CVE Database

117989+ vulnerabilities with CVSS scores, EPSS exploit predictions, and CISA KEV status. Updated daily.

Filter: All CRITICAL HIGH MEDIUM LOW CISA KEV
Sort: Newest CVSS EPSS
CVE-2024-39389
7.8 HIGH

InDesign Desktop versions ID19.4, ID18.5.2 and earlier are affected by a Stack-based Buffer Overflow vulnerability that could result in arbitrary code execution in the context …

Aug 14, 2024
CVE-2024-39388
7.8 HIGH

Substance3D - Stager versions 3.0.2 and earlier are affected by a Use After Free vulnerability that could result in arbitrary code execution in the context …

Aug 14, 2024
CVE-2024-39387
5.5 MEDIUM

Bridge versions 13.0.8, 14.1.1 and earlier are affected by an out-of-bounds read vulnerability that could lead to disclosure of sensitive memory. An attacker could leverage …

Aug 14, 2024
CVE-2024-39386
7.8 HIGH

Bridge versions 13.0.8, 14.1.1 and earlier are affected by an out-of-bounds write vulnerability that could result in arbitrary code execution in the context of the …

Aug 14, 2024
CVE-2024-39383
7.8 HIGH

Acrobat Reader versions 20.005.30636, 24.002.20965, 24.002.20964, 24.001.30123 and earlier are affected by a Use After Free vulnerability that could result in arbitrary code execution in …

Aug 14, 2024
CVE-2024-37028
5.3 MEDIUM

BIG-IP Next Central Manager may allow an attacker to lock out an account that has never been logged in. Note: Software versions which have reached …

Aug 14, 2024
CVE-2024-34138
5.5 MEDIUM

Illustrator versions 28.5, 27.9.4 and earlier are affected by a NULL Pointer Dereference vulnerability that could lead to an application denial-of-service (DoS). An attacker could …

Aug 14, 2024
CVE-2024-34137
5.5 MEDIUM

Illustrator versions 28.5, 27.9.4 and earlier are affected by a NULL Pointer Dereference vulnerability that could lead to an application denial-of-service (DoS) condition. An attacker …

Aug 14, 2024
CVE-2024-34136
5.5 MEDIUM

Illustrator versions 28.5, 27.9.4 and earlier are affected by a NULL Pointer Dereference vulnerability that could lead to an application denial-of-service (DoS). An attacker could …

Aug 14, 2024
CVE-2024-34135
5.5 MEDIUM

Illustrator versions 28.5, 27.9.4 and earlier are affected by an out-of-bounds read vulnerability that could lead to disclosure of sensitive memory. An attacker could leverage …

Aug 14, 2024
CVE-2024-34134
5.5 MEDIUM

Illustrator versions 28.5, 27.9.4 and earlier are affected by an out-of-bounds read vulnerability that could lead to disclosure of sensitive memory. An attacker could leverage …

Aug 14, 2024
CVE-2024-34133
7.8 HIGH

Illustrator versions 28.5, 27.9.4 and earlier are affected by an out-of-bounds write vulnerability that could result in arbitrary code execution in the context of the …

Aug 14, 2024
CVE-2024-34127
5.5 MEDIUM

InDesign Desktop versions ID19.4, ID18.5.2 and earlier are affected by an out-of-bounds read vulnerability that could lead to disclosure of sensitive memory. An attacker could …

Aug 14, 2024
CVE-2024-34126
5.5 MEDIUM

Dimension versions 3.4.11 and earlier are affected by an out-of-bounds read vulnerability that could lead to disclosure of sensitive memory. An attacker could leverage this …

Aug 14, 2024
CVE-2024-34125
5.5 MEDIUM

Dimension versions 3.4.11 and earlier are affected by an out-of-bounds read vulnerability that could lead to disclosure of sensitive memory. An attacker could leverage this …

Aug 14, 2024
CVE-2024-34124
7.8 HIGH

Dimension versions 3.4.11 and earlier are affected by an out-of-bounds write vulnerability that could result in arbitrary code execution in the context of the current …

Aug 14, 2024
CVE-2024-34118
5.5 MEDIUM

Illustrator versions 28.5, 27.9.4 and earlier are affected by an Improper Input Validation vulnerability that could lead to an application denial-of-service condition. An attacker could …

Aug 14, 2024
CVE-2024-34117
7.8 HIGH

Photoshop Desktop versions 24.7.3, 25.9.1 and earlier are affected by a Use After Free vulnerability that could result in arbitrary code execution in the context …

Aug 14, 2024
CVE-2024-25157
6.5 MEDIUM

An authentication bypass vulnerability in GoAnywhere MFT prior to 7.6.0 allows Admin Users with access to the Agent Console to circumvent some permission checks when …

Aug 14, 2024
CVE-2024-20790
5.5 MEDIUM

Dimension versions 3.4.11 and earlier are affected by an out-of-bounds read vulnerability that could lead to disclosure of sensitive memory. An attacker could leverage this …

Aug 14, 2024
CVE-2024-20789
7.8 HIGH

Dimension versions 3.4.11 and earlier are affected by a Use After Free vulnerability that could result in arbitrary code execution in the context of the …

Aug 14, 2024
CVE-2024-7790
6.5 MEDIUM

A stored cross site scripting vulnerabilities exists in DevikaAI from commit 6acce21fb08c3d1123ef05df6a33912bf0ee77c2 onwards via improperly decoded user input.

Aug 14, 2024
CVE-2024-39283
6.0 MEDIUM

Incomplete filtering of special elements in Intel(R) TDX module software before version TDX_1.5.01.00.592 may allow an authenticated user to potentially enable escalation of privilege via …

Aug 14, 2024
CVE-2024-34163
7.5 HIGH

Improper input validation in firmware for some Intel(R) NUC may allow a privileged user to potentially enableescalation of privilege via local access.

Aug 14, 2024
CVE-2024-29015
6.7 MEDIUM

Uncontrolled search path in some Intel(R) VTune(TM) Profiler software before versions 2024.1 may allow an authenticated user to potentially enable escalation of privilege via local …

Aug 14, 2024
CVE-2024-28953
6.7 MEDIUM

Uncontrolled search path in some EMON software before version 11.44 may allow an authenticated user to potentially enable escalation of privilege via local access.

Aug 14, 2024
CVE-2024-28947
8.2 HIGH

Improper input validation in kernel mode driver for some Intel(R) Server Board S2600ST Family firmware before version 02.01.0017 may allow a privileged user to potentially …

Aug 14, 2024
CVE-2024-28887
6.7 MEDIUM

Uncontrolled search path in some Intel(R) IPP software before version 2021.11 may allow an authenticated user to potentially enable escalation of privilege via local access.

Aug 14, 2024
CVE-2024-28876
6.7 MEDIUM

Uncontrolled search path for some Intel(R) MPI Library software before version 2021.12 may allow an authenticated user to potentially enable escalation of privilege via local …

Aug 14, 2024
CVE-2024-28172
6.7 MEDIUM

Uncontrolled search path for some Intel(R) Trace Analyzer and Collector software before version 2022.1 may allow an authenticated user to potentially enable escalation of privilege …

Aug 14, 2024
CVE-2024-28050
5.0 MEDIUM

Improper access control in some Intel(R) Arc(TM) & Iris(R) Xe Graphics software before version 31.0.101.4824 may allow an authenticated user to potentially enable denial of …

Aug 14, 2024
CVE-2024-28046
6.7 MEDIUM

Uncontrolled search path in some Intel(R) GPA software before version 2024.1 may allow an authenticated user to potentially enable escalation of privilege via local access.

Aug 14, 2024
CVE-2024-27461
5.6 MEDIUM

Incorrect default permissions in software installer for Intel(R) MAS (GUI) may allow an authenticated user to potentially enable denial of service via local access.

Aug 14, 2024
CVE-2024-26027
6.7 MEDIUM

Uncontrolled search path for some Intel(R) Simics Package Manager software before version 1.8.3 may allow an authenticated user to potentially enable escalation of privilege via …

Aug 14, 2024
CVE-2024-26025
6.7 MEDIUM

Incorrect default permissions for some Intel(R) Advisor software before version 2024.1 may allow an authenticated user to potentially enable escalation of privilege via local access.

Aug 14, 2024
CVE-2024-26022
7.8 HIGH

Improper access control in some Intel(R) UEFI Integrator Tools on Aptio V for Intel(R) NUC may allow an authenticated user to potentially enable escalation of …

Aug 14, 2024
CVE-2024-25939
6.0 MEDIUM

Mirrored regions with different values in 3rd Generation Intel(R) Xeon(R) Scalable Processors may allow a privileged user to potentially enable denial of service via local …

Aug 14, 2024
CVE-2024-25576
7.9 HIGH

improper access control in firmware for some Intel(R) FPGA products before version 24.1 may allow a privileged user to enable escalation of privilege via local …

Aug 14, 2024
CVE-2024-25562
5.8 MEDIUM

Improper buffer restrictions in some Intel(R) Distribution for GDB software before version 2024.0.1 may allow an authenticated user to potentially enable denial of service via …

Aug 14, 2024
CVE-2024-25561
6.7 MEDIUM

Insecure inherited permissions in some Intel(R) HID Event Filter software installers before version 2.2.2.1 may allow an authenticated user to potentially enable escalation of privilege …

Aug 14, 2024
CVE-2024-24986
8.8 HIGH

Improper access control in Linux kernel mode driver for some Intel(R) Ethernet Network Controllers and Adapters before version 28.3 may allow an authenticated user to …

Aug 14, 2024
CVE-2024-24983
6.5 MEDIUM

Protection mechanism failure in firmware for some Intel(R) Ethernet Network Controllers and Adapters E810 Series before version 4.4 may allow an unauthenticated user to potentially …

Aug 14, 2024
CVE-2024-24980
6.1 MEDIUM

Protection mechanism failure in some 3rd, 4th, and 5th Generation Intel(R) Xeon(R) Processors may allow a privileged user to potentially enable escalation of privilege via …

Aug 14, 2024
CVE-2024-24977
6.7 MEDIUM

Uncontrolled search path for some Intel(R) License Manager for FLEXlm product software before version 11.19.5.0 may allow an authenticated user to potentially enable escalation of …

Aug 14, 2024
CVE-2024-24973
2.2 LOW

Improper input validation for some Intel(R) Distribution for GDB software before version 2024.0.1 may allow an authenticated user to potentially enable denial of service via …

Aug 14, 2024
CVE-2024-24853
7.2 HIGH

Incorrect behavior order in transition between executive monitor and SMI transfer monitor (STM) in some Intel(R) Processor may allow a privileged user to potentially enable …

Aug 14, 2024
CVE-2024-24580
6.5 MEDIUM

Improper conditions check in some Intel(R) Data Center GPU Max Series 1100 and 1550 products may allow a privileged user to potentially enable denial of …

Aug 14, 2024
CVE-2024-23981
8.8 HIGH

Wrap-around error in Linux kernel mode driver for some Intel(R) Ethernet Network Controllers and Adapters before version 28.3 may allow an authenticated user to potentially …

Aug 14, 2024
CVE-2024-23974
6.7 MEDIUM

Incorrect default permissions in some Intel(R) ISH software installers may allow an authenticated user to potentially enable escalation of privilege via local access.

Aug 14, 2024
CVE-2024-23909
6.7 MEDIUM

Uncontrolled search path in some Intel(R) FPGA SDK for OpenCL(TM) software technology may allow an authenticated user to potentially enable escalation of privilege via local …

Aug 14, 2024

Scan your infrastructure for known CVEs

Free website and port scanning — find vulnerabilities before attackers do.