CVE Database
Synced from NVD, cross-referenced against CISA KEV and EPSS · ordered by last update
| CVE ID | Score | Description |
|---|---|---|
| 2mo ago | 7.5 | A client-side enforcement of server-side security in Fortinet FortiAnalyzer-BigData at least version 7.4.0 and 7.2.0 through 7.2.6 and 7.0.1 through 7.0.6 and 6.4.5 through 6.4.7 and 6.2.5, FortiManager version 7.4.0 through 7.4.1 and 7.2.0 through 7.2.4 and 7.0.0 through 7.0.11 and 6.4.0 through 6.4.14, FortiAnalyzer version 7.4.0 through 7.4.1 and 7.2.0 through 7.2.4 and 7.0.0 through 7.0.11 and 6.4.0 through 6.4.14 allows attacker to improper access control via crafted requests. |
| 2mo ago | 7.5 | A session fixation in Fortinet FortiOS version 7.4.0 through 7.4.3 and 7.2.0 through 7.2.7 and 7.0.0 through 7.0.13 allows attacker to execute unauthorized code or commands via phishing SAML authentication link. |
| KEV Exploit 2mo ago | 8 | Limited remote code execution with privilege of a NetworkService Account access in Citrix Session Recording if the attacker is an authenticated user on the same intranet as the session recording server |
| KEV 2mo ago | 8 | Privilege escalation to NetworkService Account access in Citrix Session Recording when an attacker is an authenticated user in the same Windows Active Directory domain as the session recording server domain |
| 2mo ago | 7.3 | Authentication bypass by assumed-immutable data on airlift.microsoft.com allows an authorized attacker to elevate privileges over a network. |
| 2mo ago | 7.8 | Microsoft PC Manager Elevation of Privilege Vulnerability |
| Exploit 2mo ago | 8.8 | Visual Studio Code Python Extension Remote Code Execution Vulnerability |
| 2mo ago | 7.1 | Visual Studio Code Remote Extension Elevation of Privilege Vulnerability |
| Exploit 2mo ago | 8.1 | TorchGeo Remote Code Execution Vulnerability |
| 2mo ago | 7.8 | Windows Win32 Kernel Subsystem Elevation of Privilege Vulnerability |
| Exploit 2mo ago | 7.8 | Microsoft.SqlServer.XEvent.Configuration.dll Remote Code Execution Vulnerability |
| 2mo ago | 7.5 | Microsoft Exchange Server Spoofing Vulnerability |
| KEV 2mo ago | 8.8 | Windows Task Scheduler Elevation of Privilege Vulnerability |
| 2mo ago | 7.5 | Microsoft Word Security Feature Bypass Vulnerability |
| Exploit 2mo ago | 7.8 | Microsoft Office Graphics Remote Code Execution Vulnerability |
| Exploit 2mo ago | 7.8 | Microsoft Office Graphics Remote Code Execution Vulnerability |
| Exploit 2mo ago | 7.8 | Microsoft Excel Remote Code Execution Vulnerability |
| Exploit 2mo ago | 7.8 | Microsoft Excel Remote Code Execution Vulnerability |
| Exploit 2mo ago | 7.8 | Microsoft Excel Remote Code Execution Vulnerability |
| Exploit 2mo ago | 7.8 | Microsoft Excel Remote Code Execution Vulnerability |
| Exploit 2mo ago | 7.8 | Microsoft Excel Remote Code Execution Vulnerability |
| Exploit 2mo ago | 7.8 | Microsoft SQL Server Remote Code Execution Vulnerability |
| 2mo ago | 7.8 | Active Directory Certificate Services Elevation of Privilege Vulnerability |
| Exploit 2mo ago | 8.8 | SQL Server Native Client Remote Code Execution Vulnerability |
| Exploit 2mo ago | 8.8 | SQL Server Native Client Remote Code Execution Vulnerability |
| Exploit 2mo ago | 8.8 | SQL Server Native Client Remote Code Execution Vulnerability |
| Exploit 2mo ago | 8.8 | SQL Server Native Client Remote Code Execution Vulnerability |
| Exploit 2mo ago | 8.8 | SQL Server Native Client Remote Code Execution Vulnerability |
| Exploit 2mo ago | 8.8 | SQL Server Native Client Remote Code Execution Vulnerability |
| Exploit 2mo ago | 8.8 | SQL Server Native Client Remote Code Execution Vulnerability |