Live data
Exploited vulnerabilities, page 28
Entries 1,351 to 1,400
1,739 in total| Product | What an attacker gains | Concerns | Severity | Added |
|---|---|---|---|---|
Microsoft ExcelCVE-2009-3129 | Memory corruption | Everyone | 7.8 | |
Microsoft WindowsCVE-2009-1123 | Improper access control | Everyone | 7.8 | |
Oracle VirtualBoxCVE-2008-3431 | Improper access control | Business | 8.8 | |
Adobe Acrobat and ReaderCVE-2008-2992 | Improper access controlused by ransomware | Everyone | 7.8 | |
Microsoft WindowsCVE-2004-0210 | Privilege escalation | Everyone | 7.8 | |
Microsoft WindowsCVE-2002-0367 | Privilege escalation | Everyone | 7.8 | |
Synacor Zimbra Collaborate Suite (ZCS)CVE-2022-24682 | Cross-site scriptingused by ransomware | Business | 6.1 | |
Microsoft OfficeCVE-2017-8570 | Code execution | Everyone | 7.8 | |
Microsoft Internet ExplorerCVE-2017-0222 | Code execution | Everyone | 8.8 | |
Microsoft WindowsCVE-2014-6352 | Code execution | Everyone | 7.8 | |
Zabbix FrontendCVE-2022-23134 | Improper access control | Business | 5.3 | |
Zabbix FrontendCVE-2022-23131 | Authentication bypass | Business | 9.8 | |
Adobe Commerce and Magento Open SourceCVE-2022-24086 | Improper access control | Business | 9.8 | |
Google Chromium AnimationCVE-2022-0609 | Memory corruption | Everyone | 8.8 | |
Microsoft Internet ExplorerCVE-2019-0752 | Memory corruptionused by ransomware | Everyone | 7.5 | |
Microsoft WindowsCVE-2018-8174 | Memory corruptionused by ransomware | Everyone | 7.5 | |
RARLAB WinRARCVE-2018-20250 | File accessused by ransomware | Everyone | 7.8 | |
Adobe Flash PlayerCVE-2018-15982 | Memory corruptionused by ransomware | Everyone | 7.8 | |
PHPUnitCVE-2017-9841 | Code execution | Business | 9.8 | |
Microsoft WordCVE-2014-1761 | Memory corruption | Everyone | 7.8 | |
Microsoft Graphics ComponentCVE-2013-3906 | Memory corruption | Business | 7.8 | |
Apple iOS, iPadOS, and macOSCVE-2022-22620 | Memory corruption | Everyone | 8.8 | |
Microsoft WindowsCVE-2021-36934 | Privilege escalation | Everyone | 7.8 | |
Microsoft SMBv3CVE-2020-0796 | Code executionused by ransomware | Business | 10.0 | |
Jenkins Stapler Web FrameworkCVE-2018-1000861 | Code execution | Business | 9.8 | |
Apache Struts 1CVE-2017-9791 | Improper access control | Business | 9.8 | |
Microsoft WindowsCVE-2017-8464 | Code execution | Everyone | 8.8 | |
Oracle WebLogic ServerCVE-2017-10271 | Code executionused by ransomware | Business | 7.5 | |
Microsoft Win32kCVE-2017-0263 | Privilege escalation | Everyone | 7.8 | |
Microsoft OfficeCVE-2017-0262 | Code execution | Everyone | 7.8 | |
Microsoft SMBv1CVE-2017-0145 | Code executionused by ransomware | Business | 8.8 | |
Microsoft SMBv1CVE-2017-0144 | Code executionused by ransomware | Business | 8.8 | |
Apache ActiveMQCVE-2016-3088 | Improper access control | Business | 9.8 | |
D-Link DIR-645 RouterCVE-2015-2051 | Code execution | Home network | 8.8 | |
Microsoft HTTP.sysCVE-2015-1635 | Code execution | Business | 9.8 | |
Apple OS XCVE-2015-1130 | Authentication bypass | Everyone | 7.8 | |
Apple OS XCVE-2014-4404 | Memory corruption | Everyone | 7.8 | |
Microsoft Win32kCVE-2022-21882 | Privilege escalationused by ransomware | Everyone | 7.8 | |
Apple iOS and macOSCVE-2022-22587 | Memory corruption | Everyone | 9.8 | |
SonicWall SMA 100 AppliancesCVE-2021-20038 | Memory corruptionused by ransomware | Business | 9.8 | |
Grandstream UCM6200CVE-2020-5722 | SQL injection | Business | 9.8 | |
Microsoft WindowsCVE-2020-0787 | Privilege escalationused by ransomware | Everyone | 7.8 | |
Intel Active Management Technology (AMT), Small Business Technology (SBT), and Standard ManageabilityCVE-2017-5689 | Privilege escalation | Business | 9.8 | |
GNU Bourne-Again Shell (Bash)CVE-2014-7169 | Code execution | Business | 9.8 | |
GNU Bourne-Again Shell (Bash)CVE-2014-6271 | Code execution | Business | 9.8 | |
Microsoft Internet ExplorerCVE-2014-1776 | Memory corruption | Everyone | 9.8 | |
SolarWinds Serv-UCVE-2021-35247 | Improper access control | Business | 5.3 | |
Microsoft Win32kCVE-2018-8453 | Privilege escalationused by ransomware | Everyone | 7.8 | |
Apache Struts 2CVE-2012-0391 | Improper access control | Business | 9.8 | |
Apache Struts 1CVE-2006-1547 | Denial of service | Business | 7.5 |
Source: CISA Known Exploited Vulnerabilities catalogsource updated Oct 8, 2026, 20:09 UTC
Severity (CVSS): NIST NVD