CVE Search

Cari CVE dari dbcve.org — keyword, vendor, severity, KEV, dan rentang waktu.

Advanced Filter
Reset
Active filters: KEV only
1,698 result(s) · page 36 of 85
CVE-2022-41033
KEV HIGH

Windows COM+ Event System Service Elevation of Privilege Vulnerability

CVSS 7.8 Microsoft windows_10_1507 2022-10-11
CVE-2022-38028
KEV HIGH

Windows Print Spooler Elevation of Privilege Vulnerability

CVSS 7.8 Microsoft windows_10_1507 2022-10-11
CVE-2022-41082
KEV HIGH

Microsoft Exchange Server Remote Code Execution Vulnerability

CVSS 8 Microsoft exchange_server 2022-10-03
CVE-2022-41040
KEV HIGH

Microsoft Exchange Server Elevation of Privilege Vulnerability

CVSS 8.8 Microsoft exchange_server 2022-10-03
CVE-2022-20775
KEV HIGH

A vulnerability in the CLI of Cisco SD-WAN Software could allow an authenticated, local attacker to gain elevated privileges. This vulnerability is due to improper access contro...

CVSS 7.8 Cisco catalyst_sd-wan_manager 2022-09-30
CVE-2022-3075
KEV CRITICAL

Insufficient data validation in Mojo in Google Chrome prior to 105.0.5195.102 allowed a remote attacker who had compromised the renderer process to potentially perform a sandbox es...

CVSS 9.6 Google chrome 2022-09-26
CVE-2022-3038
KEV HIGH

Use after free in Network Service in Google Chrome prior to 105.0.5195.52 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML page.

CVSS 8.8 Google chrome 2022-09-26
CVE-2022-2856
KEV MEDIUM

Insufficient validation of untrusted input in Intents in Google Chrome on Android prior to 104.0.5112.101 allowed a remote attacker to arbitrarily browse to a malicious website via...

CVSS 6.5 Google chrome 2022-09-26
CVE-2022-41352
KEV CRITICAL

An issue was discovered in Zimbra Collaboration (ZCS) 8.8.15 and 9.0. An attacker can upload arbitrary files through amavis via a cpio loophole (extraction to /opt/zimbra/jetty/web...

CVSS 9.8 Synacor zimbra_collaboration_suite 2022-09-26
CVE-2022-3236
KEV CRITICAL

A code injection vulnerability in the User Portal and Webadmin allows a remote attacker to execute code in Sophos Firewall version v19.0 MR1 and older.

CVSS 9.8 Sophos firewall 2022-09-23
CVE-2022-39197
KEV MEDIUM

An XSS (Cross Site Scripting) vulnerability was found in HelpSystems Cobalt Strike through 4.7 that allowed a remote attacker to execute HTML on the Cobalt Strike teamserver. To ex...

CVSS 6.1 Helpsystems cobalt_strike 2022-09-22
CVE-2022-32917
KEV HIGH

The issue was addressed with improved bounds checks. This issue is fixed in macOS Monterey 12.6, iOS 15.7 and iPadOS 15.7, iOS 16, macOS Big Sur 11.7. An application may be able to...

CVSS 7.8 Apple ipados 2022-09-20
CVE-2022-40139
KEV HIGH

Improper validation of some components used by the rollback mechanism in Trend Micro Apex One and Trend Micro Apex One as a Service clients could allow a Apex One server administra...

CVSS 7.2 Trendmicro apex_one 2022-09-19
CVE-2022-35914
KEV CRITICAL

/vendor/htmlawed/htmlawed/htmLawedTest.php in the htmlawed module for GLPI through 10.0.2 allows PHP code injection.

CVSS 9.8 Glpi-project glpi 2022-09-19
CVE-2022-37969
KEV HIGH

Windows Common Log File System Driver Elevation of Privilege Vulnerability

CVSS 7.8 Microsoft windows_10_1507 2022-09-13
CVE-2022-27593
KEV CRITICAL

An externally controlled reference to a resource vulnerability has been reported to affect QNAP NAS running Photo Station. If exploited, This could allow an attacker to modify syst...

CVSS 9.1 Qnap photo_station 2022-09-08
CVE-2022-37055
KEV CRITICAL

D-Link Go-RT-AC750 GORTAC750_revA_v101b03 and GO-RT-AC750_revB_FWv200b02 are vulnerable to Buffer Overflow via cgibin, hnap_main,

CVSS 9.8 Dlink go-rt-ac750_firmware 2022-08-28
CVE-2022-36537
KEV HIGH

ZK Framework v9.6.1, 9.6.0.1, 9.5.1.3, 9.0.1.2 and 8.6.4.1 allows attackers to access sensitive information via a crafted POST request sent to the component AuUploader.

CVSS 7.5 Zkoss zk_framework 2022-08-26
CVE-2022-36804
KEV HIGH

Multiple API endpoints in Atlassian Bitbucket Server and Data Center 7.0.0 before version 7.6.17, from version 7.7.0 before version 7.17.10, from version 7.18.0 before version 7.21...

CVSS 8.8 Atlassian bitbucket 2022-08-25
CVE-2022-32894
KEV HIGH

An out-of-bounds write issue was addressed with improved bounds checking. This issue is fixed in iOS 15.6.1 and iPadOS 15.6.1, macOS Monterey 12.5.1. An application may be able to ...

CVSS 7.8 Apple ipados 2022-08-24
1… 34 35 36 37 38 …85
Base CVE data derived from NVD (public domain). Enrichment by dbcve.org (CC-BY-4.0). Fetched via API.