EN
57.971 CVE seguite
788 Sfruttate ora
188 Usate dai ransomware
Ultima sincronia

CVE Tracker

57.971 CVE

Dieci fornitori seguiti per identificativo CPE, non per parola chiave: una CVE compare qui quando NVD dichiara quali prodotti tocca, di solito qualche giorno dopo la pubblicazione.

CVE Tracker
Identificativo Gravità, ordina dal più alto Prodotto e difetto EPSS, ordina dal più alto In KEV dal, ordina dal più alto
CVE-2022-22153 HIGH 7.5 juniper junos An Insufficient Algorithmic Complexity combined with an Allocation of Resources Without Limits or Throttling vulnerability in the flow processing daemon (flowd) of Juniper Networks Junos OS on SRX Series and MX Series with SPC3 allows an unauthenticated networ 0,9%
CVE-2021-42760 HIGH 8.8 fortinet fortiwlm A improper neutralization of special elements used in an sql command ('sql injection') in Fortinet FortiWLM version 8.6.1 and below allows attacker to disclose sensitive information from DB tables via crafted requests. 0,9%
CVE-2010-0705 HIGH 7.2 avast avast_antivirus_home Aavmker4.sys in avast! 4.8 through 4.8.1368.0 and 5.0 before 5.0.418.0 running on Windows 2000 and XP does not properly validate input to IOCTL 0xb2d60030, which allows local users to cause a denial of service (system crash) or execute arbitrary code to gain p 0,9%
CVE-2026-76433 MED 5.3 A vulnerability in the client provisioning download feature of Cisco ISE and Cisco ISE-PIC could allow an unauthenticated, remote attacker to access protected files on an affected device. This vulnerability is due to insufficient validation of directory tra 0,9%
CVE-2026-20095 MED 6.5 cisco enterprise_nfv_infrastructure_software A vulnerability in the web-based management interface of Cisco IMC could allow an authenticated, remote attacker with admin-level privileges to perform command injection attacks on an affected system and execute arbitrary commands as the root user. Thi 0,9%
CVE-2026-21226 HIGH 7.5 microsoft azure_core_shared_client_library Deserialization of untrusted data in Azure Core shared client library for Python allows an authorized attacker to execute code over a network. 0,9%
CVE-2024-43518 HIGH 8.8 microsoft windows_10_1507 Windows Telephony Server Remote Code Execution Vulnerability 0,9%
CVE-2024-38234 MED 6.5 microsoft windows_10_1507 Windows Networking Denial of Service Vulnerability 0,9%
CVE-2024-38171 HIGH 7.8 microsoft 365_apps Microsoft PowerPoint Remote Code Execution Vulnerability 0,9%
CVE-2024-42447 CRIT 9.8 apache apache-airflow-providers-fab Insufficient Session Expiration vulnerability in Apache Airflow Providers FAB. This issue affects Apache Airflow Providers FAB: 1.2.1 (when used with Apache Airflow 2.9.3) and FAB 1.2.0 for all Airflow versions. The FAB provider prevented the user from loggin 0,9%
CVE-2024-38058 MED 6.8 microsoft windows_10_1507 BitLocker Security Feature Bypass Vulnerability 0,9%
CVE-2023-5168 CRIT 9.8 mozilla firefox A compromised content process could have provided malicious data to `FilterNodeD2D1` resulting in an out-of-bounds write, leading to a potentially exploitable crash in a privileged process. *This bug only affects Firefox on Windows. Other operating systems are 0,9%
CVE-2022-43640 MED 5.5 foxit pdf_editor This vulnerability allows remote attackers to disclose sensitive information on affected installations of Foxit PDF Reader 12.0.1.12430. User interaction is required to exploit this vulnerability in that the target must visit a malicious page or open a malicio 0,9%
CVE-2023-21793 HIGH 7.8 microsoft 3d_builder 3D Builder Remote Code Execution Vulnerability 0,9%
CVE-2023-21791 HIGH 7.8 microsoft 3d_builder 3D Builder Remote Code Execution Vulnerability 0,9%
CVE-2023-21790 HIGH 7.8 microsoft 3d_builder 3D Builder Remote Code Execution Vulnerability 0,9%
CVE-2023-21789 HIGH 7.8 microsoft 3d_builder 3D Builder Remote Code Execution Vulnerability 0,9%
CVE-2023-21788 HIGH 7.8 microsoft 3d_builder 3D Builder Remote Code Execution Vulnerability 0,9%
CVE-2023-21787 HIGH 7.8 microsoft 3d_builder 3D Builder Remote Code Execution Vulnerability 0,9%
CVE-2023-21786 HIGH 7.8 microsoft 3d_builder 3D Builder Remote Code Execution Vulnerability 0,9%
CVE-2023-21785 HIGH 7.8 microsoft 3d_builder 3D Builder Remote Code Execution Vulnerability 0,9%
CVE-2023-21781 HIGH 7.8 microsoft 3d_builder 3D Builder Remote Code Execution Vulnerability 0,9%
CVE-2019-8921 MED 6.5 bluez bluez An issue was discovered in bluetoothd in BlueZ through 5.48. The vulnerability lies in the handling of a SVC_ATTR_REQ by the SDP implementation. By crafting a malicious CSTATE, it is possible to trick the server into returning more bytes than the buffer actual 0,9%
CVE-2021-36928 MED 6.0 microsoft edge_chromium Microsoft Edge (Chromium-based) Elevation of Privilege Vulnerability 0,9%
CVE-2020-3117 MED 4.7 cisco content_security_management_appliance A vulnerability in the API Framework of Cisco AsyncOS for Cisco Web Security Appliance (WSA) and Cisco Content Security Management Appliance (SMA) could allow an unauthenticated, remote attacker to inject crafted HTTP headers in the web server's response. The 0,9%