EN
57.080 CVE seguite
777 Sfruttate ora
184 Usate dai ransomware
Ultima sincronia

CVE Tracker

57.080 CVE

Dieci fornitori seguiti per identificativo CPE, non per parola chiave: una CVE compare qui quando NVD dichiara quali prodotti tocca, di solito qualche giorno dopo la pubblicazione.

CVE Tracker
Identificativo Gravità, ordinato dal più basso Prodotto e difetto EPSS, ordina dal più alto In KEV dal, ordina dal più alto
CVE-2020-25772 MED 5.5 trendmicro apex_one An out-of-bounds read information disclosure vulnerabilities in Trend Micro Apex One may allow a local attacker to disclose sensitive information to an unprivileged account on vulnerable installations of the product. An attacker must first obtain the ability t 1,3%
CVE-2020-25771 MED 5.5 trendmicro apex_one An out-of-bounds read information disclosure vulnerabilities in Trend Micro Apex One may allow a local attacker to disclose sensitive information to an unprivileged account on vulnerable installations of the product. An attacker must first obtain the ability t 1,3%
CVE-2020-25770 MED 5.5 trendmicro apex_one An out-of-bounds read information disclosure vulnerabilities in Trend Micro Apex One may allow a local attacker to disclose sensitive information to an unprivileged account on vulnerable installations of the product. An attacker must first obtain the ability t 1,3%
CVE-2020-25704 MED 5.5 debian debian_linux A flaw memory leak in the Linux kernel performance monitoring subsystem was found in the way if using PERF_EVENT_IOC_SET_FILTER. A local user could use this flaw to starve the resources causing denial of service. 0,4%
CVE-2020-25673 MED 5.5 fedoraproject fedora A vulnerability was found in Linux kernel where non-blocking socket in llcp_sock_connect() leads to leak and eventually hanging-up the system. 0,5%
CVE-2020-25641 MED 5.5 canonical ubuntu_linux A flaw was found in the Linux kernel's implementation of biovecs in versions before 5.9-rc7. A zero-length biovec request issued by the block subsystem could cause the kernel to enter an infinite loop, causing a denial of service. This flaw allows a local atta 0,4%
CVE-2020-24565 MED 5.5 trendmicro apex_one An out-of-bounds read information disclosure vulnerabilities in Trend Micro Apex One may allow a local attacker to disclose sensitive information to an unprivileged account on vulnerable installations of the product. An attacker must first obtain the ability t 1,3%
CVE-2020-24564 MED 5.5 trendmicro apex_one An out-of-bounds read information disclosure vulnerabilities in Trend Micro Apex One may allow a local attacker to disclose sensitive information to an unprivileged account on vulnerable installations of the product. An attacker must first obtain the ability t 1,3%
CVE-2020-24421 MED 5.5 adobe indesign Adobe InDesign version 15.1.2 (and earlier) is affected by a NULL pointer dereference bug that occurs when handling a malformed .indd file. The impact is limited to causing a denial-of-service of the client application. User interaction is required to exploit 1,8%
CVE-2020-24349 MED 5.5 f5 njs njs through 0.4.3, used in NGINX, allows control-flow hijack in njs_value_property in njs_value.c. NOTE: the vendor considers the issue to be "fluff" in the NGINX use case because there is no remote attack surface. 0,5%
CVE-2020-24348 MED 5.5 f5 njs njs through 0.4.3, used in NGINX, has an out-of-bounds read in njs_json_stringify_iterator in njs_json.c. 0,4%
CVE-2020-24347 MED 5.5 f5 njs njs through 0.4.3, used in NGINX, has an out-of-bounds read in njs_lvlhsh_level_find in njs_lvlhsh.c. 0,4%
CVE-2020-24089 MED 5.5 iobit malware_fighter An issue was discovered in ImfHpRegFilter.sys in IOBit Malware Fighter version 8.0.2, allows local attackers to cause a denial of service (DoS). 0,3%
CVE-2020-2020 MED 5.5 paloaltonetworks cortex_xdr_agent An improper handling of exceptional conditions vulnerability in Cortex XDR Agent allows a local authenticated Windows user to create files in the software's internal program directory that prevents the Cortex XDR Agent from starting. The exceptional condition 0,3%
CVE-2020-1986 MED 5.5 paloaltonetworks secdo Improper input validation vulnerability in Secdo allows an authenticated local user with 'create folders or append data' access to the root of the OS disk (C:\) to cause a system crash on every login. This issue affects all versions Secdo for Windows. 0,3%
CVE-2020-1951 MED 5.5 apache tika A carefully crafted or corrupt PSD file can cause an infinite loop in Apache Tika's PSDParser in versions 1.0-1.23. 2,9%
CVE-2020-1950 MED 5.5 apache tika A carefully crafted or corrupt PSD file can cause excessive memory usage in Apache Tika's PSDParser in versions 1.0-1.23. 3,0%
CVE-2020-17521 MED 5.5 apache atlas Apache Groovy provides extension methods to aid with creating temporary directories. Prior to this fix, Groovy's implementation of those extension methods was using a now superseded Java JDK method call that is potentially not secure on some operating systems 1,1%
CVE-2020-17138 MED 5.5 microsoft windows_10 Windows Error Reporting Information Disclosure Vulnerability 1,1%
CVE-2020-17126 MED 5.5 microsoft 365_apps Microsoft Excel Information Disclosure Vulnerability 1,1%
CVE-2020-17113 MED 5.5 microsoft windows_10 Windows Camera Codec Information Disclosure Vulnerability 1,5%
CVE-2020-17102 MED 5.5 microsoft webp_image_extension WebP Image Extensions Information Disclosure Vulnerability 1,2%
CVE-2020-17100 MED 5.5 microsoft visual_studio_2017 Visual Studio Tampering Vulnerability 0,8%
CVE-2020-17098 MED 5.5 microsoft windows_10 Windows GDI+ Information Disclosure Vulnerability 1,4%
CVE-2020-17094 MED 5.5 microsoft windows_10 Windows Error Reporting Information Disclosure Vulnerability 1,4%