EN
57.469 CVE seguite
782 Sfruttate ora
187 Usate dai ransomware
Ultima sincronia

CVE Tracker

57.469 CVE

Dieci fornitori seguiti per identificativo CPE, non per parola chiave: una CVE compare qui quando NVD dichiara quali prodotti tocca, di solito qualche giorno dopo la pubblicazione.

CVE Tracker
Identificativo Gravità, ordinato dal più alto Prodotto e difetto EPSS, ordina dal più alto In KEV dal, ordina dal più alto
CVE-2022-30670 HIGH 8.8 adobe robohelp_server RoboHelp Server earlier versions than RHS 11 Update 3 are affected by an Improper Authorization vulnerability which could lead to privilege escalation. An authenticated attacker could leverage this vulnerability to achieve full administrator privileges. Exploi 1,5%
CVE-2022-30608 HIGH 8.8 ibm infosphere_information_server "IBM InfoSphere Information Server 11.7 is vulnerable to cross-site request forgery which could allow an attacker to execute malicious and unauthorized actions transmitted from a "user that the website trusts. IBM X-Force ID: 227295. 0,3%
CVE-2022-30303 HIGH 8.8 fortinet fortiweb An improper neutralization of special elements used in an os command ('OS Command Injection') [CWE-78] in FortiWeb 7.0.0 through 7.0.1, 6.3.0 through 6.3.19, 6.4 all versions may allow an authenticated attacker to execute arbitrary shell code as `root` user vi 2,5%
CVE-2022-30221 HIGH 8.8 microsoft windows_10 Windows Graphics Component Remote Code Execution Vulnerability 2,1%
CVE-2022-30216 HIGH 8.8 microsoft windows_10 Windows Server Service Tampering Vulnerability 88,9%
CVE-2022-30165 HIGH 8.8 microsoft windows_10 Windows Kerberos Elevation of Privilege Vulnerability 4,9%
CVE-2022-30161 HIGH 8.8 microsoft windows_10 Windows Lightweight Directory Access Protocol (LDAP) Remote Code Execution Vulnerability 2,5%
CVE-2022-30158 HIGH 8.8 microsoft sharepoint_foundation Microsoft SharePoint Server Remote Code Execution Vulnerability 3,4%
CVE-2022-30157 HIGH 8.8 microsoft sharepoint_server Microsoft SharePoint Server Remote Code Execution Vulnerability 7,0%
CVE-2022-30153 HIGH 8.8 microsoft windows_10 Windows Lightweight Directory Access Protocol (LDAP) Remote Code Execution Vulnerability 2,5%
CVE-2022-30129 HIGH 8.8 microsoft visual_studio_code Visual Studio Code Remote Code Execution Vulnerability 41,3%
CVE-2022-29376 HIGH 8.8 apachefriends xampp Xampp for Windows v8.1.4 and below was discovered to contain insecure permissions for its install directory, allowing attackers to execute arbitrary code via overwriting binaries located in the directory. 1,3%
CVE-2022-29141 HIGH 8.8 microsoft windows_10 Windows Lightweight Directory Access Protocol (LDAP) Remote Code Execution Vulnerability 2,7%
CVE-2022-29139 HIGH 8.8 microsoft windows_10 Windows Lightweight Directory Access Protocol (LDAP) Remote Code Execution Vulnerability 2,3%
CVE-2022-29137 HIGH 8.8 microsoft windows_10 Windows Lightweight Directory Access Protocol (LDAP) Remote Code Execution Vulnerability 2,3%
CVE-2022-29133 HIGH 8.8 microsoft windows_11 Windows Kernel Elevation of Privilege Vulnerability 0,7%
CVE-2022-29131 HIGH 8.8 microsoft windows_10 Windows Lightweight Directory Access Protocol (LDAP) Remote Code Execution Vulnerability 2,7%
CVE-2022-29129 HIGH 8.8 microsoft windows_10 Windows Lightweight Directory Access Protocol (LDAP) Remote Code Execution Vulnerability 2,7%
CVE-2022-29128 HIGH 8.8 microsoft windows_10 Windows Lightweight Directory Access Protocol (LDAP) Remote Code Execution Vulnerability 2,7%
CVE-2022-29108 HIGH 8.8 microsoft sharepoint_enterprise_server Microsoft SharePoint Server Remote Code Execution Vulnerability 11,9%
CVE-2022-28944 HIGH 8.8 emcosoftware msi_package_builder Certain EMCO Software products are affected by: CWE-494: Download of Code Without Integrity Check. This affects MSI Package Builder for Windows 9.1.4 and Remote Installer for Windows 6.0.13 and Ping Monitor for Windows 8.0.18 and Remote Shutdown for Windows 7. 1,5%
CVE-2022-27487 HIGH 8.8 fortinet fortideceptor A improper privilege management in Fortinet FortiSandbox version 4.2.0 through 4.2.2, 4.0.0 through 4.0.2 and before 3.2.3 and FortiDeceptor version 4.1.0, 4.0.0 through 4.0.2 and before 3.3.3 allows a remote authenticated attacker to perform unauthorized API 1,0%
CVE-2022-27223 HIGH 8.8 debian debian_linux In drivers/usb/gadget/udc/udc-xilinx.c in the Linux kernel before 5.16.12, the endpoint index is not validated and might be manipulated by the host for out-of-array access. 2,2%
CVE-2022-26927 HIGH 8.8 microsoft windows_10 Windows Graphics Component Remote Code Execution Vulnerability 4,4%
CVE-2022-26923 HIGH 8.8 microsoft windows_10_1507 Active Directory Domain Services Elevation of Privilege Vulnerability 83,5%