Vulnerabilities (CVE)

Join the Common Vulnerabilities and Exposures (CVE) community and start to get notified about new vulnerabilities.

Total 210374 CVE
CVE Vendors Products Updated CVSS v2 CVSS v3
CVE-2021-36782 1 Suse 1 Rancher 2023-01-18 N/A 9.9 CRITICAL
A Cleartext Storage of Sensitive Information vulnerability in SUSE Rancher allows authenticated Cluster Owners, Cluster Members, Project Owners, Project Members and User Base to use the Kubernetes API to retrieve plaintext version of sensitive data. This issue affects: SUSE Rancher Rancher versions prior to 2.5.16; Rancher versions prior to 2.6.7.
CVE-2022-45165 1 Archibus 1 Web Central 2023-01-18 N/A 8.8 HIGH
An issue was discovered in Archibus Web Central 2022.03.01.107. A service exposed by the application accepts a user-controlled parameter that is used to create an SQL query. It causes this service to be prone to SQL injection.
CVE-2023-21771 1 Microsoft 3 Windows 10, Windows 11, Windows Server 2022 2023-01-18 N/A 7.0 HIGH
Windows Local Session Manager (LSM) Elevation of Privilege Vulnerability.
CVE-2022-30332 1 Talend 1 Administration Center 2023-01-18 N/A 5.3 MEDIUM
In Talend Administration Center 7.3.1.20200219 before TAC-15950, the Forgot Password feature provides different error messages for invalid reset attempts depending on whether the email address is associated with any account. This allows remote attackers to enumerate accounts via a series of requests.
CVE-2023-21753 1 Microsoft 2 Windows 10, Windows Server 2019 2023-01-18 N/A 5.5 MEDIUM
Event Tracing for Windows Information Disclosure Vulnerability. This CVE ID is unique from CVE-2023-21536.
CVE-2023-21745 1 Microsoft 1 Exchange Server 2023-01-18 N/A 8.0 HIGH
Microsoft Exchange Server Spoofing Vulnerability. This CVE ID is unique from CVE-2023-21762.
CVE-2021-4287 1 Microsoft 1 Binwalk 2023-01-18 N/A 6.5 MEDIUM
A vulnerability, which was classified as problematic, was found in ReFirm Labs binwalk up to 2.3.2. Affected is an unknown function of the file src/binwalk/modules/extractor.py of the component Archive Extraction Handler. The manipulation leads to symlink following. It is possible to launch the attack remotely. Upgrading to version 2.3.3 is able to address this issue. The name of the patch is fa0c0bd59b8588814756942fe4cb5452e76c1dcd. It is recommended to upgrade the affected component. The identifier of this vulnerability is VDB-216876.
CVE-2023-21744 1 Microsoft 2 Sharepoint Foundation, Sharepoint Server 2023-01-17 N/A 8.8 HIGH
Microsoft SharePoint Server Remote Code Execution Vulnerability. This CVE ID is unique from CVE-2023-21742.
CVE-2023-21743 1 Microsoft 1 Sharepoint Server 2023-01-17 N/A 5.3 MEDIUM
Microsoft SharePoint Server Security Feature Bypass Vulnerability.
CVE-2023-21742 1 Microsoft 2 Sharepoint Foundation, Sharepoint Server 2023-01-17 N/A 8.8 HIGH
Microsoft SharePoint Server Remote Code Execution Vulnerability. This CVE ID is unique from CVE-2023-21744.
CVE-2023-21735 1 Microsoft 3 365 Apps, Office, Office Long Term Servicing Channel 2023-01-17 N/A 7.8 HIGH
Microsoft Office Remote Code Execution Vulnerability. This CVE ID is unique from CVE-2023-21734.
CVE-2023-21734 1 Microsoft 3 365 Apps, Office, Office Long Term Servicing Channel 2023-01-17 N/A 7.8 HIGH
Microsoft Office Remote Code Execution Vulnerability. This CVE ID is unique from CVE-2023-21735.
CVE-2023-21674 1 Microsoft 11 Windows 10 1607, Windows 10 1809, Windows 10 20h2 and 8 more 2023-01-17 N/A 8.8 HIGH
Windows Advanced Local Procedure Call (ALPC) Elevation of Privilege Vulnerability.
CVE-2023-21560 1 Microsoft 15 Windows 10 1607, Windows 10 1809, Windows 10 20h2 and 12 more 2023-01-17 N/A 6.6 MEDIUM
Windows Boot Manager Security Feature Bypass Vulnerability.
CVE-2023-21730 1 Microsoft 15 Windows 10 1607, Windows 10 1809, Windows 10 20h2 and 12 more 2023-01-17 N/A 7.8 HIGH
Microsoft Cryptographic Services Elevation of Privilege Vulnerability. This CVE ID is unique from CVE-2023-21551, CVE-2023-21561.
CVE-2023-21563 1 Microsoft 15 Windows 10 1607, Windows 10 1809, Windows 10 20h2 and 12 more 2023-01-17 N/A 6.8 MEDIUM
BitLocker Security Feature Bypass Vulnerability.
CVE-2023-21676 1 Microsoft 8 Windows 10 1809, Windows 10 20h2, Windows 10 21h2 and 5 more 2023-01-17 N/A 8.8 HIGH
Windows Lightweight Directory Access Protocol (LDAP) Remote Code Execution Vulnerability.
CVE-2023-21677 1 Microsoft 11 Windows 10 1607, Windows 10 1809, Windows 10 20h2 and 8 more 2023-01-17 N/A 7.5 HIGH
Windows Internet Key Exchange (IKE) Extension Denial of Service Vulnerability. This CVE ID is unique from CVE-2023-21683, CVE-2023-21758.
CVE-2023-21678 1 Microsoft 15 Windows 10 1607, Windows 10 1809, Windows 10 20h2 and 12 more 2023-01-17 N/A 7.8 HIGH
Windows Print Spooler Elevation of Privilege Vulnerability. This CVE ID is unique from CVE-2023-21760, CVE-2023-21765.
CVE-2023-21679 1 Microsoft 15 Windows 10 1607, Windows 10 1809, Windows 10 20h2 and 12 more 2023-01-17 N/A 8.1 HIGH
Windows Layer 2 Tunneling Protocol (L2TP) Remote Code Execution Vulnerability. This CVE ID is unique from CVE-2023-21543, CVE-2023-21546, CVE-2023-21555, CVE-2023-21556.