Vulnerabilities
Aggregated CVE / GHSA / KEV / OSV — filter by tag and category.
| ID | Title | |
|---|---|---|
| CVE-2020-1464 KEV |
|
[KEV] Vulnerability in Microsoft windows (CVE-2020-1464)
vulnerability in Microsoft windows (CVE-2020-1464). Risk of unauthorized operations or information disclosure. Listed in CISA KEV — actively exploited.
|
| CVE-2021-1732 KEV |
|
[KEV] Out-of-Bounds Write in Microsoft win32k (CVE-2021-1732)
out-of-bounds write in Microsoft win32k (CVE-2021-1732). Risk of unauthorized operations or information disclosure. Listed in CISA KEV — actively exploited.
|
| CVE-2021-34527 KEV |
|
[KEV] Privilege Escalation in Microsoft windows (CVE-2021-34527)
vulnerability in Microsoft windows (CVE-2021-34527). Successful exploitation can lead to full system takeover. Listed in CISA KEV — actively exploited.
|
| CVE-2021-31207 KEV |
|
[KEV] Vulnerability in Microsoft exchange-server (CVE-2021-31207)
vulnerability in Microsoft exchange-server (CVE-2021-31207). Risk of unauthorized operations or information disclosure. Listed in CISA KEV — actively exploited.
|
| CVE-2019-0803 KEV |
|
[KEV] Vulnerability in Microsoft win32k (CVE-2019-0803)
vulnerability in Microsoft win32k (CVE-2019-0803). Risk of unauthorized operations or information disclosure. Listed in CISA KEV — actively exploited.
|
| CVE-2020-1040 KEV |
|
[KEV] Vulnerability in Microsoft hyper-v-remotefx (CVE-2020-1040)
vulnerability in Microsoft hyper-v-remotefx (CVE-2020-1040). Risk of unauthorized operations or information disclosure. Listed in CISA KEV — actively exploited.
|
| CVE-2021-28310 KEV |
|
[KEV] Out-of-Bounds Write in Microsoft win32k (CVE-2021-28310)
out-of-bounds write in Microsoft win32k (CVE-2021-28310). Risk of unauthorized operations or information disclosure. Listed in CISA KEV — actively exploited.
|
| CVE-2020-1350 KEV |
|
[KEV] Vulnerability in Microsoft windows (CVE-2020-1350)
vulnerability in Microsoft windows (CVE-2020-1350). Risk of unauthorized operations or information disclosure. Listed in CISA KEV — actively exploited.
|
| CVE-2021-26411 KEV |
|
[KEV] Use-After-Free in Microsoft internet-explorer (CVE-2021-26411)
vulnerability in Microsoft internet-explorer (CVE-2021-26411). Data can be tampered with by attackers. Listed in CISA KEV — actively exploited.
|
| CVE-2019-0859 KEV |
|
[KEV] Vulnerability in Microsoft win32k (CVE-2019-0859)
vulnerability in Microsoft win32k (CVE-2019-0859). Risk of unauthorized operations or information disclosure. Listed in CISA KEV — actively exploited.
|
| CVE-2021-40444 KEV |
|
[KEV] Path Traversal in Microsoft mshtml (CVE-2021-40444)
path traversal in Microsoft mshtml (CVE-2021-40444). Risk of unauthorized operations or information disclosure. Listed in CISA KEV — actively exploited.
|
| CVE-2017-8759 KEV |
|
[KEV] Vulnerability in Microsoft net-framework (CVE-2017-8759)
vulnerability in Microsoft net-framework (CVE-2017-8759). Risk of unauthorized operations or information disclosure. Listed in CISA KEV — actively exploited.
|
| CVE-2018-8653 KEV |
|
[KEV] Out-of-Bounds Write in Microsoft internet-explorer (CVE-2018-8653)
out-of-bounds write in Microsoft internet-explorer (CVE-2018-8653). Risk of unauthorized operations or information disclosure. Listed in CISA KEV — actively exploited.
|
| CVE-2019-0797 KEV |
|
[KEV] Vulnerability in Microsoft win32k (CVE-2019-0797)
vulnerability in Microsoft win32k (CVE-2019-0797). Risk of unauthorized operations or information disclosure. Listed in CISA KEV — actively exploited.
|
| CVE-2021-36942 KEV |
|
[KEV] Vulnerability in Microsoft windows (CVE-2021-36942)
vulnerability in Microsoft windows (CVE-2021-36942). Confidential information can be exposed externally. Listed in CISA KEV — actively exploited.
|
| CVE-2019-1215 KEV |
|
[KEV] Vulnerability in Microsoft windows (CVE-2019-1215)
vulnerability in Microsoft windows (CVE-2019-1215). Risk of unauthorized operations or information disclosure. Listed in CISA KEV — actively exploited.
|
| CVE-2018-0798 KEV |
|
[KEV] Out-of-Bounds Write in Microsoft office (CVE-2018-0798)
out-of-bounds write in Microsoft office (CVE-2018-0798). Risk of unauthorized operations or information disclosure. Listed in CISA KEV — actively exploited.
|
| CVE-2018-0802 KEV |
|
[KEV] Out-of-Bounds Write in Microsoft office (CVE-2018-0802)
out-of-bounds write in Microsoft office (CVE-2018-0802). Risk of unauthorized operations or information disclosure. Listed in CISA KEV — actively exploited.
|
| CVE-2012-0158 KEV |
|
[KEV] Code Injection in Microsoft mscomctlocx (CVE-2012-0158)
code injection in Microsoft mscomctlocx (CVE-2012-0158). Risk of unauthorized operations or information disclosure. Listed in CISA KEV — actively exploited.
|
| CVE-2015-1641 KEV |
|
[KEV] Vulnerability in Microsoft office (CVE-2015-1641)
vulnerability in Microsoft office (CVE-2015-1641). Risk of unauthorized operations or information disclosure. Listed in CISA KEV — actively exploited.
|
| CVE-2021-27085 KEV |
|
[KEV] Vulnerability in Microsoft internet-explorer (CVE-2021-27085)
vulnerability in Microsoft internet-explorer (CVE-2021-27085). Data can be tampered with by attackers. Listed in CISA KEV — actively exploited.
|
| CVE-2019-0541 KEV |
|
[KEV] Command Injection in Microsoft mshtml (CVE-2019-0541)
command injection in Microsoft mshtml (CVE-2019-0541). Risk of unauthorized operations or information disclosure. Listed in CISA KEV — actively exploited.
|
| CVE-2017-11882 KEV |
|
[KEV] Buffer Overflow in Microsoft office (CVE-2017-11882)
vulnerability in Microsoft office (CVE-2017-11882). Risk of unauthorized operations or information disclosure. Listed in CISA KEV — actively exploited.
|
| CVE-2020-0674 KEV |
|
[KEV] Use-After-Free in Microsoft internet-explorer (CVE-2020-0674)
vulnerability in Microsoft internet-explorer (CVE-2020-0674). Risk of unauthorized operations or information disclosure. Listed in CISA KEV — actively exploited.
|
| CVE-2021-27059 KEV |
|
[KEV] Vulnerability in Microsoft office (CVE-2021-27059)
vulnerability in Microsoft office (CVE-2021-27059). Successful exploitation can lead to full system takeover. Listed in CISA KEV — actively exploited.
|
| CVE-2019-1367 KEV |
|
[KEV] Out-of-Bounds Write in Microsoft internet-explorer (CVE-2019-1367)
out-of-bounds write in Microsoft internet-explorer (CVE-2019-1367). Risk of unauthorized operations or information disclosure. Listed in CISA KEV — actively exploited.
|
| CVE-2017-0199 KEV |
|
[KEV] Vulnerability in Microsoft office-and-wordpad (CVE-2017-0199)
vulnerability in Microsoft office-and-wordpad (CVE-2017-0199). Risk of unauthorized operations or information disclosure. Listed in CISA KEV — actively exploited.
|
| CVE-2020-1380 KEV |
|
[KEV] Out-of-Bounds Write in Microsoft internet-explorer (CVE-2020-1380)
out-of-bounds write in Microsoft internet-explorer (CVE-2020-1380). Risk of unauthorized operations or information disclosure. Listed in CISA KEV — actively exploited.
|
| CVE-2019-1429 KEV |
|
[KEV] Use-After-Free in Microsoft internet-explorer (CVE-2019-1429)
vulnerability in Microsoft internet-explorer (CVE-2019-1429). Risk of unauthorized operations or information disclosure. Listed in CISA KEV — actively exploited.
|
| CVE-2017-11774 KEV |
|
[KEV] Buffer Overflow in Microsoft office (CVE-2017-11774)
vulnerability in Microsoft office (CVE-2017-11774). Risk of unauthorized operations or information disclosure. Listed in CISA KEV — actively exploited.
|
| CVE-2020-0968 KEV |
|
[KEV] Out-of-Bounds Write in Microsoft internet-explorer (CVE-2020-0968)
out-of-bounds write in Microsoft internet-explorer (CVE-2020-0968). Risk of unauthorized operations or information disclosure. Listed in CISA KEV — actively exploited.
|
| CVE-2020-1472 KEV |
|
[KEV] Vulnerability in Microsoft netlogon (CVE-2020-1472)
vulnerability in Microsoft netlogon (CVE-2020-1472). Confidential information can be exposed externally. Listed in CISA KEV — actively exploited.
|
| CVE-2021-26855 KEV |
|
[KEV] SSRF (Server-Side Request Forgery) in Microsoft exchange-server (CVE-2021-26855)
SSRF in Microsoft exchange-server (CVE-2021-26855). Confidential information can be exposed externally. Listed in CISA KEV — actively exploited.
|
| CVE-2021-26858 KEV |
|
[KEV] Vulnerability in Microsoft exchange-server (CVE-2021-26858)
vulnerability in Microsoft exchange-server (CVE-2021-26858). Successful exploitation can lead to full system takeover. Listed in CISA KEV — actively exploited.
|
| CVE-2021-27065 KEV |
|
[KEV] Path Traversal in Microsoft exchange-server (CVE-2021-27065)
path traversal in Microsoft exchange-server (CVE-2021-27065). Successful exploitation can lead to full system takeover. Listed in CISA KEV — actively exploited.
|
| CVE-2020-1054 KEV |
|
[KEV] Out-of-Bounds Write in Microsoft win32k (CVE-2020-1054)
out-of-bounds write in Microsoft win32k (CVE-2020-1054). Successful exploitation can lead to full system takeover. Listed in CISA KEV — actively exploited.
|
| CVE-2021-1675 KEV |
|
[KEV] Vulnerability in Microsoft windows (CVE-2021-1675)
vulnerability in Microsoft windows (CVE-2021-1675). Successful exploitation can lead to full system takeover. Listed in CISA KEV — actively exploited.
|
| CVE-2021-34448 KEV |
|
[KEV] Out-of-Bounds Write in Microsoft windows (CVE-2021-34448)
out-of-bounds write in Microsoft windows (CVE-2021-34448). Confidential information can be exposed externally. Listed in CISA KEV — actively exploited.
|
| CVE-2020-0601 KEV |
|
[KEV] Vulnerability in Microsoft windows (CVE-2020-0601)
vulnerability in Microsoft windows (CVE-2020-0601). Risk of unauthorized operations or information disclosure. Listed in CISA KEV — actively exploited.
|
| CVE-2019-0604 KEV |
|
[KEV] Vulnerability in Microsoft sharepoint (CVE-2019-0604)
vulnerability in Microsoft sharepoint (CVE-2019-0604). Risk of unauthorized operations or information disclosure. Listed in CISA KEV — actively exploited.
|
| CVE-2020-0646 KEV |
|
[KEV] Vulnerability in Microsoft net-framework (CVE-2020-0646)
vulnerability in Microsoft net-framework (CVE-2020-0646). Risk of unauthorized operations or information disclosure. Listed in CISA KEV — actively exploited.
|
| CVE-2019-0808 KEV |
|
[KEV] Vulnerability in Microsoft win32k (CVE-2019-0808)
vulnerability in Microsoft win32k (CVE-2019-0808). Risk of unauthorized operations or information disclosure. Listed in CISA KEV — actively exploited.
|
| CVE-2021-26857 KEV |
|
[KEV] Unsafe Deserialization in Microsoft exchange-server (CVE-2021-26857)
vulnerability in Microsoft exchange-server (CVE-2021-26857). Successful exploitation can lead to full system takeover. Listed in CISA KEV — actively exploited.
|
| CVE-2020-1147 KEV |
|
[KEV] Vulnerability in Microsoft net-framework (CVE-2020-1147)
vulnerability in Microsoft net-framework (CVE-2020-1147). Successful exploitation can lead to full system takeover. Listed in CISA KEV — actively exploited.
|
| CVE-2019-1214 KEV |
|
[KEV] Vulnerability in Microsoft windows (CVE-2019-1214)
vulnerability in Microsoft windows (CVE-2019-1214). Risk of unauthorized operations or information disclosure. Listed in CISA KEV — actively exploited.
|
| CVE-2016-3235 KEV |
|
[KEV] Vulnerability in Microsoft office (CVE-2016-3235)
vulnerability in Microsoft office (CVE-2016-3235). Risk of unauthorized operations or information disclosure. Listed in CISA KEV — actively exploited.
|
| CVE-2019-0863 KEV |
|
[KEV] Vulnerability in Microsoft windows (CVE-2019-0863)
vulnerability in Microsoft windows (CVE-2019-0863). Risk of unauthorized operations or information disclosure. Listed in CISA KEV — actively exploited.
|
| CVE-2021-36955 KEV |
|
[KEV] Privilege Escalation in Microsoft windows (CVE-2021-36955)
vulnerability in Microsoft windows (CVE-2021-36955). Successful exploitation can lead to full system takeover. Listed in CISA KEV — actively exploited.
|
| CVE-2021-38648 KEV |
|
[KEV] Privilege Escalation in Microsoft open-management-infrastructure-omi (CVE-2021-38648)
vulnerability in Microsoft open-management-infrastructure-omi (CVE-2021-38648). Successful exploitation can lead to full system takeover. Listed in CISA KEV — actively exploited.
|
| CVE-2020-6819 KEV |
|
[KEV] Vulnerability in Mozilla firefox-and-thunderbird (CVE-2020-6819)
vulnerability in Mozilla firefox-and-thunderbird (CVE-2020-6819). Risk of unauthorized operations or information disclosure. Listed in CISA KEV — actively exploited.
|