CVE-2015-0311 | HIGH | 7.8 | 0.8582 | 86.24 | Yes | No | 2022-04-13 | 2022-04-13 | cisa.gov, euvd | Unspecified vulnerability in Adobe Flash Player allows remote attackers to execute code.Unspecified vulnerability in Adobe Flash Player allows remote attackers to execute code. |
CVE-2018-4939 | CRITICAL | 9.8 | 0.62913 | 86.22 | Yes | No | 2021-11-03 | 2021-11-03 | cisa.gov, euvd | Adobe ColdFusion contains a deserialization of untrusted data vulnerability that could allow for code execution.Adobe ColdFusion contains a deserialization of untrusted data vulnerability that could allow for code execution. |
CVE-2009-3129 | HIGH | 7.8 | 0.85731 | 86.21 | Yes | No | 2022-03-03 | 2022-03-03 | cisa.gov, euvd | Microsoft Office Excel allows remote attackers to execute arbitrary code via a spreadsheet with a FEATHEADER record containing an invalid cb…Microsoft Office Excel allows remote attackers to execute arbitrary code via a spreadsheet with a FEATHEADER record containing an invalid cbHdrData size element that affects a pointer offset. |
CVE-2017-8570 | HIGH | 7.8 | 0.85608 | 86.16 | Yes | No | 2022-02-25 | 2022-02-25 | cisa.gov, euvd | A remote code execution vulnerability exists in Microsoft Office software when it fails to properly handle objects in memory.A remote code execution vulnerability exists in Microsoft Office software when it fails to properly handle objects in memory. |
CVE-2013-2551 | HIGH | 8.8 | 0.74096 | 86.13 | Yes | No | 2022-03-28 | 2022-03-28 | cisa.gov, euvd | Use-after-free vulnerability in Microsoft Internet Explorer allows remote attackers to execute remote code via a crafted web site that trigg…Use-after-free vulnerability in Microsoft Internet Explorer allows remote attackers to execute remote code via a crafted web site that triggers access to a deleted object. |
CVE-2019-12991 | HIGH | 8.8 | 0.74052 | 86.12 | Yes | No | 2022-03-25 | 2022-03-25 | cisa.gov, euvd | Authenticated Command Injection in Citrix SD-WAN Appliance and NetScaler SD-WAN Appliance.Authenticated Command Injection in Citrix SD-WAN Appliance and NetScaler SD-WAN Appliance. |
CVE-2021-43798 | HIGH | 7.5 | 0.88849 | 86.1 | Yes | No | 2025-10-09 | 2025-10-09 | cisa.gov, euvd | Grafana contains a path traversal vulnerability that could allow access to local files.Grafana contains a path traversal vulnerability that could allow access to local files. |
CVE-2018-8414 | HIGH | 8.8 | 0.73968 | 86.09 | Yes | No | 2022-03-25 | 2022-03-25 | cisa.gov, euvd | A remote code execution vulnerability exists when the Windows Shell does not properly validate file paths.A remote code execution vulnerability exists when the Windows Shell does not properly validate file paths. |
CVE-2022-21445 | CRITICAL | 9.8 | 0.62478 | 86.07 | Yes | No | 2024-09-18 | 2024-09-18 | cisa.gov, euvd | Oracle ADF Faces library, included with Oracle JDeveloper Distribution, contains a deserialization of untrusted data vulnerability leading t…Oracle ADF Faces library, included with Oracle JDeveloper Distribution, contains a deserialization of untrusted data vulnerability leading to unauthenticated remote code execution. |
CVE-2019-2616 | HIGH | 7.2 | 0.92183 | 86.06 | Yes | No | 2022-03-25 | 2022-03-25 | cisa.gov, euvd | Oracle BI Publisher, formerly XML Publisher, contains an unspecified vulnerability that allows for various unauthorized actions. Open-source…Oracle BI Publisher, formerly XML Publisher, contains an unspecified vulnerability that allows for various unauthorized actions. Open-source reporting attributes this vulnerability to allowing for authentication bypass. |
CVE-2013-3918 | HIGH | 8.8 | 0.73872 | 86.06 | Yes | No | 2025-10-06 | 2025-10-06 | cisa.gov, euvd | Microsoft Windows contains an out-of-bounds write vulnerability in the InformationCardSigninHelper Class ActiveX control, icardie.dll. An at…Microsoft Windows contains an out-of-bounds write vulnerability in the InformationCardSigninHelper Class ActiveX control, icardie.dll. An attacker could exploit the vulnerability by constructing a specially crafted webpage. When a user views the webpage, the vulnerability could allow remote code execution. An attacker who successfully exploited this vulnerability could gain the same user rights as the current user. The impacted product could be end-of-life (EoL) and/or end-of-service (EoS). Users should discontinue product utilization. |
CVE-2012-4969 | HIGH | 8.1 | 0.81716 | 86.0 | Yes | No | 2022-06-08 | 2022-06-08 | cisa.gov, euvd | Microsoft Internet Explorer contains a use-after-free vulnerability that allows remote attackers to execute code via a crafted web site.Microsoft Internet Explorer contains a use-after-free vulnerability that allows remote attackers to execute code via a crafted web site. |
CVE-2025-49706 | MEDIUM | 6.5 | 0.99879 | 85.96 | Yes | No | 2025-07-22 | 2025-07-22 | cisa.gov, euvd, nvd | Microsoft SharePoint contains an improper authentication vulnerability that allows an authorized attacker to perform spoofing over a network…Microsoft SharePoint contains an improper authentication vulnerability that allows an authorized attacker to perform spoofing over a network. Successfully exploitation could allow an attacker to view sensitive information and make some changes to disclosed information. This vulnerability could be chained with CVE-2025-49704. CVE-2025-53771 is a patch bypass for CVE-2025-49706, and the updates for CVE-2025-53771 include more robust protection than those for CVE-2025-49706. |
CVE-2013-3906 | HIGH | 7.8 | 0.84971 | 85.94 | Yes | No | 2022-02-15 | 2022-02-15 | cisa.gov, euvd | Microsoft Graphics Component contains a memory corruption vulnerability which can allow for remote code execution.Microsoft Graphics Component contains a memory corruption vulnerability which can allow for remote code execution. |
CVE-2021-1675 | HIGH | 7.8 | 0.84814 | 85.88 | Yes | Yes | 2021-11-03 | 2021-11-03 | cisa.gov, euvd, github | Microsoft Windows Print Spooler contains an unspecified vulnerability that allows for remote code execution.Microsoft Windows Print Spooler contains an unspecified vulnerability that allows for remote code execution. |
CVE-2025-11953 | CRITICAL | 9.8 | 0.61921 | 85.87 | Yes | No | 2026-02-05 | 2026-02-05 | cisa.gov, euvd | React Native Community CLI contains an OS command injection vulnerability which could allow unauthenticated network attackers to send POST r…React Native Community CLI contains an OS command injection vulnerability which could allow unauthenticated network attackers to send POST requests to the Metro Development Server and run arbitrary executables via a vulnerable endpoint exposed by the server. On Windows, attackers can also execute arbitrary shell commands with fully controlled arguments. |
CVE-2024-23113 | CRITICAL | 9.8 | 0.61725 | 85.8 | Yes | No | 2024-10-09 | 2024-10-09 | cisa.gov, euvd | Fortinet FortiOS, FortiPAM, FortiProxy, and FortiWeb contain a format string vulnerability that allows a remote, unauthenticated attacker to…Fortinet FortiOS, FortiPAM, FortiProxy, and FortiWeb contain a format string vulnerability that allows a remote, unauthenticated attacker to execute arbitrary code or commands via specially crafted requests. |
CVE-2020-28949 | HIGH | 7.8 | 0.84554 | 85.79 | Yes | No | 2022-08-25 | 2022-08-25 | cisa.gov, euvd | PEAR Archive_Tar allows an unserialization attack because phar: is blocked but PHAR: is not blocked. PEAR stands for PHP Extension and Appli…PEAR Archive_Tar allows an unserialization attack because phar: is blocked but PHAR: is not blocked. PEAR stands for PHP Extension and Application Repository and it is an open-source framework and distribution system for reusable PHP components with known usage in third-party products such as Drupal Core and Red Hat Linux. |
CVE-2024-9474 | MEDIUM | 6.9 | 0.94766 | 85.77 | Yes | No | 2024-11-18 | 2024-11-18 | cisa.gov, euvd, nvd | Palo Alto Networks PAN-OS contains an OS command injection vulnerability that allows for privilege escalation through the web-based manageme…Palo Alto Networks PAN-OS contains an OS command injection vulnerability that allows for privilege escalation through the web-based management interface for several PAN products, including firewalls and VPN concentrators. |
CVE-2021-22555 | HIGH | 8.3 | 0.78684 | 85.74 | Yes | Yes | 2025-10-06 | 2025-10-06 | cisa.gov, euvd, packetstorm | Linux Kernel contains a heap out-of-bounds write vulnerability that could allow an attacker to gain privileges or cause a DoS (via heap memo…Linux Kernel contains a heap out-of-bounds write vulnerability that could allow an attacker to gain privileges or cause a DoS (via heap memory corruption) through user name space. |
CVE-2024-54085 | CRITICAL | 10.0 | 0.59193 | 85.72 | Yes | No | 2025-06-25 | 2025-06-25 | cisa.gov, euvd | AMI MegaRAC SPx contains an authentication bypass by spoofing vulnerability in the Redfish Host Interface. A successful exploitation of this…AMI MegaRAC SPx contains an authentication bypass by spoofing vulnerability in the Redfish Host Interface. A successful exploitation of this vulnerability may lead to a loss of confidentiality, integrity, and/or availability. |
CVE-2015-7755 | CRITICAL | 9.8 | 0.614 | 85.69 | Yes | No | 2025-10-02 | 2025-10-02 | cisa.gov, euvd | Juniper ScreenOS contains an improper authentication vulnerability that could allow unauthorized remote administrative access to the device.Juniper ScreenOS contains an improper authentication vulnerability that could allow unauthorized remote administrative access to the device. |
CVE-2018-8174 | HIGH | 7.5 | 0.87639 | 85.67 | Yes | No | 2022-02-15 | 2022-02-15 | cisa.gov, euvd | A remote code execution vulnerability exists in the way that the VBScript engine handles objects in memory, aka "Windows VBScript Engine Rem…A remote code execution vulnerability exists in the way that the VBScript engine handles objects in memory, aka "Windows VBScript Engine Remote Code Execution" |
CVE-2016-9079 | HIGH | 7.5 | 0.87598 | 85.66 | Yes | No | 2023-06-22 | 2023-06-22 | cisa.gov, euvd | Mozilla Firefox, Firefox ESR, and Thunderbird contain a use-after-free vulnerability in SVG Animation, targeting Firefox and Tor browser use…Mozilla Firefox, Firefox ESR, and Thunderbird contain a use-after-free vulnerability in SVG Animation, targeting Firefox and Tor browser users on Windows. |
CVE-2024-43468 | CRITICAL | 9.8 | 0.6111 | 85.59 | Yes | No | 2026-02-12 | 2026-02-12 | cisa.gov, euvd | Microsoft Configuration Manager contains an SQL injection vulnerability. An unauthenticated attacker could exploit this vulnerability by sen…Microsoft Configuration Manager contains an SQL injection vulnerability. An unauthenticated attacker could exploit this vulnerability by sending specially crafted requests to the target environment which are processed in an unsafe manner enabling the attacker to execute commands on the server and/or underlying database. |
CVE-2020-8243 | HIGH | 7.2 | 0.90759 | 85.57 | Yes | No | 2021-11-03 | 2021-11-03 | cisa.gov, euvd | Ivanti Pulse Connect Secure contains an unspecified vulnerability in the admin web interface that could allow an authenticated attacker to u…Ivanti Pulse Connect Secure contains an unspecified vulnerability in the admin web interface that could allow an authenticated attacker to upload a custom template to perform code execution. |
CVE-2021-22991 | CRITICAL | 9.8 | 0.61064 | 85.57 | Yes | No | 2022-01-18 | 2022-01-18 | cisa.gov, euvd | The Traffic Management Microkernel of BIG-IP ASM Risk Engine has a buffer overflow vulnerability, leading to a bypassing of URL-based access…The Traffic Management Microkernel of BIG-IP ASM Risk Engine has a buffer overflow vulnerability, leading to a bypassing of URL-based access controls. |
CVE-2016-6415 | HIGH | 7.5 | 0.87313 | 85.56 | Yes | No | 2023-05-19 | 2023-05-19 | cisa.gov, euvd | Cisco IOS, IOS XR, and IOS XE contain insufficient condition checks in the part of the code that handles Internet Key Exchange version 1 (IK…Cisco IOS, IOS XR, and IOS XE contain insufficient condition checks in the part of the code that handles Internet Key Exchange version 1 (IKEv1) security negotiation requests. contains an information disclosure vulnerability in the Internet Key Exchange version 1 (IKEv1) that could allow an attacker to retrieve memory contents. Successful exploitation could allow the attacker to retrieve memory contents, which can lead to information disclosure. |
CVE-2018-7445 | CRITICAL | 9.8 | 0.61018 | 85.56 | Yes | No | 2022-09-08 | 2022-09-08 | cisa.gov, euvd | In MikroTik RouterOS, a stack-based buffer overflow occurs when processing NetBIOS session request messages. Remote attackers with access to…In MikroTik RouterOS, a stack-based buffer overflow occurs when processing NetBIOS session request messages. Remote attackers with access to the service can exploit this vulnerability and gain code execution on the system. |
CVE-2021-22681 | CRITICAL | 9.8 | 0.60993 | 85.55 | Yes | Yes | 2026-03-05 | 2026-03-05 | cisa.gov, euvd, github | Multiple Rockwell products contain an insufficient protected credentials vulnerability. Studio 5000 Logix Designer software may allow a key …Multiple Rockwell products contain an insufficient protected credentials vulnerability. Studio 5000 Logix Designer software may allow a key to be discovered. This key is used to verify Logix controllers are communicating with Rockwell Automation design software. If successfully exploited, this vulnerability could allow an unauthorized application to connect with Logix controllers. To leverage this vulnerability, an unauthorized user would require network access to the controller. |
CVE-2017-0037 | HIGH | 8.1 | 0.80386 | 85.54 | Yes | No | 2022-03-28 | 2022-03-28 | cisa.gov, euvd | Microsoft Edge and Internet Explorer have a type confusion vulnerability in mshtml.dll, which allows remote code execution.Microsoft Edge and Internet Explorer have a type confusion vulnerability in mshtml.dll, which allows remote code execution. |
CVE-2020-4427 | CRITICAL | 9.0 | 0.70031 | 85.51 | Yes | No | 2021-11-03 | 2021-11-03 | cisa.gov, euvd | IBM Data Risk Manager contains a security bypass vulnerability that could allow a remote attacker to bypass security restrictions when confi…IBM Data Risk Manager contains a security bypass vulnerability that could allow a remote attacker to bypass security restrictions when configured with SAML authentication. By sending a specially crafted HTTP request, an attacker could exploit this vulnerability to bypass the authentication process and gain full administrative access to the system. |
CVE-2017-6334 | HIGH | 8.8 | 0.72199 | 85.47 | Yes | No | 2022-03-25 | 2022-03-25 | cisa.gov, euvd | dnslookup.cgi on NETGEAR DGN2200 devices with firmware through 10.0.0.50 allows remote authenticated users to execute arbitrary OS commandsdnslookup.cgi on NETGEAR DGN2200 devices with firmware through 10.0.0.50 allows remote authenticated users to execute arbitrary OS commands |
CVE-2021-21311 | HIGH | 7.2 | 0.90461 | 85.46 | Yes | No | 2025-09-29 | 2025-09-29 | cisa.gov, euvd | Adminer contains a server-side request forgery vulnerability that, when exploited, allows a remote attacker to obtain potentially sensitive …Adminer contains a server-side request forgery vulnerability that, when exploited, allows a remote attacker to obtain potentially sensitive information. |
CVE-2012-0151 | HIGH | 7.8 | 0.83534 | 85.44 | Yes | No | 2022-06-08 | 2022-06-08 | cisa.gov, euvd | The Authenticode Signature Verification function in Microsoft Windows (WinVerifyTrust) does not properly validate the digest of a signed por…The Authenticode Signature Verification function in Microsoft Windows (WinVerifyTrust) does not properly validate the digest of a signed portable executable (PE) file, which allows user-assisted remote attackers to execute code. |
CVE-2020-0674 | HIGH | 7.5 | 0.86863 | 85.4 | Yes | No | 2021-11-03 | 2021-11-03 | cisa.gov, euvd | Microsoft Internet Explorer contains a memory corruption vulnerability due to the way the Scripting Engine handles objects in memory. Succes…Microsoft Internet Explorer contains a memory corruption vulnerability due to the way the Scripting Engine handles objects in memory. Successful exploitation could allow remote code execution in the context of the current user. |
CVE-2021-40655 | HIGH | 7.5 | 0.86659 | 85.33 | Yes | No | 2024-05-16 | 2024-05-16 | cisa.gov, euvd | D-Link DIR-605 routers contain an information disclosure vulnerability that allows attackers to obtain a username and password by forging a …D-Link DIR-605 routers contain an information disclosure vulnerability that allows attackers to obtain a username and password by forging a post request to the /getcfg.php page. |
CVE-2021-25296 | HIGH | 8.8 | 0.71536 | 85.24 | Yes | No | 2022-01-18 | 2022-01-18 | cisa.gov, euvd, nvd | Nagios XI contains a vulnerability which can lead to OS command injection on the Nagios XI server.Nagios XI contains a vulnerability which can lead to OS command injection on the Nagios XI server. |
CVE-2025-29635 | HIGH | 7.2 | 0.89641 | 85.17 | Yes | No | 2026-04-24 | 2026-04-24 | cisa.gov, euvd | D-Link DIR-823X contains a command injection vulnerability that allows an authorized attacker to execute arbitrary commands on remote device…D-Link DIR-823X contains a command injection vulnerability that allows an authorized attacker to execute arbitrary commands on remote devices by sending a POST request to /goform/set_prohibiting via the corresponding function. The impacted product could be end-of-life (EoL) and/or end-of-service (EoS). Users should discontinue product utilization. |
CVE-2023-20273 | HIGH | 7.2 | 0.89634 | 85.17 | Yes | No | 2023-10-23 | 2023-10-23 | cisa.gov, euvd | Cisco IOS XE contains a command injection vulnerability in the web user interface. When chained with CVE-2023-20198, the attacker can levera…Cisco IOS XE contains a command injection vulnerability in the web user interface. When chained with CVE-2023-20198, the attacker can leverage the new local user to elevate privilege to root and write the implant to the file system. Cisco identified CVE-2023-20273 as the vulnerability exploited to deploy the implant. CVE-2021-1435, previously associated with the exploitation events, is no longer believed to be related to this activity. |
CVE-2021-21315 | HIGH | 7.1 | 0.90675 | 85.14 | Yes | No | 2022-01-18 | 2022-01-18 | cisa.gov, euvd | In this vulnerability, an attacker can send a malicious payload that will exploit the name parameter. After successful exploitation, attacke…In this vulnerability, an attacker can send a malicious payload that will exploit the name parameter. After successful exploitation, attackers can execute remote. |
CVE-2018-15982 | HIGH | 7.8 | 0.82456 | 85.06 | Yes | No | 2022-02-15 | 2022-02-15 | cisa.gov, euvd | Adobe Flash Player com.adobe.tvsdk.mediacore.metadata Use After Free VulnerabilityAdobe Flash Player com.adobe.tvsdk.mediacore.metadata Use After Free Vulnerability |
CVE-2010-1297 | HIGH | 7.8 | 0.82365 | 85.03 | Yes | No | 2022-06-08 | 2022-06-08 | cisa.gov, euvd | Adobe Flash Player contains a memory corruption vulnerability that allows remote attackers to execute code or cause denial-of-service (DoS).Adobe Flash Player contains a memory corruption vulnerability that allows remote attackers to execute code or cause denial-of-service (DoS). |
CVE-2024-8190 | HIGH | 7.2 | 0.89122 | 84.99 | Yes | No | 2024-09-13 | 2024-09-13 | cisa.gov, euvd | Ivanti Cloud Services Appliance (CSA) contains an OS command injection vulnerability in the administrative console which can allow an authen…Ivanti Cloud Services Appliance (CSA) contains an OS command injection vulnerability in the administrative console which can allow an authenticated attacker with application admin privileges to pass commands to the underlying OS. |
CVE-2013-3163 | HIGH | 8.8 | 0.70676 | 84.94 | Yes | No | 2023-03-30 | 2023-03-30 | cisa.gov, euvd | Microsoft Internet Explorer contains a memory corruption vulnerability that allows remote attackers to execute code or cause a denial of ser…Microsoft Internet Explorer contains a memory corruption vulnerability that allows remote attackers to execute code or cause a denial of service via a crafted website. |
CVE-2017-6736 | HIGH | 8.8 | 0.70559 | 84.9 | Yes | No | 2022-03-03 | 2022-03-03 | cisa.gov, euvd | The Simple Network Management Protocol (SNMP) subsystem of Cisco IOS and IOS XE contains a vulnerability that could allow an authenticated, …The Simple Network Management Protocol (SNMP) subsystem of Cisco IOS and IOS XE contains a vulnerability that could allow an authenticated, remote attacker to remotely execute code. |
CVE-2022-27924 | HIGH | 7.5 | 0.85398 | 84.89 | Yes | No | 2022-08-04 | 2022-08-04 | cisa.gov, euvd, nvd | Synacor Zimbra Collaboration Suite (ZCS) allows an attacker to inject memcache commands into a targeted instance which causes an overwrite o…Synacor Zimbra Collaboration Suite (ZCS) allows an attacker to inject memcache commands into a targeted instance which causes an overwrite of arbitrary cached entries. |
CVE-2023-27351 | HIGH | 8.2 | 0.77388 | 84.89 | Yes | No | 2026-04-20 | 2026-04-20 | cisa.gov, euvd | PaperCut NG/MF contains an improper authentication vulnerability that could allow remote attackers to bypass authentication on affected inst…PaperCut NG/MF contains an improper authentication vulnerability that could allow remote attackers to bypass authentication on affected installations via the SecurityRequestFilter class. |
CVE-2009-4324 | HIGH | 7.8 | 0.81933 | 84.88 | Yes | No | 2022-06-08 | 2022-06-08 | cisa.gov, euvd | Use-after-free vulnerability in Adobe Acrobat and Reader allows remote attackers to execute code via a crafted PDF file.Use-after-free vulnerability in Adobe Acrobat and Reader allows remote attackers to execute code via a crafted PDF file. |
CVE-2013-1331 | HIGH | 7.8 | 0.81877 | 84.86 | Yes | No | 2022-06-08 | 2022-06-08 | cisa.gov, euvd | Microsoft Office contains a buffer overflow vulnerability that allows remote attackers to execute code via crafted PNG data in an Office doc…Microsoft Office contains a buffer overflow vulnerability that allows remote attackers to execute code via crafted PNG data in an Office document. |