EN
58.007 CVE seguite
788 Sfruttate ora
188 Usate dai ransomware
Ultima sincronia

CVE Tracker

58.007 CVE

Dieci fornitori seguiti per identificativo CPE, non per parola chiave: una CVE compare qui quando NVD dichiara quali prodotti tocca, di solito qualche giorno dopo la pubblicazione.

CVE Tracker
Identificativo Gravità, ordina dal più alto Prodotto e difetto EPSS, ordina dal più alto In KEV dal, ordinato dal più basso
CVE-2021-25231 MED 5.3 trendmicro apex_one An improper access control vulnerability in Trend Micro Apex One (on-prem and SaaS), OfficeScan XG SP1, and Worry-Free Business Security 10.0 SP1 could allow an unauthenticated user to obtain information about a specific hotfix history file. 2,2%
CVE-2021-25230 MED 5.3 trendmicro apex_one An improper access control vulnerability in Trend Micro Apex One (on-prem and SaaS) and OfficeScan XG SP1 could allow an unauthenticated user to obtain information about the contents of a scan connection exception file. 2,1%
CVE-2021-25220 MED 6.8 fedoraproject fedora BIND 9.11.0 -> 9.11.36 9.12.0 -> 9.16.26 9.17.0 -> 9.18.0 BIND Supported Preview Editions: 9.11.4-S1 -> 9.11.36-S1 9.16.8-S1 -> 9.16.26-S1 Versions of BIND 9 earlier than those shown - back to 9.1.0, including Supported Preview Editions - are also believed to 3,4%
CVE-2021-25195 HIGH 7.8 microsoft windows_10 Windows PKU2U Elevation of Privilege Vulnerability 0,6%
CVE-2021-25122 HIGH 7.5 apache tomcat When responding to new h2c connection requests, Apache Tomcat versions 10.0.0-M1 to 10.0.0, 9.0.0.M1 to 9.0.41 and 8.5.0 to 8.5.61 could duplicate request headers and a limited amount of request body from one request to another meaning user A and user B could 18,1%
CVE-2021-24122 MED 5.9 apache tomcat When serving resources from a network location using the NTFS file system, Apache Tomcat versions 10.0.0-M1 to 10.0.0-M9, 9.0.0.M1 to 9.0.39, 8.5.0 to 8.5.59 and 7.0.0 to 7.0.106 were susceptible to JSP source code disclosure in some configurations. The root c 22,9%
CVE-2021-24117 MED 4.9 apache teaclave_sgx_sdk In Apache Teaclave Rust SGX SDK 1.1.3, a side-channel vulnerability in base64 PEM file decoding allows system-level (administrator) attackers to obtain information about secret RSA keys via a controlled-channel and side-channel attack on software running in is 2,2%
CVE-2021-24114 MED 5.7 microsoft teams Microsoft Teams iOS Information Disclosure Vulnerability 2,8%
CVE-2021-24113 MED 5.4 microsoft edge_chromium Microsoft Edge (Chromium-based) Security Feature Bypass Vulnerability 1,3%
CVE-2021-24112 HIGH 8.1 microsoft .net .NET Core Remote Code Execution Vulnerability 3,3%
CVE-2021-24111 HIGH 7.5 microsoft .net_framework .NET Framework Denial of Service Vulnerability 3,8%
CVE-2021-24110 HIGH 7.8 microsoft high_efficiency_video_coding HEVC Video Extensions Remote Code Execution Vulnerability 2,5%
CVE-2021-24109 MED 6.8 microsoft azure_kubernetes_service Microsoft Azure Kubernetes Service Elevation of Privilege Vulnerability 2,0%
CVE-2021-24108 HIGH 7.8 microsoft 365_apps Microsoft Office Remote Code Execution Vulnerability 2,5%
CVE-2021-24107 MED 5.5 microsoft windows_10 Windows Event Tracing Information Disclosure Vulnerability 1,0%
CVE-2021-24106 MED 5.5 microsoft windows_10 Windows DirectX Information Disclosure Vulnerability 0,9%
CVE-2021-24105 HIGH 8.4 microsoft package_manager_configurations <p>Depending on configuration of various package managers it is possible for an attacker to insert a malicious package into a package manager's repository which can be retrieved and used during development, build, and release processes. This insertion could le 2,1%
CVE-2021-24104 MED 4.6 microsoft sharepoint_enterprise_server Microsoft SharePoint Server Spoofing Vulnerability 1,4%
CVE-2021-24103 HIGH 7.8 microsoft windows_10 Windows Event Tracing Elevation of Privilege Vulnerability 0,6%
CVE-2021-24102 HIGH 7.8 microsoft windows_10 Windows Event Tracing Elevation of Privilege Vulnerability 0,5%
CVE-2021-24101 MED 6.5 microsoft dynamics_365 Microsoft Dataverse Information Disclosure Vulnerability 2,8%
CVE-2021-24100 MED 5.0 microsoft edge Microsoft Edge for Android Information Disclosure Vulnerability 2,8%
CVE-2021-24099 MED 6.5 microsoft lync_server Skype for Business and Lync Denial of Service Vulnerability 2,9%
CVE-2021-24098 MED 5.5 microsoft windows_10 Windows Console Driver Denial of Service Vulnerability 1,5%
CVE-2021-24096 HIGH 7.8 microsoft windows_10 Windows Kernel Elevation of Privilege Vulnerability 1,5%