IT
57.921 CVE tracked
783 Exploited now
188 Used by ransomware
Last sync

CVE Tracker

57.921 CVE

Ten vendors followed by CPE identifier, not by keyword: a CVE appears here once NVD says which products it affects — usually a few days after it is published.

CVE Tracker
Identifier Severity, sorted ascending Product and flaw EPSS, sort descending In KEV since, sort descending
CVE-2023-21560 MED 6.6 microsoft windows_10_1607 Windows Boot Manager Security Feature Bypass Vulnerability 1.1%
CVE-2023-20109 MED 6.6 cisco ios A vulnerability in the Cisco Group Encrypted Transport VPN (GET VPN) feature of Cisco IOS Software and Cisco IOS XE Software could allow an authenticated, remote attacker who has administrative control of either a group member or a key server to execute arbitr 2.3%
CVE-2023-1073 MED 6.6 fedoraproject fedora A memory corruption flaw was found in the Linux kernel’s human interface device (HID) subsystem in how a user inserts a malicious USB device. This flaw allows a local user to crash or potentially escalate their privileges on the system. 0.4%
CVE-2023-0837 MED 6.6 teamviewer remote An improper authorization check of local device settings in TeamViewer Remote between version 15.41 and 15.42.7 for Windows and macOS allows an unprivileged user to change basic local device settings even though the options were locked. This can result in unw 0.2%
CVE-2023-0198 MED 6.6 nvidia virtual_gpu NVIDIA GPU Display Driver for Linux contains a vulnerability in the kernel mode layer, where improper restriction of operations within the bounds of a memory buffer can lead to denial of service, information disclosure, and data tampering. 0.3%
CVE-2022-41115 MED 6.6 microsoft edge_chromium Microsoft Edge (Chromium-based) Update Elevation of Privilege Vulnerability 1.9%
CVE-2022-38032 MED 6.6 microsoft windows_10 Windows Portable Device Enumerator Service Security Feature Bypass Vulnerability 0.6%
CVE-2022-3628 MED 6.6 linux linux_kernel A buffer overflow flaw was found in the Linux kernel Broadcom Full MAC Wi-Fi driver. This issue occurs when a user connects to a malicious USB device. This can allow a local user to crash the system or escalate their privileges. 0.5%
CVE-2022-33871 MED 6.6 fortinet fortiweb A stack-based buffer overflow vulnerability [CWE-121] in FortiWeb version 7.0.1 and earlier, 6.4 all versions, version 6.3.19 and earlier may allow a privileged attacker to execute arbitrary code or commands via specifically crafted CLI `execute backup-local r 0.9%
CVE-2022-3191 MED 6.6 hitachi ops_center_analyzer Insertion of Sensitive Information into Log File vulnerability in Hitachi Ops Center Analyzer on Linux (Virtual Strage Software Agent component) allows local users to gain sensitive information. This issue affects Hitachi Ops Center Analyzer: from 10.8.1-00 be 0.2%
CVE-2022-30306 MED 6.6 fortinet fortiweb A stack-based buffer overflow vulnerability [CWE-121] in the CA sign functionality of FortiWeb version 7.0.1 and below, 6.4 all versions, version 6.3.19 and below may allow an authenticated attacker to achieve arbitrary code execution via specifically crafted 1.0%
CVE-2022-30214 MED 6.6 microsoft windows_server_2016 Windows DNS Server Remote Code Execution Vulnerability 1.0%
CVE-2022-30205 MED 6.6 microsoft windows_10 Windows Group Policy Elevation of Privilege Vulnerability 1.2%
CVE-2022-28198 MED 6.6 nvidia omniverse_cache NVIDIA Omniverse Nucleus and Cache contain a vulnerability in its configuration of OpenSSL, where an attacker with physical access to the system can cause arbitrary code execution which can impact confidentiality, integrity, and availability. 0.3%
CVE-2022-27486 MED 6.6 fortinet fortiddos A improper neutralization of special elements used in an os command ('os command injection') in Fortinet FortiDDoS version 5.5.0 through 5.5.1, 5.4.2 through 5.4.0, 5.3.0 through 5.3.1, 5.2.0, 5.1.0, 5.0.0, 4.7.0, 4.6.0 and 4.5.0 and FortiDDoS-F version 6.3.0 0.8%
CVE-2022-26829 MED 6.6 microsoft windows_server_2008 Windows DNS Server Remote Code Execution Vulnerability 1.9%
CVE-2022-26822 MED 6.6 microsoft windows_server_2008 Windows DNS Server Remote Code Execution Vulnerability 1.9%
CVE-2022-26821 MED 6.6 microsoft windows_server_2008 Windows DNS Server Remote Code Execution Vulnerability 1.9%
CVE-2022-26820 MED 6.6 microsoft windows_server_2008 Windows DNS Server Remote Code Execution Vulnerability 1.9%
CVE-2022-26819 MED 6.6 microsoft windows_server_2008 Windows DNS Server Remote Code Execution Vulnerability 1.9%
CVE-2022-26818 MED 6.6 microsoft windows_server_2012 Windows DNS Server Remote Code Execution Vulnerability 2.3%
CVE-2022-26817 MED 6.6 microsoft windows_server_2012 Windows DNS Server Remote Code Execution Vulnerability 1.7%
CVE-2022-26814 MED 6.6 microsoft windows_server_2012 Windows DNS Server Remote Code Execution Vulnerability 1.7%
CVE-2022-22975 MED 6.6 vmware pinniped An issue was discovered in the Pinniped Supervisor with either LADPIdentityProvider or ActiveDirectoryIdentityProvider resources. An attack would involve the malicious user changing the common name (CN) of their user entry on the LDAP or AD server to include s 1.0%
CVE-2022-22023 MED 6.6 microsoft windows_10 Windows Portable Device Enumerator Service Security Feature Bypass Vulnerability 0.6%