CVE Search

Cari CVE dari dbcve.org — keyword, vendor, severity, KEV, dan rentang waktu.

Advanced Filter
Reset
Active filters: KEV only
1,698 result(s) · page 32 of 85
CVE-2023-32315
KEV HIGH

Openfire is an XMPP server licensed under the Open Source Apache License. Openfire's administrative console, a web-based application, was found to be vulnerable to a path traversal...

CVSS 7.5 Igniterealtime openfire 2023-05-26
CVE-2023-2868
KEV CRITICAL

A remote command injection vulnerability exists in the Barracuda Email Security Gateway (appliance form factor only) product effecting versions 5.1.3.001-9.2.0.006. The vulnerabili...

CVSS 9.8 Barracuda email_security_gateway_300_firmware 2023-05-24
CVE-2023-33246
KEV CRITICAL

For RocketMQ versions 5.1.0 and below, under certain conditions, there is a risk of remote command execution.  Several components of RocketMQ, including NameServer, Broker, and Co...

CVSS 9.8 Apache rocketmq 2023-05-24
CVE-2023-33010
KEV CRITICAL

A buffer overflow vulnerability in the ID processing function in Zyxel ATP series firmware versions 4.32 through 5.36 Patch 1, USG FLEX series firmware versions 4.50 through 5.36 P...

CVSS 9.8 Zyxel atp100_firmware 2023-05-24
CVE-2023-33009
KEV CRITICAL

A buffer overflow vulnerability in the notification function in Zyxel ATP series firmware versions 4.60 through 5.36 Patch 1, USG FLEX series firmware versions 4.60 through 5.36 Pa...

CVSS 9.8 Zyxel atp100_firmware 2023-05-24
CVE-2023-29336
KEV HIGH

Win32k Elevation of Privilege Vulnerability

CVSS 7.8 Microsoft windows_10_1507 2023-05-09
CVE-2023-24955
KEV HIGH

Microsoft SharePoint Server Remote Code Execution Vulnerability

CVSS 7.2 Microsoft sharepoint_enterprise_server 2023-05-09
CVE-2023-29552
KEV HIGH

The Service Location Protocol (SLP, RFC 2608) allows an unauthenticated, remote attacker to register arbitrary services. This could allow the attacker to use spoofed UDP traffic to...

CVSS 7.5 Vmware esxi 2023-04-25
CVE-2023-28771
KEV CRITICAL

Improper error message handling in Zyxel ZyWALL/USG series firmware versions 4.60 through 4.73, VPN series firmware versions 4.60 through 5.35, USG FLEX series firmware versions 4....

CVSS 9.8 Zyxel atp100_firmware 2023-04-25
CVE-2023-27524
KEV CRITICAL

Session Validation attacks in Apache Superset versions up to and including 2.0.1. Installations that have not altered the default configured SECRET_KEY according to installation in...

CVSS 9.8 Apache superset 2023-04-24
CVE-2023-27351
KEV HIGH

This vulnerability allows remote attackers to bypass authentication on affected installations of PaperCut NG 22.0.5 (Build 63914). Authentication is not required to exploit this vu...

CVSS 7.5 Papercut papercut_mf 2023-04-20
CVE-2023-27350
KEV CRITICAL

This vulnerability allows remote attackers to bypass authentication on affected installations of PaperCut NG 22.0.5 (Build 63914). Authentication is not required to exploit this vu...

CVSS 9.8 Papercut papercut_mf 2023-04-20
CVE-2023-2136
KEV CRITICAL

Integer overflow in Skia in Google Chrome prior to 112.0.5615.137 allowed a remote attacker who had compromised the renderer process to potentially perform a sandbox escape via a c...

CVSS 9.6 Google chrome 2023-04-19
CVE-2023-2033
KEV HIGH

Type confusion in V8 in Google Chrome prior to 112.0.5615.121 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML page. (Chromium security severity:...

CVSS 8.8 Google chrome 2023-04-14
CVE-2023-20118
KEV HIGH

A vulnerability in the web-based management interface of Cisco Small Business Routers RV016, RV042, RV042G, RV082, RV320, and RV325 Routers could allow an authenticated, remote att...

CVSS 7.2 Cisco rv016_firmware 2023-04-13
CVE-2023-28252
KEV HIGH

Windows Common Log File System Driver Elevation of Privilege Vulnerability

CVSS 7.8 Microsoft windows_10_1507 2023-04-11
CVE-2023-28229
KEV HIGH

Windows CNG Key Isolation Service Elevation of Privilege Vulnerability

CVSS 7 Microsoft windows_10_1507 2023-04-11
CVE-2023-29492
KEV CRITICAL

Novi Survey before 8.9.43676 allows remote attackers to execute arbitrary code on the server in the context of the service account. This does not provide access to stored survey or...

CVSS 9.8 3rdmill novi_survey 2023-04-11
CVE-2023-28206
KEV HIGH

An out-of-bounds write issue was addressed with improved input validation. This issue is fixed in macOS Monterey 12.6.5, iOS 16.4.1 and iPadOS 16.4.1, macOS Ventura 13.3.1, iOS 15....

CVSS 8.6 Apple ipados 2023-04-10
CVE-2023-28205
KEV HIGH

A use after free issue was addressed with improved memory management. This issue is fixed in Safari 16.4.1, iOS 15.7.5 and iPadOS 15.7.5, iOS 16.4.1 and iPadOS 16.4.1, macOS Ventur...

CVSS 8.8 Apple safari 2023-04-10
1… 30 31 32 33 34 …85
Base CVE data derived from NVD (public domain). Enrichment by dbcve.org (CC-BY-4.0). Fetched via API.