EN
58.507 CVE seguite
796 Sfruttate ora
188 Usate dai ransomware
Ultima sincronia

CVE Tracker

58.507 CVE

Dieci fornitori seguiti per identificativo CPE, non per parola chiave: una CVE compare qui quando NVD dichiara quali prodotti tocca, di solito qualche giorno dopo la pubblicazione.

CVE Tracker
Identificativo Gravità, ordina dal più alto Prodotto e difetto EPSS, ordinato dal più alto In KEV dal, ordina dal più alto
CVE-2022-28691 HIGH 7.5 f5 big-ip_access_policy_manager On F5 BIG-IP 16.1.x versions prior to 16.1.2.2, 15.1.x versions prior to 15.1.5, 14.1.x versions prior to 14.1.4.6, and 13.1.x versions prior to 13.1.5, when a Real Time Streaming Protocol (RTSP) profile is configured on a virtual server, undisclosed traffic c 0,9% —
CVE-2022-27189 HIGH 7.5 f5 big-ip_access_policy_manager On F5 BIG-IP 16.1.x versions prior to 16.1.2.2, 15.1.x versions prior to 15.1.5.1, 14.1.x versions prior to 14.1.4.6, 13.1.x versions prior to 13.1.5, and all versions of 12.1.x and 11.6.x, when an Internet Content Adaptation Protocol (ICAP) profile is configu 0,9% —
CVE-2022-23011 HIGH 7.5 f5 big-ip_access_policy_manager On certain hardware BIG-IP platforms, in version 15.1.x before 15.1.4 and 14.1.x before 14.1.3, virtual servers may stop responding while processing TCP traffic due to an issue in the SYN Cookie Protection feature. Note: Software versions which have reached En 0,9% —
CVE-2022-22180 HIGH 7.5 juniper junos An Improper Check for Unusual or Exceptional Conditions vulnerability in the processing of specific IPv6 packets on certain EX Series devices may lead to exhaustion of DMA memory causing a Denial of Service (DoS). Over time, exploitation of this vulnerability 0,9% —
CVE-2022-22174 HIGH 7.5 juniper junos A vulnerability in the processing of inbound IPv6 packets in Juniper Networks Junos OS on QFX5000 Series and EX4600 switches may cause the memory to not be freed, leading to a packet DMA memory leak, and eventual Denial of Service (DoS) condition. Once the con 0,9% —
CVE-2022-22171 HIGH 7.5 juniper junos An Improper Check for Unusual or Exceptional Conditions vulnerability in the Packet Forwarding Engine (PFE) of Juniper Networks Junos OS allows an unauthenticated networked attacker to cause a Denial of Service (DoS) by sending specific packets over VXLAN whic 0,9% —
CVE-2022-22170 HIGH 7.5 juniper junos A Missing Release of Resource after Effective Lifetime vulnerability in the Packet Forwarding Engine (PFE) of Juniper Networks Junos OS allows an unauthenticated networked attacker to cause a Denial of Service (DoS) by sending specific packets over VXLAN which 0,9% —
CVE-2022-22153 HIGH 7.5 juniper junos An Insufficient Algorithmic Complexity combined with an Allocation of Resources Without Limits or Throttling vulnerability in the flow processing daemon (flowd) of Juniper Networks Junos OS on SRX Series and MX Series with SPC3 allows an unauthenticated networ 0,9% —
CVE-2022-20914 MED 4.9 cisco identity_services_engine A vulnerability in the External RESTful Services (ERS) API of Cisco Identity Services Engine (ISE) Software could allow an authenticated, remote attacker to obtain sensitive information. This vulnerability is due to excessive verbosity in a specific REST API o 0,9% —
CVE-2021-42760 HIGH 8.8 fortinet fortiwlm A improper neutralization of special elements used in an sql command ('sql injection') in Fortinet FortiWLM version 8.6.1 and below allows attacker to disclose sensitive information from DB tables via crafted requests. 0,9% —
CVE-2010-0705 HIGH 7.2 avast avast_antivirus_home Aavmker4.sys in avast! 4.8 through 4.8.1368.0 and 5.0 before 5.0.418.0 running on Windows 2000 and XP does not properly validate input to IOCTL 0xb2d60030, which allows local users to cause a denial of service (system crash) or execute arbitrary code to gain p 0,9% —
CVE-2026-21226 HIGH 7.5 microsoft azure_core_shared_client_library Deserialization of untrusted data in Azure Core shared client library for Python allows an authorized attacker to execute code over a network. 0,9% —
CVE-2026-20095 MED 6.5 cisco enterprise_nfv_infrastructure_software A vulnerability in the web-based management interface of Cisco IMC could allow an authenticated, remote attacker with admin-level privileges to perform command injection attacks on an affected system and execute arbitrary commands as the root user. Thi 0,9% —
CVE-2024-42447 CRIT 9.8 apache apache-airflow-providers-fab Insufficient Session Expiration vulnerability in Apache Airflow Providers FAB. This issue affects Apache Airflow Providers FAB: 1.2.1 (when used with Apache Airflow 2.9.3) and FAB 1.2.0 for all Airflow versions. The FAB provider prevented the user from loggin 0,9% —
CVE-2024-38234 MED 6.5 microsoft windows_10_1507 Windows Networking Denial of Service Vulnerability 0,9% —
CVE-2024-38171 HIGH 7.8 microsoft 365_apps Microsoft PowerPoint Remote Code Execution Vulnerability 0,9% —
CVE-2024-38058 MED 6.8 microsoft windows_10_1507 BitLocker Security Feature Bypass Vulnerability 0,9% —
CVE-2023-21793 HIGH 7.8 microsoft 3d_builder 3D Builder Remote Code Execution Vulnerability 0,9% —
CVE-2023-21791 HIGH 7.8 microsoft 3d_builder 3D Builder Remote Code Execution Vulnerability 0,9% —
CVE-2023-21790 HIGH 7.8 microsoft 3d_builder 3D Builder Remote Code Execution Vulnerability 0,9% —
CVE-2023-21789 HIGH 7.8 microsoft 3d_builder 3D Builder Remote Code Execution Vulnerability 0,9% —
CVE-2023-21788 HIGH 7.8 microsoft 3d_builder 3D Builder Remote Code Execution Vulnerability 0,9% —
CVE-2023-21787 HIGH 7.8 microsoft 3d_builder 3D Builder Remote Code Execution Vulnerability 0,9% —
CVE-2023-21786 HIGH 7.8 microsoft 3d_builder 3D Builder Remote Code Execution Vulnerability 0,9% —
CVE-2023-21785 HIGH 7.8 microsoft 3d_builder 3D Builder Remote Code Execution Vulnerability 0,9% —