EN
57.415 CVE seguite
782 Sfruttate ora
187 Usate dai ransomware
Ultima sincronia

CVE Tracker

57.415 CVE

Dieci fornitori seguiti per identificativo CPE, non per parola chiave: una CVE compare qui quando NVD dichiara quali prodotti tocca, di solito qualche giorno dopo la pubblicazione.

CVE Tracker
Identificativo Gravità, ordinato dal più alto Prodotto e difetto EPSS, ordina dal più alto In KEV dal, ordina dal più alto
CVE-2024-35843 HIGH 8.8 linux linux_kernel In the Linux kernel, the following vulnerability has been resolved: iommu/vt-d: Use device rbtree in iopf reporting path The existing I/O page fault handler currently locates the PCI device by calling pci_get_domain_bus_and_slot(). This function searches the 0,2%
CVE-2024-35811 HIGH 8.8 debian debian_linux In the Linux kernel, the following vulnerability has been resolved: wifi: brcmfmac: Fix use-after-free bug in brcmf_cfg80211_detach This is the candidate patch of CVE-2023-47233 : https://nvd.nist.gov/vuln/detail/CVE-2023-47233 In brcm80211 driver,it starts 0,4%
CVE-2024-35804 HIGH 8.8 linux linux_kernel In the Linux kernel, the following vulnerability has been resolved: KVM: x86: Mark target gfn of emulated atomic instruction as dirty When emulating an atomic access on behalf of the guest, mark the target gfn dirty if the CMPXCHG by KVM is attempted and doe 0,2%
CVE-2024-35272 HIGH 8.8 microsoft sql_server_2016 SQL Server Native Client OLE DB Provider Remote Code Execution Vulnerability 1,9%
CVE-2024-35271 HIGH 8.8 microsoft sql_server_2016 SQL Server Native Client OLE DB Provider Remote Code Execution Vulnerability 1,9%
CVE-2024-35256 HIGH 8.8 microsoft sql_server_2016 SQL Server Native Client OLE DB Provider Remote Code Execution Vulnerability 1,6%
CVE-2024-35249 HIGH 8.8 microsoft dynamics_365_business_central Microsoft Dynamics 365 Business Central Remote Code Execution Vulnerability 3,4%
CVE-2024-32838 HIGH 8.8 apache fineract SQL Injection vulnerability in various API endpoints - offices, dashboards, etc. Apache Fineract versions 1.9 and before have a vulnerability that allows an authenticated attacker to inject malicious data into some of the REST API endpoints' query parameter.  1,5%
CVE-2024-31491 HIGH 8.8 fortinet fortisandbox A client-side enforcement of server-side security vulnerability in Fortinet FortiSandbox 4.4.0 through 4.4.4, FortiSandbox 4.2.1 through 4.2.6 allows attacker to execute unauthorized code or commands via HTTP requests. 0,8%
CVE-2024-31411 HIGH 8.8 apache streampipes Unrestricted Upload of File with dangerous type vulnerability in Apache StreamPipes. Such a dangerous type might be an executable file that may lead to a remote code execution (RCE). The unrestricted upload is only possible for authenticated and authorized use 1,1%
CVE-2024-30103 HIGH 8.8 microsoft 365_apps Microsoft Outlook Remote Code Execution Vulnerability 3,4%
CVE-2024-30097 HIGH 8.8 microsoft windows_10_1507 Microsoft Speech Application Programming Interface (SAPI) Remote Code Execution Vulnerability 1,7%
CVE-2024-30078 HIGH 8.8 microsoft windows_10_1507 Windows Wi-Fi Driver Remote Code Execution Vulnerability 5,2%
CVE-2024-30068 HIGH 8.8 microsoft windows_10_1507 Windows Kernel Elevation of Privilege Vulnerability 0,8%
CVE-2024-30064 HIGH 8.8 microsoft windows_server_2022 Windows Kernel Elevation of Privilege Vulnerability 0,8%
CVE-2024-30040 HIGH 8.8 microsoft windows_10_1507 Windows MSHTML Platform Security Feature Bypass Vulnerability 3,9%
CVE-2024-30017 HIGH 8.8 microsoft windows_10_1507 Windows Hyper-V Remote Code Execution Vulnerability 1,9%
CVE-2024-30013 HIGH 8.8 microsoft windows_10_1607 Windows MultiPoint Services Remote Code Execution Vulnerability 1,6%
CVE-2024-30010 HIGH 8.8 microsoft windows_server_2012 Windows Hyper-V Remote Code Execution Vulnerability 2,3%
CVE-2024-30009 HIGH 8.8 microsoft windows_10_1507 Windows Routing and Remote Access Service (RRAS) Remote Code Execution Vulnerability 1,7%
CVE-2024-30007 HIGH 8.8 microsoft windows_server_2022_23h2 Microsoft Brokering File System Elevation of Privilege Vulnerability 0,6%
CVE-2024-30006 HIGH 8.8 microsoft windows_10_1507 Microsoft WDAC OLE DB provider for SQL Server Remote Code Execution Vulnerability 1,7%
CVE-2024-29993 HIGH 8.8 microsoft azure_cyclecloud Azure CycleCloud Elevation of Privilege Vulnerability 2,0%
CVE-2024-29988 HIGH 8.8 microsoft windows_10_1809 SmartScreen Prompt Security Feature Bypass Vulnerability 45,2%
CVE-2024-29985 HIGH 8.8 microsoft ole_db_driver_for_sql_server Microsoft OLE DB Driver for SQL Server Remote Code Execution Vulnerability 2,4%