Vulnerabilities
Aggregated CVE / GHSA / KEV / OSV — filter by tag and category.
| ID | Title | |
|---|---|---|
| CVE-2013-3897 KEV |
|
[KEV] Vulnerability in Microsoft internet-explorer (CVE-2013-3897)
vulnerability in Microsoft internet-explorer (CVE-2013-3897). Risk of unauthorized operations or information disclosure. Listed in CISA KEV — actively exploited.
|
| CVE-2013-3346 KEV |
|
[KEV] Buffer Overflow in Adobe reader-and-acrobat (CVE-2013-3346)
vulnerability in Adobe reader-and-acrobat (CVE-2013-3346). Risk of unauthorized operations or information disclosure. Listed in CISA KEV — actively exploited.
|
| CVE-2013-1675 KEV |
|
[KEV] Buffer Overflow in Mozilla firefox (CVE-2013-1675)
vulnerability in Mozilla firefox (CVE-2013-1675). Risk of unauthorized operations or information disclosure. Listed in CISA KEV — actively exploited.
|
| CVE-2013-1347 KEV |
|
[KEV] Code Injection in Microsoft internet-explorer (CVE-2013-1347)
code injection in Microsoft internet-explorer (CVE-2013-1347). Risk of unauthorized operations or information disclosure. Listed in CISA KEV — actively exploited.
|
| CVE-2013-0641 KEV |
|
[KEV] Vulnerability in Adobe reader (CVE-2013-0641)
vulnerability in Adobe reader (CVE-2013-0641). Risk of unauthorized operations or information disclosure. Listed in CISA KEV — actively exploited.
|
| CVE-2013-0640 KEV |
|
[KEV] Out-of-Bounds Write in Adobe reader-and-acrobat (CVE-2013-0640)
out-of-bounds write in Adobe reader-and-acrobat (CVE-2013-0640). Risk of unauthorized operations or information disclosure. Listed in CISA KEV — actively exploited.
|
| CVE-2013-0632 KEV |
|
[KEV] Information Disclosure in Adobe coldfusion (CVE-2013-0632)
vulnerability in Adobe coldfusion (CVE-2013-0632). Risk of unauthorized operations or information disclosure. Listed in CISA KEV — actively exploited.
|
| CVE-2012-1856 KEV |
|
[KEV] Code Injection in Microsoft office (CVE-2012-1856)
code injection in Microsoft office (CVE-2012-1856). Risk of unauthorized operations or information disclosure. Listed in CISA KEV — actively exploited.
|
| CVE-2012-1535 KEV |
|
[KEV] Vulnerability in Adobe flash-player (CVE-2012-1535)
vulnerability in Adobe flash-player (CVE-2012-1535). Risk of unauthorized operations or information disclosure. Listed in CISA KEV — actively exploited.
|
| CVE-2011-3544 KEV |
|
[KEV] Vulnerability in Oracle java-se-jdk-and-jre (CVE-2011-3544)
vulnerability in Oracle java-se-jdk-and-jre (CVE-2011-3544). Risk of unauthorized operations or information disclosure. Listed in CISA KEV — actively exploited.
|
| CVE-2011-1889 KEV |
|
[KEV] Buffer Overflow in Microsoft forefront-threat-management-gateway-tmg (CVE-2011-1889)
vulnerability in Microsoft forefront-threat-management-gateway-tmg (CVE-2011-1889). Risk of unauthorized operations or information disclosure. Listed in CISA KEV — actively exploited.
|
| CVE-2011-0611 KEV |
|
[KEV] Vulnerability in Adobe flash-player (CVE-2011-0611)
vulnerability in Adobe flash-player (CVE-2011-0611). Risk of unauthorized operations or information disclosure. Listed in CISA KEV — actively exploited.
|
| CVE-2010-3333 KEV |
|
[KEV] Buffer Overflow in Microsoft office (CVE-2010-3333)
vulnerability in Microsoft office (CVE-2010-3333). Risk of unauthorized operations or information disclosure. Listed in CISA KEV — actively exploited.
|
| CVE-2010-0232 KEV |
|
[KEV] Vulnerability in Microsoft windows (CVE-2010-0232)
vulnerability in Microsoft windows (CVE-2010-0232). Risk of unauthorized operations or information disclosure. Listed in CISA KEV — actively exploited.
|
| CVE-2009-3129 KEV |
|
[KEV] Code Injection in Microsoft excel (CVE-2009-3129)
code injection in Microsoft excel (CVE-2009-3129). Risk of unauthorized operations or information disclosure. Listed in CISA KEV — actively exploited.
|
| CVE-2009-1123 KEV |
|
[KEV] Vulnerability in Microsoft windows (CVE-2009-1123)
vulnerability in Microsoft windows (CVE-2009-1123). Risk of unauthorized operations or information disclosure. Listed in CISA KEV — actively exploited.
|
| CVE-2008-3431 KEV |
|
[KEV] Vulnerability in Oracle virtualbox (CVE-2008-3431)
vulnerability in Oracle virtualbox (CVE-2008-3431). Risk of unauthorized operations or information disclosure. Listed in CISA KEV — actively exploited.
|
| CVE-2008-2992 KEV |
|
[KEV] Buffer Overflow in Adobe acrobat-and-reader (CVE-2008-2992)
vulnerability in Adobe acrobat-and-reader (CVE-2008-2992). Risk of unauthorized operations or information disclosure. Listed in CISA KEV — actively exploited.
|
| CVE-2004-0210 KEV |
|
[KEV] Vulnerability in Microsoft windows (CVE-2004-0210)
vulnerability in Microsoft windows (CVE-2004-0210). Risk of unauthorized operations or information disclosure. Listed in CISA KEV — actively exploited.
|
| CVE-2002-0367 KEV |
|
[KEV] Vulnerability in Microsoft windows (CVE-2002-0367)
vulnerability in Microsoft windows (CVE-2002-0367). Risk of unauthorized operations or information disclosure. Listed in CISA KEV — actively exploited.
|
| CVE-2021-38266 |
|
Vulnerability in liferay (CVE-2021-38266)
vulnerability in liferay (CVE-2021-38266). Risk of unauthorized operations or information disclosure.
|
| CVE-2022-24252 |
|
Unrestricted File Upload in extensis (CVE-2022-24252)
vulnerability in extensis (CVE-2022-24252). Successful exploitation can lead to full system takeover.
|
| CVE-2022-24253 |
|
Unrestricted File Upload in extensis (CVE-2022-24253)
vulnerability in extensis (CVE-2022-24253). Successful exploitation can lead to full system takeover.
|
| CVE-2021-43619 |
|
Trusted Firmware M 1.4.x through 1.4.1 has a buffer overflow issue in the Firmware Update partition. In the IPC model, a psa_fwu_write caller from SPE or NSPE can overwrite stack memory locations.
Trusted Firmware M 1.4.x through 1.4.1 has a buffer overflow issue in the Firmware Update partition. In the IPC model, a psa_fwu_write caller from SPE or NSPE can overwrite stack memory locations.
|
| CVE-2021-42951 |
|
Vulnerability in algorithmia (CVE-2021-42951)
vulnerability in algorithmia (CVE-2021-42951). Successful exploitation can lead to full system takeover.
|
| CVE-2022-25018 |
|
Code Injection in pluxml (CVE-2022-25018)
code injection in pluxml (CVE-2022-25018). Successful exploitation can lead to full system takeover.
|
| CVE-2022-25062 |
|
Vulnerability in dos (CVE-2022-25062)
vulnerability in dos (CVE-2022-25062). Risk of unauthorized operations or information disclosure.
|
| CVE-2017-8570 KEV |
|
[KEV] Vulnerability in Microsoft office (CVE-2017-8570)
vulnerability in Microsoft office (CVE-2017-8570). Risk of unauthorized operations or information disclosure. Listed in CISA KEV — actively exploited.
|
| CVE-2017-0222 KEV |
|
[KEV] Buffer Overflow in Microsoft internet-explorer (CVE-2017-0222)
vulnerability in Microsoft internet-explorer (CVE-2017-0222). Risk of unauthorized operations or information disclosure. Listed in CISA KEV — actively exploited.
|
| CVE-2014-6352 KEV |
|
[KEV] Code Injection in Microsoft windows (CVE-2014-6352)
code injection in Microsoft windows (CVE-2014-6352). Risk of unauthorized operations or information disclosure. Listed in CISA KEV — actively exploited.
|
| CVE-2022-23131 KEV |
|
[KEV] Vulnerability in Zabbix frontend (CVE-2022-23131)
vulnerability in Zabbix frontend (CVE-2022-23131). Successful exploitation can lead to full system takeover. Listed in CISA KEV — actively exploited.
|
| CVE-2022-23134 KEV |
|
[KEV] Vulnerability in Zabbix frontend (CVE-2022-23134)
vulnerability in Zabbix frontend (CVE-2022-23134). Risk of unauthorized operations or information disclosure. Listed in CISA KEV — actively exploited.
|
| CVE-2021-20322 |
|
Vulnerability in linux (CVE-2021-20322)
vulnerability in linux (CVE-2021-20322). Confidential information can be exposed externally.
|
| CVE-2022-23650 |
|
Vulnerability in github.com/gravitl/netmaker (CVE-2022-23650)
vulnerability in github.com/gravitl/netmaker (CVE-2022-23650). Successful exploitation can lead to full system takeover. Mitigation: upgrade to `0.9.4` or later.
|
| CVE-2021-4090 |
|
Out-of-Bounds Write in c (CVE-2021-4090)
out-of-bounds write in c (CVE-2021-4090). Confidential information can be exposed externally.
|
| CVE-2022-22914 |
|
Path Traversal in path-traversal (CVE-2022-22914)
path traversal in path-traversal (CVE-2022-22914). Confidential information can be exposed externally.
|
| CVE-2017-9841 KEV |
|
[KEV] Code Injection in phpunit (CVE-2017-9841)
code injection in phpunit (CVE-2017-9841). Successful exploitation can lead to full system takeover. Listed in CISA KEV — actively exploited.
|
| CVE-2018-8174 KEV |
|
[KEV] Out-of-Bounds Write in Microsoft windows (CVE-2018-8174)
out-of-bounds write in Microsoft windows (CVE-2018-8174). Successful exploitation can lead to full system takeover. Listed in CISA KEV — actively exploited.
|
| CVE-2018-15982 KEV |
|
[KEV] Use-After-Free in Adobe flash-player (CVE-2018-15982)
vulnerability in Adobe flash-player (CVE-2018-15982). Risk of unauthorized operations or information disclosure. Listed in CISA KEV — actively exploited.
|
| CVE-2018-20250 KEV |
|
[KEV] Vulnerability in Rarlab winrar (CVE-2018-20250)
vulnerability in Rarlab winrar (CVE-2018-20250). Risk of unauthorized operations or information disclosure. Listed in CISA KEV — actively exploited.
|
| CVE-2019-0752 KEV |
|
[KEV] Vulnerability in Microsoft internet-explorer (CVE-2019-0752)
vulnerability in Microsoft internet-explorer (CVE-2019-0752). Successful exploitation can lead to full system takeover. Listed in CISA KEV — actively exploited.
|
| CVE-2022-24086 KEV |
|
[KEV] Vulnerability in Adobe commerce-and-magento-open-source (CVE-2022-24086)
vulnerability in Adobe commerce-and-magento-open-source (CVE-2022-24086). Risk of unauthorized operations or information disclosure. Listed in CISA KEV — actively exploited.
|
| CVE-2022-0609 KEV |
|
[KEV] Use-After-Free in Google chromium-animation (CVE-2022-0609)
vulnerability in Google chromium-animation (CVE-2022-0609). Risk of unauthorized operations or information disclosure. Listed in CISA KEV — actively exploited.
|
| CVE-2014-1761 KEV |
|
[KEV] Buffer Overflow in Microsoft word (CVE-2014-1761)
vulnerability in Microsoft word (CVE-2014-1761). Risk of unauthorized operations or information disclosure. Listed in CISA KEV — actively exploited.
|
| CVE-2013-3906 KEV |
|
[KEV] Code Injection in Microsoft graphics-component (CVE-2013-3906)
code injection in Microsoft graphics-component (CVE-2013-3906). Risk of unauthorized operations or information disclosure. Listed in CISA KEV — actively exploited.
|
| CVE-2021-45421 |
|
Information Disclosure in emerson (CVE-2021-45421)
vulnerability in emerson (CVE-2021-45421). Confidential information can be exposed externally.
|
| CVE-2021-22787 |
|
Vulnerability in dos (CVE-2021-22787)
vulnerability in dos (CVE-2021-22787). Risk of unauthorized operations or information disclosure.
|
| CVE-2021-22788 |
|
Out-of-Bounds Write in dos (CVE-2021-22788)
out-of-bounds write in dos (CVE-2021-22788). Risk of unauthorized operations or information disclosure.
|
| CVE-2021-22785 |
|
Information Disclosure in schneider-electric (CVE-2021-22785)
vulnerability in schneider-electric (CVE-2021-22785). Confidential information can be exposed externally.
|
| CVE-2022-22620 KEV |
|
[KEV] Use-After-Free in Apple ios (CVE-2022-22620)
vulnerability in Apple ios (CVE-2022-22620). Risk of unauthorized operations or information disclosure. Listed in CISA KEV — actively exploited.
|