Vulnerabilities
Aggregated CVE / GHSA / KEV / OSV — filter by tag and category.
| ID | Title | |
|---|---|---|
| CVE-2021-46354 |
|
Vulnerability in cybelesoft (CVE-2021-46354)
vulnerability in cybelesoft (CVE-2021-46354). Confidential information can be exposed externally.
|
| CVE-2021-41442 |
|
Vulnerability in dos (CVE-2021-41442)
vulnerability in dos (CVE-2021-41442). Risk of unauthorized operations or information disclosure.
|
| CVE-2016-3088 KEV |
|
[KEV] Vulnerability in Apache activemq (CVE-2016-3088)
vulnerability in Apache activemq (CVE-2016-3088). Successful exploitation can lead to full system takeover. Listed in CISA KEV — actively exploited.
|
| CVE-2017-0145 KEV |
|
[KEV] Vulnerability in Microsoft smbv1 (CVE-2017-0145)
vulnerability in Microsoft smbv1 (CVE-2017-0145). Successful exploitation can lead to full system takeover. Listed in CISA KEV — actively exploited.
|
| CVE-2017-0144 KEV |
|
[KEV] Vulnerability in Microsoft smbv1 (CVE-2017-0144)
vulnerability in Microsoft smbv1 (CVE-2017-0144). Successful exploitation can lead to full system takeover. Listed in CISA KEV — actively exploited.
|
| CVE-2017-9791 KEV |
|
[KEV] Vulnerability in Apache struts-1 (CVE-2017-9791)
vulnerability in Apache struts-1 (CVE-2017-9791). Successful exploitation can lead to full system takeover. Listed in CISA KEV — actively exploited.
|
| CVE-2017-10271 KEV |
|
[KEV] Vulnerability in Oracle weblogic-server (CVE-2017-10271)
vulnerability in Oracle weblogic-server (CVE-2017-10271). Risk of unauthorized operations or information disclosure. Listed in CISA KEV — actively exploited.
|
| CVE-2018-1000861 KEV |
|
[KEV] Unsafe Deserialization in jenkins (CVE-2018-1000861)
vulnerability in jenkins (CVE-2018-1000861). Successful exploitation can lead to full system takeover. Listed in CISA KEV — actively exploited.
|
| CVE-2021-36934 KEV |
|
[KEV] Vulnerability in Microsoft windows (CVE-2021-36934)
vulnerability in Microsoft windows (CVE-2021-36934). Successful exploitation can lead to full system takeover. Listed in CISA KEV — actively exploited.
|
| CVE-2017-8464 KEV |
|
[KEV] Vulnerability in Microsoft windows (CVE-2017-8464)
vulnerability in Microsoft windows (CVE-2017-8464). Risk of unauthorized operations or information disclosure. Listed in CISA KEV — actively exploited.
|
| CVE-2017-0263 KEV |
|
[KEV] Use-After-Free in Microsoft win32k (CVE-2017-0263)
vulnerability in Microsoft win32k (CVE-2017-0263). Risk of unauthorized operations or information disclosure. Listed in CISA KEV — actively exploited.
|
| CVE-2017-0262 KEV |
|
[KEV] Vulnerability in Microsoft office (CVE-2017-0262)
vulnerability in Microsoft office (CVE-2017-0262). Risk of unauthorized operations or information disclosure. Listed in CISA KEV — actively exploited.
|
| CVE-2015-2051 KEV |
|
[KEV] Command Injection in D-link dir-645-router (CVE-2015-2051)
command injection in D-link dir-645-router (CVE-2015-2051). Risk of unauthorized operations or information disclosure. Listed in CISA KEV — actively exploited.
|
| CVE-2015-1635 KEV |
|
[KEV] Code Injection in Microsoft httpsys (CVE-2015-1635)
code injection in Microsoft httpsys (CVE-2015-1635). Risk of unauthorized operations or information disclosure. Listed in CISA KEV — actively exploited.
|
| CVE-2015-1130 KEV |
|
[KEV] Vulnerability in Apple os-x (CVE-2015-1130)
vulnerability in Apple os-x (CVE-2015-1130). Risk of unauthorized operations or information disclosure. Listed in CISA KEV — actively exploited.
|
| CVE-2014-4404 KEV |
|
[KEV] Buffer Overflow in Apple os-x (CVE-2014-4404)
vulnerability in Apple os-x (CVE-2014-4404). Risk of unauthorized operations or information disclosure. Listed in CISA KEV — actively exploited.
|
| CVE-2022-22709 |
|
VP9 Video Extensions Remote Code Execution Vulnerability
VP9 Video Extensions Remote Code Execution Vulnerability
|
| CVE-2021-41441 |
|
Vulnerability in dos (CVE-2021-41441)
vulnerability in dos (CVE-2021-41441). Risk of unauthorized operations or information disclosure.
|
| CVE-2021-42641 |
|
Vulnerability in printerlogic (CVE-2021-42641)
vulnerability in printerlogic (CVE-2021-42641). Confidential information can be exposed externally.
|
| CVE-2021-42642 |
|
Vulnerability in printerlogic (CVE-2021-42642)
vulnerability in printerlogic (CVE-2021-42642). Confidential information can be exposed externally.
|
| CVE-2020-13935 |
|
Vulnerability in org.apache.tomcat:tomcat (CVE-2020-13935)
vulnerability in org.apache.tomcat:tomcat (CVE-2020-13935). Risk of unauthorized operations or information disclosure. Mitigation: upgrade to `7.0.105` or later.
|
| CVE-2020-13934 |
|
Vulnerability in org.apache.tomcat:tomcat (CVE-2020-13934)
vulnerability in org.apache.tomcat:tomcat (CVE-2020-13934). Risk of unauthorized operations or information disclosure. Mitigation: upgrade to `8.5.56` or later.
|
| CVE-2022-23320 |
|
Authentication Bypass in xerox (CVE-2022-23320)
authentication bypass in xerox (CVE-2022-23320). Confidential information can be exposed externally.
|
| CVE-2022-23913 |
|
Vulnerability in org.apache.activemq:artemis-core-client (CVE-2022-23913)
vulnerability in org.apache.activemq:artemis-core-client (CVE-2022-23913). Risk of unauthorized operations or information disclosure. Mitigation: upgrade to `2.19.1` or later.
|
| CVE-2020-7534 |
|
Cross-Site Request Forgery (CSRF) in csrf (CVE-2020-7534)
vulnerability in csrf (CVE-2020-7534). Successful exploitation can lead to full system takeover.
|
| CVE-2022-21882 KEV |
|
[KEV] Out-of-Bounds Write in Microsoft win32k (CVE-2022-21882)
out-of-bounds write in Microsoft win32k (CVE-2022-21882). Risk of unauthorized operations or information disclosure. Listed in CISA KEV — actively exploited.
|
| CVE-2021-43615 |
|
Out-of-Bounds Write in insyde (CVE-2021-43615)
out-of-bounds write in insyde (CVE-2021-43615). Successful exploitation can lead to full system takeover.
|
| CVE-2022-24031 |
|
Buffer Overflow in insyde (CVE-2022-24031)
vulnerability in insyde (CVE-2022-24031). Successful exploitation can lead to full system takeover.
|
| CVE-2021-42113 |
|
Vulnerability in insyde (CVE-2021-42113)
vulnerability in insyde (CVE-2021-42113). Successful exploitation can lead to full system takeover.
|
| CVE-2021-42554 |
|
Out-of-Bounds Write in insyde (CVE-2021-42554)
out-of-bounds write in insyde (CVE-2021-42554). Successful exploitation can lead to full system takeover.
|
| CVE-2022-24030 |
|
Out-of-Bounds Write in insyde (CVE-2022-24030)
out-of-bounds write in insyde (CVE-2022-24030). Successful exploitation can lead to full system takeover.
|
| CVE-2021-41841 |
|
Vulnerability in insyde (CVE-2021-41841)
vulnerability in insyde (CVE-2021-41841). Successful exploitation can lead to full system takeover.
|
| CVE-2021-42060 |
|
Vulnerability in insyde (CVE-2021-42060)
vulnerability in insyde (CVE-2021-42060). Successful exploitation can lead to full system takeover.
|
| CVE-2021-41837 |
|
Buffer Overflow in insyde (CVE-2021-41837)
vulnerability in insyde (CVE-2021-41837). Successful exploitation can lead to full system takeover.
|
| CVE-2021-41838 |
|
Buffer Overflow in insyde (CVE-2021-41838)
vulnerability in insyde (CVE-2021-41838). Successful exploitation can lead to full system takeover.
|
| CVE-2021-41840 |
|
Vulnerability in c (CVE-2021-41840)
vulnerability in c (CVE-2021-41840). Successful exploitation can lead to full system takeover.
|
| CVE-2021-41839 |
|
Buffer Overflow in insyde (CVE-2021-41839)
vulnerability in insyde (CVE-2021-41839). Successful exploitation can lead to full system takeover.
|
| CVE-2021-43323 |
|
Vulnerability in insyde (CVE-2021-43323)
vulnerability in insyde (CVE-2021-43323). Successful exploitation can lead to full system takeover.
|
| CVE-2021-33625 |
|
Buffer Overflow in insyde (CVE-2021-33625)
vulnerability in insyde (CVE-2021-33625). Successful exploitation can lead to full system takeover.
|
| CVE-2021-33627 |
|
Buffer Overflow in insyde (CVE-2021-33627)
vulnerability in insyde (CVE-2021-33627). Successful exploitation can lead to full system takeover.
|
| CVE-2020-5953 |
|
Vulnerability in insyde (CVE-2020-5953)
vulnerability in insyde (CVE-2020-5953). Successful exploitation can lead to full system takeover.
|
| CVE-2022-24069 |
|
Vulnerability in insyde (CVE-2022-24069)
vulnerability in insyde (CVE-2022-24069). Successful exploitation can lead to full system takeover.
|
| CVE-2021-43522 |
|
Out-of-Bounds Write in insyde (CVE-2021-43522)
out-of-bounds write in insyde (CVE-2021-43522). Successful exploitation can lead to full system takeover.
|
| CVE-2021-42638 |
|
Command Injection in printerlogic (CVE-2021-42638)
command injection in printerlogic (CVE-2021-42638). Successful exploitation can lead to full system takeover.
|
| CVE-2021-42631 |
|
Unsafe Deserialization in printerlogic (CVE-2021-42631)
vulnerability in printerlogic (CVE-2021-42631). Successful exploitation can lead to full system takeover.
|
| CVE-2021-42635 |
|
Vulnerability in printerlogic (CVE-2021-42635)
vulnerability in printerlogic (CVE-2021-42635). Successful exploitation can lead to full system takeover.
|
| CVE-2020-0787 KEV |
|
[KEV] Vulnerability in Microsoft windows (CVE-2020-0787)
vulnerability in Microsoft windows (CVE-2020-0787). Successful exploitation can lead to full system takeover. Listed in CISA KEV — actively exploited.
|
| CVE-2022-22587 KEV |
|
[KEV] Vulnerability in Apple ios-and-macos (CVE-2022-22587)
vulnerability in Apple ios-and-macos (CVE-2022-22587). Risk of unauthorized operations or information disclosure. Listed in CISA KEV — actively exploited.
|
| CVE-2021-20038 KEV |
|
[KEV] Vulnerability in Sonicwall sma-100-appliances (CVE-2021-20038)
vulnerability in Sonicwall sma-100-appliances (CVE-2021-20038). Risk of unauthorized operations or information disclosure. Listed in CISA KEV — actively exploited.
|
| CVE-2020-5722 KEV |
|
[KEV] SQL Injection in Grandstream ucm6200 (CVE-2020-5722)
SQL injection in Grandstream ucm6200 (CVE-2020-5722). Risk of unauthorized operations or information disclosure. Listed in CISA KEV — actively exploited.
|