CVE Records
Page 9 of 19. 1892 curated CVE records with CVSS, EPSS, and CISA KEV status.
Records
1892 total| CVE | Title | Vendor | CVSS | EPSS | KEV | Published |
|---|---|---|---|---|---|---|
| CVE-2023-32315 | Openfire administration console authentication bypass | igniterealtime | 8.6 | 100.0% | KEV | 2023-05-26 |
| CVE-2023-2868 | Remote Code injection in Barracuda Email Security Gateway | Barracuda | 9.4 | 87.7% | KEV | 2023-05-24 |
| CVE-2023-33246 | Apache RocketMQ: Possible remote code execution vulnerability when using the update configuration function | Apache Software Foundation | 9.8 | 96.6% | KEV | 2023-05-24 |
| CVE-2023-33010 | Zyxel Multiple Firewalls Buffer Overflow Vulnerability | Zyxel | 9.8 | 28.8% | KEV | 2023-05-24 |
| CVE-2023-33009 | Zyxel Multiple Firewalls Buffer Overflow Vulnerability | Zyxel | 9.8 | 28.1% | KEV | 2023-05-24 |
| CVE-2023-29336 | Win32k Elevation of Privilege Vulnerability | Microsoft | 7.8 | 40.9% | KEV | 2023-05-09 |
| CVE-2023-24955 | Microsoft SharePoint Server Remote Code Execution Vulnerability | Microsoft | 7.2 | 85.4% | KEV | 2023-05-09 |
| CVE-2023-21492 | Samsung Mobile Devices Insertion of Sensitive Information Into Log File Vulnerability | Samsung Mobile | 4.4 | 2.6% | KEV | 2023-05-04 |
| CVE-2023-29552 | Service Location Protocol (SLP) Denial-of-Service Vulnerability | - | 7.5 | 64.0% | KEV | 2023-04-25 |
| CVE-2023-28771 | Zyxel Multiple Firewalls OS Command Injection Vulnerability | Zyxel | 9.8 | 99.3% | KEV | 2023-04-25 |
| CVE-2023-27524 | Apache Superset: Session validation vulnerability when using provided default SECRET_KEY | Apache Software Foundation | 8.9 | 97.4% | KEV | 2023-04-24 |
| CVE-2023-27351 | PaperCut NG/MF Improper Authentication Vulnerability | PaperCut | 8.2 | 78.1% | KEV | 2023-04-20 |
| CVE-2023-27350 | PaperCut MF/NG Improper Access Control Vulnerability | PaperCut | 9.8 | 100.0% | KEV | 2023-04-20 |
| CVE-2023-2136 | Google Chrome Skia Integer Overflow Vulnerability | 9.6 | 5.7% | KEV | 2023-04-19 | |
| CVE-2023-2033 | Google Chromium V8 Type Confusion Vulnerability | 8.8 | 40.8% | KEV | 2023-04-14 | |
| CVE-2023-28252 | Windows Common Log File System Driver Elevation of Privilege Vulnerability | Microsoft | 7.8 | 49.0% | KEV | 2023-04-11 |
| CVE-2023-28229 | Windows CNG Key Isolation Service Elevation of Privilege Vulnerability | Microsoft | 7.0 | 1.7% | KEV | 2023-04-11 |
| CVE-2023-29492 | Novi Survey Insecure Deserialization Vulnerability | - | 9.8 | 2.7% | KEV | 2023-04-11 |
| CVE-2023-28206 | Apple iOS, iPadOS, and macOS IOSurfaceAccelerator Out-of-Bounds Write Vulnerability | Apple | 8.6 | 23.2% | KEV | 2023-04-10 |
| CVE-2023-28205 | Apple Multiple Products WebKit Use-After-Free Vulnerability | Apple | 8.8 | 27.1% | KEV | 2023-04-10 |
| CVE-2023-26083 | Arm Mali GPU Kernel Driver Information Disclosure Vulnerability | - | 3.3 | 1.2% | KEV | 2023-04-06 |
| CVE-2023-20118 | Cisco Small Business RV Series Routers Command Injection Vulnerability | Cisco | 6.5 | 54.1% | KEV | 2023-04-05 |
| CVE-2023-1671 | Sophos Web Appliance Command Injection Vulnerability | Sophos | 9.8 | 100.0% | KEV | 2023-04-04 |
| CVE-2022-43939 | Hitachi Vantara Pentaho Business Analytics Server - Use of Non-Canonical URL Paths for Authorization Decisions | Hitachi Vantara | 8.6 | 92.3% | KEV | 2023-04-03 |
| CVE-2022-43769 | Hitachi Vantara Pentaho Business Analytics Server - Failure to Sanitize Special Elements into a Different Plane (Special Element Injection) | Hitachi Vantara | 8.8 | 97.7% | KEV | 2023-04-03 |
| CVE-2023-20963 | Android Framework Privilege Escalation Vulnerability | - | 7.8 | 1.5% | KEV | 2023-03-24 |
| CVE-2022-42948 | Fortra Cobalt Strike User Interface Remote Code Execution Vulnerability | - | 9.8 | 2.7% | KEV | 2023-03-24 |
| CVE-2023-26360 | Adobe ColdFusion Improper Access Control Arbitrary code execution | Adobe | 8.6 | 97.3% | KEV | 2023-03-23 |
| CVE-2023-26359 | Adobe ColdFusion Deserialization of Untrusted Data Arbitrary code execution | Adobe | 9.8 | 17.0% | KEV | 2023-03-23 |
| CVE-2023-28434 | MinIO is vulnerable to privilege escalation on Linux/MacOS | minio | 8.8 | 7.9% | KEV | 2023-03-22 |
| CVE-2023-28432 | Minio Information Disclosure in Cluster Deployment | minio | 7.5 | 84.0% | KEV | 2023-03-22 |
| CVE-2023-0386 | Linux Kernel Improper Ownership Management Vulnerability | - | 7.8 | 7.9% | KEV | 2023-03-22 |
| CVE-2023-25280 | D-Link DIR-820 Router OS Command Injection Vulnerability | - | 9.8 | 97.9% | KEV | 2023-03-16 |
| CVE-2023-28461 | Array Networks AG and vxAG ArrayOS Missing Authentication for Critical Function Vulnerability | - | 9.8 | 68.1% | KEV | 2023-03-15 |
| CVE-2023-1389 | TP-Link Archer AX-21 Command Injection Vulnerability | - | 8.8 | 100.0% | KEV | 2023-03-15 |
| CVE-2023-24880 | Windows SmartScreen Security Feature Bypass Vulnerability | Microsoft | 4.4 | 78.0% | KEV | 2023-03-14 |
| CVE-2023-23397 | Microsoft Outlook Elevation of Privilege Vulnerability | Microsoft | 9.8 | 97.2% | KEV | 2023-03-14 |
| CVE-2023-27532 | Veeam Backup & Replication Cloud Connect Missing Authentication for Critical Function Vulnerability | - | 7.5 | 81.3% | KEV | 2023-03-10 |
| CVE-2022-41328 | Fortinet FortiOS Path Traversal Vulnerability | Fortinet | 6.5 | 10.7% | KEV | 2023-03-07 |
| CVE-2019-8720 | WebKitGTK Memory Corruption Vulnerability | - | 8.8 | 1.6% | KEV | 2023-03-06 |
| CVE-2023-23529 | Apple Multiple Products WebKit Type Confusion Vulnerability | Apple | 8.8 | 9.5% | KEV | 2023-02-27 |
| CVE-2022-47986 | IBM Aspera Faspex code execution | IBM | 9.8 | 100.0% | KEV | 2023-02-17 |
| CVE-2023-23752 | [20230201] - Core - Improper access check in webservice endpoints | Joomla! Project | 5.3 | 99.8% | KEV | 2023-02-16 |
| CVE-2023-21823 | Windows Graphics Component Remote Code Execution Vulnerability | Microsoft | 7.8 | 5.6% | KEV | 2023-02-14 |
| CVE-2023-23376 | Windows Common Log File System Driver Elevation of Privilege Vulnerability | Microsoft | 7.8 | 10.9% | KEV | 2023-02-14 |
| CVE-2023-21715 | Microsoft Publisher Security Feature Bypass Vulnerability | Microsoft | 7.3 | 12.0% | KEV | 2023-02-14 |
| CVE-2023-21529 | Microsoft Exchange Server Remote Code Execution Vulnerability | Microsoft | 8.8 | 59.3% | KEV | 2023-02-14 |
| CVE-2023-25717 | Multiple Ruckus Wireless Products CSRF and RCE Vulnerability | - | 9.8 | 98.1% | KEV | 2023-02-13 |
| CVE-2022-24990 | TerraMaster OS Remote Command Execution Vulnerability | - | 9.8 | 83.0% | KEV | 2023-02-07 |
| CVE-2023-0669 | Fortra GoAnywhere MFT License Response Servlet Command Injection | Fortra | 7.2 | 100.0% | KEV | 2023-02-06 |
| CVE-2023-0266 | Use after free in SNDRV_CTL_IOCTL_ELEM in Linux Kernel | Linux | 7.9 | 3.7% | KEV | 2023-01-30 |
| CVE-2023-21608 | Adobe Acrobat Reader DC resetForm Use-After-Free Remote Code Execution Vulnerability | Adobe | 7.8 | 61.5% | KEV | 2023-01-18 |
| CVE-2022-47966 | Zoho ManageEngine Multiple Products Remote Code Execution Vulnerability | - | 9.8 | 99.8% | KEV | 2023-01-18 |
| CVE-2023-21839 | Oracle WebLogic Server Unspecified Vulnerability | Oracle Corporation | 7.5 | 99.9% | KEV | 2023-01-17 |
| CVE-2023-22952 | Multiple SugarCRM Products Remote Code Execution Vulnerability | - | 8.8 | 80.1% | KEV | 2023-01-11 |
| CVE-2023-21674 | Windows Advanced Local Procedure Call (ALPC) Elevation of Privilege Vulnerability | Microsoft | 8.8 | 41.0% | KEV | 2023-01-10 |
| CVE-2022-44877 | CWP Control Web Panel OS Command Injection Vulnerability | - | 9.8 | 100.0% | KEV | 2023-01-05 |
| CVE-2022-42475 | Fortinet FortiOS Heap-Based Buffer Overflow Vulnerability | Fortinet | 9.3 | 99.5% | KEV | 2023-01-02 |
| CVE-2022-26486 | Mozilla Firefox Use-After-Free Vulnerability | Mozilla | 9.6 | 2.3% | KEV | 2022-12-22 |
| CVE-2022-26485 | Mozilla Firefox Use-After-Free Vulnerability | Mozilla | 8.8 | 14.3% | KEV | 2022-12-22 |
| CVE-2022-42856 | Apple iOS Type Confusion Vulnerability | Apple | 8.8 | 8.5% | KEV | 2022-12-15 |
| CVE-2022-44698 | Windows SmartScreen Security Feature Bypass Vulnerability | Microsoft | 5.4 | 76.3% | KEV | 2022-12-13 |
| CVE-2022-27518 | Unauthenticated remote arbitrary code execution | Citrix | 9.8 | 6.7% | KEV | 2022-12-13 |
| CVE-2022-46169 | Unauthenticated Command Injection | Cacti | 9.8 | 99.8% | KEV | 2022-12-05 |
| CVE-2022-4262 | Google Chromium V8 Type Confusion Vulnerability | 8.8 | 23.5% | KEV | 2022-12-02 | |
| CVE-2022-40799 | D-Link DNR-322L Download of Code Without Integrity Check Vulnerability | - | 8.8 | 33.7% | KEV | 2022-11-29 |
| CVE-2022-4135 | Google Chromium GPU Heap Buffer Overflow Vulnerability | 9.6 | 31.9% | KEV | 2022-11-25 | |
| CVE-2022-41223 | Mitel MiVoice Connect Code Injection Vulnerability | - | 6.8 | 10.7% | KEV | 2022-11-22 |
| CVE-2022-40765 | Mitel MiVoice Connect Command Injection Vulnerability | - | 6.8 | 10.6% | KEV | 2022-11-22 |
| CVE-2022-23748 | Dante Discovery Process Control Vulnerability | - | 7.8 | 9.1% | KEV | 2022-11-17 |
| CVE-2022-41128 | Windows Scripting Languages Remote Code Execution Vulnerability | Microsoft | 8.8 | 24.6% | KEV | 2022-11-09 |
| CVE-2022-41125 | Windows CNG Key Isolation Service Elevation of Privilege Vulnerability | Microsoft | 7.8 | 3.0% | KEV | 2022-11-09 |
| CVE-2022-41091 | Windows Mark of the Web Security Feature Bypass Vulnerability | Microsoft | 5.4 | 1.8% | KEV | 2022-11-09 |
| CVE-2022-41080 | Microsoft Exchange Server Elevation of Privilege Vulnerability | Microsoft | 8.8 | 77.3% | KEV | 2022-11-09 |
| CVE-2022-41073 | Windows Print Spooler Elevation of Privilege Vulnerability | Microsoft | 7.8 | 2.3% | KEV | 2022-11-09 |
| CVE-2022-41049 | Windows Mark of the Web Security Feature Bypass Vulnerability | Microsoft | 5.4 | 2.5% | KEV | 2022-11-09 |
| CVE-2022-31199 | Netwrix Auditor Insecure Object Deserialization Vulnerability | - | 9.8 | 36.0% | KEV | 2022-11-08 |
| CVE-2022-42827 | Apple iOS and iPadOS Out-of-Bounds Write Vulnerability | Apple | 7.8 | 1.0% | KEV | 2022-11-01 |
| CVE-2022-3723 | Google Chromium V8 Type Confusion Vulnerability | 8.8 | 7.9% | KEV | 2022-11-01 | |
| CVE-2022-38181 | Arm Mali GPU Kernel Driver Use-After-Free Vulnerability | - | 8.8 | 14.1% | KEV | 2022-10-25 |
| CVE-2016-20017 | D-Link DSL-2750B Devices Command Injection Vulnerability | - | 9.8 | 64.2% | KEV | 2022-10-19 |
| CVE-2022-40684 | Fortinet Multiple Products Authentication Bypass Vulnerability | Fortinet | 9.8 | 100.0% | KEV | 2022-10-18 |
| CVE-2022-21587 | Oracle E-Business Suite Unspecified Vulnerability | Oracle Corporation | 9.8 | 98.3% | KEV | 2022-10-18 |
| CVE-2022-41033 | Windows COM+ Event System Service Elevation of Privilege Vulnerability | Microsoft | 7.8 | 1.7% | KEV | 2022-10-11 |
| CVE-2022-38028 | Windows Print Spooler Elevation of Privilege Vulnerability | Microsoft | 7.8 | 14.9% | KEV | 2022-10-11 |
| CVE-2022-41082 | Microsoft Exchange Server Remote Code Execution Vulnerability | Microsoft | 8.0 | 100.0% | KEV | 2022-10-03 |
| CVE-2022-41040 | Microsoft Exchange Server Elevation of Privilege Vulnerability | Microsoft | 8.8 | 100.0% | KEV | 2022-10-03 |
| CVE-2022-20775 | Cisco SD-WAN Software Privilege Escalation Vulnerability | Cisco | 7.8 | 12.5% | KEV | 2022-09-30 |
| CVE-2022-3075 | Google Chromium Mojo Insufficient Data Validation Vulnerability | 9.6 | 5.8% | KEV | 2022-09-26 | |
| CVE-2022-3038 | Google Chromium Network Service Use-After-Free Vulnerability | 8.8 | 24.7% | KEV | 2022-09-26 | |
| CVE-2022-2856 | Google Chromium Intents Insufficient Input Validation Vulnerability | 6.5 | 4.5% | KEV | 2022-09-26 | |
| CVE-2022-41352 | Synacor Zimbra Collaboration Suite (ZCS) Arbitrary File Upload Vulnerability | - | 9.8 | 95.5% | KEV | 2022-09-26 |
| CVE-2022-3236 | Sophos Firewall Code Injection Vulnerability | Sophos | 9.8 | 98.9% | KEV | 2022-09-23 |
| CVE-2022-39197 | Fortra Cobalt Strike Teamserver Cross-Site Scripting (XSS) Vulnerability | - | 6.1 | 46.4% | KEV | 2022-09-22 |
| CVE-2022-32917 | Apple iOS, iPadOS, and macOS Remote Code Execution Vulnerability | Apple | 7.8 | 5.6% | KEV | 2022-09-20 |
| CVE-2022-40139 | Trend Micro Apex One and Apex One as a Service Improper Validation Vulnerability | Trend Micro | 7.2 | 3.3% | KEV | 2022-09-19 |
| CVE-2022-35914 | Teclib GLPI Remote Code Execution Vulnerability | - | 9.8 | 99.9% | KEV | 2022-09-19 |
| CVE-2022-37969 | Windows Common Log File System Driver Elevation of Privilege Vulnerability | Microsoft | 7.8 | 28.3% | KEV | 2022-09-13 |
| CVE-2022-27593 | DeadBolt Ransomware | QNAP Systems Inc. | 10.0 | 87.9% | KEV | 2022-09-08 |
| CVE-2022-37055 | D-Link Routers Buffer Overflow Vulnerability | - | 9.8 | 55.5% | KEV | 2022-08-28 |