Vulnerabilities
Aggregated CVE / GHSA / KEV / OSV — filter by tag and category.
| ID | Title | |
|---|---|---|
| CVE-2021-0920 KEV |
|
[KEV] Vulnerability in Android :linux_kernel: (CVE-2021-0920)
vulnerability in Android :linux_kernel: (CVE-2021-0920). Risk of unauthorized operations or information disclosure. Listed in CISA KEV — actively exploited. Mitigation: upgrade to `:2021-11-05` or later.
|
| CVE-2021-30883 KEV |
|
[KEV] Out-of-Bounds Write in Apple multiple-products (CVE-2021-30883)
out-of-bounds write in Apple multiple-products (CVE-2021-30883). Risk of unauthorized operations or information disclosure. Listed in CISA KEV — actively exploited.
|
| CVE-2020-1027 KEV |
|
[KEV] Out-of-Bounds Write in Microsoft windows (CVE-2020-1027)
out-of-bounds write in Microsoft windows (CVE-2020-1027). Risk of unauthorized operations or information disclosure. Listed in CISA KEV — actively exploited.
|
| CVE-2020-0638 KEV |
|
[KEV] Vulnerability in Microsoft update-notification-manager (CVE-2020-0638)
vulnerability in Microsoft update-notification-manager (CVE-2020-0638). Successful exploitation can lead to full system takeover. Listed in CISA KEV — actively exploited.
|
| CVE-2019-7286 KEV |
|
[KEV] Out-of-Bounds Write in Apple multiple-products (CVE-2019-7286)
out-of-bounds write in Apple multiple-products (CVE-2019-7286). Risk of unauthorized operations or information disclosure. Listed in CISA KEV — actively exploited.
|
| CVE-2019-7287 KEV |
|
[KEV] Out-of-Bounds Write in Apple ios (CVE-2019-7287)
out-of-bounds write in Apple ios (CVE-2019-7287). Risk of unauthorized operations or information disclosure. Listed in CISA KEV — actively exploited.
|
| CVE-2019-0676 KEV |
|
[KEV] Vulnerability in Microsoft internet-explorer (CVE-2019-0676)
vulnerability in Microsoft internet-explorer (CVE-2019-0676). Risk of unauthorized operations or information disclosure. Listed in CISA KEV — actively exploited.
|
| CVE-2019-5786 KEV |
|
[KEV] Use-After-Free in Google chrome-blink (CVE-2019-5786)
vulnerability in Google chrome-blink (CVE-2019-5786). Risk of unauthorized operations or information disclosure. Listed in CISA KEV — actively exploited.
|
| CVE-2019-0703 KEV |
|
[KEV] Vulnerability in Microsoft windows (CVE-2019-0703)
vulnerability in Microsoft windows (CVE-2019-0703). Risk of unauthorized operations or information disclosure. Listed in CISA KEV — actively exploited.
|
| CVE-2019-0880 KEV |
|
[KEV] Vulnerability in Microsoft windows (CVE-2019-0880)
vulnerability in Microsoft windows (CVE-2019-0880). Risk of unauthorized operations or information disclosure. Listed in CISA KEV — actively exploited.
|
| CVE-2019-13720 KEV |
|
[KEV] Use-After-Free in Google chrome-webaudio (CVE-2019-13720)
vulnerability in Google chrome-webaudio (CVE-2019-13720). Risk of unauthorized operations or information disclosure. Listed in CISA KEV — actively exploited.
|
| CVE-2019-11707 KEV |
|
[KEV] Vulnerability in Mozilla firefox-and-thunderbird (CVE-2019-11707)
vulnerability in Mozilla firefox-and-thunderbird (CVE-2019-11707). Risk of unauthorized operations or information disclosure. Listed in CISA KEV — actively exploited.
|
| CVE-2019-11708 KEV |
|
[KEV] Vulnerability in Mozilla firefox-and-thunderbird (CVE-2019-11708)
vulnerability in Mozilla firefox-and-thunderbird (CVE-2019-11708). Risk of unauthorized operations or information disclosure. Listed in CISA KEV — actively exploited.
|
| CVE-2019-8720 KEV |
|
[KEV] Buffer Overflow in webkitgtk (CVE-2019-8720)
vulnerability in webkitgtk (CVE-2019-8720). Risk of unauthorized operations or information disclosure. Listed in CISA KEV — actively exploited.
|
| CVE-2019-18426 KEV |
|
[KEV] Cross-Site Scripting (XSS) in Meta platforms meta-platforms (CVE-2019-18426)
cross-site scripting in Meta platforms meta-platforms (CVE-2019-18426). Risk of unauthorized operations or information disclosure. Listed in CISA KEV — actively exploited.
|
| CVE-2019-1385 KEV |
|
[KEV] Vulnerability in Microsoft windows (CVE-2019-1385)
vulnerability in Microsoft windows (CVE-2019-1385). Successful exploitation can lead to full system takeover. Listed in CISA KEV — actively exploited.
|
| CVE-2019-1130 KEV |
|
[KEV] Vulnerability in Microsoft windows (CVE-2019-1130)
vulnerability in Microsoft windows (CVE-2019-1130). Successful exploitation can lead to full system takeover. Listed in CISA KEV — actively exploited.
|
| CVE-2018-5002 KEV |
|
[KEV] Out-of-Bounds Write in Adobe flash-player (CVE-2018-5002)
out-of-bounds write in Adobe flash-player (CVE-2018-5002). Risk of unauthorized operations or information disclosure. Listed in CISA KEV — actively exploited.
|
| CVE-2018-8589 KEV |
|
[KEV] Vulnerability in Microsoft win32k (CVE-2018-8589)
vulnerability in Microsoft win32k (CVE-2018-8589). Risk of unauthorized operations or information disclosure. Listed in CISA KEV — actively exploited.
|
| CVE-2022-1734 |
|
Use-After-Free in c (CVE-2022-1734)
vulnerability in c (CVE-2022-1734). Successful exploitation can lead to full system takeover.
|
| CVE-2022-30065 |
|
Use-After-Free in dos (CVE-2022-30065)
vulnerability in dos (CVE-2022-30065). Successful exploitation can lead to full system takeover.
|
| CVE-2022-29641 |
|
Out-of-Bounds Write in dos (CVE-2022-29641)
out-of-bounds write in dos (CVE-2022-29641). Risk of unauthorized operations or information disclosure.
|
| CVE-2014-5287 |
|
Vulnerability in progress (CVE-2014-5287)
vulnerability in progress (CVE-2014-5287). Successful exploitation can lead to full system takeover.
|
| CVE-2015-1916 |
|
Vulnerability in dos (CVE-2015-1916)
vulnerability in dos (CVE-2015-1916). Risk of unauthorized operations or information disclosure.
|
| CVE-2011-0539 |
|
Vulnerability in c (CVE-2011-0539)
vulnerability in c (CVE-2011-0539). Confidential information can be exposed externally.
|
| CVE-2010-5107 |
|
Vulnerability in dos (CVE-2010-5107)
vulnerability in dos (CVE-2010-5107). Risk of unauthorized operations or information disclosure.
|
| CVE-2022-30525 KEV |
|
[KEV] OS Command Injection in Zyxel multiple-firewalls (CVE-2022-30525)
OS command injection in Zyxel multiple-firewalls (CVE-2022-30525). Risk of unauthorized operations or information disclosure. Listed in CISA KEV — actively exploited.
|
| CVE-2022-22947 KEV |
|
[KEV] Code Injection in Vmware spring-cloud-gateway (CVE-2022-22947)
code injection in Vmware spring-cloud-gateway (CVE-2022-22947). Risk of unauthorized operations or information disclosure. Listed in CISA KEV — actively exploited.
|
| CVE-2016-10010 |
|
Vulnerability in c (CVE-2016-10010)
vulnerability in c (CVE-2016-10010). Successful exploitation can lead to full system takeover.
|
| CVE-2018-8727 |
|
Path Traversal in path-traversal (CVE-2018-8727)
path traversal in path-traversal (CVE-2018-8727). Confidential information can be exposed externally.
|
| CVE-2016-8858 |
|
Vulnerability in c (CVE-2016-8858)
vulnerability in c (CVE-2016-8858). Risk of unauthorized operations or information disclosure.
|
| CVE-2020-22983 |
|
SSRF (Server-Side Request Forgery) in ssrf (CVE-2020-22983)
SSRF in ssrf (CVE-2020-22983). Confidential information can be exposed externally.
|
| CVE-2022-25762 |
|
Vulnerability in org.apache.tomcat:tomcat (CVE-2022-25762)
vulnerability in org.apache.tomcat:tomcat (CVE-2022-25762). Confidential information can be exposed externally. Mitigation: upgrade to `9.0.20` or later.
|
| CVE-2018-19908 |
|
OS Command Injection in misp-project (CVE-2018-19908)
OS command injection in misp-project (CVE-2018-19908). Successful exploitation can lead to full system takeover.
|
| CVE-2018-3615 |
|
Vulnerability in intel (CVE-2018-3615)
vulnerability in intel (CVE-2018-3615). Confidential information can be exposed externally.
|
| CVE-2015-5600 |
|
Vulnerability in c (CVE-2015-5600)
vulnerability in c (CVE-2015-5600). Successful exploitation can lead to full system takeover.
|
| CVE-2018-7798 |
|
Vulnerability in schneider-electric (CVE-2018-7798)
vulnerability in schneider-electric (CVE-2018-7798). Data can be tampered with by attackers.
|
| CVE-2018-7792 |
|
Vulnerability in schneider-electric (CVE-2018-7792)
vulnerability in schneider-electric (CVE-2018-7792). Confidential information can be exposed externally.
|
| CVE-2018-7789 |
|
Vulnerability in schneider-electric (CVE-2018-7789)
vulnerability in schneider-electric (CVE-2018-7789). Risk of unauthorized operations or information disclosure.
|
| CVE-2022-23742 |
|
Vulnerability in checkpoint (CVE-2022-23742)
vulnerability in checkpoint (CVE-2022-23742). Successful exploitation can lead to full system takeover.
|
| CVE-2020-19228 |
|
Unrestricted File Upload in bludit (CVE-2020-19228)
vulnerability in bludit (CVE-2020-19228). Successful exploitation can lead to full system takeover.
|
| CVE-2022-29145 |
|
Vulnerability in Microsoft.AspNetCore.App.Runtime.win-x64 (CVE-2022-29145)
vulnerability in Microsoft.AspNetCore.App.Runtime.win-x64 (CVE-2022-29145). Risk of unauthorized operations or information disclosure. Mitigation: upgrade to `6.0.5` or later.
|
| CVE-2022-29109 |
|
Microsoft Excel Remote Code Execution Vulnerability
Microsoft Excel Remote Code Execution Vulnerability
|
| CVE-2022-29117 |
|
.NET and Visual Studio Denial of Service Vulnerability
.NET and Visual Studio Denial of Service Vulnerability
|
| CVE-2022-26926 |
|
Windows Address Book Remote Code Execution Vulnerability.
Windows Address Book Remote Code Execution Vulnerability.
|
| CVE-2022-28986 |
|
Vulnerability in lmsdoctor (CVE-2022-28986)
vulnerability in lmsdoctor (CVE-2022-28986). Data can be tampered with by attackers.
|
| CVE-2022-26987 |
|
Out-of-Bounds Write in tp-link (CVE-2022-26987)
out-of-bounds write in tp-link (CVE-2022-26987). Successful exploitation can lead to full system takeover. Exploitable via ``MmtAtePrase``.
|
| CVE-2022-26988 |
|
Out-of-Bounds Write in tp-link (CVE-2022-26988)
out-of-bounds write in tp-link (CVE-2022-26988). Successful exploitation can lead to full system takeover. Exploitable via ``MntAte``.
|
| CVE-2022-1388 KEV |
|
[KEV] Vulnerability in F5 big-ip (CVE-2022-1388)
vulnerability in F5 big-ip (CVE-2022-1388). Risk of unauthorized operations or information disclosure. Listed in CISA KEV — actively exploited.
|
| CVE-2022-27224 |
|
An issue was discovered in Galleon NTS-6002-GPS 4.14.103-Galleon-NTS-6002.V12 4. An authenticated...
An issue was discovered in Galleon NTS-6002-GPS 4.14.103-Galleon-NTS-6002.V12 4. An authenticated...
|