Live data

Exploited vulnerabilities, page 28

Entries 1,351 to 1,400

1,739 in total
ProductWhat an attacker gainsConcernsSeverityAdded
Microsoft ExcelCVE-2009-3129Memory corruptionEveryone7.8
Microsoft WindowsCVE-2009-1123Improper access controlEveryone7.8
Oracle VirtualBoxCVE-2008-3431Improper access controlBusiness8.8
Adobe Acrobat and ReaderCVE-2008-2992Improper access controlused by ransomwareEveryone7.8
Microsoft WindowsCVE-2004-0210Privilege escalationEveryone7.8
Microsoft WindowsCVE-2002-0367Privilege escalationEveryone7.8
Synacor Zimbra Collaborate Suite (ZCS)CVE-2022-24682Cross-site scriptingused by ransomwareBusiness6.1
Microsoft OfficeCVE-2017-8570Code executionEveryone7.8
Microsoft Internet ExplorerCVE-2017-0222Code executionEveryone8.8
Microsoft WindowsCVE-2014-6352Code executionEveryone7.8
Zabbix FrontendCVE-2022-23134Improper access controlBusiness5.3
Zabbix FrontendCVE-2022-23131Authentication bypassBusiness9.8
Adobe Commerce and Magento Open SourceCVE-2022-24086Improper access controlBusiness9.8
Google Chromium AnimationCVE-2022-0609Memory corruptionEveryone8.8
Microsoft Internet ExplorerCVE-2019-0752Memory corruptionused by ransomwareEveryone7.5
Microsoft WindowsCVE-2018-8174Memory corruptionused by ransomwareEveryone7.5
RARLAB WinRARCVE-2018-20250File accessused by ransomwareEveryone7.8
Adobe Flash PlayerCVE-2018-15982Memory corruptionused by ransomwareEveryone7.8
PHPUnitCVE-2017-9841Code executionBusiness9.8
Microsoft WordCVE-2014-1761Memory corruptionEveryone7.8
Microsoft Graphics ComponentCVE-2013-3906Memory corruptionBusiness7.8
Apple iOS, iPadOS, and macOSCVE-2022-22620Memory corruptionEveryone8.8
Microsoft WindowsCVE-2021-36934Privilege escalationEveryone7.8
Microsoft SMBv3CVE-2020-0796Code executionused by ransomwareBusiness10.0
Jenkins Stapler Web FrameworkCVE-2018-1000861Code executionBusiness9.8
Apache Struts 1CVE-2017-9791Improper access controlBusiness9.8
Microsoft WindowsCVE-2017-8464Code executionEveryone8.8
Oracle WebLogic ServerCVE-2017-10271Code executionused by ransomwareBusiness7.5
Microsoft Win32kCVE-2017-0263Privilege escalationEveryone7.8
Microsoft OfficeCVE-2017-0262Code executionEveryone7.8
Microsoft SMBv1CVE-2017-0145Code executionused by ransomwareBusiness8.8
Microsoft SMBv1CVE-2017-0144Code executionused by ransomwareBusiness8.8
Apache ActiveMQCVE-2016-3088Improper access controlBusiness9.8
D-Link DIR-645 RouterCVE-2015-2051Code executionHome network8.8
Microsoft HTTP.sysCVE-2015-1635Code executionBusiness9.8
Apple OS XCVE-2015-1130Authentication bypassEveryone7.8
Apple OS XCVE-2014-4404Memory corruptionEveryone7.8
Microsoft Win32kCVE-2022-21882Privilege escalationused by ransomwareEveryone7.8
Apple iOS and macOSCVE-2022-22587Memory corruptionEveryone9.8
SonicWall SMA 100 AppliancesCVE-2021-20038Memory corruptionused by ransomwareBusiness9.8
Grandstream UCM6200CVE-2020-5722SQL injectionBusiness9.8
Microsoft WindowsCVE-2020-0787Privilege escalationused by ransomwareEveryone7.8
Intel Active Management Technology (AMT), Small Business Technology (SBT), and Standard ManageabilityCVE-2017-5689Privilege escalationBusiness9.8
GNU Bourne-Again Shell (Bash)CVE-2014-7169Code executionBusiness9.8
GNU Bourne-Again Shell (Bash)CVE-2014-6271Code executionBusiness9.8
Microsoft Internet ExplorerCVE-2014-1776Memory corruptionEveryone9.8
SolarWinds Serv-UCVE-2021-35247Improper access controlBusiness5.3
Microsoft Win32kCVE-2018-8453Privilege escalationused by ransomwareEveryone7.8
Apache Struts 2CVE-2012-0391Improper access controlBusiness9.8
Apache Struts 1CVE-2006-1547Denial of serviceBusiness7.5

Source: CISA Known Exploited Vulnerabilities catalogsource updated Oct 8, 2026, 20:09 UTC

Severity (CVSS): NIST NVD

5,441 members already hereReading, writing, commenting and voting. 0 verified · 166 joined this year