58.306 CVE tracked
789 Exploited now
188 Used by ransomware
Last sync
CVE Tracker
58.306 CVE
Ten vendors followed by CPE identifier, not by keyword: a CVE appears here once NVD says which products it affects — usually a few days after it is published.
| Identifier | Severity, sorted ascending | Product and flaw | EPSS, sort descending | In KEV since, sort descending |
|---|---|---|---|---|
| CVE-2020-17138 | MED 5.5 | microsoft windows_10 Windows Error Reporting Information Disclosure Vulnerability | 1.1% | — |
| CVE-2020-17126 | MED 5.5 | microsoft 365_apps Microsoft Excel Information Disclosure Vulnerability | 1.1% | — |
| CVE-2020-17113 | MED 5.5 | microsoft windows_10 Windows Camera Codec Information Disclosure Vulnerability | 1.5% | — |
| CVE-2020-17102 | MED 5.5 | microsoft webp_image_extension WebP Image Extensions Information Disclosure Vulnerability | 1.2% | — |
| CVE-2020-17100 | MED 5.5 | microsoft visual_studio_2017 Visual Studio Tampering Vulnerability | 0.8% | — |
| CVE-2020-17098 | MED 5.5 | microsoft windows_10 Windows GDI+ Information Disclosure Vulnerability | 1.4% | — |
| CVE-2020-17094 | MED 5.5 | microsoft windows_10 Windows Error Reporting Information Disclosure Vulnerability | 1.4% | — |
| CVE-2020-17083 | MED 5.5 | microsoft exchange_server Microsoft Exchange Server Remote Code Execution Vulnerability | 12.0% | — |
| CVE-2020-17081 | MED 5.5 | microsoft raw_image_extension Microsoft Raw Image Extension Information Disclosure Vulnerability | 3.7% | — |
| CVE-2020-17071 | MED 5.5 | microsoft windows_10 Windows Delivery Optimization Information Disclosure Vulnerability | 1.1% | — |
| CVE-2020-17069 | MED 5.5 | microsoft windows_10 Windows NDIS Information Disclosure Vulnerability | 1.1% | — |
| CVE-2020-17056 | MED 5.5 | microsoft windows_10 Windows Network File System Information Disclosure Vulnerability | 1.3% | — |
| CVE-2020-17046 | MED 5.5 | microsoft windows_10 Windows Error Reporting Denial of Service Vulnerability | 1.5% | — |
| CVE-2020-17045 | MED 5.5 | microsoft windows_10 Windows KernelStream Information Disclosure Vulnerability | 1.4% | — |
| CVE-2020-17036 | MED 5.5 | microsoft windows_10 Windows Function Discovery SSDP Provider Information Disclosure Vulnerability | 1.4% | — |
| CVE-2020-17030 | MED 5.5 | microsoft windows_10 Windows MSCTF Server Information Disclosure Vulnerability | 1.4% | — |
| CVE-2020-17029 | MED 5.5 | microsoft windows_10 Windows Canonical Display Driver Information Disclosure Vulnerability | 1.4% | — |
| CVE-2020-17013 | MED 5.5 | microsoft windows_10 Win32k Information Disclosure Vulnerability | 1.3% | — |
| CVE-2020-17004 | MED 5.5 | microsoft windows_10 Windows Graphics Component Information Disclosure Vulnerability | 1.3% | — |
| CVE-2020-17000 | MED 5.5 | microsoft windows_10 Remote Desktop Protocol Client Information Disclosure Vulnerability | 1.3% | — |
| CVE-2020-16999 | MED 5.5 | microsoft windows_10 Windows WalletService Information Disclosure Vulnerability | 1.3% | — |
| CVE-2020-16938 | MED 5.5 | microsoft windows_10 <p>An information disclosure vulnerability exists when the Windows kernel improperly handles objects in memory. An attacker who successfully exploited this vulnerability could obtain information to further compromise the user’s system.</p> <p>To exploit this v | 2.3% | — |
| CVE-2020-16921 | MED 5.5 | microsoft windows_10 <p>An information disclosure vulnerability exists in Text Services Framework when it fails to properly handle objects in memory. An attacker who successfully exploited this vulnerability could potentially read data that was not intended to be disclosed. Note t | 1.3% | — |
| CVE-2020-16919 | MED 5.5 | microsoft windows_10 <p>An information disclosure vulnerability exists when the Windows Enterprise App Management Service improperly handles certain file operations. An attacker who successfully exploited this vulnerability could read arbitrary files.</p> <p>An attacker with unpri | 1.3% | — |
| CVE-2020-16914 | MED 5.5 | microsoft windows_10 <p>An information disclosure vulnerability exists in the way that the Windows Graphics Device Interface Plus (GDI+) handles objects in memory, allowing an attacker to retrieve information from a targeted system. By itself, the information disclosure does not a | 1.4% | — |