IT
58.507 CVE tracked
796 Exploited now
188 Used by ransomware
Last sync

CVE Tracker

58.507 CVE

Ten vendors followed by CPE identifier, not by keyword: a CVE appears here once NVD says which products it affects — usually a few days after it is published.

CVE Tracker
Identifier Severity, sorted ascending Product and flaw EPSS, sort descending In KEV since, sort descending
CVE-2021-32466 HIGH 7.0 trendmicro housecall_for_home_networks An uncontrolled search path element privilege escalation vulnerability in Trend Micro HouseCall for Home Networks version 5.3.1225 and below could allow an attacker to escalate privileges by placing a custom crafted file in a specific directory to load a malic 0.5% —
CVE-2021-32399 HIGH 7.0 debian debian_linux net/bluetooth/hci_request.c in the Linux kernel through 5.12.2 has a race condition for removal of the HCI controller. 0.7% —
CVE-2021-31440 HIGH 7.0 linux linux_kernel This vulnerability allows local attackers to escalate privileges on affected installations of Linux Kernel 5.11.15. An attacker must first obtain the ability to execute low-privileged code on the target system in order to exploit this vulnerability. The specif 1.8% —
CVE-2021-29645 HIGH 7.0 hitachi it_operations_director Hitachi JP1/IT Desktop Management 2 Agent 9 through 12 calls the SendMessageTimeoutW API with arbitrary arguments via a local pipe, leading to a local privilege escalation vulnerability. An attacker who exploits this issue could execute arbitrary code on the l 0.2% —
CVE-2021-29221 HIGH 7.0 erlang erlang\/otp A local privilege escalation vulnerability was discovered in Erlang/OTP prior to version 23.2.3. By adding files to an existing installation's directory, a local attacker could hijack accounts of other users running Erlang programs or possibly coerce a service 0.6% —
CVE-2021-28477 HIGH 7.0 microsoft visual_studio_code Visual Studio Code Remote Code Execution Vulnerability 2.3% —
CVE-2021-28440 HIGH 7.0 microsoft windows_10 Windows Installer Elevation of Privilege Vulnerability 0.6% —
CVE-2021-27893 HIGH 7.0 ssh tectia_client SSH Tectia Client and Server before 6.4.19 on Windows allow local privilege escalation in nonstandard conditions. ConnectSecure on Windows is affected. 0.4% —
CVE-2021-27072 HIGH 7.0 microsoft windows_10 Win32k Elevation of Privilege Vulnerability 0.6% —
CVE-2021-27055 HIGH 7.0 microsoft 365_apps Microsoft Visio Security Feature Bypass Vulnerability 2.5% —
CVE-2021-26873 HIGH 7.0 microsoft windows_10 Windows User Profile Service Elevation of Privilege Vulnerability 1.1% —
CVE-2021-26863 HIGH 7.0 microsoft windows_10 Windows Win32k Elevation of Privilege Vulnerability 11.8% —
CVE-2021-26862 HIGH 7.0 microsoft windows_10 Windows Installer Elevation of Privilege Vulnerability 1.2% —
CVE-2021-26708 HIGH 7.0 linux linux_kernel A local privilege escalation was discovered in the Linux kernel before 5.10.13. Multiple race conditions in the AF_VSOCK implementation are caused by wrong locking in net/vmw_vsock/af_vsock.c. The race conditions were implicitly introduced in the commits that 1.6% —
CVE-2021-26442 HIGH 7.0 microsoft windows_10 Windows HTTP.sys Elevation of Privilege Vulnerability 0.8% —
CVE-2021-26426 HIGH 7.0 microsoft windows_10 Windows User Account Profile Picture Elevation of Privilege Vulnerability 0.7% —
CVE-2021-25329 HIGH 7.0 apache tomcat The fix for CVE-2020-9484 was incomplete. When using Apache Tomcat 10.0.0-M1 to 10.0.0, 9.0.0.M1 to 9.0.41, 8.5.0 to 8.5.61 or 7.0.0. to 7.0.107 with a configuration edge case that was highly unlikely to be used, the Tomcat instance was still vulnerable to CVE 9.5% —
CVE-2021-24095 HIGH 7.0 microsoft windows_10 DirectX Elevation of Privilege Vulnerability 0.8% —
CVE-2021-21011 HIGH 7.0 adobe captivate Adobe Captivate 2019 version 11.5.1.499 (and earlier) is affected by an uncontrolled search path element vulnerability that could lead to privilege escalation. An attacker with permissions to write to the file system could leverage this vulnerability to escala 2.0% —
CVE-2021-21010 HIGH 7.0 adobe incopy InCopy version 15.1.1 (and earlier) for Windows is affected by an uncontrolled search path vulnerability that could result in arbitrary code execution in the context of the current user. Exploitation of this issue requires user interaction in that a victim mus 2.5% —
CVE-2021-21008 HIGH 7.0 adobe animate Adobe Animate version 21.0 (and earlier) is affected by an uncontrolled search path element that could result in arbitrary code execution in the context of the current user. Exploitation of this issue requires user interaction in that a victim must open a mali 2.4% —
CVE-2021-21007 HIGH 7.0 adobe illustrator Adobe Illustrator version 25.0 (and earlier) is affected by an uncontrolled search path element that could result in arbitrary code execution in the context of the current user. Exploitation of this issue requires user interaction in that a victim must open a 2.2% —
CVE-2021-1709 HIGH 7.0 microsoft windows_10 Windows Win32k Elevation of Privilege Vulnerability 0.8% —
CVE-2021-1682 HIGH 7.0 microsoft windows_10 Windows Kernel Elevation of Privilege Vulnerability 0.6% —
CVE-2021-1639 HIGH 7.0 microsoft visual_studio_2017 Visual Studio Code Remote Code Execution Vulnerability 2.1% —