IT
58.639 CVE tracked
797 Exploited now
188 Used by ransomware
Last sync

CVE Tracker

58.639 CVE

Ten vendors followed by CPE identifier, not by keyword: a CVE appears here once NVD says which products it affects — usually a few days after it is published.

CVE Tracker
Identifier Severity, sort descending Product and flaw EPSS, sorted descending In KEV since, sort descending
CVE-2020-0685 HIGH 7.8 microsoft windows_10 An elevation of privilege vulnerability exists when Windows improperly handles COM object creation, aka 'Windows COM Server Elevation of Privilege Vulnerability'. 0.9% —
CVE-2020-0682 HIGH 7.8 microsoft windows_10 An elevation of privilege vulnerability exists in the way that the Windows Function Discovery Service handles objects in memory, aka 'Windows Function Discovery Service Elevation of Privilege Vulnerability'. This CVE ID is unique from CVE-2020-0679, CVE-2020-0 0.9% —
CVE-2020-0678 HIGH 7.8 microsoft windows_10 An elevation of privilege vulnerability exists when Windows Error Reporting manager improperly handles hard links, aka 'Windows Error Reporting Manager Elevation of Privilege Vulnerability'. 0.9% —
CVE-2013-3694 MED 6.8 blackberry blackberry_link BlackBerry Link before 1.2.1.31 on Windows and before 1.1.1 build 39 on Mac OS X does not require authentication for remote file-access folders, which allows remote attackers to read or create arbitrary files via IPv6 WebDAV requests, as demonstrated by a CSRF 0.9% —
CVE-2026-80096 HIGH 8.8 microsoft windows_10_1607 Out-of-bounds read in Windows Remote Desktop Services allows an authorized attacker to elevate privileges over a network. 0.9% —
CVE-2026-78456 HIGH 8.8 microsoft sql_server_2022 Heap-based buffer overflow in SQL Server allows an authorized attacker to execute code over a network. 0.9% —
CVE-2026-77481 HIGH 8.8 microsoft sql_server_2017 Heap-based buffer overflow in SQL Server allows an authorized attacker to execute code over a network. 0.9% —
CVE-2026-73012 HIGH 8.8 microsoft windows_10_1607 Heap-based buffer overflow in Windows Management Services allows an authorized attacker to elevate privileges over a network. 0.9% —
CVE-2026-72959 HIGH 8.8 microsoft windows_10_1607 Remote Code Execution in Windows Routing and Remote Access Service (RRAS) allows attacker to gain an unauthorized access to victim's machine 0.9% —
CVE-2026-71352 HIGH 8.8 microsoft windows_10_1607 Integer underflow (wrap or wraparound) in Windows Remote Access Connection Manager allows an authorized attacker to execute code over a network. 0.9% —
CVE-2026-71336 HIGH 8.8 microsoft windows_10_1607 Integer overflow or wraparound in Windows Work Folder Service allows an authorized attacker to execute code over a network. 0.9% —
CVE-2026-69729 HIGH 8.8 microsoft windows_11_24h2 Heap-based buffer overflow in Windows Credential Providers allows an authorized attacker to execute code over a network. 0.9% —
CVE-2026-69712 HIGH 8.8 microsoft windows_server_2012 Use after free in Windows Key Distribution Center allows an authorized attacker to execute code over a network. 0.9% —
CVE-2026-69628 HIGH 8.8 microsoft windows_10_1607 Heap-based buffer overflow in Windows iSCSI allows an authorized attacker to execute code over a network. 0.9% —
CVE-2026-69551 HIGH 8.8 microsoft windows_10_1607 Use after free in Windows DNS allows an authorized attacker to execute code over a network. 0.9% —
CVE-2026-69547 HIGH 8.8 microsoft windows_10_1607 Heap-based buffer overflow in Windows DHCP Server allows an authorized attacker to execute code over a network. 0.9% —
CVE-2026-69485 HIGH 8.8 microsoft windows_10_1607 Use of uninitialized resource in Remote Desktop Client allows an authorized attacker to execute code over a network. 0.9% —
CVE-2026-69464 HIGH 8.8 microsoft sharepoint_server Execution with unnecessary privileges in Microsoft Office SharePoint allows an authorized attacker to elevate privileges over a network. 0.9% —
CVE-2026-69355 HIGH 8.8 microsoft exchange_server External control of file name or path in Microsoft Exchange Server allows an authorized attacker to execute code over a network. 0.9% —
CVE-2026-68786 HIGH 8.8 microsoft sql_server_2017 Heap-based buffer overflow in SQL Server allows an authorized attacker to execute code over a network. 0.9% —
CVE-2026-68775 HIGH 8.8 microsoft sql_server_2017 Heap-based buffer overflow in SQL Server allows an authorized attacker to execute code over a network. 0.9% —
CVE-2026-67642 HIGH 8.8 microsoft sql_server_2025 Heap-based buffer overflow in SQL Server allows an authorized attacker to execute code over a network. 0.9% —
CVE-2026-67639 HIGH 8.8 microsoft sql_server_2017 Heap-based buffer overflow in SQL Server allows an authorized attacker to execute code over a network. 0.9% —
CVE-2026-67638 HIGH 8.8 microsoft sql_server_2025 Heap-based buffer overflow in SQL Server allows an authorized attacker to execute code over a network. 0.9% —
CVE-2026-67388 HIGH 8.8 microsoft sql_server_2017 Heap-based buffer overflow in SQL Server allows an authorized attacker to execute code over a network. 0.9% —