CVE-2018-8298
|
A remote code execution vulnerability exists in the way that the ChakraCore scripting engine handles objects in memory, aka "Scripting Engine... |
Microsoft |
ChakraCore |
2022-03-03 00:00:00 UTC |
CISA |
CVE-2018-8581
|
An elevation of privilege vulnerability exists in Microsoft Exchange Server, aka "Microsoft Exchange Server Elevation of Privilege Vulnerability."... |
Microsoft |
Microsoft Exchange Server |
2022-03-03 00:00:00 UTC |
CISA |
CVE-2019-1297
|
A remote code execution vulnerability exists in Microsoft Excel software when the software fails to properly handle objects in memory, aka... |
Microsoft |
Microsoft Excel, Microsoft Office, Office 365 ProPlus |
2022-03-03 00:00:00 UTC |
CISA |
CVE-2019-1652
|
Cisco Small Business RV320 and RV325 Routers Command Injection Vulnerability |
Cisco |
Cisco Small Business RV Series Router Firmware |
2022-03-03 00:00:00 UTC |
CISA |
CVE-2019-16928
|
Exim 4.92 through 4.92.2 allows remote code execution, a different vulnerability than CVE-2019-15846. There is a heap-based buffer overflow in... |
Exim |
Exim |
2022-03-03 00:00:00 UTC |
CISA |
CVE-2020-11899
|
The Treck TCP/IP stack before 6.0.1.66 has an IPv6 Out-of-bounds Read. |
n/a |
n/a |
2022-03-03 00:00:00 UTC |
CISA |
CVE-2020-1938
|
When using the Apache JServ Protocol (AJP), care must be taken when trusting incoming connections to Apache Tomcat. Tomcat treats AJP connections... |
Apache Software Foundation |
Apache Tomcat |
2022-03-03 00:00:00 UTC |
CISA |
CVE-2021-41379
|
Windows Installer Elevation of Privilege Vulnerability |
Microsoft |
Windows 10 Version 1809, Windows Server 2019, Windows Server 2019 (Server Core installation), Windows 10 Version 1909, Windows 10 Version 21H1, Windows Server 2022, Windows 10 Version 2004, Windows Server version 2004, Windows 10 Version 20H2, Windows Server version 20H2, Windows 11 version 21H2, Windows 10 Version 1507, Windows 10 Version 1607, Windows Server 2016, Windows Server 2016 (Server Core installation), Windows 7, Windows 7 Service Pack 1, Windows 8.1, Windows Server 2008 Service Pack 2, Windows Server 2008 Service Pack 2 (Server Core installation), Windows Server 2008 Service Pack 2, Windows Server 2008 R2 Service Pack 1, Windows Server 2008 R2 Service Pack 1 (Server Core installation), Windows Server 2012, Windows Server 2012 (Server Core installation), Windows Server 2012 R2, Windows Server 2012 R2 (Server Core installation) |
2022-03-03 00:00:00 UTC |
CISA |
CVE-2022-20699
|
Cisco Small Business RV Series Routers Vulnerabilities |
Cisco |
Cisco Small Business RV Series Router Firmware |
2022-03-03 00:00:00 UTC |
CISA |
CVE-2022-20700
|
Cisco Small Business RV Series Routers Vulnerabilities |
Cisco |
Cisco Small Business RV Series Router Firmware |
2022-03-03 00:00:00 UTC |
CISA |
CVE-2022-20701
|
Cisco Small Business RV Series Routers Vulnerabilities |
Cisco |
Cisco Small Business RV Series Router Firmware |
2022-03-03 00:00:00 UTC |
CISA |
CVE-2022-20703
|
Cisco Small Business RV Series Routers Vulnerabilities |
Cisco |
Cisco Small Business RV Series Router Firmware |
2022-03-03 00:00:00 UTC |
CISA |
CVE-2022-20708
|
Cisco Small Business RV Series Routers Vulnerabilities |
Cisco |
Cisco Small Business RV Series Router Firmware |
2022-03-03 00:00:00 UTC |
CISA |
CVE-2017-0222
|
A remote code execution vulnerability exists when Internet Explorer improperly accesses objects in memory, aka "Internet Explorer Memory Corruption... |
Microsoft |
Internet Explorer |
2022-02-25 00:00:00 UTC |
CISA |
CVE-2014-6352
|
Microsoft Windows Vista SP2, Windows Server 2008 SP2 and R2 SP1, Windows 7 SP1, Windows 8, Windows 8.1, Windows Server 2012 Gold and R2, and... |
Microsoft |
Windows |
2022-02-25 00:00:00 UTC |
CISA |
CVE-2022-24682
|
An issue was discovered in the Calendar feature in Zimbra Collaboration Suite 8.8.x before 8.8.15 patch 30 (update 1), as exploited in the wild... |
n/a |
n/a |
2022-02-25 00:00:00 UTC |
CISA |
CVE-2017-8570
|
Microsoft Office allows a remote code execution vulnerability due to the way that it handles objects in memory, aka "Microsoft Office Remote Code... |
Microsoft |
Microsoft Office 2007 SP3, Microsoft Office 2010 SP2, Microsoft Office 2013 SP1, and Microsoft Office 2016. |
2022-02-25 00:00:00 UTC |
CISA |
CVE-2022-23131
|
Unsafe client-side session storage leading to authentication bypass/instance takeover via Zabbix Frontend with configured SAML |
Zabbix |
Frontend |
2022-02-22 00:00:00 UTC |
CISA |
CVE-2022-23134
|
Possible view of the setup pages by unauthenticated users if config file already exists |
Zabbix |
Frontend |
2022-02-22 00:00:00 UTC |
CISA |
CVE-2022-25335
|
RigoBlock Dragos through 2022-02-17 lacks the onlyOwner modifier for setMultipleAllowances. This enables token manipulation, as exploited in the... |
n/a |
n/a |
2022-02-18 17:34:58 UTC |
CVE |
CVE-2018-15982
|
Flash Player versions 31.0.0.153 and earlier, and 31.0.0.108 and earlier have a use after free vulnerability. Successful exploitation could lead to... |
Adobe |
Flash Player |
2022-02-15 00:00:00 UTC |
CISA |
CVE-2018-8174
|
A remote code execution vulnerability exists in the way that the VBScript engine handles objects in memory, aka "Windows VBScript Engine Remote... |
Microsoft |
Windows 7, Windows Server 2012 R2, Windows RT 8.1, Windows Server 2008, Windows Server 2012, Windows 8.1, Windows Server 2016, Windows Server 2008 R2, Windows 10, Windows 10 Servers |
2022-02-15 00:00:00 UTC |
CISA |
CVE-2019-0752
|
A remote code execution vulnerability exists in the way that the scripting engine handles objects in memory in Internet Explorer, aka 'Scripting... |
Microsoft |
Internet Explorer 11, Internet Explorer 10 |
2022-02-15 00:00:00 UTC |
CISA |
CVE-2022-0609
|
Use after free in Animation in Google Chrome prior to 98.0.4758.102 allowed a remote attacker to potentially exploit heap corruption via a crafted... |
Google |
Chrome |
2022-02-15 00:00:00 UTC |
CISA |
CVE-2022-24086
|
Adobe Commerce checkout improper input validation leads to remote code execution |
Adobe |
Magento Commerce |
2022-02-15 00:00:00 UTC |
CISA |