CVE Search

Cari CVE dari dbcve.org — keyword, vendor, severity, KEV, dan rentang waktu.

Advanced Filter
Reset
Active filters: KEV only
1,698 result(s) · page 46 of 85
CVE-2021-30563
KEV HIGH

Type Confusion in V8 in Google Chrome prior to 91.0.4472.164 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML page.

CVSS 8.8 Google chrome 2021-08-03
CVE-2021-26085
KEV MEDIUM

Affected versions of Atlassian Confluence Server allow remote attackers to view restricted resources via a Pre-Authorization Arbitrary File Read vulnerability in the /s/ endpoint. ...

CVSS 5.3 Atlassian confluence_data_center 2021-08-03
CVE-2021-36742
KEV HIGH

A improper input validation vulnerability in Trend Micro Apex One, Apex One as a Service, OfficeScan XG and Worry-Free Business Security 10.0 SP1 allows a local attacker to escalat...

CVSS 7.8 Trendmicro officescan 2021-07-29
CVE-2021-36741
KEV HIGH

An improper input validation vulnerability in Trend Micro Apex One, Apex One as a Service, OfficeScan XG, and Worry-Free Business Security 10.0 SP1 allows a remote attached to uplo...

CVSS 8.8 Trendmicro officescan 2021-07-29
CVE-2021-35464
KEV CRITICAL

ForgeRock AM server before 7.0 has a Java deserialization vulnerability in the jato.pageSession parameter on multiple pages. The exploitation does not require authentication, and r...

CVSS 9.8 Forgerock access_management 2021-07-22
CVE-2021-36934
KEV HIGH

An elevation of privilege vulnerability exists because of overly permissive Access Control Lists (ACLs) on multiple system files, including the Security Accounts Manager (SAM) data...

CVSS 7.8 Microsoft windows_10_1809 2021-07-22
CVE-2021-34448
KEV MEDIUM

Scripting Engine Memory Corruption Vulnerability

CVSS 6.8 Microsoft windows_10_1507 2021-07-16
CVE-2021-35211
KEV CRITICAL

Microsoft discovered a remote code execution (RCE) vulnerability in the SolarWinds Serv-U product utilizing a Remote Memory Escape Vulnerability. If exploited, a threat actor may b...

CVSS 10 Solarwinds serv-u 2021-07-14
CVE-2021-34523
KEV CRITICAL

Microsoft Exchange Server Elevation of Privilege Vulnerability

CVSS 9 Microsoft exchange_server 2021-07-14
CVE-2021-34473
KEV CRITICAL

Microsoft Exchange Server Remote Code Execution Vulnerability

CVSS 9.1 Microsoft exchange_server 2021-07-14
CVE-2021-33771
KEV HIGH

Windows Kernel Elevation of Privilege Vulnerability

CVSS 7.8 Microsoft windows_10_1507 2021-07-14
CVE-2021-33766
KEV HIGH

Microsoft Exchange Server Information Disclosure Vulnerability

CVSS 7.3 Microsoft exchange_server 2021-07-14
CVE-2021-31979
KEV HIGH

Windows Kernel Elevation of Privilege Vulnerability

CVSS 7.8 Microsoft windows_10_1507 2021-07-14
CVE-2021-31196
KEV HIGH

Microsoft Exchange Server Remote Code Execution Vulnerability

CVSS 7.2 Microsoft exchange_server 2021-07-14
CVE-2021-30116
KEV CRITICAL

Kaseya VSA before 9.5.7 allows credential disclosure, as exploited in the wild in July 2021. By default Kaseya VSA on premise offers a download page where the clients for the insta...

CVSS 9.8 Kaseya vsa_agent 2021-07-09
CVE-2021-22555
KEV HIGH

A heap out-of-bounds write affecting Linux since v2.6.19-rc1 was discovered in net/netfilter/x_tables.c. This allows an attacker to gain privileges or cause a DoS (via heap memory ...

CVSS 7.8 Linux linux_kernel 2021-07-07
CVE-2021-34527
KEV HIGH

A remote code execution vulnerability exists when the Windows Print Spooler service improperly performs privileged file operations. An attacker who successfully exploited this vuln...

CVSS 8.8 Microsoft windows_10_1507 2021-07-02
CVE-2021-30554
KEV HIGH

Use after free in WebGL in Google Chrome prior to 91.0.4472.114 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML page.

CVSS 8.8 Google chrome 2021-07-02
CVE-2021-30551
KEV HIGH

Type confusion in V8 in Google Chrome prior to 91.0.4472.101 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML page.

CVSS 8.8 Google chrome 2021-06-15
CVE-2021-22175
KEV CRITICAL

When requests to the internal network for webhooks are enabled, a server-side request forgery vulnerability in GitLab affecting all versions starting from 10.5 was possible to expl...

CVSS 9.8 Gitlab gitlab 2021-06-11
1… 44 45 46 47 48 …85
Base CVE data derived from NVD (public domain). Enrichment by dbcve.org (CC-BY-4.0). Fetched via API.