Vulnerabilities
Aggregated CVE / GHSA / KEV / OSV — filter by tag and category.
| ID | Title | |
|---|---|---|
| CVE-2020-1040 KEV |
|
[KEV] Vulnerability in Microsoft hyper-v-remotefx (CVE-2020-1040)
vulnerability in Microsoft hyper-v-remotefx (CVE-2020-1040). Risk of unauthorized operations or information disclosure. Listed in CISA KEV — actively exploited.
|
| CVE-2017-8759 KEV |
|
[KEV] Vulnerability in Microsoft net-framework (CVE-2017-8759)
vulnerability in Microsoft net-framework (CVE-2017-8759). Risk of unauthorized operations or information disclosure. Listed in CISA KEV — actively exploited.
|
| CVE-2019-0604 KEV |
|
[KEV] Vulnerability in Microsoft sharepoint (CVE-2019-0604)
vulnerability in Microsoft sharepoint (CVE-2019-0604). Risk of unauthorized operations or information disclosure. Listed in CISA KEV — actively exploited.
|
| CVE-2021-35395 KEV |
|
[KEV] Vulnerability in Realtek ap-router-sdk (CVE-2021-35395)
vulnerability in Realtek ap-router-sdk (CVE-2021-35395). Risk of unauthorized operations or information disclosure. Listed in CISA KEV — actively exploited.
|
| CVE-2017-6327 KEV |
|
[KEV] Vulnerability in symantec (CVE-2017-6327)
vulnerability in symantec (CVE-2017-6327). Risk of unauthorized operations or information disclosure. Listed in CISA KEV — actively exploited.
|
| CVE-2018-20062 KEV |
|
[KEV] Vulnerability in Thinkphp nonecms (CVE-2018-20062)
vulnerability in Thinkphp nonecms (CVE-2018-20062). Risk of unauthorized operations or information disclosure. Listed in CISA KEV — actively exploited.
|
| CVE-2021-36742 KEV |
|
[KEV] Vulnerability in Trend micro trend-micro (CVE-2021-36742)
vulnerability in Trend micro trend-micro (CVE-2021-36742). Risk of unauthorized operations or information disclosure. Listed in CISA KEV — actively exploited.
|
| CVE-2021-21985 KEV |
|
[KEV] Vulnerability in Vmware vcenter-server (CVE-2021-21985)
vulnerability in Vmware vcenter-server (CVE-2021-21985). Risk of unauthorized operations or information disclosure. Listed in CISA KEV — actively exploited.
|
| CVE-2019-13608 KEV |
|
[KEV] XXE (XML External Entity) in Citrix storefront-server (CVE-2019-13608)
vulnerability in Citrix storefront-server (CVE-2019-13608). Risk of unauthorized operations or information disclosure. Listed in CISA KEV — actively exploited.
|
| CVE-2016-9563 KEV |
|
[KEV] XXE (XML External Entity) in Sap netweaver (CVE-2016-9563)
vulnerability in Sap netweaver (CVE-2016-9563). Risk of unauthorized operations or information disclosure. Listed in CISA KEV — actively exploited.
|
| CVE-2021-1879 KEV |
|
[KEV] Cross-Site Scripting (XSS) in Apple ios (CVE-2021-1879)
cross-site scripting in Apple ios (CVE-2021-1879). Risk of unauthorized operations or information disclosure. Listed in CISA KEV — actively exploited.
|
| CVE-2020-3580 KEV |
|
[KEV] Cross-Site Scripting (XSS) in Cisco adaptive-security-appliance-asa-and-firepower-threat-defense-ftd (CVE-2020-3580)
cross-site scripting in Cisco adaptive-security-appliance-asa-and-firepower-threat-defense-ftd (CVE-2020-3580). Risk of unauthorized operations or information disclosure. Listed in CISA KEV — actively exploited.
|
| CVE-2019-9978 KEV |
|
[KEV] Cross-Site Scripting (XSS) in Wordpress social-warfare-plugin (CVE-2019-9978)
cross-site scripting in Wordpress social-warfare-plugin (CVE-2019-9978). Risk of unauthorized operations or information disclosure. Listed in CISA KEV — actively exploited.
|
| CVE-2021-1497 KEV |
|
[KEV] OS Command Injection in Cisco hyperflex-hx (CVE-2021-1497)
OS command injection in Cisco hyperflex-hx (CVE-2021-1497). Risk of unauthorized operations or information disclosure. Listed in CISA KEV — actively exploited.
|
| CVE-2021-1498 KEV |
|
[KEV] OS Command Injection in Cisco hyperflex-hx (CVE-2021-1498)
OS command injection in Cisco hyperflex-hx (CVE-2021-1498). Risk of unauthorized operations or information disclosure. Listed in CISA KEV — actively exploited.
|
| CVE-2020-25506 KEV |
|
[KEV] OS Command Injection in D-link dns-320-device (CVE-2020-25506)
OS command injection in D-link dns-320-device (CVE-2020-25506). Risk of unauthorized operations or information disclosure. Listed in CISA KEV — actively exploited.
|
| CVE-2020-8515 KEV |
|
[KEV] OS Command Injection in Draytek multiple-vigor-routers (CVE-2020-8515)
OS command injection in Draytek multiple-vigor-routers (CVE-2020-8515). Risk of unauthorized operations or information disclosure. Listed in CISA KEV — actively exploited.
|
| CVE-2020-4428 KEV |
|
[KEV] OS Command Injection in Ibm data-risk-manager (CVE-2020-4428)
OS command injection in Ibm data-risk-manager (CVE-2020-4428). Risk of unauthorized operations or information disclosure. Listed in CISA KEV — actively exploited.
|
| CVE-2019-15949 KEV |
|
[KEV] OS Command Injection in nagios (CVE-2019-15949)
OS command injection in nagios (CVE-2019-15949). Risk of unauthorized operations or information disclosure. Listed in CISA KEV — actively exploited.
|
| CVE-2019-19356 KEV |
|
[KEV] OS Command Injection in Netis wf2419-devices (CVE-2019-19356)
OS command injection in Netis wf2419-devices (CVE-2019-19356). Risk of unauthorized operations or information disclosure. Listed in CISA KEV — actively exploited.
|
| CVE-2019-11539 KEV |
|
[KEV] OS Command Injection in Ivanti pulse-connect-secure-and-pulse-policy-secure (CVE-2019-11539)
OS command injection in Ivanti pulse-connect-secure-and-pulse-policy-secure (CVE-2019-11539). Risk of unauthorized operations or information disclosure. Listed in CISA KEV — actively exploited.
|
| CVE-2020-10221 KEV |
|
[KEV] OS Command Injection in rconfig (CVE-2020-10221)
OS command injection in rconfig (CVE-2020-10221). Risk of unauthorized operations or information disclosure. Listed in CISA KEV — actively exploited.
|
| CVE-2020-16846 KEV |
|
[KEV] OS Command Injection in Saltstack salt (CVE-2020-16846)
OS command injection in Saltstack salt (CVE-2020-16846). Risk of unauthorized operations or information disclosure. Listed in CISA KEV — actively exploited.
|
| CVE-2020-10987 KEV |
|
[KEV] OS Command Injection in Tenda ac1900-router-ac15-model (CVE-2020-10987)
OS command injection in Tenda ac1900-router-ac15-model (CVE-2020-10987). Risk of unauthorized operations or information disclosure. Listed in CISA KEV — actively exploited.
|
| CVE-2018-14558 KEV |
|
[KEV] OS Command Injection in Tenda ac7 (CVE-2018-14558)
OS command injection in Tenda ac7 (CVE-2018-14558). Risk of unauthorized operations or information disclosure. Listed in CISA KEV — actively exploited.
|
| CVE-2020-4006 KEV |
|
[KEV] OS Command Injection in Vmware multiple-products (CVE-2020-4006)
OS command injection in Vmware multiple-products (CVE-2020-4006). Risk of unauthorized operations or information disclosure. Listed in CISA KEV — actively exploited.
|
| CVE-2021-27561 KEV |
|
[KEV] OS Command Injection in Yealink device-management (CVE-2021-27561)
OS command injection in Yealink device-management (CVE-2021-27561). Risk of unauthorized operations or information disclosure. Listed in CISA KEV — actively exploited.
|
| CVE-2020-9859 KEV |
|
[KEV] Vulnerability in Apple multiple-products (CVE-2020-9859)
vulnerability in Apple multiple-products (CVE-2020-9859). Risk of unauthorized operations or information disclosure. Listed in CISA KEV — actively exploited.
|
| CVE-2021-28550 KEV |
|
[KEV] Use-After-Free in Adobe acrobat-and-reader (CVE-2021-28550)
vulnerability in Adobe acrobat-and-reader (CVE-2021-28550). Risk of unauthorized operations or information disclosure. Listed in CISA KEV — actively exploited.
|
| CVE-2018-4878 KEV |
|
[KEV] Use-After-Free in Adobe flash-player (CVE-2018-4878)
vulnerability in Adobe flash-player (CVE-2018-4878). Risk of unauthorized operations or information disclosure. Listed in CISA KEV — actively exploited.
|
| CVE-2019-2215 KEV |
|
[KEV] Use-After-Free in android (CVE-2019-2215)
vulnerability in android (CVE-2019-2215). Risk of unauthorized operations or information disclosure. Listed in CISA KEV — actively exploited.
|
| CVE-2019-0211 KEV |
|
[KEV] Use-After-Free in Apache http-server (CVE-2019-0211)
vulnerability in Apache http-server (CVE-2019-0211). Risk of unauthorized operations or information disclosure. Listed in CISA KEV — actively exploited.
|
| CVE-2021-30858 KEV |
|
[KEV] Use-After-Free in Apple ios (CVE-2021-30858)
vulnerability in Apple ios (CVE-2021-30858). Risk of unauthorized operations or information disclosure. Listed in CISA KEV — actively exploited.
|
| CVE-2021-30762 KEV |
|
[KEV] Use-After-Free in Apple ios (CVE-2021-30762)
vulnerability in Apple ios (CVE-2021-30762). Risk of unauthorized operations or information disclosure. Listed in CISA KEV — actively exploited.
|
| CVE-2021-30661 KEV |
|
[KEV] Use-After-Free in Apple multiple-products (CVE-2021-30661)
vulnerability in Apple multiple-products (CVE-2021-30661). Risk of unauthorized operations or information disclosure. Listed in CISA KEV — actively exploited.
|
| CVE-2021-28663 KEV |
|
[KEV] Use-After-Free in Arm :unknown: (CVE-2021-28663)
vulnerability in Arm :unknown: (CVE-2021-28663). Risk of unauthorized operations or information disclosure. Listed in CISA KEV — actively exploited. Mitigation: upgrade to `SoCVersion:2021-05-05` or later.
|
| CVE-2020-16017 KEV |
|
[KEV] Use-After-Free in Google chrome (CVE-2020-16017)
vulnerability in Google chrome (CVE-2020-16017). Risk of unauthorized operations or information disclosure. Listed in CISA KEV — actively exploited.
|
| CVE-2021-30633 KEV |
|
[KEV] Use-After-Free in Google chromium-indexed-db-api (CVE-2021-30633)
vulnerability in Google chromium-indexed-db-api (CVE-2021-30633). Risk of unauthorized operations or information disclosure. Listed in CISA KEV — actively exploited.
|
| CVE-2021-37973 KEV |
|
[KEV] Use-After-Free in Google chromium-portals (CVE-2021-37973)
vulnerability in Google chromium-portals (CVE-2021-37973). Risk of unauthorized operations or information disclosure. Listed in CISA KEV — actively exploited.
|
| CVE-2021-37975 KEV |
|
[KEV] Use-After-Free in Google chromium-v8 (CVE-2021-37975)
vulnerability in Google chromium-v8 (CVE-2021-37975). Risk of unauthorized operations or information disclosure. Listed in CISA KEV — actively exploited.
|
| CVE-2021-30554 KEV |
|
[KEV] Use-After-Free in Google chromium-webgl (CVE-2021-30554)
vulnerability in Google chromium-webgl (CVE-2021-30554). Risk of unauthorized operations or information disclosure. Listed in CISA KEV — actively exploited.
|
| CVE-2021-21206 KEV |
|
[KEV] Use-After-Free in Google chromium-blink (CVE-2021-21206)
vulnerability in Google chromium-blink (CVE-2021-21206). Risk of unauthorized operations or information disclosure. Listed in CISA KEV — actively exploited.
|
| CVE-2021-21193 KEV |
|
[KEV] Use-After-Free in Google chromium-blink (CVE-2021-21193)
vulnerability in Google chromium-blink (CVE-2021-21193). Risk of unauthorized operations or information disclosure. Listed in CISA KEV — actively exploited.
|
| CVE-2019-0708 KEV |
|
[KEV] Use-After-Free in Microsoft remote-desktop-services (CVE-2019-0708)
vulnerability in Microsoft remote-desktop-services (CVE-2019-0708). Risk of unauthorized operations or information disclosure. Listed in CISA KEV — actively exploited.
|
| CVE-2021-26411 KEV |
|
[KEV] Use-After-Free in Microsoft internet-explorer (CVE-2021-26411)
vulnerability in Microsoft internet-explorer (CVE-2021-26411). Risk of unauthorized operations or information disclosure. Listed in CISA KEV — actively exploited.
|
| CVE-2020-0674 KEV |
|
[KEV] Use-After-Free in Microsoft internet-explorer (CVE-2020-0674)
vulnerability in Microsoft internet-explorer (CVE-2020-0674). Risk of unauthorized operations or information disclosure. Listed in CISA KEV — actively exploited.
|
| CVE-2019-1429 KEV |
|
[KEV] Use-After-Free in Microsoft internet-explorer (CVE-2019-1429)
vulnerability in Microsoft internet-explorer (CVE-2019-1429). Risk of unauthorized operations or information disclosure. Listed in CISA KEV — actively exploited.
|
| CVE-2020-6819 KEV |
|
[KEV] Vulnerability in Mozilla firefox-and-thunderbird (CVE-2020-6819)
vulnerability in Mozilla firefox-and-thunderbird (CVE-2020-6819). Risk of unauthorized operations or information disclosure. Listed in CISA KEV — actively exploited.
|
| CVE-2021-1905 KEV |
|
[KEV] Use-After-Free in Qualcomm multiple-chipsets (CVE-2021-1905)
vulnerability in Qualcomm multiple-chipsets (CVE-2021-1905). Risk of unauthorized operations or information disclosure. Listed in CISA KEV — actively exploited.
|
| CVE-2020-3992 KEV |
|
[KEV] Use-After-Free in Vmware esxi (CVE-2020-3992)
vulnerability in Vmware esxi (CVE-2020-3992). Risk of unauthorized operations or information disclosure. Listed in CISA KEV — actively exploited.
|