Vulnerabilities

Aggregated CVE / GHSA / KEV / OSV — filter by tag and category.

ID Title
CVE-2021-43323 Vulnerability in insyde (CVE-2021-43323)
vulnerability in insyde (CVE-2021-43323). Successful exploitation can lead to full system takeover.
CVE-2021-43615 Out-of-Bounds Write in insyde (CVE-2021-43615)
out-of-bounds write in insyde (CVE-2021-43615). Successful exploitation can lead to full system takeover.
CVE-2022-24030 Out-of-Bounds Write in insyde (CVE-2022-24030)
out-of-bounds write in insyde (CVE-2022-24030). Successful exploitation can lead to full system takeover.
CVE-2022-24031 Buffer Overflow in insyde (CVE-2022-24031)
vulnerability in insyde (CVE-2022-24031). Successful exploitation can lead to full system takeover.
CVE-2021-33625 Buffer Overflow in insyde (CVE-2021-33625)
vulnerability in insyde (CVE-2021-33625). Successful exploitation can lead to full system takeover.
CVE-2021-33627 Buffer Overflow in insyde (CVE-2021-33627)
vulnerability in insyde (CVE-2021-33627). Successful exploitation can lead to full system takeover.
CVE-2020-5953 Vulnerability in insyde (CVE-2020-5953)
vulnerability in insyde (CVE-2020-5953). Successful exploitation can lead to full system takeover.
CVE-2021-43522 Out-of-Bounds Write in insyde (CVE-2021-43522)
out-of-bounds write in insyde (CVE-2021-43522). Successful exploitation can lead to full system takeover.
CVE-2022-24069 Vulnerability in insyde (CVE-2022-24069)
vulnerability in insyde (CVE-2022-24069). Successful exploitation can lead to full system takeover.
CVE-2021-42638 Command Injection in printerlogic (CVE-2021-42638)
command injection in printerlogic (CVE-2021-42638). Successful exploitation can lead to full system takeover.
CVE-2021-42631 Unsafe Deserialization in printerlogic (CVE-2021-42631)
vulnerability in printerlogic (CVE-2021-42631). Successful exploitation can lead to full system takeover.
CVE-2021-42635 Vulnerability in printerlogic (CVE-2021-42635)
vulnerability in printerlogic (CVE-2021-42635). Successful exploitation can lead to full system takeover.
CVE-2022-22587 KEV [KEV] Vulnerability in Apple ios-and-macos (CVE-2022-22587)
vulnerability in Apple ios-and-macos (CVE-2022-22587). Risk of unauthorized operations or information disclosure. Listed in CISA KEV — actively exploited.
CVE-2021-20038 KEV [KEV] Vulnerability in Sonicwall sma-100-appliances (CVE-2021-20038)
vulnerability in Sonicwall sma-100-appliances (CVE-2021-20038). Risk of unauthorized operations or information disclosure. Listed in CISA KEV — actively exploited.
CVE-2020-5722 KEV [KEV] SQL Injection in Grandstream ucm6200 (CVE-2020-5722)
SQL injection in Grandstream ucm6200 (CVE-2020-5722). Risk of unauthorized operations or information disclosure. Listed in CISA KEV — actively exploited.
CVE-2020-0787 KEV [KEV] Vulnerability in Microsoft windows (CVE-2020-0787)
vulnerability in Microsoft windows (CVE-2020-0787). Successful exploitation can lead to full system takeover. Listed in CISA KEV — actively exploited.
CVE-2017-5689 KEV [KEV] Vulnerability in Intel active-management-technology-amt (CVE-2017-5689)
vulnerability in Intel active-management-technology-amt (CVE-2017-5689). Risk of unauthorized operations or information disclosure. Listed in CISA KEV — actively exploited.
CVE-2014-1776 KEV [KEV] Use-After-Free in Microsoft internet-explorer (CVE-2014-1776)
vulnerability in Microsoft internet-explorer (CVE-2014-1776). Risk of unauthorized operations or information disclosure. Listed in CISA KEV — actively exploited.
CVE-2014-6271 KEV [KEV] OS Command Injection in Gnu bourne-again-shell-bash (CVE-2014-6271)
OS command injection in Gnu bourne-again-shell-bash (CVE-2014-6271). Risk of unauthorized operations or information disclosure. Listed in CISA KEV — actively exploited.
CVE-2014-7169 KEV [KEV] OS Command Injection in Gnu bourne-again-shell-bash (CVE-2014-7169)
OS command injection in Gnu bourne-again-shell-bash (CVE-2014-7169). Risk of unauthorized operations or information disclosure. Listed in CISA KEV — actively exploited.
CVE-2021-44793 Vulnerability in krontech (CVE-2021-44793)
vulnerability in krontech (CVE-2021-44793). Confidential information can be exposed externally.
CVE-2021-46117 Code Injection in jpress (CVE-2021-46117)
code injection in jpress (CVE-2021-46117). Successful exploitation can lead to full system takeover.
CVE-2021-46116 Unrestricted File Upload in jpress (CVE-2021-46116)
vulnerability in jpress (CVE-2021-46116). Successful exploitation can lead to full system takeover.
CVE-2021-46114 Code Injection in jpress (CVE-2021-46114)
code injection in jpress (CVE-2021-46114). Successful exploitation can lead to full system takeover.
CVE-2021-46115 Unrestricted File Upload in c (CVE-2021-46115)
vulnerability in c (CVE-2021-46115). Successful exploitation can lead to full system takeover.
CVE-2021-46118 Code Injection in jpress (CVE-2021-46118)
code injection in jpress (CVE-2021-46118). Successful exploitation can lead to full system takeover.
CVE-2006-1547 KEV [KEV] Vulnerability in Apache struts-1 (CVE-2006-1547)
vulnerability in Apache struts-1 (CVE-2006-1547). Risk of unauthorized operations or information disclosure. Listed in CISA KEV — actively exploited.
CVE-2012-0391 KEV [KEV] Vulnerability in Apache struts-2 (CVE-2012-0391)
vulnerability in Apache struts-2 (CVE-2012-0391). Risk of unauthorized operations or information disclosure. Listed in CISA KEV — actively exploited.
CVE-2018-8453 KEV [KEV] Vulnerability in Microsoft win32k (CVE-2018-8453)
vulnerability in Microsoft win32k (CVE-2018-8453). Risk of unauthorized operations or information disclosure. Listed in CISA KEV — actively exploited.
CVE-2021-35247 KEV [KEV] Vulnerability in Solarwinds serv-u (CVE-2021-35247)
vulnerability in Solarwinds serv-u (CVE-2021-35247). Risk of unauthorized operations or information disclosure. Listed in CISA KEV — actively exploited.
CVE-2021-45808 Unrestricted File Upload in jpress (CVE-2021-45808)
vulnerability in jpress (CVE-2021-45808). Successful exploitation can lead to full system takeover.
CVE-2022-23302 Unsafe Deserialization in apache (CVE-2022-23302)
vulnerability in apache (CVE-2022-23302). Successful exploitation can lead to full system takeover.
CVE-2022-23307 Unsafe Deserialization in apache (CVE-2022-23307)
vulnerability in apache (CVE-2022-23307). Successful exploitation can lead to full system takeover.
CVE-2021-32648 KEV [KEV] Authentication Bypass in October cms october-cms (CVE-2021-32648)
authentication bypass in October cms october-cms (CVE-2021-32648). Risk of unauthorized operations or information disclosure. Listed in CISA KEV — actively exploited.
CVE-2021-25296 KEV [KEV] OS Command Injection in nagios (CVE-2021-25296)
OS command injection in nagios (CVE-2021-25296). Risk of unauthorized operations or information disclosure. Listed in CISA KEV — actively exploited.
CVE-2021-25297 KEV [KEV] OS Command Injection in nagios (CVE-2021-25297)
OS command injection in nagios (CVE-2021-25297). Risk of unauthorized operations or information disclosure. Listed in CISA KEV — actively exploited.
CVE-2021-25298 KEV [KEV] OS Command Injection in nagios (CVE-2021-25298)
OS command injection in nagios (CVE-2021-25298). Risk of unauthorized operations or information disclosure. Listed in CISA KEV — actively exploited.
CVE-2021-40870 KEV [KEV] Vulnerability in aviatrix (CVE-2021-40870)
vulnerability in aviatrix (CVE-2021-40870). Risk of unauthorized operations or information disclosure. Listed in CISA KEV — actively exploited.
CVE-2021-33766 KEV [KEV] Authentication Bypass in Microsoft exchange-server (CVE-2021-33766)
authentication bypass in Microsoft exchange-server (CVE-2021-33766). Risk of unauthorized operations or information disclosure. Listed in CISA KEV — actively exploited.
CVE-2021-21975 KEV [KEV] SSRF (Server-Side Request Forgery) in Vmware vrealize-operations-manager-api (CVE-2021-21975)
SSRF in Vmware vrealize-operations-manager-api (CVE-2021-21975). Confidential information can be exposed externally. Listed in CISA KEV — actively exploited.
CVE-2021-21315 KEV [KEV] OS Command Injection in Npm package npm-package (CVE-2021-21315)
OS command injection in Npm package npm-package (CVE-2021-21315). Risk of unauthorized operations or information disclosure. Listed in CISA KEV — actively exploited.
CVE-2021-22991 KEV [KEV] Buffer Overflow in F5 big-ip-traffic-management-microkernel (CVE-2021-22991)
vulnerability in F5 big-ip-traffic-management-microkernel (CVE-2021-22991). Risk of unauthorized operations or information disclosure. Listed in CISA KEV — actively exploited.
CVE-2020-14864 KEV [KEV] Path Traversal in Oracle intelligence-enterprise-edition (CVE-2020-14864)
path traversal in Oracle intelligence-enterprise-edition (CVE-2020-14864). Risk of unauthorized operations or information disclosure. Listed in CISA KEV — actively exploited.
CVE-2020-13671 KEV [KEV] Unrestricted File Upload in drupal (CVE-2020-13671)
vulnerability in drupal (CVE-2020-13671). Risk of unauthorized operations or information disclosure. Listed in CISA KEV — actively exploited.
CVE-2020-11978 KEV [KEV] OS Command Injection in Apache airflow (CVE-2020-11978)
OS command injection in Apache airflow (CVE-2020-11978). Risk of unauthorized operations or information disclosure. Listed in CISA KEV — actively exploited.
CVE-2020-13927 KEV [KEV] Vulnerability in Apache airflows-experimental-api (CVE-2020-13927)
vulnerability in Apache airflows-experimental-api (CVE-2020-13927). Risk of unauthorized operations or information disclosure. Listed in CISA KEV — actively exploited.
CVE-2021-45806 Code Injection in jpress (CVE-2021-45806)
code injection in jpress (CVE-2021-45806). Successful exploitation can lead to full system takeover.
CVE-2022-21840 Microsoft Office Remote Code Execution Vulnerability
Microsoft Office Remote Code Execution Vulnerability
CVE-2022-21841 Microsoft Excel Remote Code Execution Vulnerability
Microsoft Excel Remote Code Execution Vulnerability
CVE-2021-1573 Vulnerability in dos (CVE-2021-1573)
vulnerability in dos (CVE-2021-1573). Risk of unauthorized operations or information disclosure.

🍪 About cookies

We use cookies to keep you logged in, remember your language, and improve the service.

Details →