57.136 CVE seguite
777 Sfruttate ora
184 Usate dai ransomware
Ultima sincronia
CVE Tracker
57.136 CVE
Dieci fornitori seguiti per identificativo CPE, non per parola chiave: una CVE compare qui quando NVD dichiara quali prodotti tocca, di solito qualche giorno dopo la pubblicazione.
| Identificativo | Gravità, ordina dal più alto | Prodotto e difetto | EPSS, ordina dal più alto | In KEV dal, ordinato dal più basso |
|---|---|---|---|---|
| CVE-2023-36396 | HIGH 7.8 | microsoft windows_11_22h2 Windows Compressed Folder Remote Code Execution Vulnerability | 1,7% | — |
| CVE-2023-36395 | HIGH 7.5 | microsoft windows_server_2008 Windows Deployment Services Denial of Service Vulnerability | 2,5% | — |
| CVE-2023-36394 | HIGH 7.0 | microsoft windows_10_1507 Windows Search Service Elevation of Privilege Vulnerability | 6,7% | — |
| CVE-2023-36393 | HIGH 7.8 | microsoft windows_10_1507 Windows User Interface Application Core Remote Code Execution Vulnerability | 1,0% | — |
| CVE-2023-36392 | HIGH 7.5 | microsoft windows_server_2012 DHCP Server Service Denial of Service Vulnerability | 2,5% | — |
| CVE-2023-36391 | HIGH 7.8 | microsoft windows_11_23h2 Local Security Authority Subsystem Service Elevation of Privilege Vulnerability | 7,2% | — |
| CVE-2023-36388 | MED 4.3 | apache superset Improper REST API permission in Apache Superset up to and including 2.1.0 allows for an authenticated Gamma users to test network connections, possible SSRF. | 0,8% | — |
| CVE-2023-36387 | MED 5.4 | apache superset An improper default REST API permission for Gamma users in Apache Superset up to and including 2.1.0 allows for an authenticated Gamma user to test database connections. | 0,8% | — |
| CVE-2023-3611 | HIGH 7.8 | debian debian_linux An out-of-bounds write vulnerability in the Linux kernel's net/sched: sch_qfq component can be exploited to achieve local privilege escalation. The qfq_change_agg() function in net/sched/sch_qfq.c allows an out-of-bounds write because lmax is updated accordin | 0,3% | — |
| CVE-2023-3610 | HIGH 7.8 | debian debian_linux A use-after-free vulnerability in the Linux kernel's netfilter: nf_tables component can be exploited to achieve local privilege escalation. Flaw in the error handling of bound chains causes a use-after-free in the abort path of NFT_MSG_NEWRULE. The vulnerabil | 0,3% | — |
| CVE-2023-3609 | HIGH 7.8 | debian debian_linux A use-after-free vulnerability in the Linux kernel's net/sched: cls_u32 component can be exploited to achieve local privilege escalation. If tcf_change_indev() fails, u32_set_parms() will immediately return an error after incrementing or decrementing the re | 0,5% | — |
| CVE-2023-36052 | HIGH 8.6 | microsoft azure_command-line_interface Azure CLI REST Command Information Disclosure Vulnerability | 21,1% | — |
| CVE-2023-36050 | HIGH 8.0 | microsoft exchange_server Microsoft Exchange Server Spoofing Vulnerability | 39,2% | — |
| CVE-2023-36049 | HIGH 7.6 | microsoft .net .NET, .NET Framework, and Visual Studio Elevation of Privilege Vulnerability | 12,5% | — |
| CVE-2023-36047 | HIGH 7.8 | microsoft windows_10_1809 Windows Authentication Elevation of Privilege Vulnerability | 1,1% | — |
| CVE-2023-36046 | HIGH 7.1 | microsoft windows_11_21h2 Windows Authentication Denial of Service Vulnerability | 0,7% | — |
| CVE-2023-36045 | HIGH 7.8 | microsoft 365_apps Microsoft Office Graphics Remote Code Execution Vulnerability | 1,0% | — |
| CVE-2023-36043 | MED 6.5 | microsoft system_center_operations_manager Open Management Infrastructure Information Disclosure Vulnerability | 1,4% | — |
| CVE-2023-36042 | MED 6.2 | microsoft visual_studio_2019 Visual Studio Denial of Service Vulnerability | 0,8% | — |
| CVE-2023-36041 | HIGH 7.8 | microsoft 365_apps Microsoft Excel Remote Code Execution Vulnerability | 56,7% | — |
| CVE-2023-36039 | HIGH 8.0 | microsoft exchange_server Microsoft Exchange Server Spoofing Vulnerability | 73,0% | — |
| CVE-2023-36038 | HIGH 8.2 | microsoft asp.net_core ASP.NET Core Denial of Service Vulnerability | 2,8% | — |
| CVE-2023-36037 | HIGH 7.8 | microsoft 365_apps Microsoft Excel Security Feature Bypass Vulnerability | 1,2% | — |
| CVE-2023-36035 | HIGH 8.0 | microsoft exchange_server Microsoft Exchange Server Spoofing Vulnerability | 86,6% | — |
| CVE-2023-36034 | HIGH 7.3 | microsoft edge_chromium Microsoft Edge (Chromium-based) Remote Code Execution Vulnerability | 2,7% | — |