IT
58.127 CVE tracked
788 Exploited now
188 Used by ransomware
Last sync

CVE Tracker

58.127 CVE

Ten vendors followed by CPE identifier, not by keyword: a CVE appears here once NVD says which products it affects — usually a few days after it is published.

CVE Tracker
Identifier Severity, sorted ascending Product and flaw EPSS, sort descending In KEV since, sort descending
CVE-1999-0898 HIGH 7.2 microsoft windows_nt Buffer overflows in Windows NT 4.0 print spooler allow remote attackers to gain privileges or cause a denial of service via a malformed spooler request. 6.7%
CVE-1999-0839 HIGH 7.2 microsoft ie Windows NT Task Scheduler installed with Internet Explorer 5 allows a user to gain privileges by modifying the job after it has been scheduled. 1.6%
CVE-1999-0781 HIGH 7.2 freebsd freebsd KDE allows local users to execute arbitrary commands by setting the KDEDIR environmental variable to modify the search path that KDE uses to locate its executables. 0.4%
CVE-1999-0733 HIGH 7.2 vmware workstation Buffer overflow in VMWare 1.0.1 for Linux via a long HOME environmental variable. 1.1%
CVE-1999-0701 HIGH 7.2 microsoft windows_nt After an unattended installation of Windows NT 4.0, an installation file could include sensitive information such as the local Administrator password. 1.6%
CVE-1999-0549 HIGH 7.2 microsoft windows_nt Windows NT automatically logs in an administrator upon rebooting. 1.8%
CVE-1999-0506 HIGH 7.2 microsoft windows_2000 A Windows NT domain user or administrator account has a default, null, blank, or missing password. 17.2%
CVE-1999-0505 HIGH 7.2 microsoft windows_2000 A Windows NT domain user or administrator account has a guessable password. 1.8%
CVE-1999-0503 HIGH 7.2 microsoft windows_2000 A Windows NT local user or administrator account has a guessable password. 1.8%
CVE-1999-0496 HIGH 7.2 microsoft windows_nt A Windows NT 4.0 user can gain administrative rights by forcing NtOpenProcessToken to succeed regardless of the user's permissions, aka GetAdmin. 1.4%
CVE-1999-0382 HIGH 7.2 microsoft windows_nt The screen saver in Windows NT does not verify that its security context has been changed properly, allowing attackers to run programs with elevated privileges. 3.1%
CVE-1999-0381 HIGH 7.2 debian debian_linux super 3.11.6 and other versions have a buffer overflow in the syslog utility which allows a local user to gain root access. 0.7%
CVE-1999-0360 HIGH 7.2 microsoft site_server MS Site Server 2.0 with IIS 4 can allow users to upload content, including ASP, to the target web site, thus allowing them to execute commands remotely. 5.6%
CVE-1999-0344 HIGH 7.2 microsoft windows_nt NT users can gain debug-level access on a system process using the Sechole exploit. 1.4%
CVE-1999-0330 HIGH 7.2 linux linux_kernel Linux bdash game has a buffer overflow that allows local users to gain root access. 0.4%
CVE-1999-0317 HIGH 7.2 linux linux_kernel Buffer overflow in Linux su command gives root access to local users. 0.4%
CVE-1999-0249 HIGH 7.2 microsoft windows_2000 Windows NT RSHSVC program allows remote users to execute arbitrary commands. 7.2%
CVE-1999-0138 HIGH 7.2 apple a_ux The suidperl and sperl program do not give up root privileges when changing UIDs back to the original users, allowing root access. 0.7%
CVE-2026-8835 HIGH 7.3 ibm http_server IBM HTTP Server 8.5, and 9.0 is vulnerable to invalid pointer dereference. A privileged user, authenticated to the Administration Server, could exploit this vulnerability to expose sensitive information or cause a denial of service. 0.3%
CVE-2026-70355 HIGH 7.3 microsoft sharepoint_server Improper neutralization of input during web page generation ('cross-site scripting') in Microsoft Office SharePoint allows an authorized attacker to elevate privileges over a network. 0.5%
CVE-2026-69477 HIGH 7.3 microsoft 365_apps Heap-based buffer overflow in Microsoft Office Access allows an authorized attacker to execute code locally. 0.4%
CVE-2026-69417 HIGH 7.3 microsoft sharepoint_server Improper neutralization of input during web page generation ('cross-site scripting') in Microsoft Office SharePoint allows an authorized attacker to perform spoofing over a network. 0.4%
CVE-2026-69402 HIGH 7.3 microsoft sharepoint_server Improper neutralization of input during web page generation ('cross-site scripting') in Microsoft Office SharePoint allows an authorized attacker to perform spoofing over a network. 0.4%
CVE-2026-68821 HIGH 7.3 microsoft app_installer Improper privilege management in Windows Package Manager allows an authorized attacker to elevate privileges locally. 0.3%
CVE-2026-67260 HIGH 7.3 apache airflow Apache Airflow 3.3.0 moved human-in-the-loop tasks from the triggerer to a new `awaiting_input` task state swept by the scheduler. That sweep deserializes the task instance's `next_kwargs` without an allow-list, so a Dag author — who controls that value throug 0.8%