58.535 CVE seguite
797 Sfruttate ora
188 Usate dai ransomware
Ultima sincronia
CVE Tracker
58.535 CVE
Dieci fornitori seguiti per identificativo CPE, non per parola chiave: una CVE compare qui quando NVD dichiara quali prodotti tocca, di solito qualche giorno dopo la pubblicazione.
| Identificativo | Gravità, ordina dal più alto | Prodotto e difetto | EPSS, ordinato dal più basso | In KEV dal, ordina dal più alto |
|---|---|---|---|---|
| CVE-2025-49201 | HIGH 8.1 | fortinet fortipam A weak authentication vulnerability in Fortinet FortiPAM 1.5.0, FortiPAM 1.4.0 through 1.4.2, FortiPAM 1.3 all versions, FortiPAM 1.2 all versions, FortiPAM 1.1 all versions, FortiPAM 1.0 all versions, FortiSwitchManager 7.2.0 through 7.2.4 allows attacker to | 0,6% | — |
| CVE-2024-50046 | CRIT 9.8 | linux linux_kernel In the Linux kernel, the following vulnerability has been resolved: NFSv4: Prevent NULL-pointer dereference in nfs42_complete_copies() On the node of an NFS client, some files saved in the mountpoint of the NFS server were copied to another location of the s | 0,6% | — |
| CVE-2024-47139 | MED 6.8 | f5 big-iq_centralized_management A stored cross-site scripting (XSS) vulnerability exists in an undisclosed page of the BIG-IQ Configuration utility that allows an attacker with the Administrator role to run JavaScript in the context of the currently logged-in user. Note: Software versio | 0,6% | — |
| CVE-2024-30071 | MED 4.7 | microsoft windows_10_1507 Windows Remote Access Connection Manager Information Disclosure Vulnerability | 0,6% | — |
| CVE-2024-26239 | HIGH 7.8 | microsoft windows_10_1507 Windows Telephony Server Elevation of Privilege Vulnerability | 0,6% | — |
| CVE-2024-0083 | MED 6.5 | nvidia chatrtx NVIDIA ChatRTX for Windows contains a vulnerability in the UI, where an attacker can cause a cross-site scripting error by network by running malicious scripts in users' browsers. A successful exploit of this vulnerability might lead to code execution, denial | 0,6% | — |
| CVE-2023-23411 | MED 6.5 | microsoft windows_10_1507 Windows Hyper-V Denial of Service Vulnerability | 0,6% | — |
| CVE-2023-21678 | HIGH 7.8 | microsoft windows_10_1607 Windows Print Spooler Elevation of Privilege Vulnerability | 0,6% | — |
| CVE-2023-21559 | MED 5.5 | microsoft windows_10_1809 Windows Cryptographic Information Disclosure Vulnerability | 0,6% | — |
| CVE-2023-21550 | MED 5.5 | microsoft windows_10_1809 Windows Cryptographic Information Disclosure Vulnerability | 0,6% | — |
| CVE-2023-21540 | MED 5.5 | microsoft windows_10_1809 Windows Cryptographic Information Disclosure Vulnerability | 0,6% | — |
| CVE-2022-22016 | HIGH 7.0 | microsoft windows_10 Windows PlayToManager Elevation of Privilege Vulnerability | 0,6% | — |
| CVE-2022-20781 | MED 5.4 | cisco asyncos A vulnerability in the web-based management interface of Cisco AsyncOS Software for Cisco Web Security Appliance (WSA) could allow an authenticated, remote attacker to conduct a stored cross-site scripting (XSS) attack against a user of the interface of an aff | 0,6% | — |
| CVE-2022-20741 | MED 5.4 | cisco secure_network_analytics A vulnerability in the web-based management interface of the Network Diagrams application for Cisco Secure Network Analytics, formerly Stealthwatch Enterprise, could allow an authenticated, remote attacker to conduct a cross-site scripting (XSS) attack against | 0,6% | — |
| CVE-2022-20629 | MED 5.4 | cisco secure_firewall_management_center Multiple vulnerabilities in the web-based management interface of Cisco Firepower Management Center (FMC) Software could allow an authenticated, remote attacker to conduct a cross-site scripting (XSS) attack against a user of the interface. These vulnerabiliti | 0,6% | — |
| CVE-2022-20628 | MED 5.4 | cisco secure_firewall_management_center Multiple vulnerabilities in the web-based management interface of Cisco Firepower Management Center (FMC) Software could allow an authenticated, remote attacker to conduct a cross-site scripting (XSS) attack against a user of the interface. These vulnerabiliti | 0,6% | — |
| CVE-2022-20627 | MED 5.4 | cisco secure_firewall_management_center Multiple vulnerabilities in the web-based management interface of Cisco Firepower Management Center (FMC) Software could allow an authenticated, remote attacker to conduct a cross-site scripting (XSS) attack against a user of the interface. These vulnerabiliti | 0,6% | — |
| CVE-2020-13885 | HIGH 7.8 | citrix workspace_app Citrix Workspace App before 1912 on Windows has Insecure Permissions which allows local users to gain privileges during the uninstallation of the application. | 0,6% | — |
| CVE-2015-8944 | MED 5.5 | google android The ioresources_init function in kernel/resource.c in the Linux kernel through 4.7, as used in Android before 2016-08-05 on Nexus 6 and 7 (2013) devices, uses weak permissions for /proc/iomem, which allows local users to obtain sensitive information by reading | 0,6% | — |
| CVE-2026-69781 | MED 6.5 | microsoft windows_11_24h2 Missing release of memory after effective lifetime in Windows DHCP Client allows an unauthorized attacker to deny service over an adjacent network. | 0,6% | — |
| CVE-2026-65785 | MED 6.5 | microsoft windows_11_24h2 Uncontrolled resource consumption in Windows DHCP Client allows an unauthorized attacker to deny service over an adjacent network. | 0,6% | — |
| CVE-2026-40414 | HIGH 7.4 | microsoft windows_10_1607 Windows TCP/IP Denial of Service Vulnerability | 0,6% | — |
| CVE-2026-40413 | HIGH 7.4 | microsoft windows_10_1607 Windows TCP/IP Denial of Service Vulnerability | 0,6% | — |
| CVE-2026-31402 | CRIT 9.8 | linux linux_kernel In the Linux kernel, the following vulnerability has been resolved: nfsd: fix heap overflow in NFSv4.0 LOCK replay cache The NFSv4.0 replay cache uses a fixed 112-byte inline buffer (rp_ibuf[NFSD4_REPLAY_ISIZE]) to store encoded operation responses. This siz | 0,6% | — |
| CVE-2025-60726 | HIGH 7.1 | microsoft 365_apps Out-of-bounds read in Microsoft Office Excel allows an unauthorized attacker to disclose information locally. | 0,6% | — |