58.535 CVE seguite
797 Sfruttate ora
188 Usate dai ransomware
Ultima sincronia
CVE Tracker
58.535 CVE
Dieci fornitori seguiti per identificativo CPE, non per parola chiave: una CVE compare qui quando NVD dichiara quali prodotti tocca, di solito qualche giorno dopo la pubblicazione.
| Identificativo | Gravità, ordina dal più alto | Prodotto e difetto | EPSS, ordina dal più alto | In KEV dal, ordina dal più alto |
|---|---|---|---|---|
| CVE-2015-3318 | MED 4.6 | ca client_automation CA Common Services, as used in CA Client Automation r12.5 SP01, r12.8, and r12.9; CA Network and Systems Management r11.0, r11.1, and r11.2; CA NSM Job Management Option r11.0, r11.1, and r11.2; CA Universal Job Management Agent; CA Virtual Assurance for Infra | 0,4% | — |
| CVE-2015-3317 | MED 4.6 | ca client_automation CA Common Services, as used in CA Client Automation r12.5 SP01, r12.8, and r12.9; CA Network and Systems Management r11.0, r11.1, and r11.2; CA NSM Job Management Option r11.0, r11.1, and r11.2; CA Universal Job Management Agent; CA Virtual Assurance for Infra | 0,4% | — |
| CVE-2015-0662 | HIGH 7.2 | cisco anyconnect_secure_mobility_client Cisco AnyConnect Secure Mobility Client 4.0(.00051) and earlier allows local users to gain privileges via crafted IPC messages that trigger use of root privileges for a software-package installation, aka Bug ID CSCus79385. | 0,4% | — |
| CVE-2014-5332 | MED 6.9 | linux linux_kernel Race condition in NVMap in NVIDIA Tegra Linux Kernel 3.10 allows local users to gain privileges via a crafted NVMAP_IOC_CREATE IOCTL call, which triggers a use-after-free error, as demonstrated by using a race condition to escape the Chrome sandbox. | 0,4% | — |
| CVE-2014-8003 | HIGH 7.2 | cisco unified_computing_system Cisco Integrated Management Controller in Cisco Unified Computing System 2.2(2c)A and earlier allows local users to obtain shell access via a crafted map-nfs command, aka Bug ID CSCup05998. | 0,4% | — |
| CVE-2012-6545 | LOW 1.9 | linux linux_kernel The Bluetooth RFCOMM implementation in the Linux kernel before 3.6 does not properly initialize certain structures, which allows local users to obtain sensitive information from kernel memory via a crafted application. | 0,4% | — |
| CVE-2012-6544 | LOW 1.9 | linux linux_kernel The Bluetooth protocol stack in the Linux kernel before 3.6 does not properly initialize certain structures, which allows local users to obtain sensitive information from kernel stack memory via a crafted application that targets the (1) L2CAP or (2) HCI imple | 0,4% | — |
| CVE-2011-1494 | MED 6.9 | linux linux_kernel Integer overflow in the _ctl_do_mpt_command function in drivers/scsi/mpt2sas/mpt2sas_ctl.c in the Linux kernel 2.6.38 and earlier might allow local users to gain privileges or cause a denial of service (memory corruption) via an ioctl call specifying a crafted | 0,4% | — |
| CVE-2009-0601 | LOW 2.1 | wireshark wireshark Format string vulnerability in Wireshark 0.99.8 through 1.0.5 on non-Windows platforms allows local users to cause a denial of service (application crash) via format string specifiers in the HOME environment variable. | 0,4% | — |
| CVE-2007-5619 | HIGH 7.2 | vmware server Unspecified vulnerability in VMware Server before 1.0.4 causes user passwords to be recorded in cleartext in server logs, which might allow local users to gain privileges. | 0,4% | — |
| CVE-2005-0444 | MED 4.6 | vmware workstation VMware before 4.5.2.8848-r5 searches for gdk-pixbuf shared libraries using a path that includes the rrdharan world-writable temporary directory, which allows local users to execute arbitrary code. | 0,4% | — |
| CVE-2004-0133 | LOW 2.1 | linux linux_kernel The XFS file system code in Linux 2.4.x has an information leak in which in-memory data is written to the device for the XFS file system, which allows local users to obtain sensitive information by reading the raw device. | 0,4% | — |
| CVE-2026-82432 | HIGH 8.1 | Description Nimbus validated `topology.blobstore.map` against the calling subject at submission time only. The rebalance operation accepts configuration overrides and stripped a small set of keys from them, but never re-ran that validation, so a caller author | 0,4% | — |
| CVE-2026-0310 | ND | A buffer overflow vulnerability in the XML processing functionality of Palo Alto Networks PAN-OS® software enables an unauthenticated attacker with network access to the management web or dataplane interface to cause a denial of service (DoS) condition on VM-S | 0,4% | — |
| CVE-2026-69612 | HIGH 7.8 | microsoft windows_10_1607 Absolute path traversal in Windows Error Reporting allows an authorized attacker to elevate privileges locally. | 0,4% | — |
| CVE-2026-69445 | HIGH 7.8 | microsoft windows_10_1607 Improper limitation of a pathname to a restricted directory ('path traversal') in Windows Compressed Folder allows an authorized attacker to elevate privileges locally. | 0,4% | — |
| CVE-2026-69289 | HIGH 7.8 | microsoft windows_10_1607 Improper link resolution before file access ('link following') in Windows Setup Files Cleanup allows an authorized attacker to elevate privileges locally. | 0,4% | — |
| CVE-2026-68896 | HIGH 7.8 | microsoft windows_11_23h2 Absolute path traversal in Microsoft Windows Search Component allows an authorized attacker to elevate privileges locally. | 0,4% | — |
| CVE-2026-62812 | HIGH 7.8 | microsoft windows_10_1607 Improper link resolution before file access ('link following') in Windows DHCP Server allows an authorized attacker to elevate privileges locally. | 0,4% | — |
| CVE-2026-62807 | HIGH 7.8 | microsoft windows_10_1607 Improper link resolution before file access ('link following') in Windows DHCP Server allows an authorized attacker to elevate privileges locally. | 0,4% | — |
| CVE-2026-62803 | HIGH 7.8 | microsoft windows_10_1607 Improper link resolution before file access ('link following') in Windows DHCP Server allows an authorized attacker to elevate privileges locally. | 0,4% | — |
| CVE-2026-62776 | HIGH 7.8 | microsoft windows_10_1607 Improper link resolution before file access ('link following') in Windows DHCP Server allows an authorized attacker to elevate privileges locally. | 0,4% | — |
| CVE-2026-62761 | HIGH 7.8 | microsoft windows_10_1607 Improper link resolution before file access ('link following') in Windows DHCP Server allows an authorized attacker to elevate privileges locally. | 0,4% | — |
| CVE-2026-61358 | HIGH 7.8 | microsoft windows_10_1809 Improper link resolution before file access ('link following') in Windows Accessibility Infrastructure (ATBroker.exe) allows an authorized attacker to elevate privileges locally. | 0,4% | — |
| CVE-2026-57085 | MED 5.5 | microsoft windows_10_1607 Out-of-bounds read in Windows Print Spooler Components allows an authorized attacker to disclose information locally. | 0,4% | — |