56.560 CVE tracked
773 Exploited now
181 Used by ransomware
Last sync
CVE Tracker
56.560 CVE
Ten vendors followed by CPE identifier, not by keyword: a CVE appears here once NVD says which products it affects — usually a few days after it is published.
| Identifier | Severity, sort descending | Product and flaw | EPSS, sort descending | In KEV since, sorted ascending |
|---|---|---|---|---|
| CVE-2021-42013 | CRIT 9.8 | ransomware apache http_server It was found that the fix for CVE-2021-41773 in Apache HTTP Server 2.4.50 was insufficient. An attacker could use a path traversal attack to map URLs to files outside the directories configured by Alias-like directives. If files outside of these directories ar | 100.0% | |
| CVE-2021-41773 | CRIT 9.8 | ransomware apache http_server A flaw was found in a change made to path normalization in Apache HTTP Server 2.4.49. An attacker could use a path traversal attack to map URLs to files outside the directories configured by Alias-like directives. If files outside of these directories are not | 100.0% | |
| CVE-2021-40444 | HIGH 8.8 | ransomware microsoft windows_10_1507 Microsoft is investigating reports of a remote code execution vulnerability in MSHTML that affects Microsoft Windows. Microsoft is aware of targeted attacks that attempt to exploit this vulnerability by using specially-crafted Microsoft Office documents. An at | 97.5% | |
| CVE-2021-38649 | HIGH 7.0 | microsoft azure_automation_state_configuration Open Management Infrastructure Elevation of Privilege Vulnerability | 2.9% | |
| CVE-2021-38648 | HIGH 7.8 | microsoft azure_automation_state_configuration Open Management Infrastructure Elevation of Privilege Vulnerability | 11.4% | |
| CVE-2021-38647 | CRIT 9.8 | ransomware microsoft azure_automation_state_configuration Open Management Infrastructure (OMI) Remote Code Execution Vulnerability | 99.9% | |
| CVE-2021-38645 | HIGH 7.8 | microsoft azure_automation_state_configuration Open Management Infrastructure Elevation of Privilege Vulnerability | 2.7% | |
| CVE-2021-36955 | HIGH 7.8 | ransomware microsoft windows_10_1507 Windows Common Log File System Driver Elevation of Privilege Vulnerability | 4.0% | |
| CVE-2021-36948 | HIGH 7.8 | microsoft windows_10_1809 Windows Update Medic Service Elevation of Privilege Vulnerability | 26.7% | |
| CVE-2021-36942 | HIGH 7.5 | ransomware microsoft windows_server_2004 Windows LSA Spoofing Vulnerability | 66.0% | |
| CVE-2021-36742 | HIGH 7.8 | trendmicro apex_one A improper input validation vulnerability in Trend Micro Apex One, Apex One as a Service, OfficeScan XG and Worry-Free Business Security 10.0 SP1 allows a local attacker to escalate privileges on affected installations. Please note: an attacker must first obta | 1.5% | |
| CVE-2021-36741 | HIGH 8.8 | trendmicro apex_one An improper input validation vulnerability in Trend Micro Apex One, Apex One as a Service, OfficeScan XG, and Worry-Free Business Security 10.0 SP1 allows a remote attached to upload arbitrary files on affected installations. Please note: an attacker must firs | 5.0% | |
| CVE-2021-34527 | HIGH 8.8 | ransomware microsoft windows_10_1507 A remote code execution vulnerability exists when the Windows Print Spooler service improperly performs privileged file operations. An attacker who successfully exploited this vulnerability could run arbitrary code with SYSTEM privileges. An attacker could the | 99.8% | |
| CVE-2021-34523 | CRIT 9.0 | ransomware microsoft exchange_server Microsoft Exchange Server Elevation of Privilege Vulnerability | 100.0% | |
| CVE-2021-34473 | CRIT 9.1 | ransomware microsoft exchange_server Microsoft Exchange Server Remote Code Execution Vulnerability | 100.0% | |
| CVE-2021-34448 | MED 6.8 | microsoft windows_10_1507 Scripting Engine Memory Corruption Vulnerability | 40.1% | |
| CVE-2021-33771 | HIGH 7.8 | microsoft windows_10_1507 Windows Kernel Elevation of Privilege Vulnerability | 10.2% | |
| CVE-2021-33742 | HIGH 7.5 | microsoft windows_10_1507 Windows MSHTML Platform Remote Code Execution Vulnerability | 59.1% | |
| CVE-2021-33739 | HIGH 8.4 | microsoft windows_10_1909 Microsoft DWM Core Library Elevation of Privilege Vulnerability | 6.6% | |
| CVE-2021-31979 | HIGH 7.8 | microsoft windows_10_1507 Windows Kernel Elevation of Privilege Vulnerability | 4.5% | |
| CVE-2021-31956 | HIGH 7.8 | microsoft windows_10_1507 Windows NTFS Elevation of Privilege Vulnerability | 20.3% | |
| CVE-2021-31955 | MED 5.5 | microsoft windows_10_1809 Windows Kernel Information Disclosure Vulnerability | 81.1% | |
| CVE-2021-31207 | MED 6.6 | ransomware microsoft exchange_server Microsoft Exchange Server Security Feature Bypass Vulnerability | 99.8% | |
| CVE-2021-31201 | MED 5.2 | microsoft windows_10_1507 Microsoft Enhanced Cryptographic Provider Elevation of Privilege Vulnerability | 2.6% | |
| CVE-2021-31199 | MED 5.2 | microsoft windows_10_1507 Microsoft Enhanced Cryptographic Provider Elevation of Privilege Vulnerability | 3.0% |