Vulnerabilities (CVE)

Join the Common Vulnerabilities and Exposures (CVE) community and start to get notified about new vulnerabilities.

Total 210374 CVE
CVE Vendors Products Updated CVSS v2 CVSS v3
CVE-2021-33739 1 Microsoft 2 Windows 10, Windows Server 2016 2022-05-03 4.6 MEDIUM 7.8 HIGH
Microsoft DWM Core Library Elevation of Privilege Vulnerability
CVE-2021-31973 1 Microsoft 8 Windows 10, Windows 7, Windows 8.1 and 5 more 2022-05-03 4.6 MEDIUM 7.8 HIGH
Windows GPSVC Elevation of Privilege Vulnerability
CVE-2021-31958 1 Microsoft 8 Windows 10, Windows 7, Windows 8.1 and 5 more 2022-05-03 6.8 MEDIUM 8.8 HIGH
Windows NTLM Elevation of Privilege Vulnerability
CVE-2021-31956 1 Microsoft 8 Windows 10, Windows 7, Windows 8.1 and 5 more 2022-05-03 9.3 HIGH 7.8 HIGH
Windows NTFS Elevation of Privilege Vulnerability
CVE-2021-31953 1 Microsoft 8 Windows 10, Windows 7, Windows 8.1 and 5 more 2022-05-03 4.6 MEDIUM 7.8 HIGH
Windows Filter Manager Elevation of Privilege Vulnerability
CVE-2021-31952 1 Microsoft 3 Windows 10, Windows Server 2016, Windows Server 2019 2022-05-03 7.2 HIGH 7.8 HIGH
Windows Kernel-Mode Driver Elevation of Privilege Vulnerability
CVE-2021-31951 1 Microsoft 3 Windows 10, Windows Server 2016, Windows Server 2019 2022-05-03 7.2 HIGH 7.8 HIGH
Windows Kernel Elevation of Privilege Vulnerability
CVE-2021-31938 1 Microsoft 1 Kubernetes Tools 2022-05-03 6.8 MEDIUM 7.8 HIGH
Microsoft VsCode Kubernetes Tools Extension Elevation of Privilege Vulnerability
CVE-2021-22308 1 Huawei 2 Emui, Magic Ui 2022-05-03 2.1 LOW 3.3 LOW
There is a Business Logic Errors vulnerability in Huawei Smartphone. The malicious apps installed on the device can keep taking screenshots in the background. This issue does not cause system errors, but may cause personal information leakage.
CVE-2020-6641 1 Fortinet 1 Fortipresence 2022-05-03 4.0 MEDIUM 4.3 MEDIUM
Two authorization bypass through user-controlled key vulnerabilities in the Fortinet FortiPresence 2.1.0 administration interface may allow an attacker to gain access to some user data via portal manager or portal users parameters.
CVE-2020-26670 1 Bigtreecms 1 Bigtree Cms 2022-05-03 6.5 MEDIUM 8.8 HIGH
A vulnerability has been discovered in BigTree CMS 4.4.10 and earlier which allows an authenticated attacker to execute arbitrary commands through a crafted request sent to the server via the 'Create a New Setting' function.
CVE-2021-33590 1 Labapart 1 Gattlib 2022-05-03 7.5 HIGH 9.8 CRITICAL
GattLib 0.3-rc1 has a stack-based buffer over-read in get_device_path_from_mac in dbus/gattlib.c.
CVE-2021-30190 1 Codesys 1 V2 Web Server 2022-05-03 7.5 HIGH 9.8 CRITICAL
CODESYS V2 Web-Server before 1.1.9.20 has Improper Access Control.
CVE-2021-20726 1 Overwolf 1 Overwolf 2022-05-03 4.4 MEDIUM 7.8 HIGH
Untrusted search path vulnerability in The Installer of Overwolf 2.168.0.n and earlier allows an attacker to gain privileges and execute arbitrary code with the privilege of the user invoking the installer via a Trojan horse DLL in an unspecified directory.
CVE-2021-20722 1 Fujitsu 1 Scansnap Manager 2022-05-03 4.4 MEDIUM 7.8 HIGH
Untrusted search path vulnerability in the installers of ScanSnap Manager prior to versions V7.0L20 and the Software Download Installer prior to WinSSInst2JP.exe and WinSSInst2iX1500JP.exe allows an attacker to gain privileges and execute arbitrary code with the privilege of the user invoking the installer via a Trojan horse DLL in an unspecified directory.
CVE-2020-27211 1 Nordicsemi 2 Nrf52840, Nrf52840 Firmware 2022-05-03 3.3 LOW 5.7 MEDIUM
Nordic Semiconductor nRF52840 devices through 2020-10-19 have improper protection against physical side channels. The flash read-out protection (APPROTECT) can be bypassed by injecting a fault during the boot phase.
CVE-2020-4646 1 Ibm 1 Sterling B2b Integrator 2022-05-03 4.0 MEDIUM 4.3 MEDIUM
IBM Sterling B2B Integrator Standard Edition 5.2.0.0 through 5.2.6.5, 6.0.0.0 through 6.0.3.3, and 6.1.0.0 through 6.1.0.2 could allow an authenticated user to view pages they shoiuld not have access to due to improper authorization control.
CVE-2020-20246 1 Mikrotik 1 Routeros 2022-05-03 4.0 MEDIUM 6.5 MEDIUM
Mikrotik RouterOs stable 6.46.3 suffers from a memory corruption vulnerability in the mactel process. An authenticated remote attacker can cause a Denial of Service due to improper memory access.
CVE-2020-20245 1 Mikrotik 1 Routeros 2022-05-03 4.0 MEDIUM 6.5 MEDIUM
Mikrotik RouterOs stable 6.46.3 suffers from a memory corruption vulnerability in the log process. An authenticated remote attacker can cause a Denial of Service due to improper memory access.
CVE-2020-20227 1 Mikrotik 1 Routeros 2022-05-03 4.0 MEDIUM 6.5 MEDIUM
Mikrotik RouterOs stable 6.47 suffers from a memory corruption vulnerability in the /nova/bin/diskd process. An authenticated remote attacker can cause a Denial of Service due to invalid memory access.