58.046 CVE seguite
788 Sfruttate ora
188 Usate dai ransomware
Ultima sincronia
CVE Tracker
58.046 CVE
Dieci fornitori seguiti per identificativo CPE, non per parola chiave: una CVE compare qui quando NVD dichiara quali prodotti tocca, di solito qualche giorno dopo la pubblicazione.
| Identificativo | Gravità, ordina dal più alto | Prodotto e difetto | EPSS, ordina dal più alto | In KEV dal, ordinato dal più alto |
|---|---|---|---|---|
| CVE-2024-49065 | MED 5.5 | microsoft 365_apps Microsoft Office Remote Code Execution Vulnerability | 1,1% | — |
| CVE-2024-49064 | MED 6.5 | microsoft sharepoint_server Microsoft SharePoint Information Disclosure Vulnerability | 2,5% | — |
| CVE-2024-49063 | HIGH 8.4 | microsoft muzic Microsoft/Muzic Remote Code Execution Vulnerability | 1,7% | — |
| CVE-2024-49062 | MED 6.5 | microsoft sharepoint_server Microsoft SharePoint Information Disclosure Vulnerability | 3,2% | — |
| CVE-2024-49060 | HIGH 8.8 | microsoft azure_stack_hci Azure Stack HCI Elevation of Privilege Vulnerability | 0,4% | — |
| CVE-2024-49059 | HIGH 7.0 | microsoft 365_apps Microsoft Office Elevation of Privilege Vulnerability | 0,4% | — |
| CVE-2024-49057 | HIGH 8.1 | microsoft defender_for_endpoint Microsoft Defender for Endpoint on Android Spoofing Vulnerability | 1,7% | — |
| CVE-2024-49056 | HIGH 7.3 | microsoft airlift_microsoft_com Authentication bypass by assumed-immutable data on airlift.microsoft.com allows an authorized attacker to elevate privileges over a network. | 1,0% | — |
| CVE-2024-49054 | MED 4.3 | microsoft edge_chromium Microsoft Edge (Chromium-based) Spoofing Vulnerability | 0,6% | — |
| CVE-2024-49053 | HIGH 7.6 | microsoft dynamics_365_sales Microsoft Dynamics 365 Sales Spoofing Vulnerability | 0,6% | — |
| CVE-2024-49052 | HIGH 8.2 | microsoft azure_functions Missing authentication for critical function in Microsoft Azure PolicyWatch allows an unauthorized attacker to elevate privileges over a network. | 0,7% | — |
| CVE-2024-49051 | HIGH 7.8 | microsoft pc_manager Microsoft PC Manager Elevation of Privilege Vulnerability | 0,6% | — |
| CVE-2024-49050 | HIGH 8.8 | microsoft python Visual Studio Code Python Extension Remote Code Execution Vulnerability | 1,2% | — |
| CVE-2024-49049 | HIGH 7.1 | microsoft remote_ssh Visual Studio Code Remote Extension Elevation of Privilege Vulnerability | 0,4% | — |
| CVE-2024-49048 | HIGH 8.1 | microsoft torchgeo TorchGeo Remote Code Execution Vulnerability | 1,2% | — |
| CVE-2024-49046 | HIGH 7.8 | microsoft windows_10_1507 Windows Win32 Kernel Subsystem Elevation of Privilege Vulnerability | 0,4% | — |
| CVE-2024-49044 | MED 6.7 | microsoft visual_studio_2022 Visual Studio Elevation of Privilege Vulnerability | 0,8% | — |
| CVE-2024-49043 | HIGH 7.8 | microsoft sql_server_2016 Microsoft.SqlServer.XEvent.Configuration.dll Remote Code Execution Vulnerability | 0,6% | — |
| CVE-2024-49042 | HIGH 7.2 | microsoft azure_database_for_postgresql_flexible_server Azure Database for PostgreSQL Flexible Server Extension Elevation of Privilege Vulnerability | 1,2% | — |
| CVE-2024-49041 | MED 4.3 | microsoft edge_chromium Microsoft Edge (Chromium-based) Spoofing Vulnerability | 1,0% | — |
| CVE-2024-49040 | HIGH 7.5 | microsoft exchange_server Microsoft Exchange Server Spoofing Vulnerability | 7,5% | — |
| CVE-2024-49038 | CRIT 9.3 | microsoft copilot_studio Improper neutralization of input during web page generation ('Cross-site Scripting') in Copilot Studio by an unauthorized attacker leads to elevation of privilege over a network. | 1,0% | — |
| CVE-2024-49033 | HIGH 7.5 | microsoft 365_apps Microsoft Word Security Feature Bypass Vulnerability | 2,1% | — |
| CVE-2024-49032 | HIGH 7.8 | microsoft 365_apps Microsoft Office Graphics Remote Code Execution Vulnerability | 0,9% | — |
| CVE-2024-49031 | HIGH 7.8 | microsoft 365_apps Microsoft Office Graphics Remote Code Execution Vulnerability | 0,8% | — |