57.415 CVE seguite
782 Sfruttate ora
187 Usate dai ransomware
Ultima sincronia
CVE Tracker
57.415 CVE
Dieci fornitori seguiti per identificativo CPE, non per parola chiave: una CVE compare qui quando NVD dichiara quali prodotti tocca, di solito qualche giorno dopo la pubblicazione.
| Identificativo | Gravità, ordinato dal più alto | Prodotto e difetto | EPSS, ordina dal più alto | In KEV dal, ordina dal più alto |
|---|---|---|---|---|
| CVE-2024-35843 | HIGH 8.8 | linux linux_kernel In the Linux kernel, the following vulnerability has been resolved: iommu/vt-d: Use device rbtree in iopf reporting path The existing I/O page fault handler currently locates the PCI device by calling pci_get_domain_bus_and_slot(). This function searches the | 0,2% | — |
| CVE-2024-35811 | HIGH 8.8 | debian debian_linux In the Linux kernel, the following vulnerability has been resolved: wifi: brcmfmac: Fix use-after-free bug in brcmf_cfg80211_detach This is the candidate patch of CVE-2023-47233 : https://nvd.nist.gov/vuln/detail/CVE-2023-47233 In brcm80211 driver,it starts | 0,4% | — |
| CVE-2024-35804 | HIGH 8.8 | linux linux_kernel In the Linux kernel, the following vulnerability has been resolved: KVM: x86: Mark target gfn of emulated atomic instruction as dirty When emulating an atomic access on behalf of the guest, mark the target gfn dirty if the CMPXCHG by KVM is attempted and doe | 0,2% | — |
| CVE-2024-35272 | HIGH 8.8 | microsoft sql_server_2016 SQL Server Native Client OLE DB Provider Remote Code Execution Vulnerability | 1,9% | — |
| CVE-2024-35271 | HIGH 8.8 | microsoft sql_server_2016 SQL Server Native Client OLE DB Provider Remote Code Execution Vulnerability | 1,9% | — |
| CVE-2024-35256 | HIGH 8.8 | microsoft sql_server_2016 SQL Server Native Client OLE DB Provider Remote Code Execution Vulnerability | 1,6% | — |
| CVE-2024-35249 | HIGH 8.8 | microsoft dynamics_365_business_central Microsoft Dynamics 365 Business Central Remote Code Execution Vulnerability | 3,4% | — |
| CVE-2024-32838 | HIGH 8.8 | apache fineract SQL Injection vulnerability in various API endpoints - offices, dashboards, etc. Apache Fineract versions 1.9 and before have a vulnerability that allows an authenticated attacker to inject malicious data into some of the REST API endpoints' query parameter. | 1,5% | — |
| CVE-2024-31491 | HIGH 8.8 | fortinet fortisandbox A client-side enforcement of server-side security vulnerability in Fortinet FortiSandbox 4.4.0 through 4.4.4, FortiSandbox 4.2.1 through 4.2.6 allows attacker to execute unauthorized code or commands via HTTP requests. | 0,8% | — |
| CVE-2024-31411 | HIGH 8.8 | apache streampipes Unrestricted Upload of File with dangerous type vulnerability in Apache StreamPipes. Such a dangerous type might be an executable file that may lead to a remote code execution (RCE). The unrestricted upload is only possible for authenticated and authorized use | 1,1% | — |
| CVE-2024-30103 | HIGH 8.8 | microsoft 365_apps Microsoft Outlook Remote Code Execution Vulnerability | 3,4% | — |
| CVE-2024-30097 | HIGH 8.8 | microsoft windows_10_1507 Microsoft Speech Application Programming Interface (SAPI) Remote Code Execution Vulnerability | 1,7% | — |
| CVE-2024-30078 | HIGH 8.8 | microsoft windows_10_1507 Windows Wi-Fi Driver Remote Code Execution Vulnerability | 5,2% | — |
| CVE-2024-30068 | HIGH 8.8 | microsoft windows_10_1507 Windows Kernel Elevation of Privilege Vulnerability | 0,8% | — |
| CVE-2024-30064 | HIGH 8.8 | microsoft windows_server_2022 Windows Kernel Elevation of Privilege Vulnerability | 0,8% | — |
| CVE-2024-30040 | HIGH 8.8 | microsoft windows_10_1507 Windows MSHTML Platform Security Feature Bypass Vulnerability | 3,9% | |
| CVE-2024-30017 | HIGH 8.8 | microsoft windows_10_1507 Windows Hyper-V Remote Code Execution Vulnerability | 1,9% | — |
| CVE-2024-30013 | HIGH 8.8 | microsoft windows_10_1607 Windows MultiPoint Services Remote Code Execution Vulnerability | 1,6% | — |
| CVE-2024-30010 | HIGH 8.8 | microsoft windows_server_2012 Windows Hyper-V Remote Code Execution Vulnerability | 2,3% | — |
| CVE-2024-30009 | HIGH 8.8 | microsoft windows_10_1507 Windows Routing and Remote Access Service (RRAS) Remote Code Execution Vulnerability | 1,7% | — |
| CVE-2024-30007 | HIGH 8.8 | microsoft windows_server_2022_23h2 Microsoft Brokering File System Elevation of Privilege Vulnerability | 0,6% | — |
| CVE-2024-30006 | HIGH 8.8 | microsoft windows_10_1507 Microsoft WDAC OLE DB provider for SQL Server Remote Code Execution Vulnerability | 1,7% | — |
| CVE-2024-29993 | HIGH 8.8 | microsoft azure_cyclecloud Azure CycleCloud Elevation of Privilege Vulnerability | 2,0% | — |
| CVE-2024-29988 | HIGH 8.8 | microsoft windows_10_1809 SmartScreen Prompt Security Feature Bypass Vulnerability | 45,2% | |
| CVE-2024-29985 | HIGH 8.8 | microsoft ole_db_driver_for_sql_server Microsoft OLE DB Driver for SQL Server Remote Code Execution Vulnerability | 2,4% | — |