58.450 CVE seguite
793 Sfruttate ora
188 Usate dai ransomware
Ultima sincronia
CVE Tracker
58.450 CVE
Dieci fornitori seguiti per identificativo CPE, non per parola chiave: una CVE compare qui quando NVD dichiara quali prodotti tocca, di solito qualche giorno dopo la pubblicazione.
| Identificativo | Gravità, ordina dal più alto | Prodotto e difetto | EPSS, ordina dal più alto | In KEV dal, ordinato dal più alto |
|---|---|---|---|---|
| CVE-2020-17510 | CRIT 9.8 | apache shiro Apache Shiro before 1.7.0, when using Apache Shiro with Spring, a specially crafted HTTP request may cause an authentication bypass. | 8,2% | — |
| CVE-2020-17509 | HIGH 7.5 | apache traffic_server ATS negative cache option is vulnerable to a cache poisoning attack. If you have this option enabled, please upgrade or disable this feature. Apache Traffic Server versions 7.0.0 to 7.1.11 and 8.0.0 to 8.1.0 are affected. | 1,8% | — |
| CVE-2020-17508 | HIGH 7.5 | apache traffic_server The ATS ESI plugin has a memory disclosure vulnerability. If you are running the plugin please upgrade. Apache Traffic Server versions 7.0.0 to 7.1.11 and 8.0.0 to 8.1.0 are affected. | 2,0% | — |
| CVE-2020-1749 | HIGH 7.5 | linux linux_kernel A flaw was found in the Linux kernel's implementation of some networking protocols in IPsec, such as VXLAN and GENEVE tunnels over IPv6. When an encrypted tunnel is created between two hosts, the kernel isn't correctly routing tunneled data over the encrypted | 1,2% | — |
| CVE-2020-17417 | HIGH 7.8 | foxitsoftware foxit_reader This vulnerability allows remote attackers to execute arbitrary code on affected installations of Foxit Reader 10.0.1.35811. User interaction is required to exploit this vulnerability in that the target must visit a malicious page or open a malicious file. The | 9,1% | — |
| CVE-2020-17416 | HIGH 7.8 | foxitsoftware foxit_reader This vulnerability allows remote attackers to execute arbitrary code on affected installations of Foxit Reader 10.0.0.35798. User interaction is required to exploit this vulnerability in that the target must visit a malicious page or open a malicious file. The | 9,1% | — |
| CVE-2020-17415 | HIGH 7.8 | foxitsoftware foxit_reader This vulnerability allows local attackers to escalate privileges on affected installations of Foxit PhantomPDF 10.0.0.35798. An attacker must first obtain the ability to execute low-privileged code on the target system in order to exploit this vulnerability. T | 2,1% | — |
| CVE-2020-17414 | HIGH 7.8 | foxitsoftware foxit_reader This vulnerability allows local attackers to escalate privileges on affected installations of Foxit Reader 10.0.0.35798. An attacker must first obtain the ability to execute low-privileged code on the target system in order to exploit this vulnerability. The s | 1,9% | — |
| CVE-2020-17413 | HIGH 7.8 | foxitsoftware 3d This vulnerability allows remote attackers to execute arbitrary code on affected installations of Foxit PhantomPDF 10.0.0.35798. User interaction is required to exploit this vulnerability in that the target must visit a malicious page or open a malicious file. | 4,2% | — |
| CVE-2020-17412 | HIGH 7.8 | foxitsoftware 3d This vulnerability allows remote attackers to execute arbitrary code on affected installations of Foxit PhantomPDF 10.0.0.35798. User interaction is required to exploit this vulnerability in that the target must visit a malicious page or open a malicious file. | 4,2% | — |
| CVE-2020-17411 | LOW 3.3 | foxitsoftware 3d This vulnerability allows remote attackers to disclose sensitive information on affected installations of Foxit PhantomPDF 10.0.0.35798. User interaction is required to exploit this vulnerability in that the target must visit a malicious page or open a malicio | 3,1% | — |
| CVE-2020-17410 | HIGH 7.8 | foxitsoftware foxit_reader This vulnerability allows remote attackers to execute arbitrary code on affected installations of Foxit PhantomPDF 10.0.0.35798. User interaction is required to exploit this vulnerability in that the target must visit a malicious page or open a malicious file. | 9,1% | — |
| CVE-2020-17404 | HIGH 7.8 | foxitsoftware foxit_studio_photo This vulnerability allows remote attackers to execute arbitrary code on affected installations of Foxit Studio Photo 3.6.6.922. User interaction is required to exploit this vulnerability in that the target must visit a malicious page or open a malicious file. | 4,3% | — |
| CVE-2020-17403 | HIGH 7.8 | foxitsoftware foxit_studio_photo This vulnerability allows remote attackers to execute arbitrary code on affected installations of Foxit Studio Photo 3.6.6.922. User interaction is required to exploit this vulnerability in that the target must visit a malicious page or open a malicious file. | 4,3% | — |
| CVE-2020-17163 | HIGH 7.8 | microsoft python Visual Studio Code Python Extension Remote Code Execution Vulnerability | 0,6% | — |
| CVE-2020-17162 | HIGH 8.8 | microsoft windows_10 Microsoft Windows Security Feature Bypass Vulnerability | 2,4% | — |
| CVE-2020-17158 | HIGH 8.8 | microsoft dynamics_365 Microsoft Dynamics 365 for Finance and Operations (on-premises) Remote Code Execution Vulnerability | 3,0% | — |
| CVE-2020-17156 | HIGH 7.8 | microsoft visual_studio_2017 Visual Studio Remote Code Execution Vulnerability | 3,1% | — |
| CVE-2020-17153 | MED 4.3 | microsoft edge Microsoft Edge for Android Spoofing Vulnerability | 2,2% | — |
| CVE-2020-17152 | HIGH 8.8 | microsoft dynamics_365 Microsoft Dynamics 365 for Finance and Operations (on-premises) Remote Code Execution Vulnerability | 3,0% | — |
| CVE-2020-17150 | HIGH 7.8 | microsoft tslint Visual Studio Code Remote Code Execution Vulnerability | 3,2% | — |
| CVE-2020-17148 | HIGH 7.8 | microsoft visual_studio_code Visual Studio Code Remote Development Extension Remote Code Execution Vulnerability | 4,0% | — |
| CVE-2020-17147 | HIGH 8.7 | microsoft dynamics_365 Dynamics CRM Webclient Cross-site Scripting Vulnerability | 1,4% | — |
| CVE-2020-17145 | MED 5.4 | microsoft azure_devops_server Azure DevOps Server and Team Foundation Services Spoofing Vulnerability | 1,5% | — |
| CVE-2020-17143 | HIGH 8.8 | microsoft exchange_server Microsoft Exchange Server Information Disclosure Vulnerability | 70,6% | — |