EN
58.507 CVE seguite
796 Sfruttate ora
188 Usate dai ransomware
Ultima sincronia

CVE Tracker

58.507 CVE

Dieci fornitori seguiti per identificativo CPE, non per parola chiave: una CVE compare qui quando NVD dichiara quali prodotti tocca, di solito qualche giorno dopo la pubblicazione.

CVE Tracker
Identificativo Gravità, ordinato dal più basso Prodotto e difetto EPSS, ordina dal più alto In KEV dal, ordina dal più alto
CVE-2023-36043 MED 6.5 microsoft system_center_operations_manager Open Management Infrastructure Information Disclosure Vulnerability 1,4% —
CVE-2023-36013 MED 6.5 microsoft powershell PowerShell Information Disclosure Vulnerability 1,4% —
CVE-2023-35908 MED 6.5 apache airflow Apache Airflow, versions before 2.6.3, is affected by a vulnerability that allows unauthorized read access to a DAG through the URL. It is recommended to upgrade to a version that is not affected 1,0% —
CVE-2023-35642 MED 6.5 microsoft windows_10_1507 Internet Connection Sharing (ICS) Denial of Service Vulnerability 1,3% —
CVE-2023-35636 MED 6.5 microsoft 365_apps Microsoft Outlook Information Disclosure Vulnerability 17,7% —
CVE-2023-35389 MED 6.5 microsoft dynamics_365 Microsoft Dynamics 365 On-Premises Remote Code Execution Vulnerability 0,8% —
CVE-2023-35377 MED 6.5 microsoft windows_10_1507 Microsoft Message Queuing (MSMQ) Denial of Service Vulnerability 2,2% —
CVE-2023-35376 MED 6.5 microsoft windows_10_1507 Microsoft Message Queuing (MSMQ) Denial of Service Vulnerability 2,2% —
CVE-2023-35348 MED 6.5 microsoft windows_server_2016 Active Directory Federation Service Security Feature Bypass Vulnerability 1,0% —
CVE-2023-35336 MED 6.5 microsoft windows_10_1507 Windows MSHTML Platform Security Feature Bypass Vulnerability 0,9% —
CVE-2023-35331 MED 6.5 microsoft windows_server_2012 Windows Local Security Authority (LSA) Denial of Service Vulnerability 0,7% —
CVE-2023-35329 MED 6.5 microsoft windows_10_1507 Windows Authentication Denial of Service Vulnerability 1,8% —
CVE-2023-35321 MED 6.5 microsoft windows_server_2008 Windows Deployment Services Denial of Service Vulnerability 1,6% —
CVE-2023-35319 MED 6.5 microsoft windows_10_1507 Remote Procedure Call Runtime Denial of Service Vulnerability 1,6% —
CVE-2023-35318 MED 6.5 microsoft windows_10_1507 Remote Procedure Call Runtime Denial of Service Vulnerability 1,6% —
CVE-2023-35316 MED 6.5 microsoft windows_10_1507 Remote Procedure Call Runtime Information Disclosure Vulnerability 1,4% —
CVE-2023-35314 MED 6.5 microsoft windows_10_1507 Remote Procedure Call Runtime Denial of Service Vulnerability 1,6% —
CVE-2023-35308 MED 6.5 microsoft windows_10_1507 Windows MSHTML Platform Security Feature Bypass Vulnerability 1,1% —
CVE-2023-35296 MED 6.5 microsoft windows_10_1507 Microsoft PostScript and PCL6 Class Printer Driver Information Disclosure Vulnerability 1,5% —
CVE-2023-35005 MED 6.5 apache airflow In Apache Airflow, some potentially sensitive values were being shown to the user in certain situations. This vulnerability is mitigated by the fact configuration is not shown in the UI by default (only if `[webserver] expose_config` is set to `non-sensitive- 1,5% —
CVE-2023-34367 MED 6.5 microsoft windows_7 Windows 7 is vulnerable to a full blind TCP/IP hijacking attack. The vulnerability exists in Windows 7 (any Windows until Windows 8) and in any implementation of TCP/IP, which is vulnerable to the Idle scan attack (including many IoT devices). NOTE: The vendor 1,2% —
CVE-2023-34212 MED 6.5 apache nifi The JndiJmsConnectionFactoryProvider Controller Service, along with the ConsumeJMS and PublishJMS Processors, in Apache NiFi 1.8.0 through 1.21.0 allow an authenticated and authorized user to configure URL and library properties that enable deserialization of 2,4% —
CVE-2023-34189 MED 6.5 apache inlong Exposure of Resource to Wrong Sphere Vulnerability in Apache Software Foundation Apache InLong.This issue affects Apache InLong: from 1.4.0 through 1.7.0. The attacker could use general users to delete and update the process, which only the admin can operate o 1,3% —
CVE-2023-34150 MED 6.5 apache any23 ** UNSUPPORTED WHEN ASSIGNED ** Use of TikaEncodingDetector in Apache Any23 can cause excessive memory usage. 1,5% —
CVE-2023-33861 MED 6.5 ibm security_qradar_edr IBM Security ReaQta EDR 3.12 could allow an attacker to spoof a trusted entity by interfering with the communication path between the host and client. 0,2% —