57.977 CVE seguite
788 Sfruttate ora
188 Usate dai ransomware
Ultima sincronia
CVE Tracker
57.977 CVE
Dieci fornitori seguiti per identificativo CPE, non per parola chiave: una CVE compare qui quando NVD dichiara quali prodotti tocca, di solito qualche giorno dopo la pubblicazione.
| Identificativo | Gravità, ordina dal più alto | Prodotto e difetto | EPSS, ordina dal più alto | In KEV dal, ordinato dal più basso |
|---|---|---|---|---|
| CVE-2021-26874 | HIGH 7.8 | microsoft windows_10 Windows Overlay Filter Elevation of Privilege Vulnerability | 0,8% | — |
| CVE-2021-26873 | HIGH 7.0 | microsoft windows_10 Windows User Profile Service Elevation of Privilege Vulnerability | 1,1% | — |
| CVE-2021-26872 | HIGH 7.8 | microsoft windows_10 Windows Event Tracing Elevation of Privilege Vulnerability | 0,7% | — |
| CVE-2021-26871 | HIGH 7.8 | microsoft windows_10 Windows WalletService Elevation of Privilege Vulnerability | 1,4% | — |
| CVE-2021-26870 | HIGH 7.8 | microsoft windows_10 Windows Projected File System Elevation of Privilege Vulnerability | 0,7% | — |
| CVE-2021-26869 | MED 5.5 | microsoft windows_10 Windows ActiveX Installer Service Information Disclosure Vulnerability | 1,0% | — |
| CVE-2021-26868 | HIGH 7.8 | microsoft windows_10 Windows Graphics Component Elevation of Privilege Vulnerability | 3,1% | — |
| CVE-2021-26867 | CRIT 9.9 | microsoft windows_10 Windows Hyper-V Remote Code Execution Vulnerability | 2,8% | — |
| CVE-2021-26866 | HIGH 7.1 | microsoft windows_10 Windows Update Service Elevation of Privilege Vulnerability | 1,1% | — |
| CVE-2021-26865 | HIGH 8.8 | microsoft windows_10 Windows Container Execution Agent Elevation of Privilege Vulnerability | 1,1% | — |
| CVE-2021-26864 | HIGH 8.4 | microsoft windows_10 Windows Virtual Registry Provider Elevation of Privilege Vulnerability | 0,7% | — |
| CVE-2021-26863 | HIGH 7.0 | microsoft windows_10 Windows Win32k Elevation of Privilege Vulnerability | 11,8% | — |
| CVE-2021-26862 | HIGH 7.0 | microsoft windows_10 Windows Installer Elevation of Privilege Vulnerability | 1,2% | — |
| CVE-2021-26861 | HIGH 7.8 | microsoft windows_10 Windows Graphics Component Remote Code Execution Vulnerability | 2,7% | — |
| CVE-2021-26860 | HIGH 7.8 | microsoft windows_10 Windows App-V Overlay Filter Elevation of Privilege Vulnerability | 0,7% | — |
| CVE-2021-26859 | HIGH 7.7 | microsoft power_bi_report_server Microsoft Power BI Information Disclosure Vulnerability | 3,0% | — |
| CVE-2021-26854 | MED 6.6 | microsoft exchange_server Microsoft Exchange Server Remote Code Execution Vulnerability | 23,0% | — |
| CVE-2021-26708 | HIGH 7.0 | linux linux_kernel A local privilege escalation was discovered in the Linux kernel before 5.10.13. Multiple race conditions in the AF_VSOCK implementation are caused by wrong locking in net/vmw_vsock/af_vsock.c. The race conditions were implicitly introduced in the commits that | 1,6% | — |
| CVE-2021-26701 | HIGH 8.1 | fedoraproject fedora .NET Core Remote Code Execution Vulnerability | 30,1% | — |
| CVE-2021-26700 | HIGH 7.8 | microsoft npm Visual Studio Code npm-script Extension Remote Code Execution Vulnerability | 6,0% | — |
| CVE-2021-26697 | MED 5.3 | apache airflow The lineage endpoint of the deprecated Experimental API was not protected by authentication in Airflow 2.0.0. This allowed unauthenticated users to hit that endpoint. This is low-severity issue as the attacker needs to be aware of certain parameters to pass to | 4,6% | — |
| CVE-2021-26691 | CRIT 9.8 | apache http_server In Apache HTTP Server versions 2.4.0 to 2.4.46 a specially crafted SessionHeader sent by an origin server could cause a heap overflow | 68,3% | — |
| CVE-2021-26690 | HIGH 7.5 | apache http_server Apache HTTP Server versions 2.4.0 to 2.4.46 A specially crafted Cookie header handled by mod_session can cause a NULL pointer dereference and crash, leading to a possible Denial Of Service | 65,3% | — |
| CVE-2021-26677 | HIGH 7.8 | arubanetworks clearpass_policy_manager A local authenticated escalation of privilege vulnerability was discovered in Aruba ClearPass Policy Manager version(s): Prior to 6.9.5, 6.8.8-HF1, 6.7.14-HF1. A vulnerability in ClearPass OnGuard could allow local authenticated users on a Windows platform to | 0,3% | — |
| CVE-2021-26644 | HIGH 8.8 | mangboard mangboard_wp SQL-Injection vulnerability caused by the lack of verification of input values for the table name of DB used by the Mangboard bulletin board. A remote attacker can use this vulnerability to execute arbitrary code on the server where the bulletin board is runni | 0,9% | — |