IT
58.306 CVE tracked
790 Exploited now
188 Used by ransomware
Last sync

CVE Tracker

58.306 CVE

Ten vendors followed by CPE identifier, not by keyword: a CVE appears here once NVD says which products it affects — usually a few days after it is published.

CVE Tracker
Identifier Severity, sort descending Product and flaw EPSS, sort descending In KEV since, sorted ascending
CVE-2023-36578 HIGH 7.3 microsoft windows_10_1507 Microsoft Message Queuing (MSMQ) Remote Code Execution Vulnerability 1.0% —
CVE-2023-36577 HIGH 8.8 microsoft windows_10_1507 Microsoft WDAC OLE DB provider for SQL Server Remote Code Execution Vulnerability 1.7% —
CVE-2023-36576 MED 5.5 microsoft windows_10_1507 Windows Kernel Information Disclosure Vulnerability 1.0% —
CVE-2023-36575 HIGH 7.3 microsoft windows_10_1507 Microsoft Message Queuing (MSMQ) Remote Code Execution Vulnerability 1.0% —
CVE-2023-36574 HIGH 7.3 microsoft windows_10_1507 Microsoft Message Queuing (MSMQ) Remote Code Execution Vulnerability 1.0% —
CVE-2023-36573 HIGH 7.3 microsoft windows_10_1507 Microsoft Message Queuing (MSMQ) Remote Code Execution Vulnerability 1.0% —
CVE-2023-36572 HIGH 7.3 microsoft windows_10_1507 Microsoft Message Queuing (MSMQ) Remote Code Execution Vulnerability 1.0% —
CVE-2023-36571 HIGH 7.3 microsoft windows_10_1507 Microsoft Message Queuing (MSMQ) Remote Code Execution Vulnerability 1.0% —
CVE-2023-36570 HIGH 7.3 microsoft windows_10_1507 Microsoft Message Queuing (MSMQ) Remote Code Execution Vulnerability 1.0% —
CVE-2023-36569 HIGH 8.4 microsoft 365_apps Microsoft Office Elevation of Privilege Vulnerability 0.6% —
CVE-2023-36568 HIGH 7.0 microsoft 365_apps Microsoft Office Click-To-Run Elevation of Privilege Vulnerability 0.4% —
CVE-2023-36567 HIGH 7.5 microsoft windows_10_1507 Windows Deployment Services Information Disclosure Vulnerability 2.0% —
CVE-2023-36566 MED 6.5 microsoft common_data_model_sdk Microsoft Common Data Model SDK Denial of Service Vulnerability 2.8% —
CVE-2023-36565 HIGH 7.0 microsoft 365_copilot Microsoft Office Graphics Elevation of Privilege Vulnerability 0.4% —
CVE-2023-36564 MED 6.5 microsoft windows_10_1507 Windows Search Security Feature Bypass Vulnerability 1.3% —
CVE-2023-36562 HIGH 7.1 microsoft edge_chromium Microsoft Edge (Chromium-based) Elevation of Privilege Vulnerability 1.0% —
CVE-2023-36561 HIGH 7.3 microsoft azure_devops_server Azure DevOps Server Elevation of Privilege Vulnerability 0.9% —
CVE-2023-36560 HIGH 8.8 microsoft .net_framework ASP.NET Security Feature Bypass Vulnerability 2.9% —
CVE-2023-36559 MED 4.2 microsoft edge_chromium Microsoft Edge (Chromium-based) Spoofing Vulnerability 0.8% —
CVE-2023-36558 MED 6.2 microsoft .net ASP.NET Core Security Feature Bypass Vulnerability 1.1% —
CVE-2023-36557 HIGH 7.8 microsoft windows_10_1507 PrintHTML API Remote Code Execution Vulnerability 1.0% —
CVE-2023-36556 HIGH 8.8 fortinet fortimail An incorrect authorization vulnerability [CWE-863] in FortiMail webmail version 7.2.0 through 7.2.2, version 7.0.0 through 7.0.5 and below 6.4.7 allows an authenticated attacker to login on other users accounts from the same web domain via crafted HTTP or HTTP 0.8% —
CVE-2023-36555 LOW 3.9 fortinet fortios An improper neutralization of script-related html tags in a web page (basic xss) in Fortinet FortiOS 7.2.0 - 7.2.4 allows an attacker to execute unauthorized code or commands via the SAML and Security Fabric components. 0.3% —
CVE-2023-36554 HIGH 8.1 fortinet fortimanager A improper access control in Fortinet FortiManager version 7.4.0, version 7.2.0 through 7.2.3, version 7.0.0 through 7.0.10, version 6.4.0 through 6.4.13, 6.2 all versions allows attacker to execute unauthorized code or commands via specially crafted HTTP requ 0.8% —
CVE-2023-36553 CRIT 9.8 fortinet fortisiem A improper neutralization of special elements used in an os command ('os command injection') in Fortinet FortiSIEM version 5.4.0 and 5.3.0 through 5.3.3 and 5.2.5 through 5.2.8 and 5.2.1 through 5.2.2 and 5.1.0 through 5.1.3 and 5.0.0 through 5.0.1 and 4.10.0 1.9% —