CVE Database
Synced from NVD, cross-referenced against CISA KEV and EPSS · ordered by last update
| CVE ID | Score | Description |
|---|---|---|
| 10d ago | 7.8 | Improper privilege management in Windows WalletService allows an authorized attacker to elevate privileges locally. |
| 10d ago | 7.8 | Heap-based buffer overflow in Windows DNS allows an authorized attacker to elevate privileges locally. |
| 10d ago | 7.8 | Use after free in Windows Kernel allows an authorized attacker to elevate privileges locally. |
| 10d ago | 7.5 | Use after free in Microsoft Windows Speech allows an authorized attacker to elevate privileges locally. |
| 10d ago | 7.8 | Insufficient granularity of access control in Windows StateRepository API allows an authorized attacker to elevate privileges locally. |
| 10d ago | 8 | Use after free in DNS Server allows an authorized attacker to execute code over a network. |
| 10d ago | 7.8 | Use after free in Microsoft Printer Drivers allows an authorized attacker to elevate privileges locally. |
| 10d ago | 7.1 | Use of uninitialized resource in Microsoft Windows App Store allows an authorized attacker to disclose information locally. |
| 10d ago | 8.1 | Heap-based buffer overflow in Active Directory Domain Services allows an unauthorized attacker to execute code over a network. |
| 10d ago | 7 | Use after free in Microsoft Brokering File System allows an authorized attacker to elevate privileges locally. |
| 10d ago | 7.8 | Insufficient granularity of access control in Microsoft Surface allows an authorized attacker to elevate privileges locally. |
| 10d ago | 7 | Concurrent execution using shared resource with improper synchronization ('race condition') in Windows App Installer allows an authorized attacker to elevate privileges locally. |
| 10d ago | 7 | Use after free in Windows App Installer allows an authorized attacker to elevate privileges locally. |
| 10d ago | 8.8 | Heap-based buffer overflow in Windows DHCP Server allows an authorized attacker to execute code over a network. |
| 10d ago | 8.8 | Improper certificate validation in Azure Monitor Agent allows an unauthorized attacker to elevate privileges over an adjacent network. |
| 10d ago | 7.5 | Improper neutralization of special elements used in an sql command ('sql injection') in SQL Server allows an authorized attacker to elevate privileges over a network. |
| 10d ago | 7.5 | Allocation of resources without limits or throttling in ASP.NET Core allows an unauthorized attacker to deny service over a network. |
| 10d ago | 7.8 | Concurrent execution using shared resource with improper synchronization ('race condition') in Windows Push Notifications allows an authorized attacker to elevate privileges locally. |
| 10d ago | 7.8 | Improper validation of consistency within input in Windows Secure Kernel Mode allows an authorized attacker to elevate privileges locally. |
| 10d ago | 8 | Heap-based buffer overflow in Windows Bluetooth Port Driver allows an unauthorized attacker to execute code over an adjacent network. |
| 10d ago | 8.1 | Concurrent execution using shared resource with improper synchronization ('race condition') in Windows App Store allows an unauthorized attacker to elevate privileges over a network. |
| 10d ago | 8 | Relative path traversal in Windows PowerShell allows an authorized attacker to execute code over a network. |
| 10d ago | 7.5 | Memory allocation with excessive size value in Windows Local Security Authority Subsystem Service (LSASS) allows an unauthorized attacker to deny service over a network. |
| Exploit 10d ago | 7.3 | A vulnerability was detected in SourceCodester Simple and Nice Shopping Cart Script 1.0. This vulnerability affects unknown code of the file /admin/userproductdeletequery.php. Performing a manipulation of the argument user_id results in sql injection. It is possible to initiate the attack remotely. The exploit is now public and may be used. |
| 10d ago | 8.8 | A privilege escalation vulnerability exists in the HTTP authentication component in Archer VX1800v v1. Improper handling of user-controlled input may allow newline characters to be injected into internally constructed configuration data. An authenticated user with sufficient privileges may be able to modify account settings and gain elevated administrative privileges. |
| Exploit 10d ago | 8.8 | An OS command injection vulnerability exists in Archer VX800v v1 due to insufficient input sanitization of the domain name parameter. An adjacent attacker who can access the relevant HTTP interface can modify the parameter to inject shell metacharacters, resulting in arbitrary code execution with root privileges. Successful exploitation may allow remote code execution and complete compromise of the device. |
| Exploit 10d ago | 8.1 | An OS command injection vulnerability exists in the TR-069 / CWMP management interface of Archer VX1800v v1 due to insufficient input validation and sanitization of parameters, allowing crafted input to be executed as system-level commands. Exploitation requires specific conditions such as TR-069 being enabled and ability to influence ACS-delivered commands, compromise or control an ACS server. Successful exploitation may allow arbitrary command execution with root privileges, resulting in complete compromise of the device. |
| 10d ago | 8.2 | A security issue exists within CompactLogix® 5380, ControlLogix® 5580, and EN4 communication modules related to CIP Security certificate revocation handling. The security issue stems from the controller failing to properly reject certificates signed by an intermediate certificate that has been revoked via a Certificate Revocation List (CRL). This could allow a network-based attacker to establish a connection using a certificate that should be untrusted, potentially bypassing CIP Security protections. |
| 10d ago | 8.4 | A Stored Cross-Site Scripting security issue exists within FactoryTalk® DataMosaix™ Private Cloud. The vulnerability stems from improper neutralization of user-supplied input within the Workflows configuration. An authenticated attacker with high privileges can inject malicious scripts that are permanently stored on the server. This vulnerability can result in the execution of malicious JavaScript when other users access the affected page, potentially allowing for account takeover, credential theft, or redirection to a malicious website. |
| Exploit 10d ago | 7.3 | A code execution security issue exists within Studio 5000 Logix Designer® due to an unquoted search path in the External Tools configuration. The executable paths specified in the external tools configuration file are not properly quoted, and because these paths contain spaces, the operating system may resolve them to unintended executables placed earlier in the search order. If exploited, an attacker could plant a malicious executable in a location within the search path, resulting in arbitrary code execution with the same permissions of the user running the application. |