LIVE FEED
1582 events · 4 sources · newest first
Events in view
1582
all sources
Critical
0
severity
Active sources
4
collectors
Last sync
2026-08-27 00:00
UTC
2022-03-07
CISA KEV
A code injection vulnerability exists in Pulse Connect Secure that allows an attacker to crafted a URI to perform an arbitrary code execution via the admin web interface.
2022-03-07
CISA KEV
Atlassian Jira Server and Data Center contain a server-side template injection vulnerability which can allow for remote code execution.
2022-03-07
CISA KEV
NETGEAR DGN2200 wireless routers contain a vulnerability that allows for remote code execution.
2022-03-07
CISA KEV
NETGEAR confirmed multiple routers allow unauthenticated web pages to pass form input directly to the command-line interface, permitting remote code execution.
2022-03-07
CISA KEV
Adobe Coldfusion contains an unspecified vulnerability, which could result in information disclosure from a compromised server.
2022-03-07
CISA KEV
Adobe Coldfusion contains an authentication bypass vulnerability, which could result in an unauthorized user gaining administrative access.
2022-03-07
CISA KEV
Adobe Coldfusion contains a directory traversal vulnerability, which could permit an unauthorized user access to restricted directories.
2022-03-07
CISA KEV
Mozilla Firefox contains a use-after-free vulnerability in WebGPU IPC Framework which can be exploited to perform arbitrary code execution.
2022-03-03
CISA KEV
A vulnerability in Cisco Small Business RV160, RV260, RV340, and RV345 Series Routers could allow an attacker to do any of the following: Execute arbitrary code elevate privileges, execute arbitrary commands, bypass...
2022-03-03
CISA KEV
An access control vulnerability exists in the Applet Rhino Script Engine component of Oracle's Java Runtime Environment allows an attacker to remotely execute arbitrary code.
2022-03-03
CISA KEV
Unspecified vulnerability in Adobe Flash Player allows remote attackers to execute arbitrary code or cause a denial of service via crafted SWF content.
2022-03-03
CISA KEV
The TabStrip ActiveX control in the Common Controls in MSCOMCTL.OCX in Microsoft Office allows remote attackers to execute arbitrary code via a crafted (1) document or (2) web page that triggers system-state corruption.
2022-03-03
CISA KEV
An authentication bypass vulnerability exists in Adobe ColdFusion which could result in an unauthorized user gaining administrative access.
2022-03-03
CISA KEV
An memory corruption vulnerability exists in the acroform.dll in Adobe Reader that allows an attacker to perform remote code execution.
2022-03-03
CISA KEV
A buffer overflow vulnerability exists in Adobe Reader which allows an attacker to perform remote code execution.
2022-03-03
CISA KEV
This vulnerability may corrupt memory in a way that could allow an attacker to execute arbitrary code in the context of the current user within Internet Explorer.
2022-03-03
CISA KEV
Mozilla Firefox does not properly initialize data structures for the nsDOMSVGZoomEvent::mPreviousScale and nsDOMSVGZoomEvent::mNewScale functions, which allows remote attackers to obtain sensitive information from...
2022-03-03
CISA KEV
Adobe Reader and Acrobat contain a memory corruption vulnerability which can allow attackers to execute arbitrary code or cause a denial of service.
2022-03-03
CISA KEV
A use-after-free vulnerability exists within CDisplayPointer in Microsoft Internet Explorer that allows an attacker to remotely execute arbitrary code.
2022-03-03
CISA KEV
Microsoft Windows NDProxy.sys in the kernel contains an improper input validation vulnerability which can allow a local attacker to escalate privileges.
2022-03-03
CISA KEV
Adobe Reader and Acrobat contain a use-after-free vulnerability which can allow for code execution.
2022-03-03
CISA KEV
A vulnerability exists in Windows Object Linking & Embedding (OLE) that could allow remote code execution if a user opens a file that contains a specially crafted OLE object.
2022-03-03
CISA KEV
Microsoft Office contains a memory corruption vulnerability that allows remote attackers to execute arbitrary code via a crafted document.
2022-03-03
CISA KEV
ATMFD.DLL in the Adobe Type Manager Font Driver in Microsoft Windows Server allows local users to gain privileges via a crafted application.
2022-03-03
CISA KEV
Microsoft PowerPoint allows remote attackers to execute arbitrary code or cause a denial of service (memory corruption) via a crafted Office document.
2022-03-03
CISA KEV
Microsoft Office allows remote attackers to execute arbitrary code via a crafted EPS image.
2022-03-03
CISA KEV
An unspecified vulnerability exists within Oracle Java Runtime Environment that allows an attacker to perform remote code execution.
2022-03-03
CISA KEV
A memory corruption vulnerability exists in Adobe Flash Player that allows an attacker to perform remote code execution.
2022-03-03
CISA KEV
Unspecified vulnerability in Oracle Java SE allows remote attackers to affect integrity via Unknown vectors related to deployment.
2022-03-03
CISA KEV
A use-after-free vulnerability exists within the ActionScript 3 ByteArray class in Adobe Flash Player that allows an attacker to perform remote code execution.
2022-03-03
CISA KEV
An access of resource using incompatible type vulnerability exists within Adobe Flash Player that allows an attacker to perform remote code execution.
2022-03-03
CISA KEV
Race condition in mm/gup.c in the Linux kernel allows local users to escalate privileges.
2022-03-03
CISA KEV
Microsoft Office contains a memory corruption vulnerability which can allow for remote code execution.
2022-03-03
CISA KEV
A security feature bypass vulnerability exists when Microsoft Office improperly handles input. An attacker who successfully exploited the vulnerability could execute arbitrary commands.
2022-03-03
CISA KEV
Use-after-free vulnerability in Adobe Flash Player Windows and OS and Linux allows remote attackers to execute arbitrary code.
2022-03-03
CISA KEV
An improper privilege management vulnerability exists within the Siemens SIMATIC Communication Processor (CP) that allows a privileged attacker to remotely cause a denial of service.
2022-03-03
CISA KEV
The Graphics Device Interface (GDI) in Microsoft Windows Vista SP2; Windows Server 2008 SP2 and R2 SP1; Windows 7 SP1; Windows 8.1; Windows Server 2012 Gold and R2; Windows RT 8.1; and Windows 10 Gold, 1511, and 1607...
2022-03-03
CISA KEV
Microsoft Office contains a use-after-free vulnerability which can allow for remote code execution.
2022-03-03
CISA KEV
Adobe Flash Player contains a type confusion vulnerability which can allow for remote code execution.
2022-03-03
CISA KEV
A remote code execution vulnerability exists in Microsoft Office software when the software fails to properly handle objects in memory. An attacker who successfully exploited the vulnerability could run arbitrary...