58.306 CVE tracked
790 Exploited now
188 Used by ransomware
Last sync
CVE Tracker
58.306 CVE
Ten vendors followed by CPE identifier, not by keyword: a CVE appears here once NVD says which products it affects — usually a few days after it is published.
| Identifier | Severity, sorted descending | Product and flaw | EPSS, sort descending | In KEV since, sort descending |
|---|---|---|---|---|
| CVE-2024-21598 | HIGH 7.5 | juniper junos An Improper Validation of Syntactic Correctness of Input vulnerability in the Routing Protocol Daemon (rpd) of Juniper Networks Junos OS and Junos OS Evolved allows a network-based, unauthenticated attacker to cause a Denial of Service (DoS). If a BGP update | 0.6% | — |
| CVE-2024-21595 | HIGH 7.5 | juniper junos An Improper Validation of Syntactic Correctness of Input vulnerability in the Packet Forwarding Engine (PFE) of Juniper Networks Junos OS allows a network-based, unauthenticated attacker to cause a Denial of Service (DoS). If an attacker sends high rate of s | 0.5% | — |
| CVE-2024-21586 | HIGH 7.5 | juniper junos An Improper Check for Unusual or Exceptional Conditions vulnerability in the Packet Forwarding Engine (PFE) of Juniper Networks Junos OS on SRX Series and NFX Series allows an unauthenticated, network-based attacker to cause a Denial-of-Service (DoS). If an a | 0.5% | — |
| CVE-2024-21438 | HIGH 7.5 | microsoft windows_10_1507 Microsoft AllJoyn API Denial of Service Vulnerability | 2.7% | — |
| CVE-2024-21427 | HIGH 7.5 | microsoft windows_server_2012 Windows Kerberos Security Feature Bypass Vulnerability | 1.5% | — |
| CVE-2024-21421 | HIGH 7.5 | microsoft azure_software_development_kit Azure SDK Spoofing Vulnerability | 1.8% | — |
| CVE-2024-21406 | HIGH 7.5 | microsoft windows_10_1607 Windows Printing Service Spoofing Vulnerability | 0.9% | — |
| CVE-2024-21404 | HIGH 7.5 | microsoft asp.net_core .NET Denial of Service Vulnerability | 2.7% | — |
| CVE-2024-21392 | HIGH 7.5 | microsoft .net .NET and Visual Studio Denial of Service Vulnerability | 3.1% | — |
| CVE-2024-21386 | HIGH 7.5 | microsoft asp.net_core .NET Denial of Service Vulnerability | 2.4% | — |
| CVE-2024-21348 | HIGH 7.5 | microsoft windows_10_1507 Internet Connection Sharing (ICS) Denial of Service Vulnerability | 2.2% | — |
| CVE-2024-21347 | HIGH 7.5 | microsoft windows_10_1507 Microsoft ODBC Driver Remote Code Execution Vulnerability | 1.4% | — |
| CVE-2024-21342 | HIGH 7.5 | microsoft windows_11_22h2 Windows DNS Client Denial of Service Vulnerability | 2.5% | — |
| CVE-2024-21312 | HIGH 7.5 | microsoft .net_framework .NET Framework Denial of Service Vulnerability | 3.6% | — |
| CVE-2024-21307 | HIGH 7.5 | microsoft windows_10_1507 Remote Desktop Client Remote Code Execution Vulnerability | 2.0% | — |
| CVE-2024-20700 | HIGH 7.5 | microsoft windows_10_1809 Windows Hyper-V Remote Code Execution Vulnerability | 4.0% | — |
| CVE-2024-20687 | HIGH 7.5 | microsoft windows_10_1507 Microsoft AllJoyn API Denial of Service Vulnerability | 2.5% | — |
| CVE-2024-20672 | HIGH 7.5 | microsoft .net .NET Denial of Service Vulnerability | 2.9% | — |
| CVE-2024-20667 | HIGH 7.5 | microsoft azure_devops_server Azure DevOps Server Remote Code Execution Vulnerability | 1.4% | — |
| CVE-2024-20661 | HIGH 7.5 | microsoft windows_10_1507 Microsoft Message Queuing (MSMQ) Denial of Service Vulnerability | 2.8% | — |
| CVE-2024-20484 | HIGH 7.5 | cisco enterprise_chat_and_email A vulnerability in the External Agent Assignment Service (EAAS) feature of Cisco Enterprise Chat and Email (ECE) could allow an unauthenticated, remote attacker to cause a denial of service (DoS) condition on an affected device. This vulnerability is due to | 0.6% | — |
| CVE-2024-20451 | HIGH 7.5 | cisco spa_301_firmware Multiple vulnerabilities in the web-based management interface of Cisco Small Business SPA300 Series IP Phones and Cisco Small Business SPA500 Series IP Phones could allow an unauthenticated, remote attacker to cause an affected device to reload unexpectedly. | 0.8% | — |
| CVE-2024-20440 | HIGH 7.5 | cisco smart_license_utility A vulnerability in Cisco Smart Licensing Utility could allow an unauthenticated, remote attacker to access sensitive information. This vulnerability is due to excessive verbosity in a debug log file. An attacker could exploit this vulnerability by sending a | 51.9% | — |
| CVE-2024-20378 | HIGH 7.5 | cisco ip_phone_6821_with_multiplatform_firmware A vulnerability in the web-based management interface of Cisco IP Phone firmware could allow an unauthenticated, remote attacker to retrieve sensitive information from an affected device. This vulnerability is due to a lack of authentication for specific | 0.8% | — |
| CVE-2024-20376 | HIGH 7.5 | cisco ip_phone_6821_with_multiplatform_firmware A vulnerability in the web-based management interface of Cisco IP Phone firmware could allow an unauthenticated, remote attacker to cause an affected device to reload, resulting in a DoS condition. This vulnerability is due to insufficient validation of u | 0.9% | — |