CVE Search

Cari CVE dari dbcve.org — keyword, vendor, severity, KEV, dan rentang waktu.

Advanced Filter
Reset
Active filters: KEV only
1,698 result(s) · page 44 of 85
CVE-2021-40444
KEV HIGH

Microsoft is investigating reports of a remote code execution vulnerability in MSHTML that affects Microsoft Windows. Microsoft is aware of targeted attacks that attempt to exploit...

CVSS 8.8 Microsoft windows_10_1507 2021-09-15
CVE-2021-38649
KEV HIGH

Open Management Infrastructure Elevation of Privilege Vulnerability

CVSS 7 Microsoft azure_automation_state_configuration 2021-09-15
CVE-2021-38648
KEV HIGH

Open Management Infrastructure Elevation of Privilege Vulnerability

CVSS 7.8 Microsoft azure_automation_state_configuration 2021-09-15
CVE-2021-38647
KEV CRITICAL

Open Management Infrastructure (OMI) Remote Code Execution Vulnerability

CVSS 9.8 Microsoft azure_automation_state_configuration 2021-09-15
CVE-2021-38646
KEV HIGH

Microsoft Office Access Connectivity Engine Remote Code Execution Vulnerability

CVSS 7.8 Microsoft 365_apps 2021-09-15
CVE-2021-38645
KEV HIGH

Open Management Infrastructure Elevation of Privilege Vulnerability

CVSS 7.8 Microsoft azure_automation_state_configuration 2021-09-15
CVE-2021-36955
KEV HIGH

Windows Common Log File System Driver Elevation of Privilege Vulnerability

CVSS 7.8 Microsoft windows_10_1507 2021-09-15
CVE-2021-38163
KEV HIGH

SAP NetWeaver (Visual Composer 7.0 RT) versions - 7.30, 7.31, 7.40, 7.50, without restriction, an attacker authenticated as a non-administrative user can upload a malicious file ov...

CVSS 8.8 Sap netweaver 2021-09-14
CVE-2021-40870
KEV CRITICAL

An issue was discovered in Aviatrix Controller 6.x before 6.5-1804.1922. Unrestricted upload of a file with a dangerous type is possible, which allows an unauthenticated user to ex...

CVSS 9.8 Aviatrix controller 2021-09-13
CVE-2021-30713
KEV HIGH

A permissions issue was addressed with improved validation. This issue is fixed in macOS Big Sur 11.4. A malicious application may be able to bypass Privacy preferences. Apple is a...

CVSS 7.8 Apple mac_os_x 2021-09-08
CVE-2021-30666
KEV HIGH

A buffer overflow issue was addressed with improved memory handling. This issue is fixed in iOS 12.5.3. Processing maliciously crafted web content may lead to arbitrary code execut...

CVSS 8.8 Apple iphone_os 2021-09-08
CVE-2021-30665
KEV HIGH

A memory corruption issue was addressed with improved state management. This issue is fixed in watchOS 7.4.1, iOS 14.5.1 and iPadOS 14.5.1, tvOS 14.6, iOS 12.5.3, macOS Big Sur 11....

CVSS 8.8 Apple ipados 2021-09-08
CVE-2021-30663
KEV HIGH

An integer overflow was addressed with improved input validation. This issue is fixed in iOS 14.5.1 and iPadOS 14.5.1, tvOS 14.6, iOS 12.5.3, Safari 14.1.1, macOS Big Sur 11.3.1. P...

CVSS 8.8 Apple safari 2021-09-08
CVE-2021-30661
KEV HIGH

A use after free issue was addressed with improved memory management. This issue is fixed in Safari 14.1, iOS 12.5.3, iOS 14.5 and iPadOS 14.5, watchOS 7.4, tvOS 14.5, macOS Big Su...

CVSS 8.8 Apple safari 2021-09-08
CVE-2021-30657
KEV MEDIUM

A logic issue was addressed with improved state management. This issue is fixed in macOS Big Sur 11.3, Security Update 2021-002 Catalina. A malicious application may bypass Gatekee...

CVSS 5.5 Apple mac_os_x 2021-09-08
CVE-2021-30762
KEV HIGH

A use after free issue was addressed with improved memory management. This issue is fixed in iOS 12.5.4. Processing maliciously crafted web content may lead to arbitrary code execu...

CVSS 8.8 Apple iphone_os 2021-09-08
CVE-2021-30761
KEV HIGH

A memory corruption issue was addressed with improved state management. This issue is fixed in iOS 12.5.4. Processing maliciously crafted web content may lead to arbitrary code exe...

CVSS 8.8 Apple iphone_os 2021-09-08
CVE-2021-40539
KEV CRITICAL

Zoho ManageEngine ADSelfService Plus version 6113 and prior is vulnerable to REST API authentication bypass with resultant remote code execution.

CVSS 9.8 Zohocorp manageengine_adselfservice_plus 2021-09-07
CVE-2021-28550
KEV HIGH

Acrobat Reader DC versions versions 2021.001.20150 (and earlier), 2020.001.30020 (and earlier) and 2017.011.30194 (and earlier) are affected by a Use After Free vulnerability. An u...

CVSS 8.8 Adobe acrobat_dc 2021-09-02
CVE-2021-37415
KEV CRITICAL

Zoho ManageEngine ServiceDesk Plus before 11302 is vulnerable to authentication bypass that allows a few REST-API URLs without authentication.

CVSS 9.8 Zohocorp manageengine_servicedesk_plus 2021-09-01
1… 42 43 44 45 46 …85
Base CVE data derived from NVD (public domain). Enrichment by dbcve.org (CC-BY-4.0). Fetched via API.