspecified Vulnerability | 2025-10-20 00:00:00 |
| CVE-2025-54253 | 10.0 | True | Adobe | Experience Manager (AEM) Forms | Adobe Experience Manager Forms Code Execution Vulnerability | 2025-10-15 00:00:00 |
| CVE-2016-7836 | 9.8 | True | SKYSEA | Client View | SKYSEA Client View Improper Authentication Vulnerability | 2025-10-14 00:00:00 |
| CVE-2025-59230 | 7.8 | True | Microsoft | Windows | Microsoft Windows Improper Access Control Vulnerability | 2025-10-14 00:00:00 |
| CVE-2025-24990 | 7.8 | True | Microsoft | Windows | Microsoft Windows Untrusted Pointer Dereference Vulnerability | 2025-10-14 00:00:00 |
| CVE-2025-47827 | 4.6 | True | IGEL | IGEL OS | IGEL OS Use of a Key Past its Expiration Date Vulnerability | 2025-10-14 00:00:00 |
| CVE-2021-43798 | 7.5 | True | Grafana Labs | Grafana | Grafana Path Traversal Vulnerability | 2025-10-09 00:00:00 |
| CVE-2025-27915 | 5.4 | True | Synacor | Zimbra Collaboration Suite (ZCS) | Synacor Zimbra Collaboration Suite (ZCS) Cross-site Scripting Vulnerability | 2025-10-07 00:00:00 |
| CVE-2025-61882 | 9.8 | True | Oracle | E-Business Suite | Oracle E-Business Suite Unspecified Vulnerability | 2025-10-06 00:00:00 |
| CVE-2010-3765 | 9.8 | True | Mozilla | Multiple Products | Mozilla Multiple Products Remote Code Execution Vulnerability | 2025-10-06 00:00:00 |
| CVE-2011-3402 | 8.8 | True | Microsoft | Windows | Microsoft Windows Remote Code Execution Vulnerability | 2025-10-06 00:00:00 |
| CVE-2013-3918 | 8.8 | True | Microsoft | Windows | Microsoft Windows Out-of-Bounds Write Vulnerability | 2025-10-06 00:00:00 |
| CVE-2021-43226 | 7.8 | True | Microsoft | Windows | Microsoft Windows Privilege Escalation Vulnerability | 2025-10-06 00:00:00 |
| CVE-2010-3962 | 8.1 | True | Microsoft | Internet Explorer | Microsoft Internet Explorer Uninitialized Memory Corruption Vulnerability | 2025-10-06 00:00:00 |
| CVE-2021-22555 | 8.3 | True | Linux | Kernel | Linux Kernel Heap Out-of-Bounds Write Vulnerability | 2025-10-06 00:00:00 |
| CVE-2025-4008 | -.- | True | Smartbedded | Meteobridge | Smartbedded Meteobridge Command Injection Vulnerability | 2025-10-02 00:00:00 |
| CVE-2025-21043 | 8.8 | True | Samsung | Mobile Devices | Samsung Mobile Devices Out-of-Bounds Write Vulnerability | 2025-10-02 00:00:00 |
| CVE-2015-7755 | 9.8 | True | Juniper | ScreenOS | Juniper ScreenOS Improper Authentication Vulnerability | 2025-10-02 00:00:00 |
| CVE-2017-1000353 | 9.8 | True | Jenkins | Jenkins | Jenkins Remote Code Execution Vulnerability | 2025-10-02 00:00:00 |
| CVE-2014-6278 | 8.8 | True | GNU | GNU Bash | GNU Bash OS Command Injection Vulnerability | 2025-10-02 00:00:00 |
| CVE-2021-21311 | 7.2 | True | Adminer | Adminer | Adminer Server-Side Request Forgery Vulnerability | 2025-09-29 00:00:00 |
| CVE-2025-20352 | 7.7 | True | Cisco | IOS and IOS XE | Cisco IOS and IOS XE Software SNMP Denial of Service and Remote Code Execution Vulnerability | 2025-09-29 00:00:00 |
| CVE-2025-10035 | 10.0 | True | Fortra | GoAnywhere MFT | Fortra GoAnywhere MFT Deserialization of Untrusted Data Vulnerability | 2025-09-29 00:00:00 |
| CVE-2025-59689 | 6.1 | True | Libraesva | Email Security Gateway | Libraesva Email Security Gateway Command Injection Vulnerability | 2025-09-29 00:00:00 |
| CVE-2025-32463 | 9.3 | True | Sudo | Sudo | Sudo Inclusion of Functionality from Untrusted Control Sphere Vulnerability | 2025-09-29 00:00:00 |
| CVE-2025-20333 | 9.9 | True | Cisco | Secure Firewall Adaptive Security Appliance and Secure Firewall Threat Defense | Cisco Secure Firewall Adaptive Security Appliance (ASA) and Secure Firewall Threat Defense (FTD) Buffer Overflow Vulnerability | 2025-09-25 00:00:00 |
| CVE-2025-20362 | 6.5 | True | Cisco | Secure Firewall Adaptive Security Appliance and Secure Firewall Threat Defense | Cisco Secure Firewall Adaptive Security (ASA) Appliance and Secure Firewall Threat Defense (FTD) Missing Authorization Vulnerability | 2025-09-25 00:00:00 |
| CVE-2025-10585 | 8.8 | True | Chromium V8 | Google Chromium V8 Type Confusion Vulnerability | 2025-09-23 00:00:00 | |
| CVE-2025-5086 | 9.0 | True | Dassault Systèmes | DELMIA Apriso | Dassault Systèmes DELMIA Apriso Deserialization of Untrusted Data Vulnerability | 2025-09-11 00:00:00 |
| CVE-2025-53690 | 9.0 | True | Sitecore | Multiple Products | Sitecore Multiple Products Deserialization of Untrusted Data Vulnerability | 2025-09-04 00:00:00 |
| CVE-2025-48543 | 8.8 | True | Android | Runtime | Android Runtime Use-After-Free Vulnerability | 2025-09-04 00:00:00 |
| CVE-2025-38352 | 7.4 | True | Linux | Kernel | Linux Kernel Time-of-Check Time-of-Use (TOCTOU) Race Condition Vulnerability | 2025-09-04 00:00:00 |
| CVE-2025-9377 | -.- | True | TP-Link | Multiple Routers | TP-Link Archer C7(EU) and TL-WR841N/ND(MS) OS Command Injection Vulnerability | 2025-09-03 00:00:00 |
| CVE-2023-50224 | 6.5 | True | TP-Link | TL-WR841N | TP-Link TL-WR841N Authentication Bypass by Spoofing Vulnerability | 2025-09-03 00:00:00 |
| CVE-2025-55177 | 5.4 | True | Meta Platforms | Meta Platforms WhatsApp Incorrect Authorization Vulnerability | 2025-09-02 00:00:00 | |
| CVE-2020-24363 | 8.8 | True | TP-Link | TL-WA855RE | TP-link TL-WA855RE Missing Authentication for Critical Function Vulnerability | 2025-09-02 00:00:00 |
| CVE-2025-57819 | -.- | True | Sangoma | FreePBX | Sangoma FreePBX Authentication Bypass Vulnerability | 2025-08-29 00:00:00 |
| CVE-2025-7775 | -.- | True | Citrix | NetScaler | Citrix NetScaler Memory Overflow Vulnerability | 2025-08-26 00:00:00 |
| CVE-2024-8069 | -.- | True | Citrix | Session Recording | Citrix Session Recording Deserialization of Untrusted Data Vulnerability | 2025-08-25 00:00:00 |
| CVE-2024-8068 | -.- | True | Citrix | Session Recording | Citrix Session Recording Improper Privilege Management Vulnerability | 2025-08-25 00:00:00 |
| CVE-2025-48384 | 8.1 | True | Git | Git | Git Link Following Vulnerability | 2025-08-25 00:00:00 |
| CVE-2025-43300 | 10.0 | True | Apple | iOS, iPadOS, and macOS | Apple iOS, iPadOS, and macOS Out-of-Bounds Write Vulnerability | 2025-08-21 00:00:00 |
| CVE-2025-54948 | 9.4 | True | Trend Micro | Apex One | Trend Micro Apex One OS Command Injection Vulnerability | 2025-08-18 00:00:00 |
| CVE-2025-8875 | -.- | True | N-able | N-Central | N-able N-Central Insecure Deserialization Vulnerability | 2025-08-13 00:00:00 |
| CVE-2025-8876 | -.- | True | N-able | N-Central | N-able N-Central Command Injection Vulnerability | 2025-08-13 00:00:00 |
| CVE-2013-3893 | 8.8 | True | Microsoft | Internet Explorer | Microsoft Internet Explorer Resource Management Errors Vulnerability | 2025-08-12 00:00:00 |
| CVE-2007-0671 | 8.8 | True | Microsoft | Office | Microsoft Office Excel Remote Code Execution Vulnerability | 2025-08-12 00:00:00 |
| CVE-2025-8088 | -.- | True | RARLAB | WinRAR | RARLAB WinRAR Path Traversal Vulnerability | 2025-08-12 00:00:00 |
| CVE-2022-40799 | 8.8 | True | D-Link | DNR-322L | D-Link DNR-322L Download of Code Without Integrity Check Vulnerability | 2025-08-05 00:00:00 |
| CVE-2020-25079 | 8.8 | True | D-Link | DCS-2530L and DCS-2670L Devices | D-Link DCS-2530L and DCS-2670L Command Injection Vulnerability | 2025-08-05 00:00:00 |
| CVE-2020-25078 | 7.5 | True | D-Link | DCS-2530L and DCS-2670L Devices | D-Link DCS-2530L and DCS-2670L Devices Unspecified Vulnerability | 2025-08-05 00:00:00 |
| CVE-2025-20281 | 10.0 | True | Cisco | Identity Services Engine | Cisco Identity Services Engine Injection Vulnerability | 2025-07-28 00:00:00 |
| CVE-2025-20337 | 10.0 | True | Cisco | Identity Services Engine | Cisco Identity Services Engine Injection Vulnerability | 2025-07-28 00:00:00 |
| CVE-2023-2533 | 8.4 | True | PaperCut | NG/MF | PaperCut NG/MF Cross-Site Request Forgery (CSRF) Vulnerability | 2025-07-28 00:00:00 |
| CVE-2025-49706 | 6.5 | True | Microsoft | SharePoint | Microsoft SharePoint Improper Authentication Vulnerability | 2025-07-22 00:00:00 |
| CVE-2025-49704 | 8.8 | True | Microsoft | SharePoint | Microsoft SharePoint Code Injection Vulnerability | 2025-07-22 00:00:00 |
| CVE-2025-54309 | 9.0 | True | CrushFTP | CrushFTP | CrushFTP Unprotected Alternate Channel Vulnerability | 2025-07-22 00:00:00 |
| CVE-2025-6558 | 8.8 | True | Chromium | Google Chromium ANGLE and GPU Improper Input Validation Vulnerability | 2025-07-22 00:00:00 | |
| CVE-2025-2776 | 9.3 | True | SysAid | SysAid On-Prem | SysAid On-Prem Improper Restriction of XML External Entity Reference Vulnerability | 2025-07-22 00:00:00 |
| CVE-2025-2775 | 9.3 | True | SysAid | SysAid On-Prem | SysAid On-Prem Improper Restriction of XML External Entity Reference Vulnerability | 2025-07-22 00:00:00 |
| CVE-2025-53770 | 9.8 | True | Microsoft | SharePoint | Microsoft SharePoint Deserialization of Untrusted Data Vulnerability | 2025-07-20 00:00:00 |
| CVE-2025-25257 | 9.6 | True | Fortinet | FortiWeb | Fortinet FortiWeb SQL Injection Vulnerability | 2025-07-18 00:00:00 |
| CVE-2025-47812 | 10.0 | True | Wing FTP Server | Wing FTP Server | Wing FTP Server Improper Neutralization of Null Byte or NUL Character Vulnerability | 2025-07-14 00:00:00 |
| CVE-2025-5777 | -.- | True | Citrix | NetScaler ADC and Gateway | Citrix NetScaler ADC and Gateway Out-of-Bounds Read Vulnerability | 2025-07-10 00:00:00 |
| CVE-2014-3931 | 9.8 | True | Looking Glass | Multi-Router Looking Glass (MRLG) | Multi-Router Looking Glass (MRLG) Buffer Overflow Vulnerability | 2025-07-07 00:00:00 |
| CVE-2016-10033 | 9.8 | True | PHP | PHPMailer | PHPMailer Command Injection Vulnerability | 2025-07-07 00:00:00 |
| CVE-2019-5418 | 7.5 | True | Rails | Ruby on Rails | Rails Ruby on Rails Path Traversal Vulnerability | 2025-07-07 00:00:00 |
| CVE-2019-9621 | 7.5 | True | Synacor | Zimbra Collaboration Suite (ZCS) | Synacor Zimbra Collaboration Suite (ZCS) Server-Side Request Forgery (SSRF) Vulnerability | 2025-07-07 00:00:00 |
| CVE-2025-6554 | 8.1 | True | Chromium V8 | Google Chromium V8 Type Confusion Vulnerability | 2025-07-02 00:00:00 | |
| CVE-2025-48927 | 5.3 | True | TeleMessage | TM SGNL | TeleMessage TM SGNL Initialization of a Resource with an Insecure Default Vulnerability | 2025-07-01 00:00:00 |
| CVE-2025-48928 | 4.0 | True | TeleMessage | TM SGNL | TeleMessage TM SGNL Exposure of Core Dump File to an Unauthorized Control Sphere Vulnerability | 2025-07-01 00:00:00 |
| CVE-2025-6543 | -.- | True | Citrix | NetScaler ADC and Gateway | Citrix NetScaler ADC and Gateway Buffer Overflow Vulnerability | 2025-06-30 00:00:00 |
| CVE-2024-54085 | -.- | True | AMI | MegaRAC SPx | AMI MegaRAC SPx Authentication Bypass by Spoofing Vulnerability | 2025-06-25 00:00:00 |
| CVE-2024-0769 | 5.3 | True | D-Link | DIR-859 Router | D-Link DIR-859 Router Path Traversal Vulnerability | 2025-06-25 00:00:00 |
| CVE-2019-6693 | 6.5 | True | Fortinet | FortiOS | Fortinet FortiOS Use of Hard-Coded Credentials Vulnerability | 2025-06-25 00:00:00 |
| CVE-2023-0386 | 7.8 | True | Linux | Kernel | Linux Kernel Improper Ownership Management Vulnerability | 2025-06-17 00:00:00 |
| CVE-2025-43200 | 4.2 | True | Apple | Multiple Products | Apple Multiple Products Unspecified Vulnerability | 2025-06-16 00:00:00 |
| CVE-2023-33538 | 8.8 | True | TP-Link | Multiple Routers | TP-Link Multiple Routers Command Injection Vulnerability | 2025-06-16 00:00:00 |
| CVE-2025-24016 | 9.9 | True | Wazuh | Wazuh Server | Wazuh Server Deserialization of Untrusted Data Vulnerability | 2025-06-10 00:00:00 |
| CVE-2025-33053 | 8.8 | True | Microsoft | Windows | Microsoft Windows External Control of File Name or Path Vulnerability | 2025-06-10 00:00:00 |
| CVE-2025-32433 | 10.0 | True | Erlang | Erlang/OTP | Erlang Erlang/OTP SSH Server Missing Authentication for Critical Function Vulnerability | 2025-06-09 00:00:00 |
| CVE-2024-42009 | 9.3 | True | Roundcube | Webmail | RoundCube Webmail Cross-Site Scripting Vulnerability | 2025-06-09 00:00:00 |
| CVE-2025-5419 | 8.8 | True | Chromium V8 | Google Chromium V8 Out-of-Bounds Read and Write Vulnerability | 2025-06-05 00:00:00 | |
| CVE-2025-27038 | 7.5 | True | Qualcomm | Multiple Chipsets | Qualcomm Multiple Chipsets Use-After-Free Vulnerability | 2025-06-03 00:00:00 |
| CVE-2025-21480 | 8.6 | True | Qualcomm | Multiple Chipsets | Qualcomm Multiple Chipsets Incorrect Authorization Vulnerability | 2025-06-03 00:00:00 |
| CVE-2025-21479 | 8.6 | True | Qualcomm | Multiple Chipsets | Qualcomm Multiple Chipsets Incorrect Authorization Vulnerability | 2025-06-03 00:00:00 |
| CVE-2023-39780 | 8.8 | True | ASUS | RT-AX55 Routers | ASUS RT-AX55 Routers OS Command Injection Vulnerability | 2025-06-02 00:00:00 |
| CVE-2024-56145 | -.- | True | Craft CMS | Craft CMS | Craft CMS Code Injection Vulnerability | 2025-06-02 00:00:00 |
| CVE-2025-35939 | 5.3 | True | Craft CMS | Craft CMS | Craft CMS External Control of Assumed-Immutable Web Parameter Vulnerability | 2025-06-02 00:00:00 |
| CVE-2025-3935 | 8.1 | True | ConnectWise | ScreenConnect | ConnectWise ScreenConnect Improper Authentication Vulnerability | 2025-06-02 00:00:00 |
| CVE-2021-32030 | 9.8 | True | ASUS | Routers | ASUS Routers Improper Authentication Vulnerability | 2025-06-02 00:00:00 |
| CVE-2025-4632 | 9.8 | True | Samsung | MagicINFO 9 Server | Samsung MagicINFO 9 Server Path Traversal Vulnerability | 2025-05-22 00:00:00 |
| CVE-2025-4427 | 5.3 | True | Ivanti | Endpoint Manager Mobile (EPMM) | Ivanti Endpoint Manager Mobile (EPMM) Authentication Bypass Vulnerability | 2025-05-19 00:00:00 |
| CVE-2025-4428 | 7.2 | True | Ivanti | Endpoint Manager Mobile (EPMM) | Ivanti Endpoint Manager Mobile (EPMM) Code Injection Vulnerability | 2025-05-19 00:00:00 |
| CVE-2024-11182 | -.- | True | MDaemon | Email Server | MDaemon Email Server Cross-Site Scripting (XSS) Vulnerability | 2025-05-19 00:00:00 |
| CVE-2025-27920 | 7.2 | True | Srimax | Output Messenger | Srimax Output Messenger Directory Traversal Vulnerability | 2025-05-19 00:00:00 |
| CVE-2024-27443 | 6.1 | True | Synacor | Zimbra Collaboration Suite (ZCS) | Synacor Zimbra Collaboration Suite (ZCS) Cross-Site Scripting (XSS) Vulnerability | 2025-05-19 00:00:00 |
| CVE-2023-38950 | 7.5 | True | ZKTeco | BioTime | ZKTeco BioTime Path Traversal Vulnerability | 2025-05-19 00:00:00 |
| CVE-2024-12987 | 7.5 | True | DrayTek | Vigor Routers | DrayTek Vigor Routers OS Command Injection Vulnerability | 2025-05-15 00:00:00 |
| CVE-2025-42999 | 9.1 | True | SAP | NetWeaver | SAP NetWeaver Deserialization Vulnerability | 2025-05-15 00:00:00 |
| CVE-2025-32756 | 9.6 | True | Fortinet | Multiple Products | Fortinet Multiple Products Stack-Based Buffer Overflow Vulnerability | 2025-05-14 00:00:00 |
| CVE-2025-30400 | 7.8 | True | Microsoft | Windows | Microsoft Windows DWM Core Library Use-After-Free Vulnerability | 2025-05-13 00:00:00 |
| CVE-2025-32701 | 7.8 | True | Microsoft | Windows | Microsoft Windows Common Log File System (CLFS) Driver Use-After-Free Vulnerability | 2025-05-13 00:00:00 |
| CVE-2025-32706 | 7.8 | True | Microsoft | Windows | Microsoft Windows Common Log File System (CLFS) Driver Heap-Based Buffer Overflow Vulnerability | 2025-05-13 00:00:00 |
| CVE-2025-30397 | 7.5 | True | Microsoft | Windows | Microsoft Windows Scripting Engine Type Confusion Vulnerability | 2025-05-13 00:00:00 |
| CVE-2025-32709 | 7.8 | True | Microsoft | Windows | Microsoft Windows Ancillary Function Driver for WinSock Use-After-Free Vulnerability | 2025-05-13 00:00:00 |
| CVE-2025-47729 | 1.9 | True | TeleMessage | TM SGNL | TeleMessage TM SGNL Hidden Functionality Vulnerability | 2025-05-12 00:00:00 |
| CVE-2024-6047 | 9.8 | True | GeoVision | Multiple Devices | GeoVision Devices OS Command Injection Vulnerability | 2025-05-07 00:00:00 |
| CVE-2024-11120 | 9.8 | True | GeoVision | Multiple Devices | GeoVision Devices OS Command Injection Vulnerability | 2025-05-07 00:00:00 |
| CVE-2025-27363 | 8.1 | True | FreeType | FreeType | FreeType Out-of-Bounds Write Vulnerability | 2025-05-06 00:00:00 |
| CVE-2025-3248 | 9.8 | True | Langflow | Langflow | Langflow Missing Authentication Vulnerability | 2025-05-05 00:00:00 |
| CVE-2024-58136 | 9.0 | True | Yiiframework | Yii | Yiiframework Yii Improper Protection of Alternate Path Vulnerability | 2025-05-02 00:00:00 |
| CVE-2025-34028 | -.- | True | Commvault | Command Center | Commvault Command Center Path Traversal Vulnerability | 2025-05-02 00:00:00 |
| CVE-2023-44221 | 7.2 | True | SonicWall | SMA100 Appliances | SonicWall SMA100 Appliances OS Command Injection Vulnerability | 2025-05-01 00:00:00 |
| CVE-2024-38475 | 9.1 | True | Apache | HTTP Server | Apache HTTP Server Improper Escaping of Output Vulnerability | 2025-05-01 00:00:00 |
| CVE-2025-31324 | 10.0 | True | SAP | NetWeaver | SAP NetWeaver Unrestricted File Upload Vulnerability | 2025-04-29 00:00:00 |
| CVE-2025-3928 | 8.8 | True | Commvault | Web Server | Commvault Web Server Unspecified Vulnerability | 2025-04-28 00:00:00 |
| CVE-2025-42599 | 9.8 | True | Qualitia | Active! Mail | Qualitia Active! Mail Stack-Based Buffer Overflow Vulnerability | 2025-04-28 00:00:00 |
| CVE-2025-1976 | -.- | True | Broadcom | Brocade Fabric OS | Broadcom Brocade Fabric OS Code Injection Vulnerability | 2025-04-28 00:00:00 |
| CVE-2025-31200 | 9.8 | True | Apple | Multiple Products | Apple Multiple Products Memory Corruption Vulnerability | 2025-04-17 00:00:00 |
| CVE-2025-31201 | 9.8 | True | Apple | Multiple Products | Apple Multiple Products Arbitrary Read and Write Vulnerability | 2025-04-17 00:00:00 |
| CVE-2025-24054 | 6.5 | True | Microsoft | Windows | Microsoft Windows NTLM Hash Disclosure Spoofing Vulnerability | 2025-04-17 00:00:00 |
| CVE-2021-20035 | 6.5 | True | SonicWall | SMA100 Appliances | SonicWall SMA100 Appliances OS Command Injection Vulnerability | 2025-04-16 00:00:00 |
| CVE-2024-53197 | 7.8 | True | Linux | Kernel | Linux Kernel Out-of-Bounds Access Vulnerability | 2025-04-09 00:00:00 |
| CVE-2024-53150 | 7.1 | True | Linux | Kernel | Linux Kernel Out-of-Bounds Read Vulnerability | 2025-04-09 00:00:00 |
| CVE-2025-30406 | 9.0 | True | Gladinet | CentreStack | Gladinet CentreStack and Triofox Use of Hard-coded Cryptographic Key Vulnerability | 2025-04-08 00:00:00 |
| CVE-2025-29824 | 7.8 | True | Microsoft | Windows | Microsoft Windows Common Log File System (CLFS) Driver Use-After-Free Vulnerability | 2025-04-08 00:00:00 |
| CVE-2025-31161 | 9.8 | True | CrushFTP | CrushFTP | CrushFTP Authentication Bypass Vulnerability | 2025-04-07 00:00:00 |
| CVE-2025-22457 | 9.0 | True | Ivanti | Connect Secure, Policy Secure, and ZTA Gateways | Ivanti Connect Secure, Policy Secure, and ZTA Gateways Stack-Based Buffer Overflow Vulnerability | 2025-04-04 00:00:00 |
| CVE-2025-24813 | 10.0 | True | Apache | Tomcat | Apache Tomcat Path Equivalence Vulnerability | 2025-04-01 00:00:00 |
| CVE-2024-20439 | 9.8 | True | Cisco | Smart Licensing Utility | Cisco Smart Licensing Utility Static Credential Vulnerability | 2025-03-31 00:00:00 |
| CVE-2025-2783 | 8.3 | True | Chromium Mojo | Google Chromium Mojo Sandbox Escape Vulnerability | 2025-03-27 00:00:00 | |
| CVE-2019-9874 | 9.8 | True | Sitecore | CMS and Experience Platform (XP) | Sitecore CMS and Experience Platform (XP) Deserialization Vulnerability | 2025-03-26 00:00:00 |
| CVE-2019-9875 | 8.8 | True | Sitecore | CMS and Experience Platform (XP) | Sitecore CMS and Experience Platform (XP) Deserialization Vulnerability | 2025-03-26 00:00:00 |
| CVE-2025-30154 | 8.6 | True | reviewdog | action-setup GitHub Action | reviewdog/action-setup GitHub Action Embedded Malicious Code Vulnerability | 2025-03-24 00:00:00 |
| CVE-2025-1316 | 9.8 | True | Edimax | IC-7100 IP Camera | Edimax IC-7100 IP Camera OS Command Injection Vulnerability | 2025-03-19 00:00:00 |
| CVE-2024-48248 | 8.6 | True | NAKIVO | Backup and Replication | NAKIVO Backup and Replication Absolute Path Traversal Vulnerability | 2025-03-19 00:00:00 |
| CVE-2017-12637 | 7.5 | True | SAP | NetWeaver | SAP NetWeaver Directory Traversal Vulnerability | 2025-03-19 00:00:00 |
| CVE-2025-24472 | 8.1 | True | Fortinet | FortiOS and FortiProxy | Fortinet FortiOS and FortiProxy Authentication Bypass Vulnerability | 2025-03-18 00:00:00 |
| CVE-2025-30066 | 8.6 | True | tj-actions | changed-files GitHub Action | tj-actions/changed-files GitHub Action Embedded Malicious Code Vulnerability | 2025-03-18 00:00:00 |
| CVE-2025-24201 | 10.0 | True | Apple | Multiple Products | Apple Multiple Products WebKit Out-of-Bounds Write Vulnerability | 2025-03-13 00:00:00 |
| CVE-2025-21590 | 4.4 | True | Juniper | Junos OS | Juniper Junos OS Improper Isolation or Compartmentalization Vulnerability | 2025-03-13 00:00:00 |
| CVE-2025-26633 | 7.0 | True | Microsoft | Windows | Microsoft Windows Management Console (MMC) Improper Neutralization Vulnerability | 2025-03-11 00:00:00 |
| CVE-2025-24983 | 7.0 | True | Microsoft | Windows | Microsoft Windows Win32k Use-After-Free Vulnerability | 2025-03-11 00:00:00 |
| CVE-2025-24984 | 4.6 | True | Microsoft | Windows | Microsoft Windows NTFS Information Disclosure Vulnerability | 2025-03-11 00:00:00 |
| CVE-2025-24985 | 7.8 | True | Microsoft | Windows | Microsoft Windows Fast FAT File System Driver Integer Overflow Vulnerability | 2025-03-11 00:00:00 |
| CVE-2025-24991 | 5.5 | True | Microsoft | Windows | Microsoft Windows NTFS Out-Of-Bounds Read Vulnerability | 2025-03-11 00:00:00 |
| CVE-2025-24993 | 7.8 | True | Microsoft | Windows | Microsoft Windows NTFS Heap-Based Buffer Overflow Vulnerability | 2025-03-11 00:00:00 |
| CVE-2025-25181 | 5.8 | True | Advantive | VeraCore | Advantive VeraCore SQL Injection Vulnerability | 2025-03-10 00:00:00 |
| CVE-2024-57968 | 9.9 | True | Advantive | VeraCore | Advantive VeraCore Unrestricted File Upload Vulnerability | 2025-03-10 00:00:00 |
| CVE-2024-13159 | 9.8 | True | Ivanti | Endpoint Manager (EPM) | Ivanti Endpoint Manager (EPM) Absolute Path Traversal Vulnerability | 2025-03-10 00:00:00 |
| CVE-2024-13160 | 9.8 | True | Ivanti | Endpoint Manager (EPM) | Ivanti Endpoint Manager (EPM) Absolute Path Traversal Vulnerability | 2025-03-10 00:00:00 |
| CVE-2024-13161 | 9.8 | True | Ivanti | Endpoint Manager (EPM) | Ivanti Endpoint Manager (EPM) Absolute Path Traversal Vulnerability | 2025-03-10 00:00:00 |
| CVE-2024-50302 | 5.5 | True | Linux | Kernel | Linux Kernel Use of Uninitialized Resource Vulnerability | 2025-03-04 00:00:00 |
| CVE-2025-22224 | 9.3 | True | VMware | ESXi and Workstation | VMware ESXi and Workstation TOCTOU Race Condition Vulnerability | 2025-03-04 00:00:00 |
| CVE-2025-22225 | 8.2 | True | VMware | ESXi | VMware ESXi Arbitrary Write Vulnerability | 2025-03-04 00:00:00 |
| CVE-2025-22226 | 7.1 | True | VMware | ESXi, Workstation, and Fusion | VMware ESXi, Workstation, and Fusion Information Disclosure Vulnerability | 2025-03-04 00:00:00 |
| CVE-2023-20118 | 6.5 | True | Cisco | Small Business RV Series Routers | Cisco Small Business RV Series Routers Command Injection Vulnerability | 2025-03-03 00:00:00 |
| CVE-2022-43939 | 8.6 | True | Hitachi Vantara | Pentaho Business Analytics (BA) Server | Hitachi Vantara Pentaho BA Server Authorization Bypass Vulnerability | 2025-03-03 00:00:00 |
| CVE-2022-43769 | 8.8 | True | Hitachi Vantara | Pentaho Business Analytics (BA) Server | Hitachi Vantara Pentaho BA Server Special Element Injection Vulnerability | 2025-03-03 00:00:00 |
| CVE-2018-8639 | 8.4 | True | Microsoft | Windows | Microsoft Windows Win32k Improper Resource Shutdown or Release Vulnerability | 2025-03-03 00:00:00 |
| CVE-2024-4885 | 9.8 | True | Progress | WhatsUp Gold | Progress WhatsUp Gold Path Traversal Vulnerability | 2025-03-03 00:00:00 |
| CVE-2024-49035 | 8.7 | True | Microsoft | Partner Center | Microsoft Partner Center Improper Access Control Vulnerability | 2025-02-25 00:00:00 |
| CVE-2023-34192 | 9.0 | True | Synacor | Zimbra Collaboration Suite (ZCS) | Synacor Zimbra Collaboration Suite (ZCS) Cross-Site Scripting (XSS) Vulnerability | 2025-02-25 00:00:00 |
| CVE-2017-3066 | 9.8 | True | Adobe | ColdFusion | Adobe ColdFusion Deserialization Vulnerability | 2025-02-24 00:00:00 |
| CVE-2024-20953 | 8.8 | True | Oracle | Agile Product Lifecycle Management (PLM) | Oracle Agile Product Lifecycle Management (PLM) Deserialization Vulnerability | 2025-02-24 00:00:00 |
| CVE-2025-24989 | 8.2 | True | Microsoft | Power Pages | Microsoft Power Pages Improper Access Control Vulnerability | 2025-02-21 00:00:00 |
| CVE-2025-23209 | 8.1 | True | Craft CMS | Craft CMS | Craft CMS Code Injection Vulnerability | 2025-02-20 00:00:00 |
| CVE-2025-0111 | -.- | True | Palo Alto Networks | PAN-OS | Palo Alto Networks PAN-OS File Read Vulnerability | 2025-02-20 00:00:00 |
| CVE-2024-53704 | 8.2 | True | SonicWall | SonicOS | SonicWall SonicOS SSLVPN Improper Authentication Vulnerability | 2025-02-18 00:00:00 |
| CVE-2025-0108 | -.- | True | Palo Alto Networks | PAN-OS | Palo Alto Networks PAN-OS Authentication Bypass Vulnerability | 2025-02-18 00:00:00 |
| CVE-2024-57727 | 9.1 | True | SimpleHelp | SimpleHelp | SimpleHelp Path Traversal Vulnerability | 2025-02-13 00:00:00 |
| CVE-2024-41710 | 6.8 | True | Mitel | SIP Phones | Mitel SIP Phones Argument Injection Vulnerability | 2025-02-12 00:00:00 |
| CVE-2025-24200 | 6.1 | True | Apple | iOS and iPadOS | Apple iOS and iPadOS Incorrect Authorization Vulnerability | 2025-02-12 00:00:00 |
| CVE-2025-21391 | 7.1 | True | Microsoft | Windows | Microsoft Windows Storage Link Following Vulnerability | 2025-02-11 00:00:00 |
| CVE-2025-21418 | 7.8 | True | Microsoft | Windows | Microsoft Windows Ancillary Function Driver for WinSock Heap-Based Buffer Overflow Vulnerability | 2025-02-11 00:00:00 |
| CVE-2024-40890 | 8.8 | True | Zyxel | DSL CPE Devices | Zyxel DSL CPE OS Command Injection Vulnerability | 2025-02-11 00:00:00 |
| CVE-2024-40891 | 8.8 | True | Zyxel | DSL CPE Devices | Zyxel DSL CPE OS Command Injection Vulnerability | 2025-02-11 00:00:00 |
| CVE-2025-0994 | -.- | True | Trimble | Cityworks | Trimble Cityworks Deserialization Vulnerability | 2025-02-07 00:00:00 |
| CVE-2025-0411 | 7.0 | True | 7-Zip | 7-Zip | 7-Zip Mark of the Web Bypass Vulnerability | 2025-02-06 00:00:00 |
| CVE-2022-23748 | 7.8 | True | Audinate | Dante Discovery | Dante Discovery Process Control Vulnerability | 2025-02-06 00:00:00 |
| CVE-2024-21413 | 9.8 | True | Microsoft | Office Outlook | Microsoft Outlook Improper Input Validation Vulnerability | 2025-02-06 00:00:00 |
| CVE-2020-29574 | 9.8 | True | Sophos | CyberoamOS | CyberoamOS (CROS) SQL Injection Vulnerability | 2025-02-06 00:00:00 |
| CVE-2020-15069 | 9.8 | True | Sophos | XG Firewall | Sophos XG Firewall Buffer Overflow Vulnerability | 2025-02-06 00:00:00 |
| CVE-2024-53104 | 7.8 | True | Linux | Kernel | Linux Kernel Out-of-Bounds Write Vulnerability | 2025-02-05 00:00:00 |
| CVE-2024-45195 | 9.8 | True | Apache | OFBiz | Apache OFBiz Forced Browsing Vulnerability | 2025-02-04 00:00:00 |
| CVE-2024-29059 | 7.5 | True | Microsoft | .NET Framework | Microsoft .NET Framework Information Disclosure Vulnerability | 2025-02-04 00:00:00 |
| CVE-2018-9276 | 7.2 | True | Paessler | PRTG Network Monitor | Paessler PRTG Network Monitor OS Command Injection Vulnerability | 2025-02-04 00:00:00 |
| CVE-2018-19410 | 9.8 | True | Paessler | PRTG Network Monitor | Paessler PRTG Network Monitor Local File Inclusion Vulnerability | 2025-02-04 00:00:00 |
| CVE-2025-24085 | 10.0 | True | Apple | Multiple Products | Apple Multiple Products Use-After-Free Vulnerability | 2025-01-29 00:00:00 |
| CVE-2025-23006 | 9.8 | True | SonicWall | SMA1000 Appliances | SonicWall SMA1000 Appliances Deserialization Vulnerability | 2025-01-24 00:00:00 |
| CVE-2020-11023 | 6.9 | True | JQuery | JQuery | JQuery Cross-Site Scripting (XSS) Vulnerability | 2025-01-23 00:00:00 |
| CVE-2024-50603 | 10.0 | True | Aviatrix | Controllers | Aviatrix Controllers OS Command Injection Vulnerability | 2025-01-16 00:00:00 |
| CVE-2024-55591 | 9.6 | True | Fortinet | FortiOS and FortiProxy | Fortinet FortiOS and FortiProxy Authentication Bypass Vulnerability | 2025-01-14 00:00:00 |
| CVE-2025-21333 | 7.8 | True | Microsoft | Windows | Microsoft Windows Hyper-V NT Kernel Integration VSP Heap-based Buffer Overflow Vulnerability | 2025-01-14 00:00:00 |
| CVE-2025-21334 | 7.8 | True | Microsoft | Windows | Microsoft Windows Hyper-V NT Kernel Integration VSP Use-After-Free Vulnerability | 2025-01-14 00:00:00 |
| CVE-2025-21335 | 7.8 | True | Microsoft | Windows | Microsoft Windows Hyper-V NT Kernel Integration VSP Use-After-Free Vulnerability | 2025-01-14 00:00:00 |
| CVE-2024-12686 | 6.6 | True | BeyondTrust | Privileged Remote Access (PRA) and Remote Support (RS) | BeyondTrust Privileged Remote Access (PRA) and Remote Support (RS) OS Command Injection Vulnerability | 2025-01-13 00:00:00 |
| CVE-2023-48365 | 9.6 | True | Qlik | Sense | Qlik Sense HTTP Tunneling Vulnerability | 2025-01-13 00:00:00 |
| CVE-2025-0282 | 9.0 | True | Ivanti | Connect Secure, Policy Secure, and ZTA Gateways | Ivanti Connect Secure, Policy Secure, and ZTA Gateways Stack-Based Buffer Overflow Vulnerability | 2025-01-08 00:00:00 |
| CVE-2024-41713 | 9.1 | True | Mitel | MiCollab | Mitel MiCollab Path Traversal Vulnerability | 2025-01-07 00:00:00 |
| CVE-2024-55550 | 4.4 | True | Mitel | MiCollab | Mitel MiCollab Path Traversal Vulnerability | 2025-01-07 00:00:00 |
| CVE-2020-2883 | 9.8 | True | Oracle | WebLogic Server | Oracle WebLogic Server Unspecified Vulnerability | 2025-01-07 00:00:00 |
| CVE-2024-3393 | -.- | True | Palo Alto Networks | PAN-OS | Palo Alto Networks PAN-OS Malicious DNS Packet Vulnerability | 2024-12-30 00:00:00 |
| CVE-2021-44207 | 8.1 | True | Acclaim Systems | USAHERDS | Acclaim Systems USAHERDS Use of Hard-Coded Credentials Vulnerability | 2024-12-23 00:00:00 |
| CVE-2024-12356 | 9.8 | True | BeyondTrust | Privileged Remote Access (PRA) and Remote Support (RS) | BeyondTrust Privileged Remote Access (PRA) and Remote Support (RS) Command Injection Vulnerability | 2024-12-19 00:00:00 |
| CVE-2018-14933 | 9.8 | True | NUUO | NVRmini Devices | NUUO NVRmini Devices OS Command Injection Vulnerability | 2024-12-18 00:00:00 |
| CVE-2022-23227 | 9.8 | True | NUUO | NVRmini2 Devices | NUUO NVRmini2 Devices Missing Authentication Vulnerability | 2024-12-18 00:00:00 |
| CVE-2019-11001 | 7.2 | True | Reolink | Multiple IP Cameras | Reolink Multiple IP Cameras OS Command Injection Vulnerability | 2024-12-18 00:00:00 |
| CVE-2021-40407 | 9.1 | True | Reolink | RLC-410W IP Camera | Reolink RLC-410W IP Camera OS Command Injection Vulnerability | 2024-12-18 00:00:00 |
| CVE-2024-55956 | 9.8 | True | Cleo | Multiple Products | Cleo Multiple Products Unauthenticated File Upload Vulnerability | 2024-12-17 00:00:00 |
| CVE-2024-20767 | 7.4 | True | Adobe | ColdFusion | Adobe ColdFusion Improper Access Control Vulnerability | 2024-12-16 00:00:00 |
| CVE-2024-35250 | 7.8 | True | Microsoft | Windows | Microsoft Windows Kernel-Mode Driver Untrusted Pointer Dereference Vulnerability | 2024-12-16 00:00:00 |
| CVE-2024-50623 | 9.8 | True | Cleo | Multiple Products | Cleo Multiple Products Unrestricted File Upload Vulnerability | 2024-12-13 00:00:00 |
| CVE-2024-49138 | 7.8 | True | Microsoft | Windows | Microsoft Windows Common Log File System (CLFS) Driver Heap-Based Buffer Overflow Vulnerability | 2024-12-10 00:00:00 |
| CVE-2024-51378 | 10.0 | True | CyberPersons | CyberPanel | CyberPanel Incorrect Default Permissions Vulnerability | 2024-12-04 00:00:00 |
| CVE-2023-45727 | 7.5 | True | North Grid | Proself | North Grid Proself Improper Restriction of XML External Entity (XXE) Reference Vulnerability | 2024-12-03 00:00:00 |
| CVE-2024-11680 | 9.8 | True | ProjectSend | ProjectSend | ProjectSend Improper Authentication Vulnerability | 2024-12-03 00:00:00 |
| CVE-2024-11667 | 7.5 | True | Zyxel | Multiple Firewalls | Zyxel Multiple Firewalls Path Traversal Vulnerability | 2024-12-03 00:00:00 |
| CVE-2023-28461 | 9.8 | True | Array Networks | AG/vxAG ArrayOS | Array Networks AG and vxAG ArrayOS Missing Authentication for Critical Function Vulnerability | 2024-11-25 00:00:00 |
| CVE-2024-44308 | 8.8 | True | Apple | Multiple Products | Apple Multiple Products Code Execution Vulnerability | 2024-11-21 00:00:00 |
| CVE-2024-44309 | 6.3 | True | Apple | Multiple Products | Apple Multiple Products Cross-Site Scripting (XSS) Vulnerability | 2024-11-21 00:00:00 |
| CVE-2024-21287 | 7.5 | True | Oracle | Agile Product Lifecycle Management (PLM) | Oracle Agile Product Lifecycle Management (PLM) Incorrect Authorization Vulnerability | 2024-11-21 00:00:00 |
| CVE-2024-38812 | 9.8 | True | VMware | vCenter Server | VMware vCenter Server Heap-Based Buffer Overflow Vulnerability | 2024-11-20 00:00:00 |
| CVE-2024-38813 | 7.5 | True | VMware | vCenter Server | VMware vCenter Server Privilege Escalation Vulnerability | 2024-11-20 00:00:00 |
| CVE-2024-1212 | 10.0 | True | Progress | Kemp LoadMaster | Progress Kemp LoadMaster OS Command Injection Vulnerability | 2024-11-18 00:00:00 |
| CVE-2024-0012 | -.- | True | Palo Alto Networks | PAN-OS | Palo Alto Networks PAN-OS Management Interface Authentication Bypass Vulnerability | 2024-11-18 00:00:00 |
| CVE-2024-9474 | -.- | True | Palo Alto Networks | PAN-OS | Palo Alto Networks PAN-OS Management Interface OS Command Injection Vulnerability | 2024-11-18 00:00:00 |
| CVE-2024-9463 | -.- | True | Palo Alto Networks | Expedition | Palo Alto Networks Expedition OS Command Injection Vulnerability | 2024-11-14 00:00:00 |
| CVE-2024-9465 | -.- | True | Palo Alto Networks | Expedition | Palo Alto Networks Expedition SQL Injection Vulnerability | 2024-11-14 00:00:00 |
| CVE-2024-49039 | 8.8 | True | Microsoft | Windows | Microsoft Windows Task Scheduler Privilege Escalation Vulnerability | 2024-11-12 00:00:00 |
| CVE-2024-43451 | 6.5 | True | Microsoft | Windows | Microsoft Windows NTLMv2 Hash Disclosure Spoofing Vulnerability | 2024-11-12 00:00:00 |
| CVE-2021-41277 | 7.5 | True | Metabase | Metabase | Metabase GeoJSON API Local File Inclusion Vulnerability | 2024-11-12 00:00:00 |
| CVE-2014-2120 | 5.4 | True | Cisco | Adaptive Security Appliance (ASA) | Cisco Adaptive Security Appliance (ASA) Cross-Site Scripting (XSS) Vulnerability | 2024-11-12 00:00:00 |
| CVE-2021-26086 | 5.3 | True | Atlassian | Jira Server and Data Center | Atlassian Jira Server and Data Center Path Traversal Vulnerability | 2024-11-12 00:00:00 |
| CVE-2024-5910 | -.- | True | Palo Alto Networks | Expedition | Palo Alto Networks Expedition Missing Authentication Vulnerability | 2024-11-07 00:00:00 |
| CVE-2024-43093 | 7.3 | True | Android | Framework | Android Framework Privilege Escalation Vulnerability | 2024-11-07 00:00:00 |
| CVE-2024-51567 | 10.0 | True | CyberPersons | CyberPanel | CyberPanel Incorrect Default Permissions Vulnerability | 2024-11-07 00:00:00 |
| CVE-2019-16278 | 9.8 | True | Nostromo | nhttpd | Nostromo nhttpd Directory Traversal Vulnerability | 2024-11-07 00:00:00 |
| CVE-2024-8957 | 7.2 | True | PTZOptics | PT30X-SDI/NDI Cameras | PTZOptics PT30X-SDI/NDI Cameras OS Command Injection Vulnerability | 2024-11-04 00:00:00 |
| CVE-2024-8956 | 9.1 | True | PTZOptics | PT30X-SDI/NDI Cameras | PTZOptics PT30X-SDI/NDI Cameras Authentication Bypass Vulnerability | 2024-11-04 00:00:00 |
| CVE-2024-20481 | 5.8 | True | Cisco | Adaptive Security Appliance (ASA) and Firepower Threat Defense (FTD) | Cisco ASA and FTD Denial-of-Service Vulnerability | 2024-10-24 00:00:00 |
| CVE-2024-37383 | 6.1 | True | Roundcube | Webmail | RoundCube Webmail Cross-Site Scripting (XSS) Vulnerability | 2024-10-24 00:00:00 |
| CVE-2024-47575 | 9.8 | True | Fortinet | FortiManager | Fortinet FortiManager Missing Authentication Vulnerability | 2024-10-23 00:00:00 |
| CVE-2024-38094 | 7.2 | True | Microsoft | SharePoint | Microsoft SharePoint Deserialization Vulnerability | 2024-10-22 00:00:00 |
| CVE-2024-9537 | 9.8 | True | ScienceLogic | SL1 | ScienceLogic SL1 Unspecified Vulnerability | 2024-10-21 00:00:00 |
| CVE-2024-40711 | 9.8 | True | Veeam | Backup & Replication | Veeam Backup and Replication Deserialization Vulnerability | 2024-10-17 00:00:00 |
| CVE-2024-30088 | 7.0 | True | Microsoft | Windows | Microsoft Windows Kernel TOCTOU Race Condition Vulnerability | 2024-10-15 00:00:00 |
| CVE-2024-9680 | 9.8 | True | Mozilla | Firefox | Mozilla Firefox Use-After-Free Vulnerability | 2024-10-15 00:00:00 |
| CVE-2024-28987 | 9.1 | True | SolarWinds | Web Help Desk | SolarWinds Web Help Desk Hardcoded Credential Vulnerability | 2024-10-15 00:00:00 |
| CVE-2024-23113 | 9.8 | True | Fortinet | Multiple Products | Fortinet Multiple Products Format String Vulnerability | 2024-10-09 00:00:00 |
| CVE-2024-9379 | 6.5 | True | Ivanti | Cloud Services Appliance (CSA) | Ivanti Cloud Services Appliance (CSA) SQL Injection Vulnerability | 2024-10-09 00:00:00 |
| CVE-2024-9380 | 7.2 | True | Ivanti | Cloud Services Appliance (CSA) | Ivanti Cloud Services Appliance (CSA) OS Command Injection Vulnerability | 2024-10-09 00:00:00 |
| CVE-2024-43047 | 7.8 | True | Qualcomm | Multiple Chipsets | Qualcomm Multiple Chipsets Use-After-Free Vulnerability | 2024-10-08 00:00:00 |
| CVE-2024-43572 | 7.8 | True | Microsoft | Windows | Microsoft Windows Management Console Remote Code Execution Vulnerability | 2024-10-08 00:00:00 |
| CVE-2024-43573 | 6.5 | True | Microsoft | Windows | Microsoft Windows MSHTML Platform Spoofing Vulnerability | 2024-10-08 00:00:00 |
| CVE-2024-45519 | 10.0 | True | Synacor | Zimbra Collaboration Suite (ZCS) | Synacor Zimbra Collaboration Suite (ZCS) Command Execution Vulnerability | 2024-10-03 00:00:00 |
| CVE-2024-29824 | 9.6 | True | Ivanti | Endpoint Manager (EPM) | Ivanti Endpoint Manager (EPM) SQL Injection Vulnerability | 2024-10-02 00:00:00 |
| CVE-2023-25280 | 9.8 | True | D-Link | DIR-820 Router | D-Link DIR-820 Router OS Command Injection Vulnerability | 2024-09-30 00:00:00 |
| CVE-2020-15415 | 9.8 | True | DrayTek | Multiple Vigor Routers | DrayTek Multiple Vigor Routers OS Command Injection Vulnerability | 2024-09-30 00:00:00 |
| CVE-2019-0344 | 9.8 | True | SAP | Commerce Cloud | SAP Commerce Cloud Deserialization of Untrusted Data Vulnerability | 2024-09-30 00:00:00 |
| CVE-2024-7593 | 9.8 | True | Ivanti | Virtual Traffic Manager | Ivanti Virtual Traffic Manager Authentication Bypass Vulnerability | 2024-09-24 00:00:00 |
| CVE-2024-8963 | 9.4 | True | Ivanti | Cloud Services Appliance (CSA) | Ivanti Cloud Services Appliance (CSA) Path Traversal Vulnerability | 2024-09-19 00:00:00 |
| CVE-2024-27348 | 9.8 | True | Apache | HugeGraph-Server | Apache HugeGraph-Server Improper Access Control Vulnerability | 2024-09-18 00:00:00 |
| CVE-2020-0618 | 9.8 | True | Microsoft | SQL Server | Microsoft SQL Server Reporting Services Remote Code Execution Vulnerability | 2024-09-18 00:00:00 |
| CVE-2022-21445 | 9.8 | True | Oracle | ADF Faces | Oracle ADF Faces Deserialization of Untrusted Data Vulnerability | 2024-09-18 00:00:00 |
| CVE-2020-14644 | 9.8 | True | Oracle | WebLogic Server | Oracle WebLogic Server Remote Code Execution Vulnerability | 2024-09-18 00:00:00 |
| CVE-2014-0497 | 8.8 | True | Adobe | Flash Player | Adobe Flash Player Integer Underflow Vulnerablity | 2024-09-17 00:00:00 |
| CVE-2013-0643 | 8.8 | True | Adobe | Flash Player | Adobe Flash Player Incorrect Default Permissions Vulnerability | 2024-09-17 00:00:00 |
| CVE-2013-0648 | 8.8 | True | Adobe | Flash Player | Adobe Flash Player Code Execution Vulnerability | 2024-09-17 00:00:00 |
| CVE-2014-0502 | 8.8 | True | Adobe | Flash Player | Adobe Flash Player Double Free Vulnerablity | 2024-09-17 00:00:00 |
| CVE-2024-43461 | 8.8 | True | Microsoft | Windows | Microsoft Windows MSHTML Platform Spoofing Vulnerability | 2024-09-16 00:00:00 |
| CVE-2024-6670 | 9.8 | True | Progress | WhatsUp Gold | Progress WhatsUp Gold SQL Injection Vulnerability | 2024-09-16 00:00:00 |
| CVE-2024-8190 | 7.2 | True | Ivanti | Cloud Services Appliance | Ivanti Cloud Services Appliance OS Command Injection Vulnerability | 2024-09-13 00:00:00 |
| CVE-2024-38226 | 7.3 | True | Microsoft | Publisher | Microsoft Publisher Protection Mechanism Failure Vulnerability | 2024-09-10 00:00:00 |
| CVE-2024-38014 | 7.8 | True | Microsoft | Windows | Microsoft Windows Installer Improper Privilege Management Vulnerability | 2024-09-10 00:00:00 |
| CVE-2024-38217 | 5.4 | True | Microsoft | Windows | Microsoft Windows Mark of the Web (MOTW) Protection Mechanism Failure Vulnerability | 2024-09-10 00:00:00 |
| CVE-2016-3714 | 8.4 | True | ImageMagick | ImageMagick | ImageMagick Improper Input Validation Vulnerability | 2024-09-09 00:00:00 |
| CVE-2017-1000253 | 7.8 | True | Linux | Kernel | Linux Kernel PIE Stack Buffer Corruption Vulnerability | 2024-09-09 00:00:00 |
| CVE-2024-40766 | 9.3 | True | SonicWall | SonicOS | SonicWall SonicOS Improper Access Control Vulnerability | 2024-09-09 00:00:00 |
| CVE-2021-20123 | 7.5 | True | DrayTek | VigorConnect | Draytek VigorConnect Path Traversal Vulnerability | 2024-09-03 00:00:00 |
| CVE-2021-20124 | 7.5 | True | DrayTek | VigorConnect | Draytek VigorConnect Path Traversal Vulnerability | 2024-09-03 00:00:00 |
| CVE-2024-7262 | -.- | True | Kingsoft | WPS Office | Kingsoft WPS Office Path Traversal Vulnerability | 2024-09-03 00:00:00 |
| CVE-2024-7965 | 8.8 | True | Chromium V8 | Google Chromium V8 Inappropriate Implementation Vulnerability | 2024-08-28 00:00:00 | |
| CVE-2024-38856 | 8.1 | True | Apache | OFBiz | Apache OFBiz Incorrect Authorization Vulnerability | 2024-08-27 00:00:00 |
| CVE-2024-7971 | 8.8 | True | Chromium V8 | Google Chromium V8 Type Confusion Vulnerability | 2024-08-26 00:00:00 | |
| CVE-2024-39717 | 6.6 | True | Versa | Director | Versa Director Dangerous File Type Upload Vulnerability | 2024-08-23 00:00:00 |
| CVE-2021-33044 | 9.8 | True | Dahua | IP Camera Firmware | Dahua IP Camera Authentication Bypass Vulnerability | 2024-08-21 00:00:00 |
| CVE-2021-33045 | 9.8 | True | Dahua | IP Camera Firmware | Dahua IP Camera Authentication Bypass Vulnerability | 2024-08-21 00:00:00 |
| CVE-2022-0185 | 8.4 | True | Linux | Kernel | Linux Kernel Heap-Based Buffer Overflow Vulnerability | 2024-08-21 00:00:00 |
| CVE-2021-31196 | 7.2 | True | Microsoft | Exchange Server | Microsoft Exchange Server Information Disclosure Vulnerability | 2024-08-21 00:00:00 |
| CVE-2024-23897 | 9.8 | True | Jenkins | Jenkins Command Line Interface (CLI) | Jenkins Command Line Interface (CLI) Path Traversal Vulnerability | 2024-08-19 00:00:00 |
| CVE-2024-28986 | 9.8 | True | SolarWinds | Web Help Desk | SolarWinds Web Help Desk Deserialization of Untrusted Data Vulnerability | 2024-08-15 00:00:00 |
| CVE-2024-38189 | 8.8 | True | Microsoft | Project | Microsoft Project Remote Code Execution Vulnerability | 2024-08-13 00:00:00 |
| CVE-2024-38178 | 7.5 | True | Microsoft | Windows | Microsoft Windows Scripting Engine Memory Corruption Vulnerability | 2024-08-13 00:00:00 |
| CVE-2024-38213 | 6.5 | True | Microsoft | Windows | Microsoft Windows SmartScreen Security Feature Bypass Vulnerability | 2024-08-13 00:00:00 |
| CVE-2024-38193 | 7.8 | True | Microsoft | Windows | Microsoft Windows Ancillary Function Driver for WinSock Privilege Escalation Vulnerability | 2024-08-13 00:00:00 |
| CVE-2024-38106 | 7.0 | True | Microsoft | Windows | Microsoft Windows Kernel Privilege Escalation Vulnerability | 2024-08-13 00:00:00 |
| CVE-2024-38107 | 7.8 | True | Microsoft | Windows | Microsoft Windows Power Dependency Coordinator Privilege Escalation Vulnerability | 2024-08-13 00:00:00 |
| CVE-2024-36971 | 7.8 | True | Android | Kernel | Android Kernel Remote Code Execution Vulnerability | 2024-08-07 00:00:00 |
| CVE-2024-32113 | 9.1 | True | Apache | OFBiz | Apache OFBiz Path Traversal Vulnerability | 2024-08-07 00:00:00 |
| CVE-2018-0824 | 7.5 | True | Microsoft | Windows | Microsoft COM for Windows Deserialization of Untrusted Data Vulnerability | 2024-08-05 00:00:00 |
| CVE-2024-37085 | 6.8 | True | VMware | ESXi | VMware ESXi Authentication Bypass Vulnerability | 2024-07-30 00:00:00 |
| CVE-2024-4879 | 9.8 | True | ServiceNow | Utah, Vancouver, and Washington DC Now Platform | ServiceNow Improper Input Validation Vulnerability | 2024-07-29 00:00:00 |
| CVE-2024-5217 | 9.8 | True | ServiceNow | Utah, Vancouver, and Washington DC Now Platform | ServiceNow Incomplete List of Disallowed Inputs Vulnerability | 2024-07-29 00:00:00 |
| CVE-2023-45249 | 9.8 | True | Acronis | Cyber Infrastructure (ACI) | Acronis Cyber Infrastructure (ACI) Insecure Default Password Vulnerability | 2024-07-29 00:00:00 |
| CVE-2012-4792 | 8.8 | True | Microsoft | Internet Explorer | Microsoft Internet Explorer Use-After-Free Vulnerability | 2024-07-23 00:00:00 |
| CVE-2024-39891 | 5.3 | True | Twilio | Authy | Twilio Authy Information Disclosure Vulnerability | 2024-07-23 00:00:00 |
| CVE-2024-34102 | 9.8 | True | Adobe | Commerce and Magento Open Source | Adobe Commerce and Magento Open Source Improper Restriction of XML External Entity Reference (XXE) Vulnerability | 2024-07-17 00:00:00 |
| CVE-2024-28995 | 8.6 | True | SolarWinds | Serv-U | SolarWinds Serv-U Path Traversal Vulnerability | 2024-07-17 00:00:00 |
| CVE-2022-22948 | 6.5 | True | VMware | vCenter Server | VMware vCenter Server Incorrect Default File Permissions Vulnerability | 2024-07-17 00:00:00 |
| CVE-2024-36401 | 9.8 | True | OSGeo | GeoServer | OSGeo GeoServer GeoTools Eval Injection Vulnerability | 2024-07-15 00:00:00 |
| CVE-2024-38112 | 7.5 | True | Microsoft | Windows | Microsoft Windows MSHTML Platform Spoofing Vulnerability | 2024-07-09 00:00:00 |
| CVE-2024-38080 | 7.8 | True | Microsoft | Windows | Microsoft Windows Hyper-V Privilege Escalation Vulnerability | 2024-07-09 00:00:00 |
| CVE-2024-23692 | 9.8 | True | Rejetto | HTTP File Server | Rejetto HTTP File Server Improper Neutralization of Special Elements Used in a Template Engine Vulnerability | 2024-07-09 00:00:00 |
| CVE-2024-20399 | 6.0 | True | Cisco | NX-OS | Cisco NX-OS Command Injection Vulnerability | 2024-07-02 00:00:00 |
| CVE-2022-24816 | 10.0 | True | OSGeo | JAI-EXT | OSGeo GeoServer JAI-EXT Code Injection Vulnerability | 2024-06-26 00:00:00 |
| CVE-2022-2586 | 5.3 | True | Linux | Kernel | Linux Kernel Use-After-Free Vulnerability | 2024-06-26 00:00:00 |
| CVE-2020-13965 | 6.3 | True | Roundcube | Webmail | Roundcube Webmail Cross-Site Scripting (XSS) Vulnerability | 2024-06-26 00:00:00 |
| CVE-2024-32896 | 8.1 | True | Android | Pixel | Android Pixel Privilege Escalation Vulnerability | 2024-06-13 00:00:00 |
| CVE-2024-26169 | 7.8 | True | Microsoft | Windows | Microsoft Windows Error Reporting Service Improper Privilege Management Vulnerability | 2024-06-13 00:00:00 |
| CVE-2024-4358 | 9.8 | True | Progress | Telerik Report Server | Progress Telerik Report Server Authentication Bypass by Spoofing Vulnerability | 2024-06-13 00:00:00 |
| CVE-2024-4610 | 7.4 | True | Arm | Mali GPU Kernel Driver | Arm Mali GPU Kernel Driver Use-After-Free Vulnerability | 2024-06-12 00:00:00 |
| CVE-2024-4577 | 9.8 | True | PHP Group | PHP | PHP-CGI OS Command Injection Vulnerability | 2024-06-12 00:00:00 |
| CVE-2017-3506 | 7.4 | True | Oracle | WebLogic Server | Oracle WebLogic Server OS Command Injection Vulnerability | 2024-06-03 00:00:00 |
| CVE-2024-24919 | 8.6 | True | Check Point | Quantum Security Gateways | Check Point Quantum Security Gateways Information Disclosure Vulnerability | 2024-05-30 00:00:00 |
| CVE-2024-1086 | 7.8 | True | Linux | Kernel | Linux Kernel Use-After-Free Vulnerability | 2024-05-30 00:00:00 |
| CVE-2024-4978 | 8.4 | True | Justice AV Solutions | Viewer | Justice AV Solutions (JAVS) Viewer Installer Embedded Malicious Code Vulnerability | 2024-05-29 00:00:00 |
| CVE-2024-5274 | 8.3 | True | Chromium V8 | Google Chromium V8 Type Confusion Vulnerability | 2024-05-28 00:00:00 | |
| CVE-2020-17519 | 9.1 | True | Apache | Flink | Apache Flink Improper Access Control Vulnerability | 2024-05-23 00:00:00 |
| CVE-2023-43208 | 9.8 | True | NextGen Healthcare | Mirth Connect | NextGen Healthcare Mirth Connect Deserialization of Untrusted Data Vulnerability | 2024-05-20 00:00:00 |
| CVE-2024-4947 | 9.6 | True | Chromium V8 | Google Chromium V8 Type Confusion Vulnerability | 2024-05-20 00:00:00 | |
| CVE-2014-100005 | 8.0 | True | D-Link | DIR-600 Router | D-Link DIR-600 Router Cross-Site Request Forgery (CSRF) Vulnerability | 2024-05-16 00:00:00 |
| CVE-2021-40655 | 7.5 | True | D-Link | DIR-605 Router | D-Link DIR-605 Router Information Disclosure Vulnerability | 2024-05-16 00:00:00 |
| CVE-2024-4761 | 8.3 | True | Chromium V8 | Google Chromium V8 Out-of-Bounds Memory Write Vulnerability | 2024-05-16 00:00:00 | |
| CVE-2024-30051 | 7.8 | True | Microsoft | DWM Core Library | Microsoft DWM Core Library Privilege Escalation Vulnerability | 2024-05-14 00:00:00 |
| CVE-2024-30040 | 8.8 | True | Microsoft | Windows | Microsoft Windows MSHTML Platform Security Feature Bypass Vulnerability | 2024-05-14 00:00:00 |
| CVE-2024-4671 | 9.6 | True | Chromium | Google Chromium Visuals Use-After-Free Vulnerability | 2024-05-13 00:00:00 | |
| CVE-2023-7028 | 10.0 | True | GitLab | GitLab CE/EE | GitLab Community and Enterprise Editions Improper Access Control Vulnerability | 2024-05-01 00:00:00 |
| CVE-2024-29988 | 8.8 | True | Microsoft | SmartScreen Prompt | Microsoft SmartScreen Prompt Security Feature Bypass Vulnerability | 2024-04-30 00:00:00 |
| CVE-2024-20353 | 8.6 | True | Cisco | Adaptive Security Appliance (ASA) and Firepower Threat Defense (FTD) | Cisco ASA and FTD Denial of Service Vulnerability | 2024-04-24 00:00:00 |
| CVE-2024-20359 | 6.0 | True | Cisco | Adaptive Security Appliance (ASA) and Firepower Threat Defense (FTD) | Cisco ASA and FTD Privilege Escalation Vulnerability | 2024-04-24 00:00:00 |
| CVE-2024-4040 | 9.8 | True | CrushFTP | CrushFTP | CrushFTP VFS Sandbox Escape Vulnerability | 2024-04-24 00:00:00 |
| CVE-2022-38028 | 7.8 | True | Microsoft | Windows | Microsoft Windows Print Spooler Privilege Escalation Vulnerability | 2024-04-23 00:00:00 |
| CVE-2024-3400 | 10.0 | True | Palo Alto Networks | PAN-OS | Palo Alto Networks PAN-OS Command Injection Vulnerability | 2024-04-12 00:00:00 |
| CVE-2024-3272 | 10.0 | True | D-Link | Multiple NAS Devices | D-Link Multiple NAS Devices Use of Hard-Coded Credentials Vulnerability | 2024-04-11 00:00:00 |
| CVE-2024-3273 | 7.5 | True | D-Link | Multiple NAS Devices | D-Link Multiple NAS Devices Command Injection Vulnerability | 2024-04-11 00:00:00 |
| CVE-2024-29745 | 5.5 | True | Android | Pixel | Android Pixel Information Disclosure Vulnerability | 2024-04-04 00:00:00 |
| CVE-2024-29748 | 7.8 | True | Android | Pixel | Android Pixel Privilege Escalation Vulnerability | 2024-04-04 00:00:00 |
| CVE-2023-24955 | 7.2 | True | Microsoft | SharePoint Server | Microsoft SharePoint Server Code Injection Vulnerability | 2024-03-26 00:00:00 |
| CVE-2023-48788 | 9.3 | True | Fortinet | FortiClient EMS | Fortinet FortiClient EMS SQL Injection Vulnerability | 2024-03-25 00:00:00 |
| CVE-2021-44529 | 9.8 | True | Ivanti | Endpoint Manager Cloud Service Appliance (EPM CSA) | Ivanti Endpoint Manager Cloud Service Appliance (EPM CSA) Code Injection Vulnerability | 2024-03-25 00:00:00 |
| CVE-2019-7256 | 9.8 | True | Nice | Linear eMerge E3-Series | Nice Linear eMerge E3-Series OS Command Injection Vulnerability | 2024-03-25 00:00:00 |
| CVE-2024-27198 | 9.8 | True | JetBrains | TeamCity | JetBrains TeamCity Authentication Bypass Vulnerability | 2024-03-07 00:00:00 |
| CVE-2024-23296 | 7.8 | True | Apple | Multiple Products | Apple Multiple Products Memory Corruption Vulnerability | 2024-03-06 00:00:00 |
| CVE-2024-23225 | 7.8 | True | Apple | Multiple Products | Apple Multiple Products Memory Corruption Vulnerability | 2024-03-06 00:00:00 |
| CVE-2021-36380 | 9.8 | True | Sunhillo | SureLine | Sunhillo SureLine OS Command Injection Vulnerablity | 2024-03-05 00:00:00 |
| CVE-2023-21237 | 6.2 | True | Android | Pixel | Android Pixel Information Disclosure Vulnerability | 2024-03-05 00:00:00 |
| CVE-2024-21338 | 7.8 | True | Microsoft | Windows | Microsoft Windows Kernel Exposed IOCTL with Insufficient Access Control Vulnerability | 2024-03-04 00:00:00 |
| CVE-2023-29360 | 8.4 | True | Microsoft | Streaming Service | Microsoft Streaming Service Untrusted Pointer Dereference Vulnerability | 2024-02-29 00:00:00 |
| CVE-2024-1709 | 10.0 | True | ConnectWise | ScreenConnect | ConnectWise ScreenConnect Authentication Bypass Vulnerability | 2024-02-22 00:00:00 |
| CVE-2024-21410 | 9.8 | True | Microsoft | Exchange Server | Microsoft Exchange Server Privilege Escalation Vulnerability | 2024-02-15 00:00:00 |
| CVE-2020-3259 | 7.5 | True | Cisco | Adaptive Security Appliance (ASA) and Firepower Threat Defense (FTD) | Cisco ASA and FTD Information Disclosure Vulnerability | 2024-02-15 00:00:00 |
| CVE-2024-21351 | 7.6 | True | Microsoft | Windows | Microsoft Windows SmartScreen Security Feature Bypass Vulnerability | 2024-02-13 00:00:00 |
| CVE-2024-21412 | 8.1 | True | Microsoft | Windows | Microsoft Windows Internet Shortcut Files Security Feature Bypass Vulnerability | 2024-02-13 00:00:00 |
| CVE-2023-43770 | 6.1 | True | Roundcube | Webmail | Roundcube Webmail Persistent Cross-Site Scripting (XSS) Vulnerability | 2024-02-12 00:00:00 |
| CVE-2024-21762 | 9.6 | True | Fortinet | FortiOS | Fortinet FortiOS Out-of-Bound Write Vulnerability | 2024-02-09 00:00:00 |
| CVE-2023-4762 | 8.8 | True | Chromium V8 | Google Chromium V8 Type Confusion Vulnerability | 2024-02-06 00:00:00 | |
| CVE-2024-21893 | 8.2 | True | Ivanti | Connect Secure, Policy Secure, and Neurons | Ivanti Connect Secure, Policy Secure, and Neurons Server-Side Request Forgery (SSRF) Vulnerability | 2024-01-31 00:00:00 |
| CVE-2022-48618 | 7.0 | True | Apple | Multiple Products | Apple Multiple Products Memory Corruption Vulnerability | 2024-01-31 00:00:00 |
| CVE-2023-22527 | 10.0 | True | Atlassian | Confluence Data Center and Server | Atlassian Confluence Data Center and Server Template Injection Vulnerability | 2024-01-24 00:00:00 |
| CVE-2024-23222 | 8.8 | True | Apple | Multiple Products | Apple Multiple Products WebKit Type Confusion Vulnerability | 2024-01-23 00:00:00 |
| CVE-2023-34048 | 9.8 | True | VMware | vCenter Server | VMware vCenter Server Out-of-Bounds Write Vulnerability | 2024-01-22 00:00:00 |
| CVE-2023-35082 | 10.0 | True | Ivanti | Endpoint Manager Mobile (EPMM) and MobileIron Core | Ivanti Endpoint Manager Mobile (EPMM) and MobileIron Core Authentication Bypass Vulnerability | 2024-01-18 00:00:00 |
| CVE-2023-6548 | 5.5 | True | Citrix | NetScaler ADC and NetScaler Gateway | Citrix NetScaler ADC and NetScaler Gateway Code Injection Vulnerability | 2024-01-17 00:00:00 |
| CVE-2023-6549 | 8.2 | True | Citrix | NetScaler ADC and NetScaler Gateway | Citrix NetScaler ADC and NetScaler Gateway Buffer Overflow Vulnerability | 2024-01-17 00:00:00 |
| CVE-2024-0519 | 8.8 | True | Chromium V8 | Google Chromium V8 Out-of-Bounds Memory Access Vulnerability | 2024-01-17 00:00:00 | |
| CVE-2018-15133 | 8.1 | True | Laravel | Laravel Framework | Laravel Deserialization of Untrusted Data Vulnerability | 2024-01-16 00:00:00 |
| CVE-2024-21887 | 9.1 | True | Ivanti | Connect Secure and Policy Secure | Ivanti Connect Secure and Policy Secure Command Injection Vulnerability | 2024-01-10 00:00:00 |
| CVE-2023-46805 | 8.2 | True | Ivanti | Connect Secure and Policy Secure | Ivanti Connect Secure and Policy Secure Authentication Bypass Vulnerability | 2024-01-10 00:00:00 |
| CVE-2023-29357 | 9.8 | True | Microsoft | SharePoint Server | Microsoft SharePoint Server Privilege Escalation Vulnerability | 2024-01-10 00:00:00 |
| CVE-2023-38203 | 9.8 | True | Adobe | ColdFusion | Adobe ColdFusion Deserialization of Untrusted Data Vulnerability | 2024-01-08 00:00:00 |
| CVE-2023-29300 | 9.8 | True | Adobe | ColdFusion | Adobe ColdFusion Deserialization of Untrusted Data Vulnerability | 2024-01-08 00:00:00 |
| CVE-2023-27524 | 8.9 | True | Apache | Superset | Apache Superset Insecure Default Initialization of Resource Vulnerability | 2024-01-08 00:00:00 |
| CVE-2023-41990 | 7.8 | True | Apple | Multiple Products | Apple Multiple Products Code Execution Vulnerability | 2024-01-08 00:00:00 |
| CVE-2016-20017 | 9.8 | True | D-Link | DSL-2750B Devices | D-Link DSL-2750B Devices Command Injection Vulnerability | 2024-01-08 00:00:00 |
| CVE-2023-23752 | 5.3 | True | Joomla! | Joomla! | Joomla! Improper Access Control Vulnerability | 2024-01-08 00:00:00 |
| CVE-2023-7024 | 8.8 | True | Chromium WebRTC | Google Chromium WebRTC Heap Buffer Overflow Vulnerability | 2024-01-02 00:00:00 | |
| CVE-2023-7101 | 7.8 | True | Spreadsheet::ParseExcel | Spreadsheet::ParseExcel | Spreadsheet::ParseExcel Remote Code Execution Vulnerability | 2024-01-02 00:00:00 |
| CVE-2023-47565 | 8.0 | True | QNAP | VioStor NVR | QNAP VioStor NVR OS Command Injection Vulnerability | 2023-12-21 00:00:00 |
| CVE-2023-49897 | 8.8 | True | FXC | AE1021, AE1021PE | FXC AE1021, AE1021PE OS Command Injection Vulnerability | 2023-12-21 00:00:00 |
| CVE-2023-6448 | 9.8 | True | Unitronics | Vision PLC and HMI | Unitronics Vision PLC and HMI Insecure Default Password Vulnerability | 2023-12-11 00:00:00 |
| CVE-2023-41265 | 9.6 | True | Qlik | Sense | Qlik Sense HTTP Tunneling Vulnerability | 2023-12-07 00:00:00 |
| CVE-2023-41266 | 8.2 | True | Qlik | Sense | Qlik Sense Path Traversal Vulnerability | 2023-12-07 00:00:00 |
| CVE-2022-22071 | 8.4 | True | Qualcomm | Multiple Chipsets | Qualcomm Multiple Chipsets Use-After-Free Vulnerability | 2023-12-05 00:00:00 |
| CVE-2023-33063 | 7.8 | True | Qualcomm | Multiple Chipsets | Qualcomm Multiple Chipsets Use-After-Free Vulnerability | 2023-12-05 00:00:00 |
| CVE-2023-33106 | 8.4 | True | Qualcomm | Multiple Chipsets | Qualcomm Multiple Chipsets Use of Out-of-Range Pointer Offset Vulnerability | 2023-12-05 00:00:00 |
| CVE-2023-33107 | 8.4 | True | Qualcomm | Multiple Chipsets | Qualcomm Multiple Chipsets Integer Overflow Vulnerability | 2023-12-05 00:00:00 |
| CVE-2023-42916 | 6.5 | True | Apple | Multiple Products | Apple Multiple Products WebKit Out-of-Bounds Read Vulnerability | 2023-12-04 00:00:00 |
| CVE-2023-42917 | 8.8 | True | Apple | Multiple Products | Apple Multiple Products WebKit Memory Corruption Vulnerability | 2023-12-04 00:00:00 |
| CVE-2023-49103 | 10.0 | True | ownCloud | ownCloud graphapi | ownCloud graphapi Information Disclosure Vulnerability | 2023-11-30 00:00:00 |
| CVE-2023-6345 | 9.6 | True | Chromium Skia | Google Skia Integer Overflow Vulnerability | 2023-11-30 00:00:00 | |
| CVE-2023-4911 | 7.8 | True | GNU | GNU C Library | GNU C Library Buffer Overflow Vulnerability | 2023-11-21 00:00:00 |
| CVE-2020-2551 | 9.8 | True | Oracle | Fusion Middleware | Oracle Fusion Middleware Unspecified Vulnerability | 2023-11-16 00:00:00 |
| CVE-2023-1671 | 9.8 | True | Sophos | Web Appliance | Sophos Web Appliance Command Injection Vulnerability | 2023-11-16 00:00:00 |
| CVE-2023-36584 | 5.4 | True | Microsoft | Windows | Microsoft Windows Mark of the Web (MOTW) Security Feature Bypass Vulnerability | 2023-11-16 00:00:00 |
| CVE-2023-36036 | 7.8 | True | Microsoft | Windows | Microsoft Windows Cloud Files Mini Filter Driver Privilege Escalation Vulnerability | 2023-11-14 00:00:00 |
| CVE-2023-36025 | 8.8 | True | Microsoft | Windows | Microsoft Windows SmartScreen Security Feature Bypass Vulnerability | 2023-11-14 00:00:00 |
| CVE-2023-36033 | 7.8 | True | Microsoft | Windows | Microsoft Windows Desktop Window Manager (DWM) Core Library Privilege Escalation Vulnerability | 2023-11-14 00:00:00 |
| CVE-2023-36851 | 5.3 | True | Juniper | Junos OS | Juniper Junos OS SRX Series Missing Authentication for Critical Function Vulnerability | 2023-11-13 00:00:00 |
| CVE-2023-36847 | 5.3 | True | Juniper | Junos OS | Juniper Junos OS EX Series Missing Authentication for Critical Function Vulnerability | 2023-11-13 00:00:00 |
| CVE-2023-36846 | 5.3 | True | Juniper | Junos OS | Juniper Junos OS SRX Series Missing Authentication for Critical Function Vulnerability | 2023-11-13 00:00:00 |
| CVE-2023-36845 | 9.8 | True | Juniper | Junos OS | Juniper Junos OS EX Series and SRX Series PHP External Variable Modification Vulnerability | 2023-11-13 00:00:00 |
| CVE-2023-36844 | 5.3 | True | Juniper | Junos OS | Juniper Junos OS EX Series PHP External Variable Modification Vulnerability | 2023-11-13 00:00:00 |
| CVE-2023-47246 | 9.8 | True | SysAid | SysAid Server | SysAid Server Path Traversal Vulnerability | 2023-11-13 00:00:00 |
| CVE-2023-29552 | 7.5 | True | IETF | Service Location Protocol (SLP) | Service Location Protocol (SLP) Denial-of-Service Vulnerability | 2023-11-08 00:00:00 |
| CVE-2023-22518 | 10.0 | True | Atlassian | Confluence Data Center and Server | Atlassian Confluence Data Center and Server Improper Authorization Vulnerability | 2023-11-07 00:00:00 |
| CVE-2023-46604 | 10.0 | True | Apache | ActiveMQ | Apache ActiveMQ Deserialization of Untrusted Data Vulnerability | 2023-11-02 00:00:00 |
| CVE-2023-46747 | 9.8 | True | F5 | BIG-IP Configuration Utility | F5 BIG-IP Configuration Utility Authentication Bypass Vulnerability | 2023-10-31 00:00:00 |
| CVE-2023-46748 | 8.8 | True | F5 | BIG-IP Configuration Utility | F5 BIG-IP Configuration Utility SQL Injection Vulnerability | 2023-10-31 00:00:00 |
| CVE-2023-5631 | 6.1 | True | Roundcube | Webmail | Roundcube Webmail Persistent Cross-Site Scripting (XSS) Vulnerability | 2023-10-26 00:00:00 |
| CVE-2023-20273 | 7.2 | True | Cisco | Cisco IOS XE Web UI | Cisco IOS XE Web UI Command Injection Vulnerability | 2023-10-23 00:00:00 |
| CVE-2023-4966 | 9.4 | True | Citrix | NetScaler ADC and NetScaler Gateway | Citrix NetScaler ADC and NetScaler Gateway Buffer Overflow Vulnerability | 2023-10-18 00:00:00 |
| CVE-2023-20198 | 10.0 | True | Cisco | IOS XE Web UI | Cisco IOS XE Web UI Privilege Escalation Vulnerability | 2023-10-16 00:00:00 |
| CVE-2023-44487 | 7.5 | True | IETF | HTTP/2 | HTTP/2 Rapid Reset Attack Vulnerability | 2023-10-10 00:00:00 |
| CVE-2023-36563 | 6.5 | True | Microsoft | WordPad | Microsoft WordPad Information Disclosure Vulnerability | 2023-10-10 00:00:00 |
| CVE-2023-41763 | 5.3 | True | Microsoft | Skype for Business | Microsoft Skype for Business Privilege Escalation Vulnerability | 2023-10-10 00:00:00 |
| CVE-2023-20109 | 6.6 | True | Cisco | IOS and IOS XE | Cisco IOS and IOS XE Group Encrypted Transport VPN Out-of-Bounds Write Vulnerability | 2023-10-10 00:00:00 |
| CVE-2023-21608 | 7.8 | True | Adobe | Acrobat and Reader | Adobe Acrobat and Reader Use-After-Free Vulnerability | 2023-10-10 00:00:00 |
| CVE-2023-42824 | 7.8 | True | Apple | iOS and iPadOS | Apple iOS and iPadOS Kernel Privilege Escalation Vulnerability | 2023-10-05 00:00:00 |
| CVE-2023-40044 | 10.0 | True | Progress | WS_FTP Server | Progress WS_FTP Server Deserialization of Untrusted Data Vulnerability | 2023-10-05 00:00:00 |
| CVE-2023-22515 | 9.8 | True | Atlassian | Confluence Data Center and Server | Atlassian Confluence Data Center and Server Broken Access Control Vulnerability | 2023-10-05 00:00:00 |
| CVE-2023-28229 | 7.0 | True | Microsoft | Windows CNG Key Isolation Service | Microsoft Windows CNG Key Isolation Service Privilege Escalation Vulnerability | 2023-10-04 00:00:00 |
| CVE-2023-42793 | 9.8 | True | JetBrains | TeamCity | JetBrains TeamCity Authentication Bypass Vulnerability | 2023-10-04 00:00:00 |
| CVE-2023-4211 | 5.5 | True | Arm | Mali GPU Kernel Driver | Arm Mali GPU Kernel Driver Use-After-Free Vulnerability | 2023-10-03 00:00:00 |
| CVE-2023-5217 | 8.8 | True | Chromium libvpx | Google Chromium libvpx Heap Buffer Overflow Vulnerability | 2023-10-02 00:00:00 | |
| CVE-2018-14667 | 9.8 | True | Red Hat | JBoss RichFaces Framework | Red Hat JBoss RichFaces Framework Expression Language Injection Vulnerability | 2023-09-28 00:00:00 |
| CVE-2023-41993 | 8.8 | True | Apple | Multiple Products | Apple Multiple Products WebKit Code Execution Vulnerability | 2023-09-25 00:00:00 |
| CVE-2023-41992 | 7.8 | True | Apple | Multiple Products | Apple Multiple Products Kernel Privilege Escalation Vulnerability | 2023-09-25 00:00:00 |
| CVE-2023-41991 | 5.5 | True | Apple | Multiple Products | Apple Multiple Products Improper Certificate Validation Vulnerability | 2023-09-25 00:00:00 |
| CVE-2023-41179 | 7.2 | True | Trend Micro | Apex One and Worry-Free Business Security | Trend Micro Apex One and Worry-Free Business Security Remote Code Execution Vulnerability | 2023-09-21 00:00:00 |
| CVE-2023-28434 | 8.8 | True | MinIO | MinIO | MinIO Security Feature Bypass Vulnerability | 2023-09-19 00:00:00 |
| CVE-2021-3129 | 9.8 | True | Laravel | Ignition | Laravel Ignition File Upload Vulnerability | 2023-09-18 00:00:00 |
| CVE-2017-6884 | 8.8 | True | Zyxel | EMG2926 Routers | Zyxel EMG2926 Routers Command Injection Vulnerability | 2023-09-18 00:00:00 |
| CVE-2014-8361 | 9.8 | True | Realtek | SDK | Realtek SDK Improper Input Validation Vulnerability | 2023-09-18 00:00:00 |
| CVE-2022-22265 | 5.0 | True | Samsung | Mobile Devices | Samsung Mobile Devices Use-After-Free Vulnerability | 2023-09-18 00:00:00 |
| CVE-2023-26369 | 7.8 | True | Adobe | Acrobat and Reader | Adobe Acrobat and Reader Out-of-Bounds Write Vulnerability | 2023-09-14 00:00:00 |
| CVE-2023-4863 | 8.8 | True | Chromium WebP | Google Chromium WebP Heap-Based Buffer Overflow Vulnerability | 2023-09-13 00:00:00 | |
| CVE-2023-20269 | 5.0 | True | Cisco | Adaptive Security Appliance and Firepower Threat Defense | Cisco Adaptive Security Appliance and Firepower Threat Defense Unauthorized Access Vulnerability | 2023-09-13 00:00:00 |
| CVE-2023-35674 | 8.8 | True | Android | Framework | Android Framework Privilege Escalation Vulnerability | 2023-09-13 00:00:00 |
| CVE-2023-36802 | 7.8 | True | Microsoft | Streaming Service Proxy | Microsoft Streaming Service Proxy Privilege Escalation Vulnerability | 2023-09-12 00:00:00 |
| CVE-2023-36761 | 6.5 | True | Microsoft | Word | Microsoft Word Information Disclosure Vulnerability | 2023-09-12 00:00:00 |
| CVE-2023-41061 | 7.8 | True | Apple | iOS, iPadOS, and watchOS | Apple iOS, iPadOS, and watchOS Wallet Code Execution Vulnerability | 2023-09-11 00:00:00 |
| CVE-2023-41064 | 7.8 | True | Apple | iOS, iPadOS, and macOS | Apple iOS, iPadOS, and macOS ImageIO Buffer Overflow Vulnerability | 2023-09-11 00:00:00 |
| CVE-2023-33246 | 9.8 | True | Apache | RocketMQ | Apache RocketMQ Command Execution Vulnerability | 2023-09-06 00:00:00 |
| CVE-2023-32315 | 8.6 | True | Ignite Realtime | Openfire | Ignite Realtime Openfire Path Traversal Vulnerability | 2023-08-24 00:00:00 |
| CVE-2023-38831 | 7.8 | True | RARLAB | WinRAR | RARLAB WinRAR Code Execution Vulnerability | 2023-08-24 00:00:00 |
| CVE-2023-27532 | 7.5 | True | Veeam | Backup & Replication | Veeam Backup & Replication Cloud Connect Missing Authentication for Critical Function Vulnerability | 2023-08-22 00:00:00 |
| CVE-2023-38035 | 9.8 | True | Ivanti | Sentry | Ivanti Sentry Authentication Bypass Vulnerability | 2023-08-22 00:00:00 |
| CVE-2023-26359 | 9.8 | True | Adobe | ColdFusion | Adobe ColdFusion Deserialization of Untrusted Data Vulnerability | 2023-08-21 00:00:00 |
| CVE-2023-24489 | 9.8 | True | Citrix | Content Collaboration | Citrix Content Collaboration ShareFile Improper Access Control Vulnerability | 2023-08-16 00:00:00 |
| CVE-2023-38180 | 7.5 | True | Microsoft | .NET Core and Visual Studio | Microsoft .NET Core and Visual Studio Denial-of-Service Vulnerability | 2023-08-09 00:00:00 |
| CVE-2017-18368 | 9.8 | True | Zyxel | P660HN-T1A Routers | Zyxel P660HN-T1A Routers Command Injection Vulnerability | 2023-08-07 00:00:00 |
| CVE-2023-35081 | 7.2 | True | Ivanti | Endpoint Manager Mobile (EPMM) | Ivanti Endpoint Manager Mobile (EPMM) Path Traversal Vulnerability | 2023-07-31 00:00:00 |
| CVE-2023-37580 | 6.1 | True | Synacor | Zimbra Collaboration Suite (ZCS) | Synacor Zimbra Collaboration Suite (ZCS) Cross-Site Scripting (XSS) Vulnerability | 2023-07-27 00:00:00 |
| CVE-2023-38606 | 5.5 | True | Apple | Multiple Products | Apple Multiple Products Kernel Unspecified Vulnerability | 2023-07-26 00:00:00 |
| CVE-2023-35078 | 10.0 | True | Ivanti | Endpoint Manager Mobile (EPMM) | Ivanti Endpoint Manager Mobile Authentication Bypass Vulnerability | 2023-07-25 00:00:00 |
| CVE-2023-38205 | 7.5 | True | Adobe | ColdFusion | Adobe ColdFusion Improper Access Control Vulnerability | 2023-07-20 00:00:00 |
| CVE-2023-29298 | 7.5 | True | Adobe | ColdFusion | Adobe ColdFusion Improper Access Control Vulnerability | 2023-07-20 00:00:00 |
| CVE-2023-3519 | 9.8 | True | Citrix | NetScaler ADC and NetScaler Gateway | Citrix NetScaler ADC and NetScaler Gateway Code Injection Vulnerability | 2023-07-19 00:00:00 |
| CVE-2023-36884 | 7.5 | True | Microsoft | Windows | Microsoft Windows Search Remote Code Execution Vulnerability | 2023-07-17 00:00:00 |
| CVE-2023-37450 | 8.8 | True | Apple | Multiple Products | Apple Multiple Products WebKit Code Execution Vulnerability | 2023-07-13 00:00:00 |
| CVE-2022-29303 | 9.8 | True | SolarView | Compact | SolarView Compact Command Injection Vulnerability | 2023-07-13 00:00:00 |
| CVE-2022-31199 | 9.8 | True | Netwrix | Auditor | Netwrix Auditor Insecure Object Deserialization Vulnerability | 2023-07-11 00:00:00 |
| CVE-2023-36874 | 7.8 | True | Microsoft | Windows | Microsoft Windows Error Reporting Service Privilege Escalation Vulnerability | 2023-07-11 00:00:00 |
| CVE-2023-35311 | 7.5 | True | Microsoft | Outlook | Microsoft Outlook Security Feature Bypass Vulnerability | 2023-07-11 00:00:00 |
| CVE-2023-32049 | 8.8 | True | Microsoft | Windows | Microsoft Windows Defender SmartScreen Security Feature Bypass Vulnerability | 2023-07-11 00:00:00 |
| CVE-2023-32046 | 7.8 | True | Microsoft | Windows | Microsoft Windows MSHTML Platform Privilege Escalation Vulnerability | 2023-07-11 00:00:00 |
| CVE-2021-29256 | 8.8 | True | Arm | Mali Graphics Processing Unit (GPU) | Arm Mali GPU Kernel Driver Use-After-Free Vulnerability | 2023-07-07 00:00:00 |
| CVE-2021-25372 | 6.1 | True | Samsung | Mobile Devices | Samsung Mobile Devices Improper Boundary Check Vulnerability | 2023-06-29 00:00:00 |
| CVE-2021-25371 | 6.1 | True | Samsung | Mobile Devices | Samsung Mobile Devices Unspecified Vulnerability | 2023-06-29 00:00:00 |
| CVE-2021-25395 | 6.4 | True | Samsung | Mobile Devices | Samsung Mobile Devices Race Condition Vulnerability | 2023-06-29 00:00:00 |
| CVE-2021-25394 | 6.4 | True | Samsung | Mobile Devices | Samsung Mobile Devices Race Condition Vulnerability | 2023-06-29 00:00:00 |
| CVE-2021-25489 | 3.3 | True | Samsung | Mobile Devices | Samsung Mobile Devices Improper Input Validation Vulnerability | 2023-06-29 00:00:00 |
| CVE-2021-25487 | 7.3 | True | Samsung | Mobile Devices | Samsung Mobile Devices Out-of-Bounds Read Vulnerability | 2023-06-29 00:00:00 |
| CVE-2019-20500 | 7.8 | True | D-Link | DWL-2600AP Access Point | D-Link DWL-2600AP Access Point Command Injection Vulnerability | 2023-06-29 00:00:00 |
| CVE-2019-17621 | 9.8 | True | D-Link | DIR-859 Router | D-Link DIR-859 Router Command Execution Vulnerability | 2023-06-29 00:00:00 |
| CVE-2023-27992 | 9.8 | True | Zyxel | Multiple Network-Attached Storage (NAS) Devices | Zyxel Multiple NAS Devices Command Injection Vulnerability | 2023-06-23 00:00:00 |
| CVE-2023-20867 | 3.9 | True | VMware | Tools | VMware Tools Authentication Bypass Vulnerability | 2023-06-23 00:00:00 |
| CVE-2023-32439 | 8.8 | True | Apple | Multiple Products | Apple Multiple Products WebKit Type Confusion Vulnerability | 2023-06-23 00:00:00 |
| CVE-2023-32435 | 8.8 | True | Apple | Multiple Products | Apple Multiple Products WebKit Memory Corruption Vulnerability | 2023-06-23 00:00:00 |
| CVE-2023-32434 | 7.8 | True | Apple | Multiple Products | Apple Multiple Products Integer Overflow Vulnerability | 2023-06-23 00:00:00 |
| CVE-2016-0165 | 7.8 | True | Microsoft | Win32k | Microsoft Win32k Privilege Escalation Vulnerability | 2023-06-22 00:00:00 |
| CVE-2016-9079 | 7.5 | True | Mozilla | Firefox, Firefox ESR, and Thunderbird | Mozilla Firefox, Firefox ESR, and Thunderbird Use-After-Free Vulnerability | 2023-06-22 00:00:00 |
| CVE-2021-44026 | 9.8 | True | Roundcube | Roundcube Webmail | Roundcube Webmail SQL Injection Vulnerability | 2023-06-22 00:00:00 |
| CVE-2020-12641 | 9.8 | True | Roundcube | Roundcube Webmail | Roundcube Webmail Remote Code Execution Vulnerability | 2023-06-22 00:00:00 |
| CVE-2020-35730 | 6.1 | True | Roundcube | Roundcube Webmail | Roundcube Webmail Cross-Site Scripting (XSS) Vulnerability | 2023-06-22 00:00:00 |
| CVE-2023-20887 | 9.8 | True | VMware | Aria Operations for Networks | Vmware Aria Operations for Networks Command Injection Vulnerability | 2023-06-22 00:00:00 |
| CVE-2023-27997 | 9.2 | True | Fortinet | FortiOS and FortiProxy SSL-VPN | Fortinet FortiOS and FortiProxy SSL-VPN Heap-Based Buffer Overflow Vulnerability | 2023-06-13 00:00:00 |
| CVE-2023-3079 | 8.8 | True | Chromium V8 | Google Chromium V8 Type Confusion Vulnerability | 2023-06-07 00:00:00 | |
| CVE-2023-33010 | 9.8 | True | Zyxel | Multiple Firewalls | Zyxel Multiple Firewalls Buffer Overflow Vulnerability | 2023-06-05 00:00:00 |
| CVE-2023-33009 | 9.8 | True | Zyxel | Multiple Firewalls | Zyxel Multiple Firewalls Buffer Overflow Vulnerability | 2023-06-05 00:00:00 |
| CVE-2023-34362 | 9.8 | True | Progress | MOVEit Transfer | Progress MOVEit Transfer SQL Injection Vulnerability | 2023-06-02 00:00:00 |
| CVE-2023-28771 | 9.8 | True | Zyxel | Multiple Firewalls | Zyxel Multiple Firewalls OS Command Injection Vulnerability | 2023-05-31 00:00:00 |
| CVE-2023-2868 | 9.4 | True | Barracuda Networks | Email Security Gateway (ESG) Appliance | Barracuda Networks ESG Appliance Improper Input Validation Vulnerability | 2023-05-26 00:00:00 |
| CVE-2023-32373 | 8.8 | True | Apple | Multiple Products | Apple Multiple Products WebKit Use-After-Free Vulnerability | 2023-05-22 00:00:00 |
| CVE-2023-28204 | 6.5 | True | Apple | Multiple Products | Apple Multiple Products WebKit Out-of-Bounds Read Vulnerability | 2023-05-22 00:00:00 |
| CVE-2023-32409 | 8.6 | True | Apple | Multiple Products | Apple Multiple Products WebKit Sandbox Escape Vulnerability | 2023-05-22 00:00:00 |
| CVE-2023-21492 | 4.4 | True | Samsung | Mobile Devices | Samsung Mobile Devices Insertion of Sensitive Information Into Log File Vulnerability | 2023-05-19 00:00:00 |
| CVE-2016-6415 | 7.5 | True | Cisco | IOS, IOS XR, and IOS XE | Cisco IOS, IOS XR, and IOS XE IKEv1 Information Disclosure Vulnerability | 2023-05-19 00:00:00 |
| CVE-2004-1464 | 5.9 | True | Cisco | IOS | Cisco IOS Denial-of-Service Vulnerability | 2023-05-19 00:00:00 |
| CVE-2016-8735 | 9.8 | True | Apache | Tomcat | Apache Tomcat Remote Code Execution Vulnerability | 2023-05-12 00:00:00 |
| CVE-2016-3427 | 9.8 | True | Oracle | Java SE and JRockit | Oracle Java SE and JRockit Unspecified Vulnerability | 2023-05-12 00:00:00 |
| CVE-2015-5317 | 7.5 | True | Jenkins | Jenkins User Interface (UI) | Jenkins User Interface (UI) Information Disclosure Vulnerability | 2023-05-12 00:00:00 |
| CVE-2010-3904 | 7.8 | True | Linux | Kernel | Linux Kernel Improper Input Validation Vulnerability | 2023-05-12 00:00:00 |
| CVE-2014-0196 | 5.5 | True | Linux | Kernel | Linux Kernel Race Condition Vulnerability | 2023-05-12 00:00:00 |
| CVE-2021-3560 | 7.8 | True | Red Hat | Polkit | Red Hat Polkit Incorrect Authorization Vulnerability | 2023-05-12 00:00:00 |
| CVE-2023-25717 | 9.8 | True | Ruckus Wireless | Multiple Products | Multiple Ruckus Wireless Products CSRF and RCE Vulnerability | 2023-05-12 00:00:00 |
| CVE-2023-29336 | 7.8 | True | Microsoft | Win32k | Microsoft Win32K Privilege Escalation Vulnerability | 2023-05-09 00:00:00 |
| CVE-2023-21839 | 7.5 | True | Oracle | WebLogic Server | Oracle WebLogic Server Unspecified Vulnerability | 2023-05-01 00:00:00 |
| CVE-2021-45046 | 9.0 | True | Apache | Log4j2 | Apache Log4j2 Deserialization of Untrusted Data Vulnerability | 2023-05-01 00:00:00 |
| CVE-2023-1389 | 8.8 | True | TP-Link | Archer AX21 | TP-Link Archer AX-21 Command Injection Vulnerability | 2023-05-01 00:00:00 |
| CVE-2023-2136 | 9.6 | True | Chromium Skia | Google Chrome Skia Integer Overflow Vulnerability | 2023-04-21 00:00:00 | |
| CVE-2023-27350 | 9.8 | True | PaperCut | MF/NG | PaperCut MF/NG Improper Access Control Vulnerability | 2023-04-21 00:00:00 |
| CVE-2023-28432 | 7.5 | True | MinIO | MinIO | MinIO Information Disclosure Vulnerability | 2023-04-21 00:00:00 |
| CVE-2017-6742 | 8.8 | True | Cisco | IOS and IOS XE Software | Cisco IOS and IOS XE Software SNMP Remote Code Execution Vulnerability | 2023-04-19 00:00:00 |
| CVE-2023-2033 | 8.8 | True | Chromium V8 | Google Chromium V8 Type Confusion Vulnerability | 2023-04-17 00:00:00 | |
| CVE-2019-8526 | 7.8 | True | Apple | macOS | Apple macOS Use-After-Free Vulnerability | 2023-04-17 00:00:00 |
| CVE-2023-29492 | 9.8 | True | Novi Survey | Novi Survey | Novi Survey Insecure Deserialization Vulnerability | 2023-04-13 00:00:00 |
| CVE-2023-20963 | 7.8 | True | Android | Framework | Android Framework Privilege Escalation Vulnerability | 2023-04-13 00:00:00 |
| CVE-2023-28252 | 7.8 | True | Microsoft | Windows | Microsoft Windows Common Log File System (CLFS) Driver Privilege Escalation Vulnerability | 2023-04-11 00:00:00 |
| CVE-2023-28206 | 8.6 | True | Apple | iOS, iPadOS, and macOS | Apple iOS, iPadOS, and macOS IOSurfaceAccelerator Out-of-Bounds Write Vulnerability | 2023-04-10 00:00:00 |
| CVE-2023-28205 | 8.8 | True | Apple | Multiple Products | Apple Multiple Products WebKit Use-After-Free Vulnerability | 2023-04-10 00:00:00 |
| CVE-2023-26083 | 3.3 | True | Arm | Mali Graphics Processing Unit (GPU) | Arm Mali GPU Kernel Driver Information Disclosure Vulnerability | 2023-04-07 00:00:00 |
| CVE-2019-1388 | 7.8 | True | Microsoft | Windows | Microsoft Windows Certificate Dialog Privilege Escalation Vulnerability | 2023-04-07 00:00:00 |
| CVE-2021-27878 | 8.8 | True | Veritas | Backup Exec Agent | Veritas Backup Exec Agent Command Execution Vulnerability | 2023-04-07 00:00:00 |
| CVE-2021-27877 | 8.2 | True | Veritas | Backup Exec Agent | Veritas Backup Exec Agent Improper Authentication Vulnerability | 2023-04-07 00:00:00 |
| CVE-2021-27876 | 8.1 | True | Veritas | Backup Exec Agent | Veritas Backup Exec Agent File Access Vulnerability | 2023-04-07 00:00:00 |
| CVE-2022-27926 | 6.1 | True | Synacor | Zimbra Collaboration Suite (ZCS) | Synacor Zimbra Collaboration Suite (ZCS) Cross-Site Scripting (XSS) Vulnerability | 2023-04-03 00:00:00 |
| CVE-2022-22706 | 7.8 | True | Arm | Mali Graphics Processing Unit (GPU) | Arm Mali GPU Kernel Driver Unspecified Vulnerability | 2023-03-30 00:00:00 |
| CVE-2022-3038 | 8.8 | True | Chromium Network Service | Google Chromium Network Service Use-After-Free Vulnerability | 2023-03-30 00:00:00 | |
| CVE-2023-0266 | 7.9 | True | Linux | Kernel | Linux Kernel Use-After-Free Vulnerability | 2023-03-30 00:00:00 |
| CVE-2022-38181 | 8.8 | True | Arm | Mali Graphics Processing Unit (GPU) | Arm Mali GPU Kernel Driver Use-After-Free Vulnerability | 2023-03-30 00:00:00 |
| CVE-2021-30900 | 7.8 | True | Apple | iOS, iPadOS, and macOS | Apple iOS, iPadOS, and macOS Out-of-Bounds Write Vulnerability | 2023-03-30 00:00:00 |
| CVE-2022-39197 | 6.1 | True | Fortra | Cobalt Strike | Fortra Cobalt Strike Teamserver Cross-Site Scripting (XSS) Vulnerability | 2023-03-30 00:00:00 |
| CVE-2022-42948 | 9.8 | True | Fortra | Cobalt Strike | Fortra Cobalt Strike User Interface Remote Code Execution Vulnerability | 2023-03-30 00:00:00 |
| CVE-2017-7494 | 9.8 | True | Samba | Samba | Samba Remote Code Execution Vulnerability | 2023-03-30 00:00:00 |
| CVE-2013-3163 | 8.8 | True | Microsoft | Internet Explorer | Microsoft Internet Explorer Memory Corruption Vulnerability | 2023-03-30 00:00:00 |
| CVE-2023-26360 | 8.6 | True | Adobe | ColdFusion | Adobe ColdFusion Deserialization of Untrusted Data Vulnerability | 2023-03-15 00:00:00 |
| CVE-2022-41328 | 6.5 | True | Fortinet | FortiOS | Fortinet FortiOS Path Traversal Vulnerability | 2023-03-14 00:00:00 |
| CVE-2023-24880 | 4.4 | True | Microsoft | Windows | Microsoft Windows SmartScreen Security Feature Bypass Vulnerability | 2023-03-14 00:00:00 |
| CVE-2023-23397 | 9.8 | True | Microsoft | Office | Microsoft Office Outlook Privilege Escalation Vulnerability | 2023-03-14 00:00:00 |
| CVE-2020-5741 | 7.2 | True | Plex | Media Server | Plex Media Server Remote Code Execution Vulnerability | 2023-03-10 00:00:00 |
| CVE-2021-39144 | 8.5 | True | XStream | XStream | XStream Remote Code Execution Vulnerability | 2023-03-10 00:00:00 |
| CVE-2022-35914 | 9.8 | True | Teclib | GLPI | Teclib GLPI Remote Code Execution Vulnerability | 2023-03-07 00:00:00 |
| CVE-2022-33891 | 8.8 | True | Apache | Spark | Apache Spark Command Injection Vulnerability | 2023-03-07 00:00:00 |
| CVE-2022-28810 | 6.8 | True | Zoho | ManageEngine | Zoho ManageEngine ADSelfService Plus Remote Code Execution Vulnerability | 2023-03-07 00:00:00 |
| CVE-2022-36537 | 7.5 | True | ZK Framework | AuUploader | ZK Framework AuUploader Unspecified Vulnerability | 2023-02-27 00:00:00 |
| CVE-2022-40765 | 6.8 | True | Mitel | MiVoice Connect | Mitel MiVoice Connect Command Injection Vulnerability | 2023-02-21 00:00:00 |
| CVE-2022-41223 | 6.8 | True | Mitel | MiVoice Connect | Mitel MiVoice Connect Code Injection Vulnerability | 2023-02-21 00:00:00 |
| CVE-2022-47986 | 9.8 | True | IBM | Aspera Faspex | IBM Aspera Faspex Code Execution Vulnerability | 2023-02-21 00:00:00 |
| CVE-2022-46169 | 9.8 | True | Cacti | Cacti | Cacti Command Injection Vulnerability | 2023-02-16 00:00:00 |
| CVE-2023-21823 | 7.8 | True | Microsoft | Windows | Microsoft Windows Graphic Component Privilege Escalation Vulnerability | 2023-02-14 00:00:00 |
| CVE-2023-23529 | 8.8 | True | Apple | Multiple Products | Apple Multiple Products WebKit Type Confusion Vulnerability | 2023-02-14 00:00:00 |
| CVE-2023-23376 | 7.8 | True | Microsoft | Windows | Microsoft Windows Common Log File System (CLFS) Driver Privilege Escalation Vulnerability | 2023-02-14 00:00:00 |
| CVE-2023-21715 | 7.3 | True | Microsoft | Office | Microsoft Office Publisher Security Feature Bypass Vulnerability | 2023-02-14 00:00:00 |
| CVE-2023-0669 | 7.2 | True | Fortra | GoAnywhere MFT | Fortra GoAnywhere MFT Remote Code Execution Vulnerability | 2023-02-10 00:00:00 |
| CVE-2022-24990 | 9.8 | True | TerraMaster | TerraMaster OS | TerraMaster OS Remote Command Execution Vulnerability | 2023-02-10 00:00:00 |
| CVE-2015-2291 | 7.8 | True | Intel | Ethernet Diagnostics Driver for Windows | Intel Ethernet Diagnostics Driver for Windows Denial-of-Service Vulnerability | 2023-02-10 00:00:00 |
| CVE-2023-22952 | 8.8 | True | SugarCRM | Multiple Products | Multiple SugarCRM Products Remote Code Execution Vulnerability | 2023-02-02 00:00:00 |
| CVE-2022-21587 | 9.8 | True | Oracle | E-Business Suite | Oracle E-Business Suite Unspecified Vulnerability | 2023-02-02 00:00:00 |
| CVE-2017-11357 | 9.8 | True | Telerik | User Interface (UI) for ASP.NET AJAX | Telerik UI for ASP.NET AJAX Insecure Direct Object Reference Vulnerability | 2023-01-26 00:00:00 |
| CVE-2022-47966 | 9.8 | True | Zoho | ManageEngine | Zoho ManageEngine Multiple Products Remote Code Execution Vulnerability | 2023-01-23 00:00:00 |
| CVE-2022-44877 | 9.8 | True | CWP | Control Web Panel | CWP Control Web Panel OS Command Injection Vulnerability | 2023-01-17 00:00:00 |
| CVE-2023-21674 | 8.8 | True | Microsoft | Windows | Microsoft Windows Advanced Local Procedure Call (ALPC) Privilege Escalation Vulnerability | 2023-01-10 00:00:00 |
| CVE-2022-41080 | 8.8 | True | Microsoft | Exchange Server | Microsoft Exchange Server Privilege Escalation Vulnerability | 2023-01-10 00:00:00 |
| CVE-2018-18809 | 9.9 | True | TIBCO | JasperReports | TIBCO JasperReports Library Directory Traversal Vulnerability | 2022-12-29 00:00:00 |
| CVE-2018-5430 | 7.7 | True | TIBCO | JasperReports | TIBCO JasperReports Server Information Disclosure Vulnerability | 2022-12-29 00:00:00 |
| CVE-2022-42856 | 8.8 | True | Apple | iOS | Apple iOS Type Confusion Vulnerability | 2022-12-14 00:00:00 |
| CVE-2022-26501 | 9.8 | True | Veeam | Backup & Replication | Veeam Backup & Replication Remote Code Execution Vulnerability | 2022-12-13 00:00:00 |
| CVE-2022-26500 | 8.8 | True | Veeam | Backup & Replication | Veeam Backup & Replication Remote Code Execution Vulnerability | 2022-12-13 00:00:00 |
| CVE-2022-27518 | 9.8 | True | Citrix | Application Delivery Controller (ADC) and Gateway | Citrix Application Delivery Controller (ADC) and Gateway Authentication Bypass Vulnerability | 2022-12-13 00:00:00 |
| CVE-2022-44698 | 5.4 | True | Microsoft | Defender | Microsoft Defender SmartScreen Security Feature Bypass Vulnerability | 2022-12-13 00:00:00 |
| CVE-2022-42475 | 9.3 | True | Fortinet | FortiOS | Fortinet FortiOS Heap-Based Buffer Overflow Vulnerability | 2022-12-13 00:00:00 |
| CVE-2022-4262 | 8.8 | True | Chromium V8 | Google Chromium V8 Type Confusion Vulnerability | 2022-12-05 00:00:00 | |
| CVE-2022-4135 | 9.6 | True | Chromium GPU | Google Chromium GPU Heap Buffer Overflow Vulnerability | 2022-11-28 00:00:00 | |
| CVE-2021-35587 | 9.8 | True | Oracle | Fusion Middleware | Oracle Fusion Middleware Unspecified Vulnerability | 2022-11-28 00:00:00 |
| CVE-2022-41049 | 5.4 | True | Microsoft | Windows | Microsoft Windows Mark of the Web (MOTW) Security Feature Bypass Vulnerability | 2022-11-14 00:00:00 |
| CVE-2021-25370 | 6.1 | True | Samsung | Mobile Devices | Samsung Mobile Devices Memory Corruption Vulnerability | 2022-11-08 00:00:00 |
| CVE-2021-25369 | 6.2 | True | Samsung | Mobile Devices | Samsung Mobile Devices Improper Access Control Vulnerability | 2022-11-08 00:00:00 |
| CVE-2021-25337 | 4.4 | True | Samsung | Mobile Devices | Samsung Mobile Devices Improper Access Control Vulnerability | 2022-11-08 00:00:00 |
| CVE-2022-41128 | 8.8 | True | Microsoft | Windows | Microsoft Windows Scripting Languages Remote Code Execution Vulnerability | 2022-11-08 00:00:00 |
| CVE-2022-41125 | 7.8 | True | Microsoft | Windows | Microsoft Windows CNG Key Isolation Service Privilege Escalation Vulnerability | 2022-11-08 00:00:00 |
| CVE-2022-41073 | 7.8 | True | Microsoft | Windows | Microsoft Windows Print Spooler Privilege Escalation Vulnerability | 2022-11-08 00:00:00 |
| CVE-2022-41091 | 5.4 | True | Microsoft | Windows | Microsoft Windows Mark of the Web (MOTW) Security Feature Bypass Vulnerability | 2022-11-08 00:00:00 |
| CVE-2022-3723 | 8.8 | True | Chromium V8 | Google Chromium V8 Type Confusion Vulnerability | 2022-10-28 00:00:00 | |
| CVE-2022-42827 | 7.8 | True | Apple | iOS and iPadOS | Apple iOS and iPadOS Out-of-Bounds Write Vulnerability | 2022-10-25 00:00:00 |
| CVE-2018-19320 | 7.8 | True | GIGABYTE | Multiple Products | GIGABYTE Multiple Products Unspecified Vulnerability | 2022-10-24 00:00:00 |
| CVE-2018-19321 | 7.8 | True | GIGABYTE | Multiple Products | GIGABYTE Multiple Products Privilege Escalation Vulnerability | 2022-10-24 00:00:00 |
| CVE-2018-19322 | 7.8 | True | GIGABYTE | Multiple Products | GIGABYTE Multiple Products Code Execution Vulnerability | 2022-10-24 00:00:00 |
| CVE-2018-19323 | 9.8 | True | GIGABYTE | Multiple Products | GIGABYTE Multiple Products Privilege Escalation Vulnerability | 2022-10-24 00:00:00 |
| CVE-2020-3153 | 6.5 | True | Cisco | AnyConnect Secure | Cisco AnyConnect Secure Mobility Client for Windows Uncontrolled Search Path Vulnerability | 2022-10-24 00:00:00 |
| CVE-2020-3433 | 7.8 | True | Cisco | AnyConnect Secure | Cisco AnyConnect Secure Mobility Client for Windows DLL Hijacking Vulnerability | 2022-10-24 00:00:00 |
| CVE-2021-3493 | 8.8 | True | Linux | Kernel | Linux Kernel Privilege Escalation Vulnerability | 2022-10-20 00:00:00 |
| CVE-2022-41352 | 9.8 | True | Synacor | Zimbra Collaboration Suite (ZCS) | Synacor Zimbra Collaboration Suite (ZCS) Arbitrary File Upload Vulnerability | 2022-10-20 00:00:00 |
| CVE-2022-41033 | 7.8 | True | Microsoft | Windows COM+ Event System Service | Microsoft Windows COM+ Event System Service Privilege Escalation Vulnerability | 2022-10-11 00:00:00 |
| CVE-2022-40684 | 9.8 | True | Fortinet | Multiple Products | Fortinet Multiple Products Authentication Bypass Vulnerability | 2022-10-11 00:00:00 |
| CVE-2022-36804 | 8.8 | True | Atlassian | Bitbucket Server and Data Center | Atlassian Bitbucket Server and Data Center Command Injection Vulnerability | 2022-09-30 00:00:00 |
| CVE-2022-41040 | 8.8 | True | Microsoft | Exchange Server | Microsoft Exchange Server Server-Side Request Forgery Vulnerability | 2022-09-30 00:00:00 |
| CVE-2022-41082 | 8.0 | True | Microsoft | Exchange Server | Microsoft Exchange Server Remote Code Execution Vulnerability | 2022-09-30 00:00:00 |
| CVE-2022-3236 | 9.8 | True | Sophos | Firewall | Sophos Firewall Code Injection Vulnerability | 2022-09-23 00:00:00 |
| CVE-2022-35405 | 9.8 | True | Zoho | ManageEngine | Zoho ManageEngine Multiple Products Remote Code Execution Vulnerability | 2022-09-22 00:00:00 |
| CVE-2010-2568 | 7.8 | True | Microsoft | Windows | Microsoft Windows Remote Code Execution Vulnerability | 2022-09-15 00:00:00 |
| CVE-2013-2094 | 8.4 | True | Linux | Kernel | Linux Kernel Privilege Escalation Vulnerability | 2022-09-15 00:00:00 |
| CVE-2013-2596 | 7.8 | True | Linux | Kernel | Linux Kernel Integer Overflow Vulnerability | 2022-09-15 00:00:00 |
| CVE-2013-2597 | 8.4 | True | Code Aurora | ACDB Audio Driver | Code Aurora ACDB Audio Driver Stack-based Buffer Overflow Vulnerability | 2022-09-15 00:00:00 |
| CVE-2013-6282 | 8.8 | True | Linux | Kernel | Linux Kernel Improper Input Validation Vulnerability | 2022-09-15 00:00:00 |
| CVE-2022-40139 | 7.2 | True | Trend Micro | Apex One and Apex One as a Service | Trend Micro Apex One and Apex One as a Service Improper Validation Vulnerability | 2022-09-15 00:00:00 |
| CVE-2022-32917 | 7.8 | True | Apple | iOS, iPadOS, and macOS | Apple iOS, iPadOS, and macOS Remote Code Execution Vulnerability | 2022-09-14 00:00:00 |
| CVE-2022-37969 | 7.8 | True | Microsoft | Windows | Microsoft Windows Common Log File System (CLFS) Driver Privilege Escalation Vulnerability | 2022-09-14 00:00:00 |
| CVE-2011-1823 | 7.8 | True | Android | Android OS | Android OS Privilege Escalation Vulnerability | 2022-09-08 00:00:00 |
| CVE-2011-4723 | 5.7 | True | D-Link | DIR-300 Router | D-Link DIR-300 Router Cleartext Storage of a Password Vulnerability | 2022-09-08 00:00:00 |
| CVE-2017-5521 | 8.1 | True | NETGEAR | Multiple Devices | NETGEAR Multiple Devices Exposure of Sensitive Information Vulnerability | 2022-09-08 00:00:00 |
| CVE-2018-13374 | 4.3 | True | Fortinet | FortiOS and FortiADC | Fortinet FortiOS and FortiADC Improper Access Control Vulnerability | 2022-09-08 00:00:00 |
| CVE-2018-2628 | 9.8 | True | Oracle | WebLogic Server | Oracle WebLogic Server Unspecified Vulnerability | 2022-09-08 00:00:00 |
| CVE-2018-6530 | 9.8 | True | D-Link | Multiple Routers | D-Link Multiple Routers OS Command Injection Vulnerability | 2022-09-08 00:00:00 |
| CVE-2018-7445 | 9.8 | True | MikroTik | RouterOS | MikroTik RouterOS Stack-Based Buffer Overflow Vulnerability | 2022-09-08 00:00:00 |
| CVE-2020-9934 | 5.5 | True | Apple | iOS, iPadOS, and macOS | Apple iOS, iPadOS, and macOS Input Validation Vulnerability | 2022-09-08 00:00:00 |
| CVE-2022-26258 | 9.8 | True | D-Link | DIR-820L | D-Link DIR-820L Remote Code Execution Vulnerability | 2022-09-08 00:00:00 |
| CVE-2022-27593 | 10.0 | True | QNAP | Photo Station | QNAP Photo Station Externally Controlled Reference Vulnerability | 2022-09-08 00:00:00 |
| CVE-2022-3075 | 9.6 | True | Chromium Mojo | Google Chromium Mojo Insufficient Data Validation Vulnerability | 2022-09-08 00:00:00 | |
| CVE-2020-28949 | 7.8 | True | PEAR | Archive_Tar | PEAR Archive_Tar Deserialization of Untrusted Data Vulnerability | 2022-08-25 00:00:00 |
| CVE-2020-36193 | 7.5 | True | PEAR | Archive_Tar | PEAR Archive_Tar Improper Link Resolution Vulnerability | 2022-08-25 00:00:00 |
| CVE-2021-31010 | 7.5 | True | Apple | iOS, macOS, watchOS | Apple iOS, macOS, watchOS Sandbox Bypass Vulnerability | 2022-08-25 00:00:00 |
| CVE-2021-38406 | 7.8 | True | Delta Electronics | DOPSoft 2 | Delta Electronics DOPSoft 2 Improper Input Validation Vulnerability | 2022-08-25 00:00:00 |
| CVE-2021-39226 | 9.8 | True | Grafana Labs | Grafana | Grafana Authentication Bypass Vulnerability | 2022-08-25 00:00:00 |
| CVE-2022-2294 | 8.8 | True | WebRTC | WebRTC | WebRTC Heap Buffer Overflow Vulnerability | 2022-08-25 00:00:00 |
| CVE-2022-22963 | 9.8 | True | VMware Tanzu | Spring Cloud | VMware Tanzu Spring Cloud Function Remote Code Execution Vulnerability | 2022-08-25 00:00:00 |
| CVE-2022-24112 | 9.8 | True | Apache | APISIX | Apache APISIX Authentication Bypass Vulnerability | 2022-08-25 00:00:00 |
| CVE-2022-24706 | 9.8 | True | Apache | CouchDB | Apache CouchDB Insecure Default Initialization of Resource Vulnerability | 2022-08-25 00:00:00 |
| CVE-2022-26352 | 9.8 | True | dotCMS | dotCMS | dotCMS Unrestricted Upload of File Vulnerability | 2022-08-25 00:00:00 |
| CVE-2022-0028 | 8.6 | True | Palo Alto Networks | PAN-OS | Palo Alto Networks PAN-OS Reflected Amplification Denial-of-Service Vulnerability | 2022-08-22 00:00:00 |
| CVE-2017-15944 | 9.8 | True | Palo Alto Networks | PAN-OS | Palo Alto Networks PAN-OS Remote Code Execution Vulnerability | 2022-08-18 00:00:00 |
| CVE-2022-21971 | 7.8 | True | Microsoft | Windows | Microsoft Windows Runtime Remote Code Execution Vulnerability | 2022-08-18 00:00:00 |
| CVE-2022-26923 | 8.8 | True | Microsoft | Active Directory | Microsoft Active Directory Domain Services Privilege Escalation Vulnerability | 2022-08-18 00:00:00 |
| CVE-2022-2856 | 6.5 | True | Chromium Intents | Google Chromium Intents Insufficient Input Validation Vulnerability | 2022-08-18 00:00:00 | |
| CVE-2022-32893 | 8.8 | True | Apple | iOS and macOS | Apple iOS and macOS Out-of-Bounds Write Vulnerability | 2022-08-18 00:00:00 |
| CVE-2022-32894 | 7.8 | True | Apple | iOS and macOS | Apple iOS and macOS Out-of-Bounds Write Vulnerability | 2022-08-18 00:00:00 |
| CVE-2022-22536 | 9.8 | True | SAP | Multiple Products | SAP Multiple Products HTTP Request Smuggling Vulnerability | 2022-08-18 00:00:00 |
| CVE-2022-37042 | 9.8 | True | Synacor | Zimbra Collaboration Suite (ZCS) | Synacor Zimbra Collaboration Suite (ZCS) Authentication Bypass Vulnerability | 2022-08-11 00:00:00 |
| CVE-2022-27925 | 7.2 | True | Synacor | Zimbra Collaboration Suite (ZCS) | Synacor Zimbra Collaboration Suite (ZCS) Arbitrary File Upload Vulnerability | 2022-08-11 00:00:00 |
| CVE-2022-30333 | 7.5 | True | RARLAB | UnRAR | RARLAB UnRAR Directory Traversal Vulnerability | 2022-08-09 00:00:00 |
| CVE-2022-34713 | 7.8 | True | Microsoft | Windows | Microsoft Windows Support Diagnostic Tool (MSDT) Remote Code Execution Vulnerability | 2022-08-09 00:00:00 |
| CVE-2022-27924 | 7.5 | True | Synacor | Zimbra Collaboration Suite (ZCS) | Synacor Zimbra Collaboration Suite (ZCS) Command Injection Vulnerability | 2022-08-04 00:00:00 |
| CVE-2022-26138 | 9.8 | True | Atlassian | Confluence | Atlassian Questions For Confluence App Hard-coded Credentials Vulnerability | 2022-07-29 00:00:00 |
| CVE-2022-22047 | 7.8 | True | Microsoft | Windows | Microsoft Windows Client Server Runtime Subsystem (CSRSS) Privilege Escalation Vulnerability | 2022-07-12 00:00:00 |
| CVE-2022-26925 | 8.1 | True | Microsoft | Windows | Microsoft Windows LSA Spoofing Vulnerability | 2022-07-01 00:00:00 |
| CVE-2018-4344 | 7.8 | True | Apple | Multiple Products | Apple Multiple Products Memory Corruption Vulnerability | 2022-06-27 00:00:00 |
| CVE-2019-8605 | 7.8 | True | Apple | Multiple Products | Apple Multiple Products Use-After-Free Vulnerability | 2022-06-27 00:00:00 |
| CVE-2020-9907 | 7.8 | True | Apple | Multiple Products | Apple Multiple Products Memory Corruption Vulnerability | 2022-06-27 00:00:00 |
| CVE-2020-3837 | 7.8 | True | Apple | Multiple Products | Apple Multiple Products Memory Corruption Vulnerability | 2022-06-27 00:00:00 |
| CVE-2021-30983 | 7.8 | True | Apple | iOS and iPadOS | Apple iOS and iPadOS Buffer Overflow Vulnerability | 2022-06-27 00:00:00 |
| CVE-2021-4034 | 7.8 | True | Red Hat | Polkit | Red Hat Polkit Out-of-Bounds Read and Write Vulnerability | 2022-06-27 00:00:00 |
| CVE-2021-30533 | 6.5 | True | Chromium PopupBlocker | Google Chromium PopupBlocker Security Bypass Vulnerability | 2022-06-27 00:00:00 | |
| CVE-2022-29499 | 9.8 | True | Mitel | MiVoice Connect | Mitel MiVoice Connect Data Validation Vulnerability | 2022-06-27 00:00:00 |
| CVE-2022-30190 | 7.8 | True | Microsoft | Windows | Microsoft Windows Support Diagnostic Tool (MSDT) Remote Code Execution Vulnerability | 2022-06-14 00:00:00 |
| CVE-2016-2388 | 5.3 | True | SAP | NetWeaver | SAP NetWeaver Information Disclosure Vulnerability | 2022-06-09 00:00:00 |
| CVE-2016-2386 | 9.8 | True | SAP | NetWeaver | SAP NetWeaver SQL Injection Vulnerability | 2022-06-09 00:00:00 |
| CVE-2021-38163 | 9.9 | True | SAP | NetWeaver | SAP NetWeaver Unrestricted File Upload Vulnerability | 2022-06-09 00:00:00 |
| CVE-2006-2492 | 8.8 | True | Microsoft | Word | Microsoft Word Malformed Object Pointer Vulnerability | 2022-06-08 00:00:00 |
| CVE-2007-5659 | 7.8 | True | Adobe | Acrobat and Reader | Adobe Acrobat and Reader Buffer Overflow Vulnerability | 2022-06-08 00:00:00 |
| CVE-2008-0655 | 8.8 | True | Adobe | Acrobat and Reader | Adobe Acrobat and Reader Unspecified Vulnerability | 2022-06-08 00:00:00 |
| CVE-2009-0557 | 7.8 | True | Microsoft | Office | Microsoft Office Object Record Corruption Vulnerability | 2022-06-08 00:00:00 |
| CVE-2009-0563 | 7.8 | True | Microsoft | Office | Microsoft Office Buffer Overflow Vulnerability | 2022-06-08 00:00:00 |
| CVE-2009-1862 | 7.8 | True | Adobe | Acrobat and Reader, Flash Player | Adobe Acrobat and Reader, Flash Player Unspecified Vulnerability | 2022-06-08 00:00:00 |
| CVE-2009-3953 | 8.8 | True | Adobe | Acrobat and Reader | Adobe Acrobat and Reader Universal 3D Remote Code Execution Vulnerability | 2022-06-08 00:00:00 |
| CVE-2009-4324 | 7.8 | True | Adobe | Acrobat and Reader | Adobe Acrobat and Reader Use-After-Free Vulnerability | 2022-06-08 00:00:00 |
| CVE-2010-1297 | 7.8 | True | Adobe | Flash Player | Adobe Flash Player Memory Corruption Vulnerability | 2022-06-08 00:00:00 |
| CVE-2010-2572 | 7.8 | True | Microsoft | PowerPoint | Microsoft PowerPoint Buffer Overflow Vulnerability | 2022-06-08 00:00:00 |
| CVE-2010-2883 | 7.3 | True | Adobe | Acrobat and Reader | Adobe Acrobat and Reader Stack-Based Buffer Overflow Vulnerability | 2022-06-08 00:00:00 |
| CVE-2011-0609 | 7.8 | True | Adobe | Flash Player | Adobe Flash Player Unspecified Vulnerability | 2022-06-08 00:00:00 |
| CVE-2011-2462 | 8.8 | True | Adobe | Reader and Acrobat | Adobe Reader and Acrobat Universal 3D Memory Corruption Vulnerability | 2022-06-08 00:00:00 |
| CVE-2012-0151 | 7.8 | True | Microsoft | Windows | Microsoft Windows Authenticode Signature Verification Remote Code Execution Vulnerability | 2022-06-08 00:00:00 |
| CVE-2012-0754 | 7.8 | True | Adobe | Flash Player | Adobe Flash Player Memory Corruption Vulnerability | 2022-06-08 00:00:00 |
| CVE-2012-0767 | 6.1 | True | Adobe | Flash Player | Adobe Flash Player Cross-Site Scripting (XSS) Vulnerability | 2022-06-08 00:00:00 |
| CVE-2012-1889 | 8.8 | True | Microsoft | XML Core Services | Microsoft XML Core Services Memory Corruption Vulnerability | 2022-06-08 00:00:00 |
| CVE-2012-4969 | 8.1 | True | Microsoft | Internet Explorer | Microsoft Internet Explorer Use-After-Free Vulnerability | 2022-06-08 00:00:00 |
| CVE-2012-5054 | 8.8 | True | Adobe | Flash Player | Adobe Flash Player Integer Overflow Vulnerability | 2022-06-08 00:00:00 |
| CVE-2013-1331 | 7.8 | True | Microsoft | Office | Microsoft Office Buffer Overflow Vulnerability | 2022-06-08 00:00:00 |
| CVE-2016-1646 | 8.8 | True | Chromium V8 | Google Chromium V8 Out-of-Bounds Read Vulnerability | 2022-06-08 00:00:00 | |
| CVE-2016-5198 | 8.8 | True | Chromium V8 | Google Chromium V8 Out-of-Bounds Memory Vulnerability | 2022-06-08 00:00:00 | |
| CVE-2017-5030 | 8.8 | True | Chromium V8 | Google Chromium V8 Memory Corruption Vulnerability | 2022-06-08 00:00:00 | |
| CVE-2017-5070 | 8.8 | True | Chromium V8 | Google Chromium V8 Type Confusion Vulnerability | 2022-06-08 00:00:00 | |
| CVE-2017-6862 | 9.8 | True | NETGEAR | Multiple Devices | NETGEAR Multiple Devices Buffer Overflow Vulnerability | 2022-06-08 00:00:00 |
| CVE-2018-17463 | 8.8 | True | Chromium V8 | Google Chromium V8 Remote Code Execution Vulnerability | 2022-06-08 00:00:00 | |
| CVE-2018-17480 | 8.8 | True | Chromium V8 | Google Chromium V8 Out-of-Bounds Write Vulnerability | 2022-06-08 00:00:00 | |
| CVE-2018-4990 | 8.8 | True | Adobe | Acrobat and Reader | Adobe Acrobat and Reader Double Free Vulnerability | 2022-06-08 00:00:00 |
| CVE-2018-6065 | 8.8 | True | Chromium V8 | Google Chromium V8 Integer Overflow Vulnerability | 2022-06-08 00:00:00 | |
| CVE-2019-15271 | 8.8 | True | Cisco | RV Series Routers | Cisco RV Series Routers Deserialization of Untrusted Data Vulnerability | 2022-06-08 00:00:00 |
| CVE-2019-5825 | 6.5 | True | Chromium V8 | Google Chromium V8 Out-of-Bounds Write Vulnerability | 2022-06-08 00:00:00 | |
| CVE-2019-7192 | 9.8 | True | QNAP | Photo Station | QNAP Photo Station Improper Access Control Vulnerability | 2022-06-08 00:00:00 |
| CVE-2019-7193 | 9.8 | True | QNAP | QTS | QNAP QTS Improper Input Validation Vulnerability | 2022-06-08 00:00:00 |
| CVE-2019-7194 | 9.8 | True | QNAP | Photo Station | QNAP Photo Station Path Traversal Vulnerability | 2022-06-08 00:00:00 |
| CVE-2019-7195 | 9.8 | True | QNAP | Photo Station | QNAP Photo Station Path Traversal Vulnerability | 2022-06-08 00:00:00 |
| CVE-2022-26134 | 9.8 | True | Atlassian | Confluence Server/Data Center | Atlassian Confluence Server and Data Center Remote Code Execution Vulnerability | 2022-06-02 00:00:00 |
| CVE-2010-0738 | 5.3 | True | Red Hat | JBoss | Red Hat JBoss Authentication Bypass Vulnerability | 2022-05-25 00:00:00 |
| CVE-2010-0840 | 9.8 | True | Oracle | Java Runtime Environment (JRE) | Oracle JRE Unspecified Vulnerability | 2022-05-25 00:00:00 |
| CVE-2010-1428 | 7.5 | True | Red Hat | JBoss | Red Hat JBoss Information Disclosure Vulnerability | 2022-05-25 00:00:00 |
| CVE-2012-1710 | 9.8 | True | Oracle | Fusion Middleware | Oracle Fusion Middleware Unspecified Vulnerability | 2022-05-25 00:00:00 |
| CVE-2013-0074 | 7.8 | True | Microsoft | Silverlight | Microsoft Silverlight Double Dereference Vulnerability | 2022-05-25 00:00:00 |
| CVE-2013-0422 | 9.8 | True | Oracle | Java Runtime Environment (JRE) | Oracle JRE Remote Code Execution Vulnerability | 2022-05-25 00:00:00 |
| CVE-2013-0431 | 5.3 | True | Oracle | Java Runtime Environment (JRE) | Oracle JRE Sandbox Bypass Vulnerability | 2022-05-25 00:00:00 |
| CVE-2013-2423 | 3.7 | True | Oracle | Java Runtime Environment (JRE) | Oracle JRE Unspecified Vulnerability | 2022-05-25 00:00:00 |
| CVE-2013-3896 | 5.5 | True | Microsoft | Silverlight | Microsoft Silverlight Information Disclosure Vulnerability | 2022-05-25 00:00:00 |
| CVE-2013-3993 | 6.5 | True | IBM | InfoSphere BigInsights | IBM InfoSphere BigInsights Invalid Input Vulnerability | 2022-05-25 00:00:00 |
| CVE-2013-7331 | 6.5 | True | Microsoft | Internet Explorer | Microsoft Internet Explorer Information Disclosure Vulnerability | 2022-05-25 00:00:00 |
| CVE-2014-3153 | 7.8 | True | Linux | Kernel | Linux Kernel Privilege Escalation Vulnerability | 2022-05-25 00:00:00 |
| CVE-2014-4077 | 7.8 | True | Microsoft | Input Method Editor (IME) Japanese | Microsoft IME Japanese Privilege Escalation Vulnerability | 2022-05-25 00:00:00 |
| CVE-2014-2817 | 8.8 | True | Microsoft | Internet Explorer | Microsoft Internet Explorer Privilege Escalation Vulnerability | 2022-05-25 00:00:00 |
| CVE-2014-0546 | 8.8 | True | Adobe | Reader and Acrobat | Adobe Reader and Acrobat Sandbox Bypass Vulnerability | 2022-05-25 00:00:00 |
| CVE-2014-4123 | 8.8 | True | Microsoft | Internet Explorer | Microsoft Internet Explorer Privilege Escalation Vulnerability | 2022-05-25 00:00:00 |
| CVE-2014-8439 | 8.8 | True | Adobe | Flash Player | Adobe Flash Player Dereferenced Pointer Vulnerability | 2022-05-25 00:00:00 |
| CVE-2014-4148 | 8.8 | True | Microsoft | Windows | Microsoft Windows Remote Code Execution Vulnerability | 2022-05-25 00:00:00 |
| CVE-2015-1671 | 7.8 | True | Microsoft | Windows | Microsoft Windows Remote Code Execution Vulnerability | 2022-05-25 00:00:00 |
| CVE-2015-6175 | 7.8 | True | Microsoft | Windows | Microsoft Windows Kernel Privilege Escalation Vulnerability | 2022-05-25 00:00:00 |
| CVE-2015-8651 | 8.8 | True | Adobe | Flash Player | Adobe Flash Player Integer Overflow Vulnerability | 2022-05-25 00:00:00 |
| CVE-2015-4495 | 8.8 | True | Mozilla | Firefox | Mozilla Firefox Security Feature Bypass Vulnerability | 2022-05-25 00:00:00 |
| CVE-2015-1769 | 6.6 | True | Microsoft | Windows | Microsoft Windows Mount Manager Privilege Escalation Vulnerability | 2022-05-25 00:00:00 |
| CVE-2015-2425 | 8.8 | True | Microsoft | Internet Explorer | Microsoft Internet Explorer Memory Corruption Vulnerability | 2022-05-25 00:00:00 |
| CVE-2015-2360 | 8.8 | True | Microsoft | Win32k | Microsoft Win32k Privilege Escalation Vulnerability | 2022-05-25 00:00:00 |
| CVE-2015-0071 | 6.5 | True | Microsoft | Internet Explorer | Microsoft Internet Explorer ASLR Bypass Vulnerability | 2022-05-25 00:00:00 |
| CVE-2015-0016 | 7.8 | True | Microsoft | Windows | Microsoft Windows TS WebProxy Directory Traversal Vulnerability | 2022-05-25 00:00:00 |
| CVE-2015-0310 | 7.8 | True | Adobe | Flash Player | Adobe Flash Player ASLR Bypass Vulnerability | 2022-05-25 00:00:00 |
| CVE-2016-0034 | 8.8 | True | Microsoft | Silverlight | Microsoft Silverlight Runtime Remote Code Execution Vulnerability | 2022-05-25 00:00:00 |
| CVE-2016-0984 | 8.8 | True | Adobe | Flash Player and AIR | Adobe Flash Player and AIR Use-After-Free Vulnerability | 2022-05-25 00:00:00 |
| CVE-2016-1010 | 8.8 | True | Adobe | Flash Player and AIR | Adobe Flash Player and AIR Integer Overflow Vulnerability | 2022-05-25 00:00:00 |
| CVE-2016-7256 | 8.8 | True | Microsoft | Windows | Microsoft Windows Open Type Font Remote Code Execution Vulnerability | 2022-05-25 00:00:00 |
| CVE-2016-3393 | 7.8 | True | Microsoft | Windows | Microsoft Windows Graphics Device Interface (GDI) Remote Code Execution Vulnerability | 2022-05-25 00:00:00 |
| CVE-2019-3010 | 8.8 | True | Oracle | Solaris | Oracle Solaris Privilege Escalation Vulnerability | 2022-05-25 00:00:00 |
| CVE-2016-3298 | 6.5 | True | Microsoft | Internet Explorer | Microsoft Internet Explorer Messaging API Information Disclosure Vulnerability | 2022-05-24 00:00:00 |
| CVE-2016-6367 | 7.8 | True | Cisco | Adaptive Security Appliance (ASA) | Cisco Adaptive Security Appliance (ASA) CLI Remote Code Execution Vulnerability | 2022-05-24 00:00:00 |
| CVE-2016-6366 | 8.8 | True | Cisco | Adaptive Security Appliance (ASA) | Cisco Adaptive Security Appliance (ASA) SNMP Buffer Overflow Vulnerability | 2022-05-24 00:00:00 |
| CVE-2016-4657 | 8.8 | True | Apple | iOS | Apple iOS Webkit Memory Corruption Vulnerability | 2022-05-24 00:00:00 |
| CVE-2016-4656 | 7.8 | True | Apple | iOS | Apple iOS Memory Corruption Vulnerability | 2022-05-24 00:00:00 |
| CVE-2016-4655 | 5.5 | True | Apple | iOS | Apple iOS Information Disclosure Vulnerability | 2022-05-24 00:00:00 |
| CVE-2016-3351 | 6.5 | True | Microsoft | Internet Explorer and Edge | Microsoft Internet Explorer and Edge Information Disclosure Vulnerability | 2022-05-24 00:00:00 |
| CVE-2016-0162 | 4.3 | True | Microsoft | Internet Explorer | Microsoft Internet Explorer Information Disclosure Vulnerability | 2022-05-24 00:00:00 |
| CVE-2017-18362 | 9.8 | True | Kaseya | Virtual System/Server Administrator (VSA) | Kaseya VSA SQL Injection Vulnerability | 2022-05-24 00:00:00 |
| CVE-2017-8543 | 9.8 | True | Microsoft | Windows | Microsoft Windows Search Remote Code Execution Vulnerability | 2022-05-24 00:00:00 |
| CVE-2017-8291 | 7.8 | True | Artifex | Ghostscript | Artifex Ghostscript Type Confusion Vulnerability | 2022-05-24 00:00:00 |
| CVE-2017-0210 | 8.8 | True | Microsoft | Internet Explorer | Microsoft Internet Explorer Privilege Escalation Vulnerability | 2022-05-24 00:00:00 |
| CVE-2017-0149 | 8.8 | True | Microsoft | Internet Explorer | Microsoft Internet Explorer Memory Corruption Vulnerability | 2022-05-24 00:00:00 |
| CVE-2017-0005 | 7.8 | True | Microsoft | Windows | Microsoft Windows Graphics Device Interface (GDI) Privilege Escalation Vulnerability | 2022-05-24 00:00:00 |
| CVE-2017-0022 | 6.5 | True | Microsoft | XML Core Services | Microsoft XML Core Services Information Disclosure Vulnerability | 2022-05-24 00:00:00 |
| CVE-2017-0147 | 7.5 | True | Microsoft | SMBv1 server | Microsoft Windows SMBv1 Information Disclosure Vulnerability | 2022-05-24 00:00:00 |
| CVE-2018-19943 | 8.0 | True | QNAP | Network Attached Storage (NAS) | QNAP NAS File Station Cross-Site Scripting Vulnerability | 2022-05-24 00:00:00 |
| CVE-2018-19949 | 9.8 | True | QNAP | Network Attached Storage (NAS) | QNAP NAS File Station Command Injection Vulnerability | 2022-05-24 00:00:00 |
| CVE-2018-19953 | 6.1 | True | QNAP | Network Attached Storage (NAS) | QNAP NAS File Station Cross-Site Scripting Vulnerability | 2022-05-24 00:00:00 |
| CVE-2018-8611 | 7.8 | True | Microsoft | Windows | Microsoft Windows Kernel Privilege Escalation Vulnerability | 2022-05-24 00:00:00 |
| CVE-2018-8589 | 7.8 | True | Microsoft | Win32k | Microsoft Win32k Privilege Escalation Vulnerability | 2022-05-23 00:00:00 |
| CVE-2018-5002 | 7.8 | True | Adobe | Flash Player | Adobe Flash Player Stack-based Buffer Overflow Vulnerability | 2022-05-23 00:00:00 |
| CVE-2019-1130 | 7.8 | True | Microsoft | Windows | Microsoft Windows AppX Deployment Service Privilege Escalation Vulnerability | 2022-05-23 00:00:00 |
| CVE-2019-1385 | 7.8 | True | Microsoft | Windows | Microsoft Windows AppX Deployment Extensions Privilege Escalation Vulnerability | 2022-05-23 00:00:00 |
| CVE-2019-18426 | 8.2 | True | Meta Platforms | WhatsApp Cross-Site Scripting Vulnerability | 2022-05-23 00:00:00 | |
| CVE-2019-8720 | 8.8 | True | WebKitGTK | WebKitGTK | WebKitGTK Memory Corruption Vulnerability | 2022-05-23 00:00:00 |
| CVE-2019-11708 | 10.0 | True | Mozilla | Firefox and Thunderbird | Mozilla Firefox and Thunderbird Sandbox Escape Vulnerability | 2022-05-23 00:00:00 |
| CVE-2019-11707 | 8.8 | True | Mozilla | Firefox and Thunderbird | Mozilla Firefox and Thunderbird Type Confusion Vulnerability | 2022-05-23 00:00:00 |
| CVE-2019-13720 | 8.8 | True | Chrome WebAudio | Google Chrome WebAudio Use-After-Free Vulnerability | 2022-05-23 00:00:00 | |
| CVE-2019-0880 | 7.8 | True | Microsoft | Windows | Microsoft Windows Privilege Escalation Vulnerability | 2022-05-23 00:00:00 |
| CVE-2019-0703 | 6.5 | True | Microsoft | Windows | Microsoft Windows SMB Information Disclosure Vulnerability | 2022-05-23 00:00:00 |
| CVE-2019-5786 | 6.5 | True | Chrome Blink | Google Chrome Blink Use-After-Free Vulnerability | 2022-05-23 00:00:00 | |
| CVE-2019-0676 | 6.5 | True | Microsoft | Internet Explorer | Microsoft Internet Explorer Information Disclosure Vulnerability | 2022-05-23 00:00:00 |
| CVE-2019-7287 | 7.8 | True | Apple | iOS | Apple iOS Memory Corruption Vulnerability | 2022-05-23 00:00:00 |
| CVE-2019-7286 | 7.8 | True | Apple | Multiple Products | Apple Multiple Products Memory Corruption Vulnerability | 2022-05-23 00:00:00 |
| CVE-2020-0638 | 7.8 | True | Microsoft | Update Notification Manager | Microsoft Update Notification Manager Privilege Escalation Vulnerability | 2022-05-23 00:00:00 |
| CVE-2020-1027 | 7.8 | True | Microsoft | Windows | Microsoft Windows Kernel Privilege Escalation Vulnerability | 2022-05-23 00:00:00 |
| CVE-2021-30883 | 7.8 | True | Apple | Multiple Products | Apple Multiple Products Memory Corruption Vulnerability | 2022-05-23 00:00:00 |
| CVE-2021-0920 | 6.4 | True | Android | Kernel | Android Kernel Race Condition Vulnerability | 2022-05-23 00:00:00 |
| CVE-2021-1048 | 7.8 | True | Android | Kernel | Android Kernel Use-After-Free Vulnerability | 2022-05-23 00:00:00 |
| CVE-2022-20821 | 6.5 | True | Cisco | IOS XR | Cisco IOS XR Open Port Vulnerability | 2022-05-23 00:00:00 |
| CVE-2022-22947 | 10.0 | True | VMware | Spring Cloud Gateway | VMware Spring Cloud Gateway Code Injection Vulnerability | 2022-05-16 00:00:00 |
| CVE-2022-30525 | 9.8 | True | Zyxel | Multiple Firewalls | Zyxel Multiple Firewalls OS Command Injection Vulnerability | 2022-05-16 00:00:00 |
| CVE-2022-1388 | 9.8 | True | F5 | BIG-IP | F5 BIG-IP Missing Authentication Vulnerability | 2022-05-10 00:00:00 |
| CVE-2014-0160 | 7.5 | True | OpenSSL | OpenSSL | OpenSSL Information Disclosure Vulnerability | 2022-05-04 00:00:00 |
| CVE-2014-0322 | 8.8 | True | Microsoft | Internet Explorer | Microsoft Internet Explorer Use-After-Free Vulnerability | 2022-05-04 00:00:00 |
| CVE-2014-4113 | 7.8 | True | Microsoft | Win32k | Microsoft Win32k Privilege Escalation Vulnerability | 2022-05-04 00:00:00 |
| CVE-2019-8506 | 8.8 | True | Apple | Multiple Products | Apple Multiple Products Type Confusion Vulnerability | 2022-05-04 00:00:00 |
| CVE-2021-1789 | 8.8 | True | Apple | Multiple Products | Apple Multiple Products Type Confusion Vulnerability | 2022-05-04 00:00:00 |
| CVE-2019-1003029 | 9.9 | True | Jenkins | Script Security Plugin | Jenkins Script Security Plugin Sandbox Bypass Vulnerability | 2022-04-25 00:00:00 |
| CVE-2021-40450 | 7.8 | True | Microsoft | Win32k | Microsoft Win32k Privilege Escalation Vulnerability | 2022-04-25 00:00:00 |
| CVE-2021-41357 | 7.8 | True | Microsoft | Win32k | Microsoft Win32k Privilege Escalation Vulnerability | 2022-04-25 00:00:00 |
| CVE-2022-0847 | 7.8 | True | Linux | Kernel | Linux Kernel Privilege Escalation Vulnerability | 2022-04-25 00:00:00 |
| CVE-2022-21919 | 7.0 | True | Microsoft | Windows | Microsoft Windows User Profile Service Privilege Escalation Vulnerability | 2022-04-25 00:00:00 |
| CVE-2022-26904 | 7.0 | True | Microsoft | Windows | Microsoft Windows User Profile Service Privilege Escalation Vulnerability | 2022-04-25 00:00:00 |
| CVE-2022-29464 | 9.8 | True | WSO2 | Multiple Products | WSO2 Multiple Products Unrestrictive Upload of File Vulnerability | 2022-04-25 00:00:00 |
| CVE-2022-22718 | 7.8 | True | Microsoft | Windows | Microsoft Windows Print Spooler Privilege Escalation Vulnerability | 2022-04-19 00:00:00 |
| CVE-2019-3568 | 9.8 | True | Meta Platforms | WhatsApp VOIP Stack Buffer Overflow Vulnerability | 2022-04-19 00:00:00 | |
| CVE-2018-6882 | 6.1 | True | Synacor | Zimbra Collaboration Suite (ZCS) | Synacor Zimbra Collaboration Suite (ZCS) Cross-Site Scripting (XSS) Vulnerability | 2022-04-19 00:00:00 |
| CVE-2007-3010 | 9.8 | True | Alcatel | OmniPCX Enterprise | Alcatel OmniPCX Enterprise Remote Code Execution Vulnerability | 2022-04-15 00:00:00 |
| CVE-2010-5330 | 9.8 | True | Ubiquiti | AirOS | Ubiquiti AirOS Command Injection Vulnerability | 2022-04-15 00:00:00 |
| CVE-2014-0780 | 9.8 | True | InduSoft | Web Studio | InduSoft Web Studio NTWebServer Directory Traversal Vulnerability | 2022-04-15 00:00:00 |
| CVE-2016-4523 | 7.5 | True | Trihedral | VTScada (formerly VTS) | Trihedral VTScada (formerly VTS) Denial-of-Service Vulnerability | 2022-04-15 00:00:00 |
| CVE-2018-7841 | 9.8 | True | Schneider Electric | U.motion Builder | Schneider Electric U.motion Builder SQL Injection Vulnerability | 2022-04-15 00:00:00 |
| CVE-2019-16057 | 9.8 | True | D-Link | DNS-320 Storage Device | D-Link DNS-320 Remote Code Execution Vulnerability | 2022-04-15 00:00:00 |
| CVE-2019-3929 | 9.8 | True | Crestron | Multiple Products | Crestron Multiple Products Command Injection Vulnerability | 2022-04-15 00:00:00 |
| CVE-2022-1364 | 8.8 | True | Chromium V8 | Google Chromium V8 Type Confusion Vulnerability | 2022-04-15 00:00:00 | |
| CVE-2022-22960 | 7.8 | True | VMware | Multiple Products | VMware Multiple Products Privilege Escalation Vulnerability | 2022-04-15 00:00:00 |
| CVE-2022-22954 | 9.8 | True | VMware | Workspace ONE Access and Identity Manager | VMware Workspace ONE Access and Identity Manager Server-Side Template Injection Vulnerability | 2022-04-14 00:00:00 |
| CVE-2014-9163 | 7.8 | True | Adobe | Flash Player | Adobe Flash Player Stack-Based Buffer Overflow Vulnerability | 2022-04-13 00:00:00 |
| CVE-2015-0311 | 7.8 | True | Adobe | Flash Player | Adobe Flash Player Remote Code Execution Vulnerability | 2022-04-13 00:00:00 |
| CVE-2015-0313 | 7.8 | True | Adobe | Flash Player | Adobe Flash Player Use-After-Free Vulnerability | 2022-04-13 00:00:00 |
| CVE-2015-2502 | 8.8 | True | Microsoft | Internet Explorer | Microsoft Internet Explorer Memory Corruption Vulnerability | 2022-04-13 00:00:00 |
| CVE-2015-3113 | 7.8 | True | Adobe | Flash Player | Adobe Flash Player Heap-Based Buffer Overflow Vulnerability | 2022-04-13 00:00:00 |
| CVE-2015-5122 | 7.8 | True | Adobe | Flash Player | Adobe Flash Player Use-After-Free Vulnerability | 2022-04-13 00:00:00 |
| CVE-2015-5123 | 7.8 | True | Adobe | Flash Player | Adobe Flash Player Use-After-Free Vulnerability | 2022-04-13 00:00:00 |
| CVE-2018-20753 | 9.8 | True | Kaseya | Virtual System/Server Administrator (VSA) | Kaseya VSA Remote Code Execution Vulnerability | 2022-04-13 00:00:00 |
| CVE-2018-7602 | 9.8 | True | Drupal | Core | Drupal Core Remote Code Execution Vulnerability | 2022-04-13 00:00:00 |
| CVE-2022-24521 | 7.8 | True | Microsoft | Windows | Microsoft Windows CLFS Driver Privilege Escalation Vulnerability | 2022-04-13 00:00:00 |
| CVE-2017-11317 | 9.8 | True | Telerik | User Interface (UI) for ASP.NET AJAX | Telerik UI for ASP.NET AJAX Unrestricted File Upload Vulnerability | 2022-04-11 00:00:00 |
| CVE-2020-2509 | 9.8 | True | QNAP | QNAP Network-Attached Storage (NAS) | QNAP Network-Attached Storage (NAS) Command Injection Vulnerability | 2022-04-11 00:00:00 |
| CVE-2021-22600 | 6.6 | True | Linux | Kernel | Linux Kernel Privilege Escalation Vulnerability | 2022-04-11 00:00:00 |
| CVE-2021-27852 | 9.8 | True | Checkbox | Checkbox Survey | Checkbox Survey Deserialization of Untrusted Data Vulnerability | 2022-04-11 00:00:00 |
| CVE-2021-39793 | 7.8 | True | Pixel | Google Pixel Out-of-Bounds Write Vulnerability | 2022-04-11 00:00:00 | |
| CVE-2021-42278 | 7.5 | True | Microsoft | Active Directory | Microsoft Active Directory Domain Services Privilege Escalation Vulnerability | 2022-04-11 00:00:00 |
| CVE-2021-42287 | 7.5 | True | Microsoft | Active Directory | Microsoft Active Directory Domain Services Privilege Escalation Vulnerability | 2022-04-11 00:00:00 |
| CVE-2022-23176 | 8.8 | True | WatchGuard | Firebox and XTM | WatchGuard Firebox and XTM Privilege Escalation Vulnerability | 2022-04-11 00:00:00 |
| CVE-2017-0148 | 8.1 | True | Microsoft | SMBv1 server | Microsoft SMBv1 Server Remote Code Execution Vulnerability | 2022-04-06 00:00:00 |
| CVE-2021-31166 | 9.8 | True | Microsoft | HTTP Protocol Stack | Microsoft HTTP Protocol Stack Remote Code Execution Vulnerability | 2022-04-06 00:00:00 |
| CVE-2021-3156 | 7.8 | True | Sudo | Sudo | Sudo Heap-Based Buffer Overflow Vulnerability | 2022-04-06 00:00:00 |
| CVE-2021-45382 | 9.8 | True | D-Link | Multiple Routers | D-Link Multiple Routers Remote Code Execution Vulnerability | 2022-04-04 00:00:00 |
| CVE-2022-22674 | 5.5 | True | Apple | macOS | Apple macOS Out-of-Bounds Read Vulnerability | 2022-04-04 00:00:00 |
| CVE-2022-22675 | 7.8 | True | Apple | macOS | Apple macOS Out-of-Bounds Write Vulnerability | 2022-04-04 00:00:00 |
| CVE-2022-22965 | 9.8 | True | VMware | Spring Framework | Spring Framework JDK 9+ Remote Code Execution Vulnerability | 2022-04-04 00:00:00 |
| CVE-2018-10561 | 9.8 | True | Dasan | Gigabit Passive Optical Network (GPON) Routers | Dasan GPON Routers Authentication Bypass Vulnerability | 2022-03-31 00:00:00 |
| CVE-2018-10562 | 9.8 | True | Dasan | Gigabit Passive Optical Network (GPON) Routers | Dasan GPON Routers Command Injection Vulnerability | 2022-03-31 00:00:00 |
| CVE-2021-21551 | 8.8 | True | Dell | dbutil Driver | Dell dbutil Driver Insufficient Access Control Vulnerability | 2022-03-31 00:00:00 |
| CVE-2021-28799 | 10.0 | True | QNAP | Network Attached Storage (NAS) | QNAP NAS Improper Authorization Vulnerability | 2022-03-31 00:00:00 |
| CVE-2021-34484 | 7.8 | True | Microsoft | Windows | Microsoft Windows User Profile Service Privilege Escalation Vulnerability | 2022-03-31 00:00:00 |
| CVE-2022-1040 | 9.8 | True | Sophos | Firewall | Sophos Firewall Authentication Bypass Vulnerability | 2022-03-31 00:00:00 |
| CVE-2022-26871 | 9.8 | True | Trend Micro | Apex Central | Trend Micro Apex Central Arbitrary File Upload Vulnerability | 2022-03-31 00:00:00 |
| CVE-2010-4398 | 7.8 | True | Microsoft | Windows | Microsoft Windows Kernel Stack-Based Buffer Overflow Vulnerability | 2022-03-28 00:00:00 |
| CVE-2011-2005 | 7.8 | True | Microsoft | Ancillary Function Driver (afd.sys) | Microsoft Ancillary Function Driver (afd.sys) Improper Input Validation Vulnerability | 2022-03-28 00:00:00 |
| CVE-2012-0518 | 4.7 | True | Oracle | Fusion Middleware | Oracle Fusion Middleware Unspecified Vulnerability | 2022-03-28 00:00:00 |
| CVE-2012-2034 | 7.5 | True | Adobe | Flash Player | Adobe Flash Player Memory Corruption Vulnerability | 2022-03-28 00:00:00 |
| CVE-2012-2539 | 7.8 | True | Microsoft | Word | Microsoft Word Remote Code Execution Vulnerability | 2022-03-28 00:00:00 |
| CVE-2012-5076 | 9.8 | True | Oracle | Java SE | Oracle Java SE Sandbox Bypass Vulnerability | 2022-03-28 00:00:00 |
| CVE-2013-1690 | 8.8 | True | Mozilla | Firefox and Thunderbird | Mozilla Firefox and Thunderbird Denial-of-Service Vulnerability | 2022-03-28 00:00:00 |
| CVE-2013-2465 | 9.8 | True | Oracle | Java SE | Oracle Java SE Unspecified Vulnerability | 2022-03-28 00:00:00 |
| CVE-2013-2551 | 8.8 | True | Microsoft | Internet Explorer | Microsoft Internet Explorer Use-After-Free Vulnerability | 2022-03-28 00:00:00 |
| CVE-2013-2729 | 8.8 | True | Adobe | Reader and Acrobat | Adobe Reader and Acrobat Arbitrary Integer Overflow Vulnerability | 2022-03-28 00:00:00 |
| CVE-2013-3660 | 7.8 | True | Microsoft | Win32k | Microsoft Win32k Privilege Escalation Vulnerability | 2022-03-28 00:00:00 |
| CVE-2015-1770 | 8.8 | True | Microsoft | Office | Microsoft Office Uninitialized Memory Use Vulnerability | 2022-03-28 00:00:00 |
| CVE-2015-2419 | 8.8 | True | Microsoft | Internet Explorer | Microsoft Internet Explorer Memory Corruption Vulnerability | 2022-03-28 00:00:00 |
| CVE-2015-2426 | 8.8 | True | Microsoft | Windows | Microsoft Windows Adobe Type Manager Library Remote Code Execution Vulnerability | 2022-03-28 00:00:00 |
| CVE-2016-0040 | 7.8 | True | Microsoft | Windows | Microsoft Windows Kernel Privilege Escalation Vulnerability | 2022-03-28 00:00:00 |
| CVE-2016-0151 | 7.8 | True | Microsoft | Client-Server Run-time Subsystem (CSRSS) | Microsoft Windows CSRSS Security Feature Bypass Vulnerability | 2022-03-28 00:00:00 |
| CVE-2016-0189 | 7.5 | True | Microsoft | Internet Explorer | Microsoft Internet Explorer Memory Corruption Vulnerability | 2022-03-28 00:00:00 |
| CVE-2016-7200 | 8.8 | True | Microsoft | Edge | Microsoft Edge Memory Corruption Vulnerability | 2022-03-28 00:00:00 |
| CVE-2016-7201 | 8.8 | True | Microsoft | Edge | Microsoft Edge Memory Corruption Vulnerability | 2022-03-28 00:00:00 |
| CVE-2017-0037 | 8.1 | True | Microsoft | Edge and Internet Explorer | Microsoft Edge and Internet Explorer Type Confusion Vulnerability | 2022-03-28 00:00:00 |
| CVE-2017-0059 | 4.3 | True | Microsoft | Internet Explorer | Microsoft Internet Explorer Information Disclosure Vulnerability | 2022-03-28 00:00:00 |
| CVE-2017-0213 | 7.3 | True | Microsoft | Windows | Microsoft Windows Privilege Escalation Vulnerability | 2022-03-28 00:00:00 |
| CVE-2018-8405 | 7.8 | True | Microsoft | DirectX Graphics Kernel (DXGKRNL) | Microsoft DirectX Graphics Kernel Privilege Escalation Vulnerability | 2022-03-28 00:00:00 |
| CVE-2018-8406 | 7.8 | True | Microsoft | DirectX Graphics Kernel (DXGKRNL) | Microsoft DirectX Graphics Kernel Privilege Escalation Vulnerability | 2022-03-28 00:00:00 |
| CVE-2018-8440 | 7.8 | True | Microsoft | Windows | Microsoft Windows Privilege Escalation Vulnerability | 2022-03-28 00:00:00 |
| CVE-2019-7483 | 7.5 | True | SonicWall | SMA100 | SonicWall SMA100 Directory Traversal Vulnerability | 2022-03-28 00:00:00 |
| CVE-2021-20028 | 9.8 | True | SonicWall | Secure Remote Access (SRA) | SonicWall Secure Remote Access (SRA) SQL Injection Vulnerability | 2022-03-28 00:00:00 |
| CVE-2021-26085 | 5.3 | True | Atlassian | Confluence Server | Atlassian Confluence Server Pre-Authorization Arbitrary File Read Vulnerability | 2022-03-28 00:00:00 |
| CVE-2021-34486 | 7.8 | True | Microsoft | Windows | Microsoft Windows Event Tracing Privilege Escalation Vulnerability | 2022-03-28 00:00:00 |
| CVE-2021-38646 | 7.8 | True | Microsoft | Office | Microsoft Office Access Connectivity Engine Remote Code Execution Vulnerability | 2022-03-28 00:00:00 |
| CVE-2022-0543 | 10.0 | True | Redis | Debian-specific Redis Servers | Debian-specific Redis Server Lua Sandbox Escape Vulnerability | 2022-03-28 00:00:00 |
| CVE-2022-1096 | 8.8 | True | Chromium V8 | Google Chromium V8 Type Confusion Vulnerability | 2022-03-28 00:00:00 | |
| CVE-2005-2773 | 9.8 | True | Hewlett Packard (HP) | OpenView Network Node Manager | HP OpenView Network Node Manager Remote Code Execution Vulnerability | 2022-03-25 00:00:00 |
| CVE-2009-0927 | 8.8 | True | Adobe | Reader and Acrobat | Adobe Reader and Adobe Acrobat Stack-Based Buffer Overflow Vulnerability | 2022-03-25 00:00:00 |
| CVE-2009-1151 | 9.8 | True | phpMyAdmin | phpMyAdmin | phpMyAdmin Remote Code Execution Vulnerability | 2022-03-25 00:00:00 |
| CVE-2009-2055 | 5.9 | True | Cisco | IOS XR | Cisco IOS XR Border Gateway Protocol (BGP) Denial-of-Service Vulnerability | 2022-03-25 00:00:00 |
| CVE-2010-2861 | 9.8 | True | Adobe | ColdFusion | Adobe ColdFusion Directory Traversal Vulnerability | 2022-03-25 00:00:00 |
| CVE-2010-3035 | 7.5 | True | Cisco | IOS XR | Cisco IOS XR Border Gateway Protocol (BGP) Denial-of-Service Vulnerability | 2022-03-25 00:00:00 |
| CVE-2010-4344 | 9.8 | True | Exim | Exim | Exim Heap-Based Buffer Overflow Vulnerability | 2022-03-25 00:00:00 |
| CVE-2010-4345 | 7.8 | True | Exim | Exim | Exim Privilege Escalation Vulnerability | 2022-03-25 00:00:00 |
| CVE-2012-1823 | 9.8 | True | PHP | PHP | PHP-CGI Query String Parameter Vulnerability | 2022-03-25 00:00:00 |
| CVE-2013-2251 | 9.8 | True | Apache | Struts | Apache Struts Improper Input Validation Vulnerability | 2022-03-25 00:00:00 |
| CVE-2013-4810 | 9.8 | True | Hewlett Packard (HP) | ProCurve Manager (PCM), PCM+, Identity Driven Manager (IDM), and Application Lifecycle Management | HP Multiple Products Remote Code Execution Vulnerability | 2022-03-25 00:00:00 |
| CVE-2013-5223 | 5.4 | True | D-Link | DSL-2760U | D-Link DSL-2760U Gateway Cross-Site Scripting Vulnerability | 2022-03-25 00:00:00 |
| CVE-2014-0130 | 7.5 | True | Rails | Ruby on Rails | Ruby on Rails Directory Traversal Vulnerability | 2022-03-25 00:00:00 |
| CVE-2014-3120 | 8.1 | True | Elastic | Elasticsearch | Elasticsearch Remote Code Execution Vulnerability | 2022-03-25 00:00:00 |
| CVE-2014-6287 | 9.8 | True | Rejetto | HTTP File Server (HFS) | Rejetto HTTP File Server (HFS) Remote Code Execution Vulnerability | 2022-03-25 00:00:00 |
| CVE-2014-6324 | 8.8 | True | Microsoft | Kerberos Key Distribution Center (KDC) | Microsoft Kerberos Key Distribution Center (KDC) Privilege Escalation Vulnerability | 2022-03-25 00:00:00 |
| CVE-2014-6332 | 8.8 | True | Microsoft | Windows | Microsoft Windows Object Linking & Embedding (OLE) Automation Array Remote Code Execution Vulnerability | 2022-03-25 00:00:00 |
| CVE-2015-0666 | 7.5 | True | Cisco | Prime Data Center Network Manager (DCNM) | Cisco Prime Data Center Network Manager (DCNM) Directory Traversal Vulnerability | 2022-03-25 00:00:00 |
| CVE-2015-1187 | 9.8 | True | D-Link and TRENDnet | Multiple Devices | D-Link and TRENDnet Multiple Devices Remote Code Execution Vulnerability | 2022-03-25 00:00:00 |
| CVE-2015-1427 | 9.8 | True | Elastic | Elasticsearch | Elasticsearch Groovy Scripting Engine Remote Code Execution Vulnerability | 2022-03-25 00:00:00 |
| CVE-2015-3035 | 7.5 | True | TP-Link | Multiple Archer Devices | TP-Link Multiple Archer Devices Directory Traversal Vulnerability | 2022-03-25 00:00:00 |
| CVE-2015-4068 | 9.1 | True | Arcserve | Unified Data Protection (UDP) | Arcserve Unified Data Protection (UDP) Directory Traversal Vulnerability | 2022-03-25 00:00:00 |
| CVE-2016-0752 | 7.5 | True | Rails | Ruby on Rails | Ruby on Rails Directory Traversal Vulnerability | 2022-03-25 00:00:00 |
| CVE-2016-10174 | 9.8 | True | NETGEAR | WNR2000v5 Router | NETGEAR WNR2000v5 Router Buffer Overflow Vulnerability | 2022-03-25 00:00:00 |
| CVE-2016-11021 | 7.2 | True | D-Link | DCS-930L Devices | D-Link DCS-930L Devices OS Command Injection Vulnerability | 2022-03-25 00:00:00 |
| CVE-2016-1555 | 9.8 | True | NETGEAR | Wireless Access Point (WAP) Devices | NETGEAR Multiple WAP Devices Command Injection Vulnerability | 2022-03-25 00:00:00 |
| CVE-2016-4171 | 7.8 | True | Adobe | Flash Player | Adobe Flash Player Remote Code Execution Vulnerability | 2022-03-25 00:00:00 |
| CVE-2016-7892 | 8.8 | True | Adobe | Flash Player | Adobe Flash Player Use-After-Free Vulnerability | 2022-03-25 00:00:00 |
| CVE-2017-0146 | 8.8 | True | Microsoft | Windows | Microsoft Windows SMB Remote Code Execution Vulnerability | 2022-03-25 00:00:00 |
| CVE-2017-12615 | 8.1 | True | Apache | Tomcat | Apache Tomcat on Windows Remote Code Execution Vulnerability | 2022-03-25 00:00:00 |
| CVE-2017-12617 | 8.1 | True | Apache | Tomcat | Apache Tomcat Remote Code Execution Vulnerability | 2022-03-25 00:00:00 |
| CVE-2017-3881 | 9.8 | True | Cisco | IOS and IOS XE | Cisco IOS and IOS XE Remote Code Execution Vulnerability | 2022-03-25 00:00:00 |
| CVE-2017-6316 | 9.8 | True | Citrix | NetScaler SD-WAN Enterprise, CloudBridge Virtual WAN, and XenMobile Server | Citrix Multiple Products Remote Code Execution Vulnerability | 2022-03-25 00:00:00 |
| CVE-2017-6334 | 8.8 | True | NETGEAR | DGN2200 Devices | NETGEAR DGN2200 Devices OS Command Injection Vulnerability | 2022-03-25 00:00:00 |
| CVE-2018-0125 | 9.8 | True | Cisco | VPN Routers | Cisco VPN Routers Remote Code Execution Vulnerability | 2022-03-25 00:00:00 |
| CVE-2018-0147 | 9.8 | True | Cisco | Secure Access Control System (ACS) | Cisco Secure Access Control System Java Deserialization Vulnerability | 2022-03-25 00:00:00 |
| CVE-2018-11138 | 9.8 | True | Quest | KACE System Management Appliance | Quest KACE System Management Appliance Remote Command Execution Vulnerability | 2022-03-25 00:00:00 |
| CVE-2018-1273 | 9.8 | True | VMware Tanzu | Spring Data Commons | VMware Tanzu Spring Data Commons Property Binder Vulnerability | 2022-03-25 00:00:00 |
| CVE-2018-14839 | 9.8 | True | LG | N1A1 NAS | LG N1A1 NAS Remote Command Execution Vulnerability | 2022-03-25 00:00:00 |
| CVE-2018-6961 | 8.1 | True | VMware | SD-WAN Edge | VMware SD-WAN Edge by VeloCloud Command Injection Vulnerability | 2022-03-25 00:00:00 |
| CVE-2018-8373 | 7.5 | True | Microsoft | Internet Explorer Scripting Engine | Microsoft Scripting Engine Memory Corruption Vulnerability | 2022-03-25 00:00:00 |
| CVE-2018-8414 | 8.8 | True | Microsoft | Windows | Microsoft Windows Shell Remote Code Execution Vulnerability | 2022-03-25 00:00:00 |
| CVE-2019-0903 | 8.8 | True | Microsoft | Graphics Device Interface (GDI) | Microsoft GDI Remote Code Execution Vulnerability | 2022-03-25 00:00:00 |
| CVE-2019-1003030 | 9.9 | True | Jenkins | Matrix Project Plugin | Jenkins Matrix Project Plugin Remote Code Execution Vulnerability | 2022-03-25 00:00:00 |
| CVE-2019-10068 | 9.8 | True | Kentico | Xperience | Kentico Xperience Deserialization of Untrusted Data Vulnerability | 2022-03-25 00:00:00 |
| CVE-2019-11043 | 8.7 | True | PHP | FastCGI Process Manager (FPM) | PHP FastCGI Process Manager (FPM) Buffer Overflow Vulnerability | 2022-03-25 00:00:00 |
| CVE-2019-12989 | 9.8 | True | Citrix | SD-WAN and NetScaler | Citrix SD-WAN and NetScaler SQL Injection Vulnerability | 2022-03-25 00:00:00 |
| CVE-2019-12991 | 8.8 | True | Citrix | SD-WAN and NetScaler | Citrix SD-WAN and NetScaler Command Injection Vulnerability | 2022-03-25 00:00:00 |
| CVE-2019-15107 | 9.8 | True | Webmin | Webmin | Webmin Command Injection Vulnerability | 2022-03-25 00:00:00 |
| CVE-2019-16920 | 9.8 | True | D-Link | Multiple Routers | D-Link Multiple Routers Command Injection Vulnerability | 2022-03-25 00:00:00 |
| CVE-2019-2616 | 7.2 | True | Oracle | BI Publisher (Formerly XML Publisher) | Oracle BI Publisher Unauthorized Access Vulnerability | 2022-03-25 00:00:00 |
| CVE-2019-6340 | 8.1 | True | Drupal | Core | Drupal Core Remote Code Execution Vulnerability | 2022-03-25 00:00:00 |
| CVE-2020-1631 | 8.8 | True | Juniper | Junos OS | Juniper Junos OS Path Traversal Vulnerability | 2022-03-25 00:00:00 |
| CVE-2020-1956 | 8.8 | True | Apache | Kylin | Apache Kylin OS Command Injection Vulnerability | 2022-03-25 00:00:00 |
| CVE-2020-2021 | 10.0 | True | Palo Alto Networks | PAN-OS | Palo Alto Networks PAN-OS Authentication Bypass Vulnerability | 2022-03-25 00:00:00 |
| CVE-2020-2506 | 7.3 | True | QNAP Systems | Helpdesk | QNAP Helpdesk Improper Access Control Vulnerability | 2022-03-25 00:00:00 |
| CVE-2020-25223 | 9.8 | True | Sophos | SG UTM | Sophos SG UTM Remote Code Execution Vulnerability | 2022-03-25 00:00:00 |
| CVE-2020-5410 | 7.5 | True | VMware Tanzu | Spring Cloud Configuration (Config) Server | VMware Tanzu Spring Cloud Config Directory Traversal Vulnerability | 2022-03-25 00:00:00 |
| CVE-2020-7247 | 9.8 | True | OpenBSD | OpenSMTPD | OpenSMTPD Remote Code Execution Vulnerability | 2022-03-25 00:00:00 |
| CVE-2020-9054 | 9.8 | True | Zyxel | Multiple Network-Attached Storage (NAS) Devices | Zyxel Multiple NAS Devices OS Command Injection Vulnerability | 2022-03-25 00:00:00 |
| CVE-2020-9377 | 8.8 | True | D-Link | DIR-610 Devices | D-Link DIR-610 Devices Remote Command Execution | 2022-03-25 00:00:00 |
| CVE-2021-22941 | 9.8 | True | Citrix | ShareFile | Citrix ShareFile Improper Access Control Vulnerability | 2022-03-25 00:00:00 |
| CVE-2021-42237 | 9.8 | True | Sitecore | XP | Sitecore XP Remote Command Execution Vulnerability | 2022-03-25 00:00:00 |
| CVE-2022-21999 | 7.8 | True | Microsoft | Windows | Microsoft Windows Print Spooler Privilege Escalation Vulnerability | 2022-03-25 00:00:00 |
| CVE-2022-26143 | 9.8 | True | Mitel | MiCollab, MiVoice Business Express | MiCollab, MiVoice Business Express Access Control Vulnerability | 2022-03-25 00:00:00 |
| CVE-2022-26318 | 9.8 | True | WatchGuard | Firebox and XTM Appliances | WatchGuard Firebox and XTM Appliances Arbitrary Code Execution | 2022-03-25 00:00:00 |
| CVE-2015-2546 | 8.2 | True | Microsoft | Win32k | Microsoft Win32k Memory Corruption Vulnerability | 2022-03-15 00:00:00 |
| CVE-2016-3309 | 7.8 | True | Microsoft | Windows | Microsoft Windows Kernel Privilege Escalation Vulnerability | 2022-03-15 00:00:00 |
| CVE-2017-0101 | 7.8 | True | Microsoft | Windows | Microsoft Windows Transaction Manager Privilege Escalation Vulnerability | 2022-03-15 00:00:00 |
| CVE-2018-8120 | 7.0 | True | Microsoft | Win32k | Microsoft Win32k Privilege Escalation Vulnerability | 2022-03-15 00:00:00 |
| CVE-2019-0543 | 7.8 | True | Microsoft | Windows | Microsoft Windows Privilege Escalation Vulnerability | 2022-03-15 00:00:00 |
| CVE-2019-0841 | 7.8 | True | Microsoft | Windows | Microsoft Windows AppX Deployment Service (AppXSVC) Privilege Escalation Vulnerability | 2022-03-15 00:00:00 |
| CVE-2019-1064 | 7.8 | True | Microsoft | Windows | Microsoft Windows AppX Deployment Service (AppXSVC) Privilege Escalation Vulnerability | 2022-03-15 00:00:00 |
| CVE-2019-1069 | 7.8 | True | Microsoft | Task Scheduler | Microsoft Task Scheduler Privilege Escalation Vulnerability | 2022-03-15 00:00:00 |
| CVE-2019-1129 | 7.8 | True | Microsoft | Windows | Microsoft Windows AppX Deployment Service (AppXSVC) Privilege Escalation Vulnerability | 2022-03-15 00:00:00 |
| CVE-2019-1132 | 7.8 | True | Microsoft | Win32k | Microsoft Win32k Privilege Escalation Vulnerability | 2022-03-15 00:00:00 |
| CVE-2019-1253 | 7.8 | True | Microsoft | Windows | Microsoft Windows AppX Deployment Server Privilege Escalation Vulnerability | 2022-03-15 00:00:00 |
| CVE-2019-1315 | 7.8 | True | Microsoft | Windows | Microsoft Windows Error Reporting Manager Privilege Escalation Vulnerability | 2022-03-15 00:00:00 |
| CVE-2019-1322 | 7.8 | True | Microsoft | Windows | Microsoft Windows Privilege Escalation Vulnerability | 2022-03-15 00:00:00 |
| CVE-2019-1405 | 7.8 | True | Microsoft | Windows | Microsoft Windows Universal Plug and Play (UPnP) Service Privilege Escalation Vulnerability | 2022-03-15 00:00:00 |
| CVE-2020-5135 | 9.8 | True | SonicWall | SonicOS | SonicWall SonicOS Buffer Overflow Vulnerability | 2022-03-15 00:00:00 |
| CVE-2009-3960 | 6.5 | True | Adobe | BlazeDS | Adobe BlazeDS Information Disclosure Vulnerability | 2022-03-07 00:00:00 |
| CVE-2013-0625 | 9.8 | True | Adobe | ColdFusion | Adobe ColdFusion Authentication Bypass Vulnerability | 2022-03-07 00:00:00 |
| CVE-2013-0629 | 7.5 | True | Adobe | ColdFusion | Adobe ColdFusion Directory Traversal Vulnerability | 2022-03-07 00:00:00 |
| CVE-2013-0631 | 7.5 | True | Adobe | ColdFusion | Adobe ColdFusion Information Disclosure Vulnerability | 2022-03-07 00:00:00 |
| CVE-2016-6277 | 8.8 | True | NETGEAR | Multiple Routers | NETGEAR Multiple Routers Remote Code Execution Vulnerability | 2022-03-07 00:00:00 |
| CVE-2017-6077 | 9.8 | True | NETGEAR | Wireless Router DGN2200 | NETGEAR DGN2200 Remote Code Execution Vulnerability | 2022-03-07 00:00:00 |
| CVE-2019-11581 | 9.8 | True | Atlassian | Jira Server and Data Center | Atlassian Jira Server and Data Center Server-Side Template Injection Vulnerability | 2022-03-07 00:00:00 |
| CVE-2020-8218 | 7.2 | True | Pulse Secure | Pulse Connect Secure | Pulse Connect Secure Code Injection Vulnerability | 2022-03-07 00:00:00 |
| CVE-2021-21973 | 5.3 | True | VMware | vCenter Server and Cloud Foundation | VMware vCenter Server and Cloud Foundation Server Side Request Forgery (SSRF) Vulnerability | 2022-03-07 00:00:00 |
| CVE-2022-26485 | 8.8 | True | Mozilla | Firefox | Mozilla Firefox Use-After-Free Vulnerability | 2022-03-07 00:00:00 |
| CVE-2022-26486 | 9.6 | True | Mozilla | Firefox | Mozilla Firefox Use-After-Free Vulnerability | 2022-03-07 00:00:00 |
| CVE-2002-0367 | 7.8 | True | Microsoft | Windows | Microsoft Windows Privilege Escalation Vulnerability | 2022-03-03 00:00:00 |
| CVE-2004-0210 | 7.8 | True | Microsoft | Windows | Microsoft Windows Privilege Escalation Vulnerability | 2022-03-03 00:00:00 |
| CVE-2008-2992 | 7.8 | True | Adobe | Acrobat and Reader | Adobe Reader and Acrobat Input Validation Vulnerability | 2022-03-03 00:00:00 |
| CVE-2008-3431 | 8.8 | True | Oracle | VirtualBox | Oracle VirtualBox Insufficient Input Validation Vulnerability | 2022-03-03 00:00:00 |
| CVE-2009-1123 | 7.8 | True | Microsoft | Windows | Microsoft Windows Improper Input Validation Vulnerability | 2022-03-03 00:00:00 |
| CVE-2009-3129 | 7.8 | True | Microsoft | Excel | Microsoft Excel Featheader Record Memory Corruption Vulnerability | 2022-03-03 00:00:00 |
| CVE-2010-0188 | 7.8 | True | Adobe | Reader and Acrobat | Adobe Reader and Acrobat Arbitrary Code Execution Vulnerability | 2022-03-03 00:00:00 |
| CVE-2010-0232 | 7.8 | True | Microsoft | Windows | Microsoft Windows Kernel Exception Handler Vulnerability | 2022-03-03 00:00:00 |
| CVE-2010-3333 | 7.8 | True | Microsoft | Office | Microsoft Office Stack-based Buffer Overflow Vulnerability | 2022-03-03 00:00:00 |
| CVE-2011-0611 | 8.8 | True | Adobe | Flash Player | Adobe Flash Player Remote Code Execution Vulnerability | 2022-03-03 00:00:00 |
| CVE-2011-1889 | 9.8 | True | Microsoft | Forefront Threat Management Gateway (TMG) | Microsoft Forefront TMG Remote Code Execution Vulnerability | 2022-03-03 00:00:00 |
| CVE-2011-3544 | 9.8 | True | Oracle | Java SE JDK and JRE | Oracle Java SE Runtime Environment (JRE) Arbitrary Code Execution Vulnerability | 2022-03-03 00:00:00 |
| CVE-2012-0507 | 9.8 | True | Oracle | Java SE | Oracle Java SE Runtime Environment (JRE) Arbitrary Code Execution Vulnerability | 2022-03-03 00:00:00 |
| CVE-2012-1535 | 7.8 | True | Adobe | Flash Player | Adobe Flash Player Arbitrary Code Execution Vulnerability | 2022-03-03 00:00:00 |
| CVE-2012-1723 | 9.8 | True | Oracle | Java SE | Oracle Java SE Runtime Environment (JRE) Arbitrary Code Execution Vulnerability | 2022-03-03 00:00:00 |
| CVE-2012-1856 | 8.8 | True | Microsoft | Office | Microsoft Office MSCOMCTL.OCX Remote Code Execution Vulnerability | 2022-03-03 00:00:00 |
| CVE-2012-4681 | 9.8 | True | Oracle | Java SE | Oracle Java SE Runtime Environment (JRE) Arbitrary Code Execution Vulnerability | 2022-03-03 00:00:00 |
| CVE-2013-0632 | 9.8 | True | Adobe | ColdFusion | Adobe ColdFusion Authentication Bypass Vulnerability | 2022-03-03 00:00:00 |
| CVE-2013-0640 | 7.8 | True | Adobe | Reader and Acrobat | Adobe Reader and Acrobat Memory Corruption Vulnerability | 2022-03-03 00:00:00 |
| CVE-2013-0641 | 7.8 | True | Adobe | Reader | Adobe Reader Buffer Overflow Vulnerability | 2022-03-03 00:00:00 |
| CVE-2013-1347 | 8.8 | True | Microsoft | Internet Explorer | Microsoft Internet Explorer Remote Code Execution Vulnerability | 2022-03-03 00:00:00 |
| CVE-2013-1675 | 6.5 | True | Mozilla | Firefox | Mozilla Firefox Information Disclosure Vulnerability | 2022-03-03 00:00:00 |
| CVE-2013-3346 | 8.8 | True | Adobe | Reader and Acrobat | Adobe Reader and Acrobat Memory Corruption Vulnerability | 2022-03-03 00:00:00 |
| CVE-2013-3897 | 8.8 | True | Microsoft | Internet Explorer | Microsoft Internet Explorer Use-After-Free Vulnerability | 2022-03-03 00:00:00 |
| CVE-2013-5065 | 7.8 | True | Microsoft | Windows | Microsoft Windows Kernel Privilege Escalation Vulnerability | 2022-03-03 00:00:00 |
| CVE-2014-0496 | 8.8 | True | Adobe | Reader and Acrobat | Adobe Reader and Acrobat Use-After-Free Vulnerability | 2022-03-03 00:00:00 |
| CVE-2014-4114 | 7.8 | True | Microsoft | Windows | Microsoft Windows Object Linking & Embedding (OLE) Remote Code Execution Vulnerability | 2022-03-03 00:00:00 |
| CVE-2015-1642 | 7.8 | True | Microsoft | Office | Microsoft Office Memory Corruption Vulnerability | 2022-03-03 00:00:00 |
| CVE-2015-1701 | 7.8 | True | Microsoft | Win32k | Microsoft Win32k Privilege Escalation Vulnerability | 2022-03-03 00:00:00 |
| CVE-2015-2387 | 7.8 | True | Microsoft | ATM Font Driver | Microsoft ATM Font Driver Privilege Escalation Vulnerability | 2022-03-03 00:00:00 |
| CVE-2015-2424 | 8.8 | True | Microsoft | PowerPoint | Microsoft PowerPoint Memory Corruption Vulnerability | 2022-03-03 00:00:00 |
| CVE-2015-2545 | 7.8 | True | Microsoft | Office | Microsoft Office Malformed EPS File Vulnerability | 2022-03-03 00:00:00 |
| CVE-2015-2590 | 9.8 | True | Oracle | Java SE | Oracle Java SE and Java SE Embedded Remote Code Execution Vulnerability | 2022-03-03 00:00:00 |
| CVE-2015-3043 | 7.8 | True | Adobe | Flash Player | Adobe Flash Player Memory Corruption Vulnerability | 2022-03-03 00:00:00 |
| CVE-2015-4902 | 5.3 | True | Oracle | Java SE | Oracle Java SE Integrity Check Vulnerability | 2022-03-03 00:00:00 |
| CVE-2015-5119 | 7.8 | True | Adobe | Flash Player | Adobe Flash Player Use-After-Free Vulnerability | 2022-03-03 00:00:00 |
| CVE-2015-7645 | 7.8 | True | Adobe | Flash Player | Adobe Flash Player Arbitrary Code Execution Vulnerability | 2022-03-03 00:00:00 |
| CVE-2016-0099 | 7.8 | True | Microsoft | Windows | Microsoft Windows Secondary Logon Service Privilege Escalation Vulnerability | 2022-03-03 00:00:00 |
| CVE-2016-1019 | 7.8 | True | Adobe | Flash Player | Adobe Flash Player Arbitrary Code Execution Vulnerability | 2022-03-03 00:00:00 |
| CVE-2016-4117 | 7.8 | True | Adobe | Flash Player | Adobe Flash Player Arbitrary Code Execution Vulnerability | 2022-03-03 00:00:00 |
| CVE-2016-5195 | 7.0 | True | Linux | Kernel | Linux Kernel Race Condition Vulnerability | 2022-03-03 00:00:00 |
| CVE-2016-7193 | 7.8 | True | Microsoft | Office | Microsoft Office Memory Corruption Vulnerability | 2022-03-03 00:00:00 |
| CVE-2016-7262 | 7.8 | True | Microsoft | Excel | Microsoft Office Security Feature Bypass Vulnerability | 2022-03-03 00:00:00 |
| CVE-2016-7855 | 8.8 | True | Adobe | Flash Player | Adobe Flash Player Use-After-Free Vulnerability | 2022-03-03 00:00:00 |
| CVE-2016-8562 | 7.5 | True | Siemens | SIMATIC CP | Siemens SIMATIC CP 1543-1 Improper Privilege Management Vulnerability | 2022-03-03 00:00:00 |
| CVE-2017-0001 | 7.8 | True | Microsoft | Graphics Device Interface (GDI) | Microsoft Graphics Device Interface (GDI) Privilege Escalation Vulnerability | 2022-03-03 00:00:00 |
| CVE-2017-0261 | 7.8 | True | Microsoft | Office | Microsoft Office Use-After-Free Vulnerability | 2022-03-03 00:00:00 |
| CVE-2017-11292 | 8.8 | True | Adobe | Flash Player | Adobe Flash Player Type Confusion Vulnerability | 2022-03-03 00:00:00 |
| CVE-2017-11826 | 7.8 | True | Microsoft | Office | Microsoft Office Remote Code Execution Vulnerability | 2022-03-03 00:00:00 |
| CVE-2017-12231 | 7.5 | True | Cisco | IOS software | Cisco IOS Software Network Address Translation Denial-of-Service Vulnerability | 2022-03-03 00:00:00 |
| CVE-2017-12232 | 6.5 | True | Cisco | IOS software | Cisco IOS Software for Cisco Integrated Services Routers Denial-of-Service Vulnerability | 2022-03-03 00:00:00 |
| CVE-2017-12233 | 7.5 | True | Cisco | IOS software | Cisco IOS Software Common Industrial Protocol Request Denial-of-Service Vulnerability | 2022-03-03 00:00:00 |
| CVE-2017-12234 | 7.5 | True | Cisco | IOS software | Cisco IOS Software Common Industrial Protocol Request Denial-of-Service Vulnerability | 2022-03-03 00:00:00 |
| CVE-2017-12235 | 7.5 | True | Cisco | IOS software | Cisco IOS Software for Cisco Industrial Ethernet Switches PROFINET Denial-of-Service Vulnerability | 2022-03-03 00:00:00 |
| CVE-2017-12237 | 7.5 | True | Cisco | IOS and IOS XE Software | Cisco IOS and IOS XE Software Internet Key Exchange Denial-of-Service Vulnerability | 2022-03-03 00:00:00 |
| CVE-2017-12238 | 6.5 | True | Cisco | Catalyst 6800 Series Switches | Cisco Catalyst 6800 Series Switches VPLS Denial-of-Service Vulnerability | 2022-03-03 00:00:00 |
| CVE-2017-12240 | 9.8 | True | Cisco | IOS and IOS XE Software | Cisco IOS and IOS XE Software DHCP Remote Code Execution Vulnerability | 2022-03-03 00:00:00 |
| CVE-2017-12319 | 5.9 | True | Cisco | IOS XE Software | Cisco IOS XE Software Ethernet Virtual Private Network Border Gateway Protocol Denial-of-Service Vulnerability | 2022-03-03 00:00:00 |
| CVE-2017-6627 | 7.5 | True | Cisco | IOS and IOS XE Software | Cisco IOS Software and Cisco IOS XE Software UDP Packet Processing Denial-of-Service Vulnerability | 2022-03-03 00:00:00 |
| CVE-2017-6663 | 6.5 | True | Cisco | IOS and IOS XE Software | Cisco IOS Software and Cisco IOS XE Software Denial-of-Service Vulnerability | 2022-03-03 00:00:00 |
| CVE-2017-6736 | 8.8 | True | Cisco | IOS and IOS XE Software | Cisco IOS and IOS XE Software SNMP Remote Code Execution Vulnerability | 2022-03-03 00:00:00 |
| CVE-2017-6737 | 8.8 | True | Cisco | IOS and IOS XE Software | Cisco IOS and IOS XE Software SNMP Remote Code Execution Vulnerability | 2022-03-03 00:00:00 |
| CVE-2017-6738 | 8.8 | True | Cisco | IOS and IOS XE Software | Cisco IOS and IOS XE Software SNMP Remote Code Execution Vulnerability | 2022-03-03 00:00:00 |
| CVE-2017-6739 | 8.8 | True | Cisco | IOS and IOS XE Software | Cisco IOS and IOS XE Software SNMP Remote Code Execution Vulnerability | 2022-03-03 00:00:00 |
| CVE-2017-6740 | 8.8 | True | Cisco | IOS and IOS XE Software | Cisco IOS and IOS XE Software SNMP Remote Code Execution Vulnerability | 2022-03-03 00:00:00 |
| CVE-2017-6743 | 8.8 | True | Cisco | IOS and IOS XE Software | Cisco IOS and IOS XE Software SNMP Remote Code Execution Vulnerability | 2022-03-03 00:00:00 |
| CVE-2017-6744 | 8.8 | True | Cisco | IOS software | Cisco IOS Software SNMP Remote Code Execution Vulnerability | 2022-03-03 00:00:00 |
| CVE-2017-8540 | 7.8 | True | Microsoft | Malware Protection Engine | Microsoft Malware Protection Engine Improper Restriction of Operations Vulnerability | 2022-03-03 00:00:00 |
| CVE-2018-0151 | 9.8 | True | Cisco | IOS and IOS XE Software | Cisco IOS Software and Cisco IOS XE Software Quality of Service Remote Code Execution Vulnerability | 2022-03-03 00:00:00 |
| CVE-2018-0154 | 7.5 | True | Cisco | IOS Software | Cisco IOS Software Integrated Services Module for VPN Denial-of-Service Vulnerability | 2022-03-03 00:00:00 |
| CVE-2018-0155 | 8.6 | True | Cisco | Catalyst 4500 Series Switches and Cisco Catalyst 4500-X Series Switches | Cisco Catalyst Bidirectional Forwarding Detection Denial-of-Service Vulnerability | 2022-03-03 00:00:00 |
| CVE-2018-0156 | 7.5 | True | Cisco | IOS Software and Cisco IOS XE Software | Cisco IOS Software and Cisco IOS XE Software Smart Install Denial-of-Service Vulnerability | 2022-03-03 00:00:00 |
| CVE-2018-0158 | 8.6 | True | Cisco | IOS Software and Cisco IOS XE Software | Cisco IOS and XE Software Internet Key Exchange Memory Leak Vulnerability | 2022-03-03 00:00:00 |
| CVE-2018-0159 | 7.5 | True | Cisco | IOS Software and Cisco IOS XE Software | Cisco IOS and XE Software Internet Key Exchange Version 1 Denial-of-Service Vulnerability | 2022-03-03 00:00:00 |
| CVE-2018-0161 | 6.3 | True | Cisco | IOS Software | Cisco IOS Software Resource Management Errors Vulnerability | 2022-03-03 00:00:00 |
| CVE-2018-0167 | 8.8 | True | Cisco | IOS, XR, and XE Software | Cisco IOS, XR, and XE Software Buffer Overflow Vulnerability | 2022-03-03 00:00:00 |
| CVE-2018-0172 | 8.6 | True | Cisco | IOS and IOS XE Software | Cisco IOS and IOS XE Software Improper Input Validation Vulnerability | 2022-03-03 00:00:00 |
| CVE-2018-0173 | 8.6 | True | Cisco | IOS and IOS XE Software | Cisco IOS and IOS XE Software Improper Input Validation Vulnerability | 2022-03-03 00:00:00 |
| CVE-2018-0174 | 8.6 | True | Cisco | IOS XE Software | Cisco IOS Software and Cisco IOS XE Software Improper Input Validation Vulnerability | 2022-03-03 00:00:00 |
| CVE-2018-0175 | 8.0 | True | Cisco | IOS, XR, and XE Software | Cisco IOS, XR, and XE Software Buffer Overflow Vulnerability | 2022-03-03 00:00:00 |
| CVE-2018-0179 | 6.8 | True | Cisco | IOS Software | Cisco IOS Software Denial-of-Service Vulnerability | 2022-03-03 00:00:00 |
| CVE-2018-0180 | 6.8 | True | Cisco | IOS Software | Cisco IOS Software Denial-of-Service Vulnerability | 2022-03-03 00:00:00 |
| CVE-2018-8298 | 7.5 | True | ChakraCore | ChakraCore scripting engine | ChakraCore Scripting Engine Type Confusion Vulnerability | 2022-03-03 00:00:00 |
| CVE-2018-8581 | 7.4 | True | Microsoft | Exchange Server | Microsoft Exchange Server Privilege Escalation Vulnerability | 2022-03-03 00:00:00 |
| CVE-2019-1297 | 8.8 | True | Microsoft | Excel | Microsoft Excel Remote Code Execution Vulnerability | 2022-03-03 00:00:00 |
| CVE-2019-1652 | 7.2 | True | Cisco | Small Business RV320 and RV325 Dual Gigabit WAN VPN Routers | Cisco Small Business Routers Improper Input Validation Vulnerability | 2022-03-03 00:00:00 |
| CVE-2019-16928 | 9.8 | True | Exim | Exim Internet Mailer | Exim Out-of-bounds Write Vulnerability | 2022-03-03 00:00:00 |
| CVE-2020-11899 | 5.4 | True | Treck TCP/IP stack | IPv6 | Treck TCP/IP stack Out-of-Bounds Read Vulnerability | 2022-03-03 00:00:00 |
| CVE-2020-1938 | 9.8 | True | Apache | Tomcat | Apache Tomcat Improper Privilege Management Vulnerability | 2022-03-03 00:00:00 |
| CVE-2021-41379 | 5.5 | True | Microsoft | Windows | Microsoft Windows Installer Privilege Escalation Vulnerability | 2022-03-03 00:00:00 |
| CVE-2022-20699 | 10.0 | True | Cisco | Small Business RV160, RV260, RV340, and RV345 Series Routers | Cisco Small Business RV Series Routers Stack-based Buffer Overflow Vulnerability | 2022-03-03 00:00:00 |
| CVE-2022-20700 | 10.0 | True | Cisco | Small Business RV160, RV260, RV340, and RV345 Series Routers | Cisco Small Business RV Series Routers Stack-based Buffer Overflow Vulnerability | 2022-03-03 00:00:00 |
| CVE-2022-20701 | 10.0 | True | Cisco | Small Business RV160, RV260, RV340, and RV345 Series Routers | Cisco Small Business RV Series Routers Stack-based Buffer Overflow Vulnerability | 2022-03-03 00:00:00 |
| CVE-2022-20703 | 10.0 | True | Cisco | Small Business RV160, RV260, RV340, and RV345 Series Routers | Cisco Small Business RV Series Routers Stack-based Buffer Overflow Vulnerability | 2022-03-03 00:00:00 |
| CVE-2022-20708 | 10.0 | True | Cisco | Small Business RV160, RV260, RV340, and RV345 Series Routers | Cisco Small Business RV Series Routers Stack-based Buffer Overflow Vulnerability | 2022-03-03 00:00:00 |
| CVE-2014-6352 | 7.8 | True | Microsoft | Windows | Microsoft Windows Code Injection Vulnerability | 2022-02-25 00:00:00 |
| CVE-2017-0222 | 8.8 | True | Microsoft | Internet Explorer | Microsoft Internet Explorer Remote Code Execution Vulnerability | 2022-02-25 00:00:00 |
| CVE-2017-8570 | 7.8 | True | Microsoft | Office | Microsoft Office Remote Code Execution Vulnerability | 2022-02-25 00:00:00 |
| CVE-2022-24682 | 6.1 | True | Synacor | Zimbra Collaborate Suite (ZCS) | Synacor Zimbra Collaborate Suite (ZCS) Cross-Site Scripting Vulnerability | 2022-02-25 00:00:00 |
| CVE-2022-23134 | 3.7 | True | Zabbix | Frontend | Zabbix Frontend Improper Access Control Vulnerability | 2022-02-22 00:00:00 |
| CVE-2022-23131 | 9.1 | True | Zabbix | Frontend | Zabbix Frontend Authentication Bypass Vulnerability | 2022-02-22 00:00:00 |
| CVE-2013-3906 | 7.8 | True | Microsoft | Graphics Component | Microsoft Graphics Component Memory Corruption Vulnerability | 2022-02-15 00:00:00 |
| CVE-2014-1761 | 7.8 | True | Microsoft | Word | Microsoft Word Memory Corruption Vulnerability | 2022-02-15 00:00:00 |
| CVE-2017-9841 | 9.8 | True | PHPUnit | PHPUnit | PHPUnit Command Injection Vulnerability | 2022-02-15 00:00:00 |
| CVE-2018-15982 | 7.8 | True | Adobe | Flash Player | Adobe Flash Player Use-After-Free Vulnerability | 2022-02-15 00:00:00 |
| CVE-2018-20250 | 7.8 | True | RARLAB | WinRAR | WinRAR Absolute Path Traversal Vulnerability | 2022-02-15 00:00:00 |
| CVE-2018-8174 | 7.5 | True | Microsoft | Windows | Microsoft Windows VBScript Engine Out-of-Bounds Write Vulnerability | 2022-02-15 00:00:00 |
| CVE-2019-0752 | 7.5 | True | Microsoft | Internet Explorer | Microsoft Internet Explorer Type Confusion Vulnerability | 2022-02-15 00:00:00 |
| CVE-2022-0609 | 8.8 | True | Chromium Animation | Google Chromium Animation Use-After-Free Vulnerability | 2022-02-15 00:00:00 | |
| CVE-2022-24086 | 9.8 | True | Adobe | Commerce and Magento Open Source | Adobe Commerce and Magento Open Source Improper Input Validation Vulnerability | 2022-02-15 00:00:00 |
| CVE-2022-22620 | 8.8 | True | Apple | iOS, iPadOS, and macOS | Apple iOS, iPadOS, and macOS Webkit Use-After-Free Vulnerability | 2022-02-11 00:00:00 |
| CVE-2014-4404 | 7.8 | True | Apple | OS X | Apple OS X Heap-Based Buffer Overflow Vulnerability | 2022-02-10 00:00:00 |
| CVE-2015-1130 | 7.8 | True | Apple | OS X | Apple OS X Authentication Bypass Vulnerability | 2022-02-10 00:00:00 |
| CVE-2015-1635 | 9.8 | True | Microsoft | HTTP.sys | Microsoft HTTP.sys Remote Code Execution Vulnerability | 2022-02-10 00:00:00 |
| CVE-2015-2051 | 8.8 | True | D-Link | DIR-645 Router | D-Link DIR-645 Router Remote Code Execution Vulnerability | 2022-02-10 00:00:00 |
| CVE-2016-3088 | 9.8 | True | Apache | ActiveMQ | Apache ActiveMQ Improper Input Validation Vulnerability | 2022-02-10 00:00:00 |
| CVE-2017-0144 | 8.8 | True | Microsoft | SMBv1 | Microsoft SMBv1 Remote Code Execution Vulnerability | 2022-02-10 00:00:00 |
| CVE-2017-0145 | 8.8 | True | Microsoft | SMBv1 | Microsoft SMBv1 Remote Code Execution Vulnerability | 2022-02-10 00:00:00 |
| CVE-2017-0262 | 7.8 | True | Microsoft | Office | Microsoft Office Remote Code Execution Vulnerability | 2022-02-10 00:00:00 |
| CVE-2017-0263 | 7.8 | True | Microsoft | Win32k | Microsoft Win32k Privilege Escalation Vulnerability | 2022-02-10 00:00:00 |
| CVE-2017-10271 | 7.5 | True | Oracle | WebLogic Server | Oracle Corporation WebLogic Server Remote Code Execution Vulnerability | 2022-02-10 00:00:00 |
| CVE-2017-8464 | 8.8 | True | Microsoft | Windows | Microsoft Windows Shell (.lnk) Remote Code Execution Vulnerability | 2022-02-10 00:00:00 |
| CVE-2017-9791 | 9.8 | True | Apache | Struts 1 | Apache Struts 1 Improper Input Validation Vulnerability | 2022-02-10 00:00:00 |
| CVE-2018-1000861 | 9.8 | True | Jenkins | Jenkins Stapler Web Framework | Jenkins Stapler Web Framework Deserialization of Untrusted Data Vulnerability | 2022-02-10 00:00:00 |
| CVE-2020-0796 | 10.0 | True | Microsoft | SMBv3 | Microsoft SMBv3 Remote Code Execution Vulnerability | 2022-02-10 00:00:00 |
| CVE-2021-36934 | 7.8 | True | Microsoft | Windows | Microsoft Windows SAM Local Privilege Escalation Vulnerability | 2022-02-10 00:00:00 |
| CVE-2022-21882 | 7.0 | True | Microsoft | Win32k | Microsoft Win32k Privilege Escalation Vulnerability | 2022-02-04 00:00:00 |
| CVE-2014-7169 | 9.8 | True | GNU | Bourne-Again Shell (Bash) | GNU Bourne-Again Shell (Bash) Arbitrary Code Execution Vulnerability | 2022-01-28 00:00:00 |
| CVE-2014-6271 | 9.8 | True | GNU | Bourne-Again Shell (Bash) | GNU Bourne-Again Shell (Bash) Arbitrary Code Execution Vulnerability | 2022-01-28 00:00:00 |
| CVE-2014-1776 | 9.8 | True | Microsoft | Internet Explorer | Microsoft Internet Explorer Memory Corruption Vulnerability | 2022-01-28 00:00:00 |
| CVE-2017-5689 | 9.8 | True | Intel | Active Management Technology (AMT), Small Business Technology (SBT), and Standard Manageability | Intel Active Management Technology (AMT), Small Business Technology (SBT), and Standard Manageability Privilege Escalation Vulnerability | 2022-01-28 00:00:00 |
| CVE-2020-0787 | 7.8 | True | Microsoft | Windows | Microsoft Windows Background Intelligent Transfer Service (BITS) Improper Privilege Management Vulnerability | 2022-01-28 00:00:00 |
| CVE-2020-5722 | 9.8 | True | Grandstream | UCM6200 | Grandstream Networks UCM6200 Series SQL Injection Vulnerability | 2022-01-28 00:00:00 |
| CVE-2021-20038 | 9.8 | True | SonicWall | SMA 100 Appliances | SonicWall SMA 100 Appliances Stack-Based Buffer Overflow Vulnerability | 2022-01-28 00:00:00 |
| CVE-2022-22587 | 9.8 | True | Apple | iOS and macOS | Apple Memory Corruption Vulnerability | 2022-01-28 00:00:00 |
| CVE-2021-35247 | 4.3 | True | SolarWinds | Serv-U | SolarWinds Serv-U Improper Input Validation Vulnerability | 2022-01-21 00:00:00 |
| CVE-2018-8453 | 7.8 | True | Microsoft | Win32k | Microsoft Win32k Privilege Escalation Vulnerability | 2022-01-21 00:00:00 |
| CVE-2012-0391 | 9.8 | True | Apache | Struts 2 | Apache Struts 2 Improper Input Validation Vulnerability | 2022-01-21 00:00:00 |
| CVE-2006-1547 | 7.5 | True | Apache | Struts 1 | Apache Struts 1 ActionForm Denial-of-Service Vulnerability | 2022-01-21 00:00:00 |
| CVE-2020-13927 | 9.8 | True | Apache | Airflow's Experimental API | Apache Airflow's Experimental API Authentication Bypass | 2022-01-18 00:00:00 |
| CVE-2020-11978 | 8.8 | True | Apache | Airflow | Apache Airflow Command Injection | 2022-01-18 00:00:00 |
| CVE-2020-13671 | 8.8 | True | Drupal | Drupal core | Drupal core Un-restricted Upload of File | 2022-01-18 00:00:00 |
| CVE-2020-14864 | 7.5 | True | Oracle | Intelligence Enterprise Edition | Oracle Business Intelligence Enterprise Edition Path Transversal | 2022-01-18 00:00:00 |
| CVE-2021-22991 | 9.8 | True | F5 | BIG-IP Traffic Management Microkernel | F5 BIG-IP Traffic Management Microkernel Buffer Overflow | 2022-01-18 00:00:00 |
| CVE-2021-21315 | 7.1 | True | Npm package | System Information Library for Node.JS | System Information Library for Node.JS Command Injection | 2022-01-18 00:00:00 |
| CVE-2021-21975 | 7.5 | True | VMware | vRealize Operations Manager API | VMware Server Side Request Forgery in vRealize Operations Manager API | 2022-01-18 00:00:00 |
| CVE-2021-33766 | 7.3 | True | Microsoft | Exchange Server | Microsoft Exchange Server Information Disclosure | 2022-01-18 00:00:00 |
| CVE-2021-40870 | 9.8 | True | Aviatrix | Aviatrix Controller | Aviatrix Controller Unrestricted Upload of File | 2022-01-18 00:00:00 |
| CVE-2021-25298 | 8.8 | True | Nagios | Nagios XI | Nagios XI OS Command Injection | 2022-01-18 00:00:00 |
| CVE-2021-25297 | 8.8 | True | Nagios | Nagios XI | Nagios XI OS Command Injection | 2022-01-18 00:00:00 |
| CVE-2021-25296 | 8.8 | True | Nagios | Nagios XI | Nagios XI OS Command Injection | 2022-01-18 00:00:00 |
| CVE-2021-32648 | 8.2 | True | October CMS | October CMS | October CMS Improper Authentication | 2022-01-18 00:00:00 |
| CVE-2021-27860 | 9.8 | True | FatPipe | WARP, IPVPN, and MPVPN software | FatPipe WARP, IPVPN, and MPVPN Configuration Upload exploit | 2022-01-10 00:00:00 |
| CVE-2019-7609 | 9.8 | True | Elastic | Kibana | Kibana Arbitrary Code Execution | 2022-01-10 00:00:00 |
| CVE-2017-1000486 | 9.8 | True | Primetek | Primefaces Application | Primetek Primefaces Remote Code Execution Vulnerability | 2022-01-10 00:00:00 |
| CVE-2015-7450 | 9.8 | True | IBM | WebSphere Application Server and Server Hypervisor Edition | IBM WebSphere Application Server and Server Hypervisor Edition Code Injection. | 2022-01-10 00:00:00 |
| CVE-2019-10149 | 9.0 | True | Exim | Mail Transfer Agent (MTA) | Exim Mail Transfer Agent (MTA) Improper Input Validation | 2022-01-10 00:00:00 |
| CVE-2019-1579 | 8.1 | True | Palo Alto Networks | PAN-OS | Palo Alto Networks PAN-OS Remote Code Execution Vulnerability | 2022-01-10 00:00:00 |
| CVE-2018-13383 | 4.3 | True | Fortinet | FortiOS and FortiProxy | Fortinet FortiOS and FortiProxy Out-of-bounds Write | 2022-01-10 00:00:00 |
| CVE-2018-13382 | 9.1 | True | Fortinet | FortiOS and FortiProxy | Fortinet FortiOS and FortiProxy Improper Authorization | 2022-01-10 00:00:00 |
| CVE-2019-9670 | 9.8 | True | Synacor | Zimbra Collaboration Suite (ZCS) | Synacor Zimbra Collaboration Suite (ZCS) Improper Restriction of XML External Entity Reference | 2022-01-10 00:00:00 |
| CVE-2019-2725 | 7.5 | True | Oracle | WebLogic Server | Oracle WebLogic Server, Injection | 2022-01-10 00:00:00 |
| CVE-2013-3900 | 8.8 | True | Microsoft | WinVerifyTrust function | Microsoft WinVerifyTrust function Remote Code Execution | 2022-01-10 00:00:00 |
| CVE-2019-1458 | 7.8 | True | Microsoft | Win32k | Microsoft Win32k Privilege Escalation Vulnerability | 2022-01-10 00:00:00 |
| CVE-2020-6572 | 8.8 | True | Chrome Media | Google Chrome Media Use-After-Free Vulnerability | 2022-01-10 00:00:00 | |
| CVE-2021-36260 | 9.8 | True | Hikvision | Security cameras web server | Hikvision Improper Input Validation | 2022-01-10 00:00:00 |
| CVE-2021-22017 | 5.3 | True | VMware | vCenter Server | VMware vCenter Server Improper Access Control | 2022-01-10 00:00:00 |
| CVE-2021-4102 | 8.8 | True | Chromium V8 | Google Chromium V8 Use-After-Free Vulnerability | 2021-12-15 00:00:00 | |
| CVE-2021-43890 | 7.1 | True | Microsoft | Windows | Microsoft Windows AppX Installer Spoofing Vulnerability | 2021-12-15 00:00:00 |
| CVE-2021-44228 | 10.0 | True | Apache | Log4j2 | Apache Log4j2 Remote Code Execution Vulnerability | 2021-12-10 00:00:00 |
| CVE-2019-10758 | 9.9 | True | MongoDB | mongo-express | MongoDB mongo-express Remote Code Execution Vulnerability | 2021-12-10 00:00:00 |
| CVE-2020-8816 | 9.1 | True | Pi-hole | AdminLTE | Pi-Hole AdminLTE Remote Code Execution Vulnerability | 2021-12-10 00:00:00 |
| CVE-2020-17463 | 9.8 | True | Fuel CMS | Fuel CMS | Fuel CMS SQL Injection Vulnerability | 2021-12-10 00:00:00 |
| CVE-2010-1871 | 8.8 | True | Red Hat | JBoss Seam 2 | Red Hat Linux JBoss Seam 2 Remote Code Execution Vulnerability | 2021-12-10 00:00:00 |
| CVE-2017-12149 | 9.8 | True | Red Hat | JBoss Application Server | Red Hat JBoss Application Server Remote Code Execution Vulnerability | 2021-12-10 00:00:00 |
| CVE-2017-17562 | 8.1 | True | Embedthis | GoAhead | Embedthis GoAhead Remote Code Execution Vulnerability | 2021-12-10 00:00:00 |
| CVE-2021-44168 | 3.3 | True | Fortinet | FortiOS | Fortinet FortiOS Arbitrary File Download | 2021-12-10 00:00:00 |
| CVE-2019-0193 | 7.2 | True | Apache | Solr | Apache Solr DataImportHandler Code Injection Vulnerability | 2021-12-10 00:00:00 |
| CVE-2019-7238 | 9.8 | True | Sonatype | Nexus Repository Manager | Sonatype Nexus Repository Manager Incorrect Access Control Vulnerability | 2021-12-10 00:00:00 |
| CVE-2021-35394 | 9.8 | True | Realtek | Jungle Software Development Kit (SDK) | Realtek Jungle SDK Remote Code Execution Vulnerability | 2021-12-10 00:00:00 |
| CVE-2019-13272 | 7.8 | True | Linux | Kernel | Linux Kernel Improper Privilege Management Vulnerability | 2021-12-10 00:00:00 |
| CVE-2021-44515 | 9.8 | True | Zoho | Desktop Central | Zoho Desktop Central Authentication Bypass Vulnerability | 2021-12-10 00:00:00 |
| CVE-2021-44077 | 9.8 | True | Zoho | ManageEngine ServiceDesk Plus (SDP) / SupportCenter Plus | Zoho ManageEngine ServiceDesk Plus Remote Code Execution Vulnerability | 2021-12-01 00:00:00 |
| CVE-2021-40438 | 9.0 | True | Apache | Apache | Apache HTTP Server-Side Request Forgery (SSRF) | 2021-12-01 00:00:00 |
| CVE-2021-37415 | 9.8 | True | Zoho | ManageEngine ServiceDesk Plus (SDP) | Zoho ManageEngine ServiceDesk Authentication Bypass Vulnerability | 2021-12-01 00:00:00 |
| CVE-2018-14847 | 9.1 | True | MikroTik | RouterOS | MikroTik Router OS Directory Traversal Vulnerability | 2021-12-01 00:00:00 |
| CVE-2020-11261 | 7.8 | True | Qualcomm | Snapdragon Auto, Snapdragon Compute, Snapdragon Connectivity, Snapdragon Consumer IOT, Snapdragon Industrial IOT, Snapdragon Mobile, Snapdragon Voice & Music, Snapdragon Wearables | Qualcomm Multiple Chipsets Improper Input Validation Vulnerability | 2021-12-01 00:00:00 |
| CVE-2021-42292 | 7.8 | True | Microsoft | Office | Microsoft Excel Security Feature Bypass | 2021-11-17 00:00:00 |
| CVE-2021-42321 | 8.8 | True | Microsoft | Exchange | Microsoft Exchange Server Remote Code Execution Vulnerability | 2021-11-17 00:00:00 |
| CVE-2021-40449 | 7.8 | True | Microsoft | Windows | Microsoft Windows Win32k Privilege Escalation Vulnerability | 2021-11-17 00:00:00 |
| CVE-2021-22204 | 6.8 | True | Perl | Exiftool | ExifTool Remote Code Execution Vulnerability | 2021-11-17 00:00:00 |
| CVE-2020-29583 | 9.8 | True | Zyxel | Multiple Products | Zyxel Multiple Products Use of Hard-Coded Credentials Vulnerability | 2021-11-03 00:00:00 |
| CVE-2019-8394 | 7.5 | True | Zoho | ManageEngine | Zoho ManageEngine ServiceDesk Plus (SDP) File Upload Vulnerability | 2021-11-03 00:00:00 |
| CVE-2020-10189 | 9.8 | True | Zoho | ManageEngine | Zoho ManageEngine Desktop Central File Upload Vulnerability | 2021-11-03 00:00:00 |
| CVE-2021-40539 | 9.8 | True | Zoho | ManageEngine | Zoho ManageEngine ADSelfService Plus Authentication Bypass Vulnerability | 2021-11-03 00:00:00 |
| CVE-2021-27561 | 9.8 | True | Yealink | Device Management | Yealink Device Management Server-Side Request Forgery (SSRF) Vulnerability | 2021-11-03 00:00:00 |
| CVE-2019-9978 | 6.1 | True | WordPress | Social Warfare Plugin | WordPress Social Warfare Plugin Cross-Site Scripting (XSS) Vulnerability | 2021-11-03 00:00:00 |
| CVE-2020-11738 | 7.5 | True | WordPress | Snap Creek Duplicator Plugin | WordPress Snap Creek Duplicator Plugin File Download Vulnerability | 2021-11-03 00:00:00 |
| CVE-2020-25213 | 10.0 | True | WordPress | File Manager Plugin | WordPress File Manager Plugin Remote Code Execution Vulnerability | 2021-11-03 00:00:00 |
| CVE-2020-4006 | 9.1 | True | VMware | Multiple Products | Multiple VMware Products Command Injection Vulnerability | 2021-11-03 00:00:00 |
| CVE-2021-21985 | 9.8 | True | VMware | vCenter Server | VMware vCenter Server Improper Input Validation Vulnerability | 2021-11-03 00:00:00 |
| CVE-2021-21972 | 9.8 | True | VMware | vCenter Server | VMware vCenter Server Remote Code Execution Vulnerability | 2021-11-03 00:00:00 |
| CVE-2020-3952 | 9.8 | True | VMware | vCenter Server | VMware vCenter Server Information Disclosure Vulnerability | 2021-11-03 00:00:00 |
| CVE-2021-22005 | 9.8 | True | VMware | vCenter Server | VMware vCenter Server File Upload Vulnerability | 2021-11-03 00:00:00 |
| CVE-2020-3950 | 7.8 | True | VMware | Multiple Products | VMware Multiple Products Privilege Escalation Vulnerability | 2021-11-03 00:00:00 |
| CVE-2020-3992 | 9.8 | True | VMware | ESXi | VMware ESXi OpenSLP Use-After-Free Vulnerability | 2021-11-03 00:00:00 |
| CVE-2019-5544 | 9.8 | True | VMware | VMware ESXi and Horizon DaaS | VMware ESXi and Horizon DaaS OpenSLP Heap-Based Buffer Overflow Vulnerability | 2021-11-03 00:00:00 |
| CVE-2020-17496 | 9.8 | True | vBulletin | vBulletin | vBulletin PHP Module Remote Code Execution Vulnerability | 2021-11-03 00:00:00 |
| CVE-2019-16759 | 9.8 | True | vBulletin | vBulletin | vBulletin PHP Module Remote Code Execution Vulnerability | 2021-11-03 00:00:00 |
| CVE-2020-5847 | 9.8 | True | Unraid | Unraid | Unraid Remote Code Execution Vulnerability | 2021-11-03 00:00:00 |
| CVE-2020-5849 | 7.5 | True | Unraid | Unraid | Unraid Authentication Bypass Vulnerability | 2021-11-03 00:00:00 |
| CVE-2019-20085 | 7.5 | True | TVT | NVMS-1000 | TVT NVMS-1000 Directory Traversal Vulnerability | 2021-11-03 00:00:00 |
| CVE-2021-36741 | 8.8 | True | Trend Micro | Apex One, Apex One as a Service, and Worry-Free Business Security | Trend Micro Multiple Products Improper Input Validation Vulnerability | 2021-11-03 00:00:00 |
| CVE-2021-36742 | 7.8 | True | Trend Micro | Apex One, Apex One as a Service, and Worry-Free Business Security | Trend Micro Multiple Products Improper Input Validation Vulnerability | 2021-11-03 00:00:00 |
| CVE-2020-8599 | 9.8 | True | Trend Micro | Apex One and OfficeScan | Trend Micro Apex One and OfficeScan Authentication Bypass Vulnerability | 2021-11-03 00:00:00 |
| CVE-2020-24557 | 7.8 | True | Trend Micro | Apex One, OfficeScan, and Worry-Free Business Security | Trend Micro Multiple Products Improper Access Control Vulnerability | 2021-11-03 00:00:00 |
| CVE-2020-8468 | 8.8 | True | Trend Micro | Apex One, OfficeScan and Worry-Free Business Security Agents | Trend Micro Multiple Products Content Validation Escape Vulnerability | 2021-11-03 00:00:00 |
| CVE-2020-8467 | 8.8 | True | Trend Micro | Apex One and OfficeScan | Trend Micro Apex One and OfficeScan Remote Code Execution Vulnerability | 2021-11-03 00:00:00 |
| CVE-2019-18187 | 8.8 | True | Trend Micro | OfficeScan | Trend Micro OfficeScan Directory Traversal Vulnerability | 2021-11-03 00:00:00 |
| CVE-2019-9082 | 8.8 | True | ThinkPHP | ThinkPHP | ThinkPHP Remote Code Execution Vulnerability | 2021-11-03 00:00:00 |
| CVE-2018-20062 | 9.8 | True | ThinkPHP | noneCms | ThinkPHP "noneCms" Remote Code Execution Vulnerability | 2021-11-03 00:00:00 |
| CVE-2018-14558 | 9.8 | True | Tenda | AC7, AC9, and AC10 Routers | Tenda AC7, AC9, and AC10 Routers Command Injection Vulnerability | 2021-11-03 00:00:00 |
| CVE-2020-10987 | 9.8 | True | Tenda | AC1900 Router AC15 Model | Tenda AC1900 Router AC15 Model Remote Code Execution Vulnerability | 2021-11-03 00:00:00 |
| CVE-2021-31755 | 9.8 | True | Tenda | AC11 Router | Tenda AC11 Router Stack Buffer Overflow Vulnerability | 2021-11-03 00:00:00 |
| CVE-2017-9248 | 9.8 | True | Progress | ASP.NET AJAX and Sitefinity | Progress Telerik UI for ASP.NET AJAX and Sitefinity Cryptographic Weakness Vulnerability | 2021-11-03 00:00:00 |
| CVE-2019-18988 | 7.0 | True | TeamViewer | Desktop | TeamViewer Desktop Bypass Remote Login Vulnerability | 2021-11-03 00:00:00 |
| CVE-2017-6327 | 8.8 | True | Symantec | Symantec Messaging Gateway | Symantec Messaging Gateway Remote Code Execution Vulnerability | 2021-11-03 00:00:00 |
| CVE-2020-10181 | 9.8 | True | Sumavision | Enhanced Multimedia Router (EMR) | Sumavision EMR Cross-Site Request Forgery (CSRF) Vulnerability | 2021-11-03 00:00:00 |
| CVE-2020-12271 | 10.0 | True | Sophos | SFOS | Sophos SFOS SQL Injection Vulnerability | 2021-11-03 00:00:00 |
| CVE-2021-20016 | 9.8 | True | SonicWall | SSLVPN SMA100 | SonicWall SSLVPN SMA100 SQL Injection Vulnerability | 2021-11-03 00:00:00 |
| CVE-2021-20023 | 4.9 | True | SonicWall | SonicWall Email Security | SonicWall Email Security Path Traversal Vulnerability | 2021-11-03 00:00:00 |
| CVE-2021-20022 | 7.2 | True | SonicWall | SonicWall Email Security | SonicWall Email Security Unrestricted Upload of File Vulnerability | 2021-11-03 00:00:00 |
| CVE-2019-7481 | 7.5 | True | SonicWall | SMA100 | SonicWall SMA100 SQL Injection Vulnerability | 2021-11-03 00:00:00 |
| CVE-2021-20021 | 9.8 | True | SonicWall | SonicWall Email Security | SonicWall Email Security Improper Privilege Management Vulnerability | 2021-11-03 00:00:00 |
| CVE-2020-10199 | 8.8 | True | Sonatype | Nexus Repository | Sonatype Nexus Repository Remote Code Execution Vulnerability | 2021-11-03 00:00:00 |
| CVE-2016-3643 | 7.8 | True | SolarWinds | Virtualization Manager | SolarWinds Virtualization Manager Privilege Escalation Vulnerability | 2021-11-03 00:00:00 |
| CVE-2021-35211 | 9.0 | True | SolarWinds | Serv-U | SolarWinds Serv-U Remote Code Execution Vulnerability | 2021-11-03 00:00:00 |
| CVE-2020-10148 | 9.8 | True | SolarWinds | Orion | SolarWinds Orion Authentication Bypass Vulnerability | 2021-11-03 00:00:00 |
| CVE-2019-16256 | 9.8 | True | SIMalliance | Toolbox Browser | SIMalliance Toolbox Browser Command Injection Vulnerability | 2021-11-03 00:00:00 |
| CVE-2016-3976 | 7.5 | True | SAP | NetWeaver | SAP NetWeaver Directory Traversal Vulnerability | 2021-11-03 00:00:00 |
| CVE-2020-6207 | 10.0 | True | SAP | Solution Manager | SAP Solution Manager Missing Authentication for Critical Function Vulnerability | 2021-11-03 00:00:00 |
| CVE-2020-6287 | 10.0 | True | SAP | NetWeaver | SAP NetWeaver Missing Authentication for Critical Function Vulnerability | 2021-11-03 00:00:00 |
| CVE-2016-9563 | 6.5 | True | SAP | NetWeaver | SAP NetWeaver XML External Entity (XXE) Vulnerability | 2021-11-03 00:00:00 |
| CVE-2010-5326 | 10.0 | True | SAP | NetWeaver | SAP NetWeaver Remote Code Execution Vulnerability | 2021-11-03 00:00:00 |
| CVE-2018-2380 | 6.6 | True | SAP | Customer Relationship Management (CRM) | SAP Customer Relationship Management (CRM) Path Traversal Vulnerability | 2021-11-03 00:00:00 |
| CVE-2020-16846 | 9.8 | True | SaltStack | Salt | SaltStack Salt Shell Injection Vulnerability | 2021-11-03 00:00:00 |
| CVE-2020-11651 | 9.8 | True | SaltStack | Salt | SaltStack Salt Authentication Bypass Vulnerability | 2021-11-03 00:00:00 |
| CVE-2020-11652 | 6.5 | True | SaltStack | Salt | SaltStack Salt Path Traversal Vulnerability | 2021-11-03 00:00:00 |
| CVE-2017-16651 | 7.8 | True | Roundcube | Roundcube Webmail | Roundcube Webmail File Disclosure Vulnerability | 2021-11-03 00:00:00 |
| CVE-2021-35395 | 9.8 | True | Realtek | AP-Router SDK | Realtek AP-Router SDK Buffer Overflow Vulnerability | 2021-11-03 00:00:00 |
| CVE-2020-10221 | 8.8 | True | rConfig | rConfig | rConfig OS Command Injection Vulnerability | 2021-11-03 00:00:00 |
| CVE-2021-1905 | 8.4 | True | Qualcomm | Multiple Chipsets | Qualcomm Multiple Chipsets Use-After-Free Vulnerability | 2021-11-03 00:00:00 |
| CVE-2021-1906 | 6.2 | True | Qualcomm | Multiple Chipsets | Qualcomm Multiple Chipsets Detection of Error Condition Without Action Vulnerability | 2021-11-03 00:00:00 |
| CVE-2019-11539 | 8.0 | True | Ivanti | Pulse Connect Secure and Pulse Policy Secure | Ivanti Pulse Connect Secure and Policy Secure Command Injection Vulnerability | 2021-11-03 00:00:00 |
| CVE-2019-11510 | 9.9 | True | Ivanti | Pulse Connect Secure | Ivanti Pulse Connect Secure Arbitrary File Read Vulnerability | 2021-11-03 00:00:00 |
| CVE-2021-22899 | 8.8 | True | Ivanti | Pulse Connect Secure | Ivanti Pulse Connect Secure Command Injection Vulnerability | 2021-11-03 00:00:00 |
| CVE-2020-8260 | 7.2 | True | Ivanti | Pulse Connect Secure | Ivanti Pulse Connect Secure Code Execution Vulnerability | 2021-11-03 00:00:00 |
| CVE-2021-22894 | 8.8 | True | Ivanti | Pulse Connect Secure | Ivanti Pulse Connect Secure Collaboration Suite Buffer Overflow Vulnerability | 2021-11-03 00:00:00 |
| CVE-2021-22900 | 7.2 | True | Ivanti | Pulse Connect Secure | Ivanti Pulse Connect Secure Unrestricted File Upload Vulnerability | 2021-11-03 00:00:00 |
| CVE-2020-8243 | 7.2 | True | Ivanti | Pulse Connect Secure | Ivanti Pulse Connect Secure Code Execution Vulnerability | 2021-11-03 00:00:00 |
| CVE-2021-22893 | 10.0 | True | Ivanti | Pulse Connect Secure | Ivanti Pulse Connect Secure Use-After-Free Vulnerability | 2021-11-03 00:00:00 |
| CVE-2019-18935 | 9.8 | True | Progress | Telerik UI for ASP.NET AJAX | Progress Telerik UI for ASP.NET AJAX Deserialization of Untrusted Data Vulnerability | 2021-11-03 00:00:00 |
| CVE-2020-8644 | 9.8 | True | PlaySMS | PlaySMS | PlaySMS Server-Side Template Injection Vulnerability | 2021-11-03 00:00:00 |
| CVE-2020-14883 | 7.2 | True | Oracle | WebLogic Server | Oracle WebLogic Server Unspecified Vulnerability | 2021-11-03 00:00:00 |
| CVE-2020-14882 | 9.8 | True | Oracle | WebLogic Server | Oracle WebLogic Server Remote Code Execution Vulnerability | 2021-11-03 00:00:00 |
| CVE-2020-14750 | 9.8 | True | Oracle | WebLogic Server | Oracle WebLogic Server Remote Code Execution Vulnerability | 2021-11-03 00:00:00 |
| CVE-2015-4852 | 9.8 | True | Oracle | WebLogic Server | Oracle WebLogic Server Deserialization of Untrusted Data Vulnerability | 2021-11-03 00:00:00 |
| CVE-2020-14871 | 10.0 | True | Oracle | Solaris and Zettabyte File System (ZFS) | Oracle Solaris and Zettabyte File System (ZFS) Unspecified Vulnerability | 2021-11-03 00:00:00 |
| CVE-2012-3152 | 9.1 | True | Oracle | Fusion Middleware | Oracle Fusion Middleware Unspecified Vulnerability | 2021-11-03 00:00:00 |
| CVE-2020-2555 | 9.8 | True | Oracle | Multiple Products | Oracle Multiple Products Remote Code Execution Vulnerability | 2021-11-03 00:00:00 |
| CVE-2019-19356 | 7.5 | True | Netis | WF2419 Devices | Netis WF2419 Devices Remote Code Execution Vulnerability | 2021-11-03 00:00:00 |
| CVE-2020-26919 | 9.8 | True | NETGEAR | JGS516PE Devices | Netgear JGS516PE Devices Missing Function Level Access Control Vulnerability | 2021-11-03 00:00:00 |
| CVE-2019-15949 | 8.8 | True | Nagios | Nagios XI | Nagios XI Remote Code Execution Vulnerability | 2021-11-03 00:00:00 |
| CVE-2019-17026 | 8.8 | True | Mozilla | Firefox and Thunderbird | Mozilla Firefox And Thunderbird Type Confusion Vulnerability | 2021-11-03 00:00:00 |
| CVE-2020-6820 | 8.1 | True | Mozilla | Firefox and Thunderbird | Mozilla Firefox And Thunderbird Use-After-Free Vulnerability | 2021-11-03 00:00:00 |
| CVE-2020-6819 | 8.1 | True | Mozilla | Firefox and Thunderbird | Mozilla Firefox And Thunderbird Use-After-Free Vulnerability | 2021-11-03 00:00:00 |
| CVE-2021-38648 | 7.8 | True | Microsoft | Open Management Infrastructure (OMI) | Microsoft Open Management Infrastructure (OMI) Privilege Escalation Vulnerability | 2021-11-03 00:00:00 |
| CVE-2021-36955 | 7.8 | True | Microsoft | Windows | Microsoft Windows Common Log File System (CLFS) Driver Privilege Escalation Vulnerability | 2021-11-03 00:00:00 |
| CVE-2019-0863 | 7.8 | True | Microsoft | Windows | Microsoft Windows Error Reporting (WER) Privilege Escalation Vulnerability | 2021-11-03 00:00:00 |
| CVE-2016-3235 | 7.8 | True | Microsoft | Office | Microsoft Office OLE DLL Side Loading Vulnerability | 2021-11-03 00:00:00 |
| CVE-2019-1214 | 7.8 | True | Microsoft | Windows | Microsoft Windows Privilege Common Log File System (CLFS) Escalation Vulnerability | 2021-11-03 00:00:00 |
| CVE-2020-1147 | 7.8 | True | Microsoft | .NET Framework, SharePoint, Visual Studio | Microsoft .NET Framework, SharePoint, and Visual Studio Remote Code Execution Vulnerability | 2021-11-03 00:00:00 |
| CVE-2021-26857 | 7.8 | True | Microsoft | Exchange Server | Microsoft Exchange Server Remote Code Execution Vulnerability | 2021-11-03 00:00:00 |
| CVE-2019-0808 | 7.8 | True | Microsoft | Win32k | Microsoft Win32k Privilege Escalation Vulnerability | 2021-11-03 00:00:00 |
| CVE-2020-0646 | 9.8 | True | Microsoft | .NET Framework | Microsoft .NET Framework Remote Code Execution Vulnerability | 2021-11-03 00:00:00 |
| CVE-2019-0604 | 9.8 | True | Microsoft | SharePoint | Microsoft SharePoint Remote Code Execution Vulnerability | 2021-11-03 00:00:00 |
| CVE-2020-0601 | 8.1 | True | Microsoft | Windows | Microsoft Windows CryptoAPI Spoofing Vulnerability | 2021-11-03 00:00:00 |
| CVE-2021-34448 | 6.8 | True | Microsoft | Windows | Microsoft Windows Scripting Engine Memory Corruption Vulnerability | 2021-11-03 00:00:00 |
| CVE-2021-1675 | 7.8 | True | Microsoft | Windows | Microsoft Windows Print Spooler Remote Code Execution Vulnerability | 2021-11-03 00:00:00 |
| CVE-2020-1054 | 7.8 | True | Microsoft | Win32k | Microsoft Win32k Privilege Escalation Vulnerability | 2021-11-03 00:00:00 |
| CVE-2021-27065 | 7.8 | True | Microsoft | Exchange Server | Microsoft Exchange Server Remote Code Execution Vulnerability | 2021-11-03 00:00:00 |
| CVE-2021-26858 | 7.8 | True | Microsoft | Exchange Server | Microsoft Exchange Server Remote Code Execution Vulnerability | 2021-11-03 00:00:00 |
| CVE-2021-26855 | 9.1 | True | Microsoft | Exchange Server | Microsoft Exchange Server Remote Code Execution Vulnerability | 2021-11-03 00:00:00 |
| CVE-2020-1472 | 5.5 | True | Microsoft | Netlogon | Microsoft Netlogon Privilege Escalation Vulnerability | 2021-11-03 00:00:00 |
| CVE-2020-0968 | 7.5 | True | Microsoft | Internet Explorer | Microsoft Internet Explorer Scripting Engine Memory Corruption Vulnerability | 2021-11-03 00:00:00 |
| CVE-2017-11774 | 7.8 | True | Microsoft | Office | Microsoft Office Outlook Security Feature Bypass Vulnerability | 2021-11-03 00:00:00 |
| CVE-2019-1429 | 7.5 | True | Microsoft | Internet Explorer | Microsoft Internet Explorer Scripting Engine Memory Corruption Vulnerability | 2021-11-03 00:00:00 |
| CVE-2020-1380 | 7.8 | True | Microsoft | Internet Explorer | Microsoft Internet Explorer Scripting Engine Memory Corruption Vulnerability | 2021-11-03 00:00:00 |
| CVE-2017-0199 | 7.8 | True | Microsoft | Office and WordPad | Microsoft Office and WordPad Remote Code Execution Vulnerability | 2021-11-03 00:00:00 |
| CVE-2019-1367 | 7.5 | True | Microsoft | Internet Explorer | Microsoft Internet Explorer Scripting Engine Memory Corruption Vulnerability | 2021-11-03 00:00:00 |
| CVE-2021-27059 | 7.6 | True | Microsoft | Office | Microsoft Office Remote Code Execution Vulnerability | 2021-11-03 00:00:00 |
| CVE-2020-0674 | 7.5 | True | Microsoft | Internet Explorer | Microsoft Internet Explorer Scripting Engine Memory Corruption Vulnerability | 2021-11-03 00:00:00 |
| CVE-2017-11882 | 7.8 | True | Microsoft | Office | Microsoft Office Memory Corruption Vulnerability | 2021-11-03 00:00:00 |
| CVE-2019-0541 | 8.8 | True | Microsoft | MSHTML | Microsoft MSHTML Remote Code Execution Vulnerability | 2021-11-03 00:00:00 |
| CVE-2021-27085 | 8.8 | True | Microsoft | Internet Explorer | Microsoft Internet Explorer Remote Code Execution Vulnerability | 2021-11-03 00:00:00 |
| CVE-2015-1641 | 7.8 | True | Microsoft | Office | Microsoft Office Memory Corruption Vulnerability | 2021-11-03 00:00:00 |
| CVE-2012-0158 | 8.8 | True | Microsoft | MSCOMCTL.OCX | Microsoft MSCOMCTL.OCX Remote Code Execution Vulnerability | 2021-11-03 00:00:00 |
| CVE-2018-0802 | 7.8 | True | Microsoft | Office | Microsoft Office Memory Corruption Vulnerability | 2021-11-03 00:00:00 |
| CVE-2018-0798 | 8.8 | True | Microsoft | Office | Microsoft Office Memory Corruption Vulnerability | 2021-11-03 00:00:00 |
| CVE-2019-1215 | 7.8 | True | Microsoft | Windows | Microsoft Windows Privilege Escalation Vulnerability | 2021-11-03 00:00:00 |
| CVE-2021-36942 | 7.5 | True | Microsoft | Windows | Microsoft Windows Local Security Authority (LSA) Spoofing Vulnerability | 2021-11-03 00:00:00 |
| CVE-2019-0797 | 7.8 | True | Microsoft | Win32k | Microsoft Win32k Privilege Escalation Vulnerability | 2021-11-03 00:00:00 |
| CVE-2018-8653 | 7.5 | True | Microsoft | Internet Explorer | Microsoft Internet Explorer Scripting Engine Memory Corruption Vulnerability | 2021-11-03 00:00:00 |
| CVE-2017-8759 | 7.8 | True | Microsoft | .NET Framework | Microsoft .NET Framework Remote Code Execution Vulnerability | 2021-11-03 00:00:00 |
| CVE-2021-40444 | 8.8 | True | Microsoft | MSHTML | Microsoft MSHTML Remote Code Execution Vulnerability | 2021-11-03 00:00:00 |
| CVE-2019-0859 | 7.8 | True | Microsoft | Win32k | Microsoft Win32k Privilege Escalation Vulnerability | 2021-11-03 00:00:00 |
| CVE-2021-26411 | 8.8 | True | Microsoft | Internet Explorer | Microsoft Internet Explorer Memory Corruption Vulnerability | 2021-11-03 00:00:00 |
| CVE-2020-1350 | 10.0 | True | Microsoft | Windows | Microsoft Windows DNS Server Remote Code Execution Vulnerability | 2021-11-03 00:00:00 |
| CVE-2021-28310 | 7.8 | True | Microsoft | Win32k | Microsoft Win32k Privilege Escalation Vulnerability | 2021-11-03 00:00:00 |
| CVE-2020-1040 | 9.0 | True | Microsoft | Hyper-V RemoteFX | Microsoft Hyper-V RemoteFX vGPU Remote Code Execution Vulnerability | 2021-11-03 00:00:00 |
| CVE-2019-0803 | 7.8 | True | Microsoft | Win32k | Microsoft Win32k Privilege Escalation Vulnerability | 2021-11-03 00:00:00 |
| CVE-2021-31207 | 6.6 | True | Microsoft | Exchange Server | Microsoft Exchange Server Security Feature Bypass Vulnerability | 2021-11-03 00:00:00 |
| CVE-2021-34527 | 8.8 | True | Microsoft | Windows | Microsoft Windows Print Spooler Remote Code Execution Vulnerability | 2021-11-03 00:00:00 |
| CVE-2021-1732 | 7.8 | True | Microsoft | Win32k | Microsoft Win32k Privilege Escalation Vulnerability | 2021-11-03 00:00:00 |
| CVE-2020-1464 | 7.8 | True | Microsoft | Windows | Microsoft Windows Spoofing Vulnerability | 2021-11-03 00:00:00 |
| CVE-2021-34473 | 9.1 | True | Microsoft | Exchange Server | Microsoft Exchange Server Remote Code Execution Vulnerability | 2021-11-03 00:00:00 |
| CVE-2019-0708 | 9.8 | True | Microsoft | Remote Desktop Services | Microsoft Remote Desktop Services Remote Code Execution Vulnerability | 2021-11-03 00:00:00 |
| CVE-2016-7255 | 7.8 | True | Microsoft | Win32k | Microsoft Win32k Privilege Escalation Vulnerability | 2021-11-03 00:00:00 |
| CVE-2017-0143 | 8.8 | True | Microsoft | Windows | Microsoft Windows Server Message Block (SMBv1) Remote Code Execution Vulnerability | 2021-11-03 00:00:00 |
| CVE-2020-0688 | 8.8 | True | Microsoft | Exchange Server | Microsoft Exchange Server Validation Key Remote Code Execution Vulnerability | 2021-11-03 00:00:00 |
| CVE-2021-38649 | 7.0 | True | Microsoft | Open Management Infrastructure (OMI) | Microsoft Open Management Infrastructure (OMI) Privilege Escalation Vulnerability | 2021-11-03 00:00:00 |
| CVE-2021-36948 | 7.8 | True | Microsoft | Windows | Microsoft Windows Update Medic Service Privilege Escalation Vulnerability | 2021-11-03 00:00:00 |
| CVE-2017-7269 | 9.8 | True | Microsoft | Internet Information Services (IIS) | Microsoft Windows Server Buffer Overflow Vulnerability | 2021-11-03 00:00:00 |
| CVE-2021-34523 | 9.0 | True | Microsoft | Exchange Server | Microsoft Exchange Server Privilege Escalation Vulnerability | 2021-11-03 00:00:00 |
| CVE-2021-38645 | 7.8 | True | Microsoft | Open Management Infrastructure (OMI) | Microsoft Open Management Infrastructure (OMI) Privilege Escalation Vulnerability | 2021-11-03 00:00:00 |
| CVE-2020-1020 | 8.8 | True | Microsoft | Windows | Microsoft Windows Adobe Font Manager Library Remote Code Execution Vulnerability | 2021-11-03 00:00:00 |
| CVE-2020-0986 | 7.8 | True | Microsoft | Windows | Microsoft Windows Kernel Privilege Escalation Vulnerability | 2021-11-03 00:00:00 |
| CVE-2020-17144 | 8.4 | True | Microsoft | Exchange Server | Microsoft Exchange Server Remote Code Execution Vulnerability | 2021-11-03 00:00:00 |
| CVE-2020-0938 | 7.8 | True | Microsoft | Windows | Microsoft Windows Adobe Font Manager Library Remote Code Execution Vulnerability | 2021-11-03 00:00:00 |
| CVE-2021-31979 | 7.8 | True | Microsoft | Windows | Microsoft Windows Kernel Privilege Escalation Vulnerability | 2021-11-03 00:00:00 |
| CVE-2021-31201 | 5.2 | True | Microsoft | Enhanced Cryptographic Provider | Microsoft Enhanced Cryptographic Provider Privilege Escalation Vulnerability | 2021-11-03 00:00:00 |
| CVE-2021-31956 | 7.8 | True | Microsoft | Windows | Microsoft Windows NTFS Privilege Escalation Vulnerability | 2021-11-03 00:00:00 |
| CVE-2021-33771 | 7.8 | True | Microsoft | Windows | Microsoft Windows Kernel Privilege Escalation Vulnerability | 2021-11-03 00:00:00 |
| CVE-2021-31199 | 5.2 | True | Microsoft | Enhanced Cryptographic Provider | Microsoft Enhanced Cryptographic Provider Privilege Escalation Vulnerability | 2021-11-03 00:00:00 |
| CVE-2021-33742 | 7.5 | True | Microsoft | Windows | Microsoft Windows MSHTML Platform Remote Code Execution Vulnerability | 2021-11-03 00:00:00 |
| CVE-2020-17087 | 7.8 | True | Microsoft | Windows | Microsoft Windows Kernel Privilege Escalation Vulnerability | 2021-11-03 00:00:00 |
| CVE-2020-0683 | 7.8 | True | Microsoft | Windows | Microsoft Windows Installer Privilege Escalation Vulnerability | 2021-11-03 00:00:00 |
| CVE-2016-0185 | 7.8 | True | Microsoft | Windows | Microsoft Windows Media Center Remote Code Execution Vulnerability | 2021-11-03 00:00:00 |
| CVE-2021-33739 | 8.4 | True | Microsoft | Windows | Microsoft Desktop Window Manager (DWM) Core Library Privilege Escalation Vulnerability | 2021-11-03 00:00:00 |
| CVE-2021-1647 | 7.8 | True | Microsoft | Defender | Microsoft Defender Remote Code Execution Vulnerability | 2021-11-03 00:00:00 |
| CVE-2021-31955 | 5.5 | True | Microsoft | Windows | Microsoft Windows Kernel Information Disclosure Vulnerability | 2021-11-03 00:00:00 |
| CVE-2020-0878 | 4.2 | True | Microsoft | Edge and Internet Explorer | Microsoft Edge and Internet Explorer Memory Corruption Vulnerability | 2021-11-03 00:00:00 |
| CVE-2016-0167 | 7.8 | True | Microsoft | Win32k | Microsoft Win32k Privilege Escalation Vulnerability | 2021-11-03 00:00:00 |
| CVE-2021-38647 | 9.8 | True | Microsoft | Open Management Infrastructure (OMI) | Microsoft Open Management Infrastructure (OMI) Remote Code Execution Vulnerability | 2021-11-03 00:00:00 |
| CVE-2014-1812 | 8.8 | True | Microsoft | Windows | Microsoft Windows Group Policy Preferences Password Privilege Escalation Vulnerability | 2021-11-03 00:00:00 |
| CVE-2021-22502 | 9.8 | True | Micro Focus | Operation Bridge Reporter (OBR) | Micro Focus Operation Bridge Report (OBR) Remote Code Execution Vulnerability | 2021-11-03 00:00:00 |
| CVE-2021-22506 | 7.5 | True | Micro Focus | Micro Focus Access Manager | Micro Focus Access Manager Information Leakage Vulnerability | 2021-11-03 00:00:00 |
| CVE-2021-23874 | 8.2 | True | McAfee | McAfee Total Protection (MTP) | McAfee Total Protection (MTP) Improper Privilege Management Vulnerability | 2021-11-03 00:00:00 |
| CVE-2020-7961 | 9.8 | True | Liferay | Liferay Portal | Liferay Portal Deserialization of Untrusted Data Vulnerability | 2021-11-03 00:00:00 |
| CVE-2021-30116 | 10.0 | True | Kaseya | Virtual System/Server Administrator (VSA) | Kaseya Virtual System/Server Administrator (VSA) Information Disclosure Vulnerability | 2021-11-03 00:00:00 |
| CVE-2020-15505 | 9.8 | True | Ivanti | MobileIron Multiple Products | Ivanti MobileIron Multiple Products Remote Code Execution Vulnerability | 2021-11-03 00:00:00 |
| CVE-2016-3718 | 5.5 | True | ImageMagick | ImageMagick | ImageMagick Server-Side Request Forgery (SSRF) Vulnerability | 2021-11-03 00:00:00 |
| CVE-2016-3715 | 5.5 | True | ImageMagick | ImageMagick | ImageMagick Arbitrary File Deletion Vulnerability | 2021-11-03 00:00:00 |
| CVE-2019-4716 | 10.0 | True | IBM | Planning Analytics | IBM Planning Analytics Remote Code Execution Vulnerability | 2021-11-03 00:00:00 |
| CVE-2020-4428 | 9.1 | True | IBM | Data Risk Manager | IBM Data Risk Manager Remote Code Execution Vulnerability | 2021-11-03 00:00:00 |
| CVE-2020-4427 | 9.0 | True | IBM | Data Risk Manager | IBM Data Risk Manager Security Bypass Vulnerability | 2021-11-03 00:00:00 |
| CVE-2020-4430 | 4.3 | True | IBM | Data Risk Manager | IBM Data Risk Manager Directory Traversal Vulnerability | 2021-11-03 00:00:00 |
| CVE-2021-30563 | 8.8 | True | Chromium V8 | Google Chromium V8 Type Confusion Vulnerability | 2021-11-03 00:00:00 | |
| CVE-2021-21220 | 8.8 | True | Chromium V8 | Google Chromium V8 Improper Input Validation Vulnerability | 2021-11-03 00:00:00 | |
| CVE-2021-21193 | 8.8 | True | Chromium Blink | Google Chromium Blink Use-After-Free Vulnerability | 2021-11-03 00:00:00 | |
| CVE-2021-21224 | 8.8 | True | Chromium V8 | Google Chromium V8 Type Confusion Vulnerability | 2021-11-03 00:00:00 | |
| CVE-2021-38003 | 8.8 | True | Chromium V8 | Google Chromium V8 Memory Corruption Vulnerability | 2021-11-03 00:00:00 | |
| CVE-2021-38000 | 6.1 | True | Chromium Intents | Google Chromium Intents Improper Input Validation Vulnerability | 2021-11-03 00:00:00 | |
| CVE-2021-21206 | 8.8 | True | Chromium Blink | Google Chromium Blink Use-After-Free Vulnerability | 2021-11-03 00:00:00 | |
| CVE-2021-30554 | 8.8 | True | Chromium WebGL | Google Chromium WebGL Use-After-Free Vulnerability | 2021-11-03 00:00:00 | |
| CVE-2020-6418 | 8.8 | True | Chromium V8 | Google Chromium V8 Type Confusion Vulnerability | 2021-11-03 00:00:00 | |
| CVE-2021-37975 | 8.8 | True | Chromium V8 | Google Chromium V8 Use-After-Free Vulnerability | 2021-11-03 00:00:00 | |
| CVE-2021-30551 | 8.8 | True | Chromium V8 | Google Chromium V8 Type Confusion Vulnerability | 2021-11-03 00:00:00 | |
| CVE-2021-37973 | 9.6 | True | Chromium Portals | Google Chromium Portals Use-After-Free Vulnerability | 2021-11-03 00:00:00 | |
| CVE-2021-21148 | 8.8 | True | Chromium V8 | Google Chromium V8 Heap Buffer Overflow Vulnerability | 2021-11-03 00:00:00 | |
| CVE-2021-30633 | 9.6 | True | Chromium Indexed DB API | Google Chromium Indexed DB API Use-After-Free Vulnerability | 2021-11-03 00:00:00 | |
| CVE-2020-16013 | 8.8 | True | Chromium V8 | Google Chromium V8 Incorrect Implementation Vulnerabililty | 2021-11-03 00:00:00 | |
| CVE-2021-30632 | 8.8 | True | Chromium V8 | Google Chromium V8 Out-of-Bounds Write Vulnerability | 2021-11-03 00:00:00 | |
| CVE-2020-16009 | 8.8 | True | Chromium V8 | Google Chromium V8 Type Confusion Vulnerability | 2021-11-03 00:00:00 | |
| CVE-2021-37976 | 6.5 | True | Chromium | Google Chromium Information Disclosure Vulnerability | 2021-11-03 00:00:00 | |
| CVE-2020-16017 | 9.6 | True | Chrome | Google Chrome Use-After-Free Vulnerability | 2021-11-03 00:00:00 | |
| CVE-2021-21166 | 8.8 | True | Chromium | Google Chromium Race Condition Vulnerability | 2021-11-03 00:00:00 | |
| CVE-2020-15999 | 9.6 | True | Chrome FreeType | Google Chrome FreeType Heap Buffer Overflow Vulnerability | 2021-11-03 00:00:00 | |
| CVE-2020-16010 | 9.6 | True | Chrome for Android UI | Google Chrome for Android UI Heap Buffer Overflow Vulnerability | 2021-11-03 00:00:00 | |
| CVE-2018-13379 | 9.1 | True | Fortinet | FortiOS | Fortinet FortiOS SSL VPN Path Traversal Vulnerability | 2021-11-03 00:00:00 |
| CVE-2020-12812 | 9.8 | True | Fortinet | FortiOS | Fortinet FortiOS SSL VPN Improper Authentication Vulnerability | 2021-11-03 00:00:00 |
| CVE-2019-5591 | 6.5 | True | Fortinet | FortiOS | Fortinet FortiOS Default Configuration Vulnerability | 2021-11-03 00:00:00 |
| CVE-2021-35464 | 9.8 | True | ForgeRock | Access Management (AM) | ForgeRock Access Management (AM) Core Server Remote Code Execution Vulnerability | 2021-11-03 00:00:00 |
| CVE-2021-22986 | 9.8 | True | F5 | BIG-IP and BIG-IQ Centralized Management | F5 BIG-IP and BIG-IQ Centralized Management iControl REST Remote Code Execution Vulnerability | 2021-11-03 00:00:00 |
| CVE-2020-5902 | 9.8 | True | F5 | BIG-IP | F5 BIG-IP Traffic Management User Interface (TMUI) Remote Code Execution Vulnerability | 2021-11-03 00:00:00 |
| CVE-2020-8655 | 7.8 | True | EyesOfNetwork | EyesOfNetwork | EyesOfNetwork Improper Privilege Management Vulnerability | 2021-11-03 00:00:00 |
| CVE-2020-8657 | 9.8 | True | EyesOfNetwork | EyesOfNetwork | EyesOfNetwork Use of Hard-Coded Credentials Vulnerability | 2021-11-03 00:00:00 |
| CVE-2018-6789 | 9.8 | True | Exim | Exim | Exim Buffer Overflow Vulnerability | 2021-11-03 00:00:00 |
| CVE-2021-22205 | 10.0 | True | GitLab | Community and Enterprise Editions | GitLab Community and Enterprise Editions Remote Code Execution Vulnerability | 2021-11-03 00:00:00 |
| CVE-2018-7600 | 9.8 | True | Drupal | Drupal Core | Drupal Core Remote Code Execution Vulnerability | 2021-11-03 00:00:00 |
| CVE-2020-8515 | 9.8 | True | DrayTek | Multiple Vigor Routers | Multiple DrayTek Vigor Routers Web Management Page Vulnerability | 2021-11-03 00:00:00 |
| CVE-2019-15752 | 7.8 | True | Docker | Desktop Community Edition | Docker Desktop Community Edition Privilege Escalation Vulnerability | 2021-11-03 00:00:00 |
| CVE-2017-9822 | 8.8 | True | DotNetNuke (DNN) | DotNetNuke (DNN) | DotNetNuke (DNN) Remote Code Execution Vulnerability | 2021-11-03 00:00:00 |
| CVE-2018-18325 | 7.5 | True | DotNetNuke (DNN) | DotNetNuke (DNN) | DotNetNuke (DNN) Inadequate Encryption Strength Vulnerability | 2021-11-03 00:00:00 |
| CVE-2018-15811 | 7.5 | True | DotNetNuke (DNN) | DotNetNuke (DNN) | DotNetNuke (DNN) Inadequate Encryption Strength Vulnerability | 2021-11-03 00:00:00 |
| CVE-2020-25506 | 9.8 | True | D-Link | DNS-320 Device | D-Link DNS-320 Device Command Injection Vulnerability | 2021-11-03 00:00:00 |
| CVE-2020-29557 | 9.8 | True | D-Link | DIR-825 R1 Devices | D-Link DIR-825 R1 Devices Buffer Overflow Vulnerability | 2021-11-03 00:00:00 |
| CVE-2019-11634 | 9.8 | True | Citrix | Workspace Application and Receiver for Windows | Citrix Workspace Application and Receiver for Windows Remote Code Execution Vulnerability | 2021-11-03 00:00:00 |
| CVE-2019-19781 | 9.8 | True | Citrix | Application Delivery Controller (ADC), Gateway, and SD-WAN WANOP Appliance | Citrix ADC, Gateway, and SD-WAN WANOP Appliance Code Execution Vulnerability | 2021-11-03 00:00:00 |
| CVE-2020-8196 | 4.3 | True | Citrix | Application Delivery Controller (ADC), Gateway, and SD-WAN WANOP Appliance | Citrix ADC, Gateway, and SD-WAN WANOP Appliance Information Disclosure Vulnerability | 2021-11-03 00:00:00 |
| CVE-2020-8195 | 6.5 | True | Citrix | Application Delivery Controller (ADC), Gateway, and SD-WAN WANOP Appliance | Citrix ADC, Gateway, and SD-WAN WANOP Appliance Information Disclosure Vulnerability | 2021-11-03 00:00:00 |
| CVE-2020-8193 | 6.5 | True | Citrix | Application Delivery Controller (ADC), Gateway, and SD-WAN WANOP Appliance | Citrix ADC, Gateway, and SD-WAN WANOP Appliance Authorization Bypass Vulnerability | 2021-11-03 00:00:00 |
| CVE-2019-13608 | 7.5 | True | Citrix | StoreFront Server | Citrix StoreFront Server XML External Entity (XXE) Processing Vulnerability | 2021-11-03 00:00:00 |
| CVE-2018-0296 | 7.5 | True | Cisco | Adaptive Security Appliance (ASA) | Cisco Adaptive Security Appliance (ASA) Denial-of-Service Vulnerability | 2021-11-03 00:00:00 |
| CVE-2019-1653 | 7.5 | True | Cisco | Small Business RV320 and RV325 Routers | Cisco Small Business RV320 and RV325 Routers Information Disclosure Vulnerability | 2021-11-03 00:00:00 |
| CVE-2020-3161 | 9.8 | True | Cisco | Cisco IP Phones | Cisco IP Phones Web Server Remote Code Execution and Denial-of-Service Vulnerability | 2021-11-03 00:00:00 |
| CVE-2020-3569 | 8.6 | True | Cisco | IOS XR | Cisco IOS XR Software DVMRP Memory Exhaustion Vulnerability | 2021-11-03 00:00:00 |
| CVE-2020-3566 | 8.6 | True | Cisco | IOS XR | Cisco IOS XR Software DVMRP Memory Exhaustion Vulnerability | 2021-11-03 00:00:00 |
| CVE-2020-3118 | 8.8 | True | Cisco | IOS XR | Cisco IOS XR Software Discovery Protocol Format String Vulnerability | 2021-11-03 00:00:00 |
| CVE-2018-0171 | 7.5 | True | Cisco | IOS and IOS XE | Cisco IOS and IOS XE Software Smart Install Remote Code Execution Vulnerability | 2021-11-03 00:00:00 |
| CVE-2021-1498 | 9.8 | True | Cisco | HyperFlex HX | Cisco HyperFlex HX Data Platform Command Injection Vulnerability | 2021-11-03 00:00:00 |
| CVE-2021-1497 | 9.8 | True | Cisco | HyperFlex HX | Cisco HyperFlex HX Installer Virtual Machine Command Injection Vulnerability | 2021-11-03 00:00:00 |
| CVE-2020-3580 | 6.1 | True | Cisco | Adaptive Security Appliance (ASA) and Firepower Threat Defense (FTD) | Cisco ASA and FTD Cross-Site Scripting (XSS) Vulnerability | 2021-11-03 00:00:00 |
| CVE-2020-3452 | 7.5 | True | Cisco | Adaptive Security Appliance (ASA) and Firepower Threat Defense (FTD) | Cisco ASA and FTD Read-Only Path Traversal Vulnerability | 2021-11-03 00:00:00 |
| CVE-2021-42258 | 9.8 | True | BQE | BillQuick Web Suite | BQE BillQuick Web Suite SQL Injection Vulnerability | 2021-11-03 00:00:00 |
| CVE-2019-3396 | 9.8 | True | Atlassian | Confluence Server and Data Server | Atlassian Confluence Server and Data Center Server-Side Template Injection Vulnerability | 2021-11-03 00:00:00 |
| CVE-2019-11580 | 9.8 | True | Atlassian | Crowd and Crowd Data Center | Atlassian Crowd and Crowd Data Center Remote Code Execution Vulnerability | 2021-11-03 00:00:00 |
| CVE-2021-26084 | 9.8 | True | Atlassian | Confluence Server and Data Center | Atlassian Confluence Server and Data Center Object-Graph Navigation Language (OGNL) Injection Vulnerability | 2021-11-03 00:00:00 |
| CVE-2019-3398 | 8.8 | True | Atlassian | Confluence Server and Data Center | Atlassian Confluence Server and Data Center Path Traversal Vulnerability | 2021-11-03 00:00:00 |
| CVE-2021-28663 | 8.8 | True | Arm | Mali Graphics Processing Unit (GPU) | Arm Mali Graphics Processing Unit (GPU) Use-After-Free Vulnerability | 2021-11-03 00:00:00 |
| CVE-2021-28664 | 8.8 | True | Arm | Mali Graphics Processing Unit (GPU) | Arm Mali Graphics Processing Unit (GPU) Unspecified Vulnerability | 2021-11-03 00:00:00 |
| CVE-2021-27562 | 5.5 | True | Arm | Trusted Firmware | Arm Trusted Firmware Out-of-Bounds Write Vulnerability | 2021-11-03 00:00:00 |
| CVE-2021-20090 | 9.8 | True | Arcadyan | Buffalo Firmware | Arcadyan Buffalo Firmware Path Traversal Vulnerability | 2021-11-03 00:00:00 |
| CVE-2020-9859 | 7.8 | True | Apple | Multiple Products | Apple Multiple Products Code Execution Vulnerability | 2021-11-03 00:00:00 |
| CVE-2021-30869 | 7.8 | True | Apple | iOS, iPadOS, and macOS | Apple iOS, iPadOS, and macOS Type Confusion Vulnerability | 2021-11-03 00:00:00 |
| CVE-2021-30761 | 8.8 | True | Apple | iOS | Apple iOS WebKit Memory Corruption Vulnerability | 2021-11-03 00:00:00 |
| CVE-2021-30663 | 7.8 | True | Apple | Multiple Products | Apple Multiple Products WebKit Integer Overflow Vulnerability | 2021-11-03 00:00:00 |
| CVE-2021-30665 | 8.8 | True | Apple | Multiple Products | Apple Multiple Products WebKit Memory Corruption Vulnerability | 2021-11-03 00:00:00 |
| CVE-2021-30657 | 5.5 | True | Apple | macOS | Apple macOS Unspecified Vulnerability | 2021-11-03 00:00:00 |
| CVE-2021-30713 | 7.8 | True | Apple | macOS | Apple macOS Unspecified Vulnerability | 2021-11-03 00:00:00 |
| CVE-2021-30666 | 8.8 | True | Apple | iOS | Apple iOS WebKit Buffer Overflow Vulnerability | 2021-11-03 00:00:00 |
| CVE-2021-30661 | 8.8 | True | Apple | Multiple Products | Apple Multiple Products WebKit Storage Use-After-Free Vulnerability | 2021-11-03 00:00:00 |
| CVE-2021-1879 | 6.1 | True | Apple | iOS, iPadOS, and watchOS | Apple iOS, iPadOS, and watchOS WebKit Cross-Site Scripting (XSS) Vulnerability | 2021-11-03 00:00:00 |
| CVE-2021-1871 | 9.8 | True | Apple | iOS, iPadOS, and macOS | Apple iOS, iPadOS, and macOS WebKit Remote Code Execution Vulnerability | 2021-11-03 00:00:00 |
| CVE-2021-1870 | 9.8 | True | Apple | iOS, iPadOS, and macOS | Apple iOS, iPadOS, and macOS WebKit Remote Code Execution Vulnerability | 2021-11-03 00:00:00 |
| CVE-2021-1782 | 7.0 | True | Apple | Multiple Products | Apple Multiple Products Race Condition Vulnerability | 2021-11-03 00:00:00 |
| CVE-2021-30762 | 8.8 | True | Apple | iOS | Apple iOS WebKit Use-After-Free Vulnerability | 2021-11-03 00:00:00 |
| CVE-2020-9819 | 4.3 | True | Apple | iOS, iPadOS, and watchOS | Apple iOS, iPadOS, and watchOS Memory Corruption Vulnerability | 2021-11-03 00:00:00 |
| CVE-2020-9818 | 8.8 | True | Apple | iOS, iPadOS, and watchOS | Apple iOS, iPadOS, and watchOS Out-of-Bounds Write Vulnerability | 2021-11-03 00:00:00 |
| CVE-2020-27932 | 7.8 | True | Apple | Multiple Products | Apple Multiple Products Type Confusion Vulnerability | 2021-11-03 00:00:00 |
| CVE-2020-27950 | 5.5 | True | Apple | Multiple Products | Apple Multiple Products Memory Initialization Vulnerability | 2021-11-03 00:00:00 |
| CVE-2021-30807 | 7.8 | True | Apple | Multiple Products | Apple Multiple Products Memory Corruption Vulnerability | 2021-11-03 00:00:00 |
| CVE-2020-27930 | 7.8 | True | Apple | Multiple Products | Apple Multiple Products Memory Corruption Vulnerability | 2021-11-03 00:00:00 |
| CVE-2021-30860 | 7.8 | True | Apple | Multiple Products | Apple Multiple Products Integer Overflow Vulnerability | 2021-11-03 00:00:00 |
| CVE-2019-6223 | 7.5 | True | Apple | iOS and macOS | Apple iOS and macOS Group Facetime Vulnerability | 2021-11-03 00:00:00 |
| CVE-2021-30858 | 8.8 | True | Apple | iOS, iPadOS, and macOS | Apple iOS, iPadOS, macOS Use-After-Free Vulnerability | 2021-11-03 00:00:00 |
| CVE-2018-11776 | 8.1 | True | Apache | Struts | Apache Struts Remote Code Execution Vulnerability | 2021-11-03 00:00:00 |
| CVE-2017-5638 | 9.8 | True | Apache | Struts | Apache Struts Remote Code Execution Vulnerability | 2021-11-03 00:00:00 |
| CVE-2020-17530 | 9.8 | True | Apache | Struts | Apache Struts Remote Code Execution Vulnerability | 2021-11-03 00:00:00 |
| CVE-2019-17558 | 7.5 | True | Apache | Solr | Apache Solr VelocityResponseWriter Plug-In Remote Code Execution Vulnerability | 2021-11-03 00:00:00 |
| CVE-2016-4437 | 9.8 | True | Apache | Shiro | Apache Shiro Code Execution Vulnerability | 2021-11-03 00:00:00 |
| CVE-2019-0211 | 7.8 | True | Apache | HTTP Server | Apache HTTP Server Privilege Escalation Vulnerability | 2021-11-03 00:00:00 |
| CVE-2021-41773 | 7.5 | True | Apache | HTTP Server | Apache HTTP Server Path Traversal Vulnerability | 2021-11-03 00:00:00 |
| CVE-2021-42013 | 9.8 | True | Apache | HTTP Server | Apache HTTP Server Path Traversal Vulnerability | 2021-11-03 00:00:00 |
| CVE-2017-9805 | 8.1 | True | Apache | Struts | Apache Struts Deserialization of Untrusted Data Vulnerability | 2021-11-03 00:00:00 |
| CVE-2020-0069 | 7.8 | True | MediaTek | Multiple Chipsets | Mediatek Multiple Chipsets Insufficient Input Validation Vulnerability | 2021-11-03 00:00:00 |
| CVE-2020-0041 | 7.8 | True | Android | Android Kernel | Android Kernel Out-of-Bounds Write Vulnerability | 2021-11-03 00:00:00 |
| CVE-2019-2215 | 7.8 | True | Android | Android Kernel | Android Kernel Use-After-Free Vulnerability | 2021-11-03 00:00:00 |
| CVE-2020-5735 | 8.8 | True | Amcrest | Cameras and Network Video Recorder (NVR) | Amcrest Cameras and NVR Stack-based Buffer Overflow Vulnerability | 2021-11-03 00:00:00 |
| CVE-2018-4878 | 7.8 | True | Adobe | Flash Player | Adobe Flash Player Use-After-Free Vulnerability | 2021-11-03 00:00:00 |
| CVE-2018-15961 | 9.8 | True | Adobe | ColdFusion | Adobe ColdFusion Unrestricted File Upload Vulnerability | 2021-11-03 00:00:00 |
| CVE-2018-4939 | 9.8 | True | Adobe | ColdFusion | Adobe ColdFusion Deserialization of Untrusted Data Vulnerability | 2021-11-03 00:00:00 |
| CVE-2021-28550 | 9.6 | True | Adobe | Acrobat and Reader | Adobe Acrobat and Reader Use-After-Free Vulnerability | 2021-11-03 00:00:00 |
| CVE-2021-21017 | 8.8 | True | Adobe | Acrobat and Reader | Adobe Acrobat and Reader Heap-based Buffer Overflow Vulnerability | 2021-11-03 00:00:00 |
| CVE-2021-27103 | 9.8 | True | Accellion | FTA | Accellion FTA Server-Side Request Forgery (SSRF) Vulnerability | 2021-11-03 00:00:00 |
| CVE-2021-27101 | 9.8 | True | Accellion | FTA | Accellion FTA SQL Injection Vulnerability | 2021-11-03 00:00:00 |
| CVE-2021-27102 | 7.8 | True | Accellion | FTA | Accellion FTA OS Command Injection Vulnerability | 2021-11-03 00:00:00 |
| CVE-2021-27104 | 9.8 | True | Accellion | FTA | Accellion FTA OS Command Injection Vulnerability | 2021-11-03 00:00:00 |
AVET INS is an owner of VULNDBASE brand and website. This product uses data from the NVD API but is not endorsed or certified by the NVD. See NVD page for more information. CVE is a registered trademark of the MITRE Corporation and the authoritative source of CVE content is MITRE's CVE site. CWE is a registered trademark of the MITRE Corporation and the authoritative source of CWE content is MITRE's CWE page. KEV (Known Exploited Vulnerabilities) is a catalog maintained by CISA. EUVD is the official EU repository for timely, curated cybersecurity vulnerability intelligence and remediation guidance run by ENISA. DORA (Digital Operational Resilience Act) is and EU directive.
Copyright AVET INS 1997 - 2026