CVE Database

39445+ vulnerabilities with CVSS scores, EPSS exploit predictions, and CISA KEV status. Updated daily.

Filter: All CRITICAL HIGH MEDIUM LOW CISA KEV
Sort: Newest CVSS EPSS
CVE-2024-20696
7.3 HIGH

Windows libarchive Remote Code Execution Vulnerability

Jan 9, 2024
CVE-2024-20687
7.5 HIGH

Microsoft AllJoyn API Denial of Service Vulnerability

Jan 9, 2024
CVE-2024-20686
7.8 HIGH

Win32k Elevation of Privilege Vulnerability

Jan 9, 2024
CVE-2024-20683
7.8 HIGH

Win32k Elevation of Privilege Vulnerability

Jan 9, 2024
CVE-2024-20682
7.8 HIGH

Windows Cryptographic Services Remote Code Execution Vulnerability

Jan 9, 2024
CVE-2024-20681
7.8 HIGH

Windows Subsystem for Linux Elevation of Privilege Vulnerability

Jan 9, 2024
CVE-2024-20677
7.8 HIGH

A security vulnerability exists in FBX that could lead to remote code execution. To mitigate this vulnerability, the ability to insert FBX files has been …

Jan 9, 2024
CVE-2024-20676
8.0 HIGH

Azure Storage Mover Remote Code Execution Vulnerability

Jan 9, 2024
CVE-2024-20674
8.8 HIGH

Windows Kerberos Security Feature Bypass Vulnerability

Jan 9, 2024
CVE-2024-20672
7.5 HIGH

.NET Denial of Service Vulnerability

Jan 9, 2024
CVE-2024-20661
7.5 HIGH

Microsoft Message Queuing (MSMQ) Denial of Service Vulnerability

Jan 9, 2024
CVE-2024-20658
7.8 HIGH

Microsoft Virtual Hard Disk Elevation of Privilege Vulnerability

Jan 9, 2024
CVE-2024-20657
7.0 HIGH

Windows Group Policy Elevation of Privilege Vulnerability

Jan 9, 2024
CVE-2024-20656
7.8 HIGH

Visual Studio Elevation of Privilege Vulnerability

Jan 9, 2024
CVE-2024-20654
8.0 HIGH

Microsoft ODBC Driver Remote Code Execution Vulnerability

Jan 9, 2024
CVE-2024-20653
7.8 HIGH

Microsoft Common Log File System Elevation of Privilege Vulnerability

Jan 9, 2024
CVE-2024-20652
8.1 HIGH

Windows HTML Platforms Security Feature Bypass Vulnerability

Jan 9, 2024
CVE-2024-0056
8.7 HIGH

Microsoft.Data.SqlClient and System.Data.SqlClient SQL Data Provider Security Feature Bypass Vulnerability

Jan 9, 2024
CVE-2022-48618
7.0 HIGH KEV

The issue was addressed with improved checks. This issue is fixed in macOS Ventura 13.1, watchOS 9.2, iOS 16.2 and iPadOS 16.2, tvOS 16.2. An …

Jan 9, 2024
CVE-2023-7222
7.2 HIGH

A vulnerability was found in Totolink X2000R 1.0.0-B20221212.1452. It has been declared as critical. This vulnerability affects the function formTmultiAP of the file /bin/boa of …

Jan 9, 2024
CVE-2022-36765
7.0 HIGH

EDK2 is susceptible to a vulnerability in the CreateHob() function, allowing a user to trigger a integer overflow to buffer overflow via a local network. …

Jan 9, 2024
CVE-2022-36764
7.0 HIGH

EDK2 is susceptible to a vulnerability in the Tcg2MeasurePeImage() function, allowing a user to trigger a heap buffer overflow via a local network. Successful exploitation …

Jan 9, 2024
CVE-2022-36763
7.0 HIGH

EDK2 is susceptible to a vulnerability in the Tcg2MeasureGptTable() function, allowing a user to trigger a heap buffer overflow via a local network. Successful exploitation …

Jan 9, 2024
CVE-2024-0213
8.2 HIGH

A buffer overflow vulnerability in TA for Linux and TA for MacOS prior to 5.8.1 allows a local user to gain elevated permissions, or cause …

Jan 9, 2024
CVE-2024-0206
7.1 HIGH

A symbolic link manipulation vulnerability in Trellix Anti-Malware Engine prior to the January 2024 release allows an authenticated local user to potentially gain an escalation …

Jan 9, 2024
CVE-2023-5376
8.6 HIGH

An Improper Authentication vulnerability in Korenix JetNet TFTP allows abuse of this service. This issue affects JetNet devices older than firmware version 2024/01.

Jan 9, 2024
CVE-2023-51746
7.8 HIGH

A vulnerability has been identified in JT2Go (All versions < V14.3.0.6), Teamcenter Visualization V13.3 (All versions < V13.3.0.13), Teamcenter Visualization V14.1 (All versions < V14.1.0.12), …

Jan 9, 2024
CVE-2023-51745
7.8 HIGH

A vulnerability has been identified in JT2Go (All versions < V14.3.0.6), Teamcenter Visualization V13.3 (All versions < V13.3.0.13), Teamcenter Visualization V14.1 (All versions < V14.1.0.12), …

Jan 9, 2024
CVE-2023-51439
7.8 HIGH

A vulnerability has been identified in JT2Go (All versions < V14.3.0.6), Teamcenter Visualization V13.3 (All versions < V13.3.0.13), Teamcenter Visualization V14.1 (All versions < V14.1.0.12), …

Jan 9, 2024
CVE-2023-49722
8.3 HIGH

Network port 8899 open in WiFi firmware of BCC101/BCC102/BCC50 products, that allows an attacker to connect to the device via same WiFi network.

Jan 9, 2024
CVE-2023-49252
7.5 HIGH

A vulnerability has been identified in SIMATIC CN 4100 (All versions < V2.7). The affected application allows IP configuration change without authentication to the device. …

Jan 9, 2024
CVE-2023-49251
8.8 HIGH

A vulnerability has been identified in SIMATIC CN 4100 (All versions < V2.7). The "intermediate installation" system state of the affected application allows an attacker …

Jan 9, 2024
CVE-2023-49132
7.8 HIGH

A vulnerability has been identified in Solid Edge SE2023 (All versions < V223.0 Update 10). The affected application is vulnerable to uninitialized pointer access while …

Jan 9, 2024
CVE-2023-49131
7.8 HIGH

A vulnerability has been identified in Solid Edge SE2023 (All versions < V223.0 Update 10). The affected application is vulnerable to uninitialized pointer access while …

Jan 9, 2024
CVE-2023-49130
7.8 HIGH

A vulnerability has been identified in Solid Edge SE2023 (All versions < V223.0 Update 10). The affected application is vulnerable to uninitialized pointer access while …

Jan 9, 2024
CVE-2023-49129
7.8 HIGH

A vulnerability has been identified in Solid Edge SE2023 (All versions < V223.0 Update 10). The affected applications contain a stack overflow vulnerability while parsing …

Jan 9, 2024
CVE-2023-49128
7.8 HIGH

A vulnerability has been identified in Solid Edge SE2023 (All versions < V223.0 Update 10). The affected application contains an out of bounds write past …

Jan 9, 2024
CVE-2023-49127
7.8 HIGH

A vulnerability has been identified in Solid Edge SE2023 (All versions < V223.0 Update 10). The affected applications contain an out of bounds read past …

Jan 9, 2024
CVE-2023-49126
7.8 HIGH

A vulnerability has been identified in Solid Edge SE2023 (All versions < V223.0 Update 10). The affected applications contain an out of bounds read past …

Jan 9, 2024
CVE-2023-49124
7.8 HIGH

A vulnerability has been identified in Solid Edge SE2023 (All versions < V223.0 Update 10). The affected applications contain an out of bounds read past …

Jan 9, 2024
CVE-2023-49123
7.8 HIGH

A vulnerability has been identified in Solid Edge SE2023 (All versions < V223.0 Update 10). The affected application is vulnerable to heap-based buffer overflow while …

Jan 9, 2024
CVE-2023-49122
7.8 HIGH

A vulnerability has been identified in Solid Edge SE2023 (All versions < V223.0 Update 10). The affected application is vulnerable to heap-based buffer overflow while …

Jan 9, 2024
CVE-2023-49121
7.8 HIGH

A vulnerability has been identified in Solid Edge SE2023 (All versions < V223.0 Update 10). The affected application is vulnerable to heap-based buffer overflow while …

Jan 9, 2024
CVE-2023-44120
7.8 HIGH

A vulnerability has been identified in Spectrum Power 7 (All versions < V23Q4). The affected product's sudo configuration permits the local administrative account to execute …

Jan 9, 2024
CVE-2023-50932
8.3 HIGH

An issue was discovered in savignano S/Notify before 4.0.2 for Confluence. While an administrative user is logged on, the configuration settings of S/Notify can be …

Jan 9, 2024
CVE-2023-50931
8.3 HIGH

An issue was discovered in savignano S/Notify before 2.0.1 for Bitbucket. While an administrative user is logged on, the configuration settings of S/Notify can be …

Jan 9, 2024
CVE-2023-50930
8.3 HIGH

An issue was discovered in savignano S/Notify before 4.0.2 for Jira. While an administrative user is logged on, the configuration settings of S/Notify can be …

Jan 9, 2024
CVE-2023-7219
7.2 HIGH

A vulnerability has been found in Totolink N350RT 9.3.5u.6139_B202012 and classified as critical. Affected by this vulnerability is the function loginAuth of the file /cgi-bin/cstecgi.cgi. …

Jan 9, 2024
CVE-2024-22125
7.4 HIGH

Under certain conditions the Microsoft Edge browser extension (SAP GUI connector for Microsoft Edge) - version 1.0, allows an attacker to access highly sensitive information …

Jan 9, 2024
CVE-2024-21737
8.4 HIGH

In SAP Application Interface Framework File Adapter - version 702, a high privilege user can use a function module to traverse through various layers and …

Jan 9, 2024

Scan your infrastructure for known CVEs

Free website and port scanning — find vulnerabilities before attackers do.