58.414 CVE tracked
792 Exploited now
188 Used by ransomware
Last sync
CVE Tracker
58.414 CVE
Ten vendors followed by CPE identifier, not by keyword: a CVE appears here once NVD says which products it affects — usually a few days after it is published.
| Identifier | Severity, sorted descending | Product and flaw | EPSS, sort descending | In KEV since, sort descending |
|---|---|---|---|---|
| CVE-2020-1749 | HIGH 7.5 | linux linux_kernel A flaw was found in the Linux kernel's implementation of some networking protocols in IPsec, such as VXLAN and GENEVE tunnels over IPv6. When an encrypted tunnel is created between two hosts, the kernel isn't correctly routing tunneled data over the encrypted | 1.2% | — |
| CVE-2020-17096 | HIGH 7.5 | microsoft windows_10 Windows NTFS Remote Code Execution Vulnerability | 19.5% | — |
| CVE-2020-17058 | HIGH 7.5 | microsoft edge Microsoft Browser Memory Corruption Vulnerability | 3.1% | — |
| CVE-2020-17053 | HIGH 7.5 | microsoft internet_explorer Internet Explorer Memory Corruption Vulnerability | 3.2% | — |
| CVE-2020-17052 | HIGH 7.5 | microsoft edge Scripting Engine Memory Corruption Vulnerability | 2.7% | — |
| CVE-2020-17047 | HIGH 7.5 | microsoft windows_10 Windows Network File System Denial of Service Vulnerability | 27.1% | — |
| CVE-2020-16992 | HIGH 7.5 | microsoft azure_sphere Azure Sphere Elevation of Privilege Vulnerability | 1.4% | — |
| CVE-2020-16947 | HIGH 7.5 | microsoft 365_apps <p>A remote code execution vulnerability exists in Microsoft Outlook software when the software fails to properly handle objects in memory. An attacker who successfully exploited the vulnerability could run arbitrary code in the context of the targeted user. I | 33.8% | — |
| CVE-2020-16927 | HIGH 7.5 | microsoft windows_10 <p>A denial of service vulnerability exists in Remote Desktop Protocol (RDP) when an attacker connects to the target system using RDP and sends specially crafted requests. An attacker who successfully exploited this vulnerability could cause the RDP service on | 5.9% | — |
| CVE-2020-16899 | HIGH 7.5 | microsoft windows_10 <p>A denial of service vulnerability exists when the Windows TCP/IP stack improperly handles ICMPv6 Router Advertisement packets. An attacker who successfully exploited this vulnerability could cause a target system to stop responding.</p> <p>To exploit this v | 13.5% | — |
| CVE-2020-16896 | HIGH 7.5 | microsoft windows_10 <p>An information disclosure vulnerability exists in Remote Desktop Protocol (RDP) when an attacker connects to the target system using RDP and sends specially crafted requests. An attacker who successfully exploited this vulnerability could obtain information | 12.6% | — |
| CVE-2020-16863 | HIGH 7.5 | microsoft windows_7 <p>A denial of service vulnerability exists in Windows Remote Desktop Service when an attacker connects to the target system using RDP and sends specially crafted requests. An attacker who successfully exploited this vulnerability could cause the Remote Deskto | 5.8% | — |
| CVE-2020-1686 | HIGH 7.5 | juniper junos On Juniper Networks Junos OS devices, receipt of a malformed IPv6 packet may cause the system to crash and restart (vmcore). This issue can be trigged by a malformed IPv6 packet destined to the Routing Engine. An attacker can repeatedly send the offending pack | 1.4% | — |
| CVE-2020-1684 | HIGH 7.5 | juniper junos On Juniper Networks SRX Series configured with application identification inspection enabled, receipt of specific HTTP traffic can cause high CPU load utilization, which could lead to traffic interruption. Application identification is enabled by default and i | 1.1% | — |
| CVE-2020-1683 | HIGH 7.5 | juniper junos On Juniper Networks Junos OS devices, a specific SNMP OID poll causes a memory leak which over time leads to a kernel crash (vmcore). Prior to the kernel crash other processes might be impacted, such as failure to establish SSH connection to the device. The ad | 1.1% | — |
| CVE-2020-1679 | HIGH 7.5 | juniper junos On Juniper Networks PTX and QFX Series devices with packet sampling configured using tunnel-observation mpls-over-udp, sampling of a malformed packet can cause the Kernel Routing Table (KRT) queue to become stuck. KRT is the module within the Routing Process D | 1.2% | — |
| CVE-2020-1672 | HIGH 7.5 | juniper junos On Juniper Networks Junos OS devices configured with DHCPv6 relay enabled, receipt of a specific DHCPv6 packet might crash the jdhcpd daemon. The jdhcpd daemon automatically restarts without intervention, but continuous receipt of specific crafted DHCP message | 1.0% | — |
| CVE-2020-1671 | HIGH 7.5 | juniper junos On Juniper Networks Junos OS platforms configured as DHCPv6 local server or DHCPv6 Relay Agent, Juniper Networks Dynamic Host Configuration Protocol Daemon (JDHCPD) process might crash with a core dump if a malformed DHCPv6 packet is received, resulting with t | 1.3% | — |
| CVE-2020-1662 | HIGH 7.5 | juniper junos On Juniper Networks Junos OS and Junos OS Evolved devices, BGP session flapping can lead to a routing process daemon (RPD) crash and restart, limiting the attack surface to configured BGP peers. This issue only affects devices with BGP damping in combination w | 1.3% | — |
| CVE-2020-1657 | HIGH 7.5 | juniper junos On SRX Series devices, a vulnerability in the key-management-daemon (kmd) daemon of Juniper Networks Junos OS allows an attacker to spoof packets targeted to IPSec peers before a security association (SA) is established thereby causing a failure to set up the | 1.3% | — |
| CVE-2020-1653 | HIGH 7.5 | juniper junos On Juniper Networks Junos OS devices, a stream of TCP packets sent to the Routing Engine (RE) may cause mbuf leak which can lead to Flexible PIC Concentrator (FPC) crash or the system to crash and restart (vmcore). This issue can be trigged by IPv4 or IPv6 and | 1.6% | — |
| CVE-2020-1650 | HIGH 7.5 | juniper junos On Juniper Networks Junos MX Series with service card configured, receipt of a stream of specific packets may crash the MS-PIC component on MS-MIC or MS-MPC. By continuously sending these specific packets, an attacker can repeatedly bring down MS-PIC on MS-MIC | 1.0% | — |
| CVE-2020-1649 | HIGH 7.5 | juniper junos When a device running Juniper Networks Junos OS with MPC7, MPC8, or MPC9 line cards installed and the system is configured for inline IP reassembly, used by L2TP, MAP-E, GRE, and IPIP, the packet forwarding engine (PFE) will become disabled upon receipt of sma | 1.1% | — |
| CVE-2020-1648 | HIGH 7.5 | juniper junos On Juniper Networks Junos OS and Junos OS Evolved devices, processing a specific BGP packet can lead to a routing process daemon (RPD) crash and restart. This issue can occur even before the BGP session with the peer is established. Repeated receipt of this sp | 1.3% | — |
| CVE-2020-1646 | HIGH 7.5 | juniper junos On Juniper Networks Junos OS and Junos OS Evolved devices, processing a specific UPDATE for an EBGP peer can lead to a routing process daemon (RPD) crash and restart. This issue occurs only when the device is receiving and processing the BGP UPDATE for an EBGP | 1.0% | — |