{
  "query": {
    "kev": "1",
    "page": "57"
  },
  "count": 20,
  "total": 1734,
  "page": 57,
  "limit": 20,
  "updated": {
    "cves": "2026-10-08T10:49:04.872Z",
    "kev": "2026-10-08T11:50:07.115Z",
    "epss": "2026-10-08T07:00:55.738Z",
    "breaches": "2026-10-08T06:48:55.302Z",
    "posts": "2026-10-08T11:49:07.436Z"
  },
  "links": {
    "web": "https://spydr.io/threats?kev=1&page=57",
    "next": "https://spydr.io/threats.json?kev=1&page=58"
  },
  "coverage": {
    "cves_published_since": "2026-06-10",
    "days": 120,
    "also": "every CVE in CISA KEV"
  },
  "unscored_hidden": 0,
  "warnings": [],
  "results": [
    {
      "id": "CVE-2017-0148",
      "url": "https://spydr.io/cve/CVE-2017-0148",
      "published": "2017-03-17T00:59:04.150Z",
      "modified": "2026-06-17T00:57:10.163Z",
      "score": 8.1,
      "severity": "high",
      "cvss_version": "3.1",
      "vector": "CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:H/I:H/A:H",
      "score_source": "NVD",
      "epss": 0.99356,
      "epss_percentile": 0.9994,
      "exploited": true,
      "kev": {
        "added": "2022-04-06",
        "due": "2022-04-27",
        "action": "Apply updates per vendor instructions.",
        "ransomware": "Known"
      },
      "ssvc_exploitation": "active",
      "vendors": [
        "Microsoft Corporation"
      ],
      "products": [
        "Microsoft Corporation Windows SMB"
      ],
      "cwes": [
        "CWE-20"
      ],
      "description": "The SMBv1 server in Microsoft Windows Vista SP2; Windows Server 2008 SP2 and R2 SP1; Windows 7 SP1; Windows 8.1; Windows Server 2012 Gold and R2; Windows RT 8.1; and Windows 10 Gold, 1511, and 1607; and Windows Server 2016 allows remote attackers to execute arbitrary code via crafted packets, aka \"Windows SMB Remote Code Execution Vulnerability.\" This vulnerability is different from those described in CVE-2017-0143, CVE-2017-0144, CVE-2017-0145, and CVE-2017-0146."
    },
    {
      "id": "CVE-2022-22675",
      "url": "https://spydr.io/cve/CVE-2022-22675",
      "published": "2022-05-26T18:15:09.153Z",
      "modified": "2026-06-17T04:28:47.750Z",
      "score": 7.8,
      "severity": "high",
      "cvss_version": "3.1",
      "vector": "CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H",
      "score_source": "NVD",
      "epss": 0.12492,
      "epss_percentile": 0.96126,
      "exploited": true,
      "kev": {
        "added": "2022-04-04",
        "due": "2022-04-25",
        "action": "Apply updates per vendor instructions.",
        "ransomware": "Unknown"
      },
      "ssvc_exploitation": "active",
      "vendors": [
        "Apple"
      ],
      "products": [
        "Apple iOS and iPadOS",
        "Apple macOS",
        "Apple watchOS"
      ],
      "cwes": [
        "CWE-787"
      ],
      "description": "An out-of-bounds write issue was addressed with improved bounds checking. This issue is fixed in tvOS 15.5, watchOS 8.6, macOS Big Sur 11.6.6, macOS Monterey 12.3.1, iOS 15.4.1 and iPadOS 15.4.1. An application may be able to execute arbitrary code with kernel privileges. Apple is aware of a report that this issue may have been actively exploited.."
    },
    {
      "id": "CVE-2022-22674",
      "url": "https://spydr.io/cve/CVE-2022-22674",
      "published": "2022-05-26T18:15:09.107Z",
      "modified": "2026-06-17T04:28:47.590Z",
      "score": 5.5,
      "severity": "medium",
      "cvss_version": "3.1",
      "vector": "CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:N/A:N",
      "score_source": "NVD",
      "epss": 0.01133,
      "epss_percentile": 0.6543,
      "exploited": true,
      "kev": {
        "added": "2022-04-04",
        "due": "2022-04-25",
        "action": "Apply updates per vendor instructions.",
        "ransomware": "Unknown"
      },
      "ssvc_exploitation": "active",
      "vendors": [
        "Apple"
      ],
      "products": [
        "Apple macOS"
      ],
      "cwes": [
        "CWE-125"
      ],
      "description": "An out-of-bounds read issue existed that led to the disclosure of kernel memory. This was addressed with improved input validation. This issue is fixed in macOS Monterey 12.3.1, Security Update 2022-004 Catalina, macOS Big Sur 11.6.6. A local user may be able to read kernel memory."
    },
    {
      "id": "CVE-2022-22965",
      "url": "https://spydr.io/cve/CVE-2022-22965",
      "published": "2022-04-01T23:15:13.870Z",
      "modified": "2026-06-17T04:29:15.610Z",
      "score": 9.8,
      "severity": "critical",
      "cvss_version": "3.1",
      "vector": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H",
      "score_source": "NVD",
      "epss": 0.99638,
      "epss_percentile": 0.99949,
      "exploited": true,
      "kev": {
        "added": "2022-04-04",
        "due": "2022-04-25",
        "action": "Apply updates per vendor instructions.",
        "ransomware": "Unknown"
      },
      "ssvc_exploitation": "active",
      "vendors": [
        "vmware",
        "cisco",
        "oracle",
        "siemens",
        "veritas"
      ],
      "products": [
        "Spring Framework"
      ],
      "cwes": [
        "CWE-94"
      ],
      "description": "A Spring MVC or Spring WebFlux application running on JDK 9+ may be vulnerable to remote code execution (RCE) via data binding. The specific exploit requires the application to run on Tomcat as a WAR deployment. If the application is deployed as a Spring Boot executable jar, i.e. the default, it is not vulnerable to the exploit. However, the nature of the vulnerability is more general, and there may be other ways to exploit it."
    },
    {
      "id": "CVE-2021-45382",
      "url": "https://spydr.io/cve/CVE-2021-45382",
      "published": "2022-02-17T21:15:07.737Z",
      "modified": "2026-06-17T04:13:19.093Z",
      "score": 9.8,
      "severity": "critical",
      "cvss_version": "3.1",
      "vector": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H",
      "score_source": "NVD",
      "epss": 0.97836,
      "epss_percentile": 0.99907,
      "exploited": true,
      "kev": {
        "added": "2022-04-04",
        "due": "2022-04-25",
        "action": "The impacted product is end-of-life and should be disconnected if still in use.",
        "ransomware": "Unknown"
      },
      "ssvc_exploitation": "active",
      "vendors": [
        "dlink"
      ],
      "products": [
        "dlink dir-820l firmware",
        "dlink dir-820lw firmware",
        "dlink dir-826l firmware",
        "dlink dir-830l firmware",
        "dlink dir-836l firmware",
        "dlink dir-810l firmware"
      ],
      "cwes": [
        "CWE-78"
      ],
      "description": "A Remote Command Execution (RCE) vulnerability exists in all series H/W revisions D-link DIR-810L, DIR-820L/LW, DIR-826L, DIR-830L, and DIR-836L routers via the DDNS function in ncc2 binary file. Note: DIR-810L, DIR-820L, DIR-830L, DIR-826L, DIR-836L, all hardware revisions, have reached their End of Life (\"EOL\") /End of Service Life (\"EOS\") Life-Cycle and as such this issue will not be patched."
    },
    {
      "id": "CVE-2022-26871",
      "url": "https://spydr.io/cve/CVE-2022-26871",
      "published": "2022-03-29T21:15:07.760Z",
      "modified": "2026-06-17T04:36:02.593Z",
      "score": 9.8,
      "severity": "critical",
      "cvss_version": "3.1",
      "vector": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H",
      "score_source": "NVD",
      "epss": 0.19481,
      "epss_percentile": 0.97311,
      "exploited": true,
      "kev": {
        "added": "2022-03-31",
        "due": "2022-04-21",
        "action": "Apply updates per vendor instructions.",
        "ransomware": "Unknown"
      },
      "ssvc_exploitation": "active",
      "vendors": [
        "Trend Micro"
      ],
      "products": [
        "Trend Micro Apex Central"
      ],
      "cwes": [
        "CWE-345"
      ],
      "description": "An arbitrary file upload vulnerability in Trend Micro Apex Central could allow an unauthenticated remote attacker to upload an arbitrary file which could lead to remote code execution."
    },
    {
      "id": "CVE-2022-1040",
      "url": "https://spydr.io/cve/CVE-2022-1040",
      "published": "2022-03-25T12:15:07.750Z",
      "modified": "2026-06-17T04:21:42.953Z",
      "score": 9.8,
      "severity": "critical",
      "cvss_version": "3.1",
      "vector": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H",
      "score_source": "NVD",
      "epss": 0.99796,
      "epss_percentile": 0.99956,
      "exploited": true,
      "kev": {
        "added": "2022-03-31",
        "due": "2022-04-21",
        "action": "Apply updates per vendor instructions.",
        "ransomware": "Unknown"
      },
      "ssvc_exploitation": "active",
      "vendors": [
        "Sophos"
      ],
      "products": [
        "Sophos Firewall"
      ],
      "cwes": [],
      "description": "An authentication bypass vulnerability in the User Portal and Webadmin allows a remote attacker to execute code in Sophos Firewall version v18.5 MR3 and older."
    },
    {
      "id": "CVE-2021-34484",
      "url": "https://spydr.io/cve/CVE-2021-34484",
      "published": "2021-08-12T18:15:09.117Z",
      "modified": "2026-08-10T19:59:12.090Z",
      "score": 7.8,
      "severity": "high",
      "cvss_version": "3.1",
      "vector": "CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H",
      "score_source": "microsoft.com",
      "epss": 0.21827,
      "epss_percentile": 0.97588,
      "exploited": true,
      "kev": {
        "added": "2022-03-31",
        "due": "2022-04-21",
        "action": "Apply updates per vendor instructions.",
        "ransomware": "Unknown"
      },
      "ssvc_exploitation": "active",
      "vendors": [
        "Microsoft"
      ],
      "products": [
        "Microsoft Windows 10 Version 1507",
        "Microsoft Windows 10 Version 1607",
        "Microsoft Windows 10 Version 1809",
        "Microsoft Windows 10 Version 1909",
        "Microsoft Windows 10 Version 2004",
        "Microsoft Windows 10 Version 20H2",
        "Microsoft Windows 10 Version 21H1",
        "Microsoft Windows 7",
        "Microsoft Windows 7 Service Pack 1",
        "Microsoft Windows 8.1",
        "Microsoft Windows Server 2008 R2 Service Pack 1",
        "Microsoft Windows Server 2008 R2 Service Pack 1 (Server Core installation)",
        "Microsoft Windows Server 2008 Service Pack 2",
        "Microsoft Windows Server 2008 Service Pack 2 (Server Core installation)",
        "Microsoft Windows Server 2012",
        "Microsoft Windows Server 2012 (Server Core installation)",
        "Microsoft Windows Server 2012 R2",
        "Microsoft Windows Server 2012 R2 (Server Core installation)",
        "Microsoft Windows Server 2016",
        "Microsoft Windows Server 2016 (Server Core installation)"
      ],
      "cwes": [],
      "description": "Windows User Profile Service Elevation of Privilege Vulnerability"
    },
    {
      "id": "CVE-2021-28799",
      "url": "https://spydr.io/cve/CVE-2021-28799",
      "published": "2021-05-13T03:15:06.843Z",
      "modified": "2026-06-17T03:46:53.003Z",
      "score": 9.8,
      "severity": "critical",
      "cvss_version": "3.1",
      "vector": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H",
      "score_source": "NVD",
      "epss": 0.7825,
      "epss_percentile": 0.99571,
      "exploited": true,
      "kev": {
        "added": "2022-03-31",
        "due": "2022-04-21",
        "action": "Apply updates per vendor instructions.",
        "ransomware": "Known"
      },
      "ssvc_exploitation": "active",
      "vendors": [
        "QNAP Systems Inc."
      ],
      "products": [
        "QNAP Systems Inc. HBS 3",
        "QNAP Systems Inc. HBS 2",
        "QNAP Systems Inc. HBS 1.3"
      ],
      "cwes": [
        "CWE-285"
      ],
      "description": "An improper authorization vulnerability has been reported to affect QNAP NAS running HBS 3 (Hybrid Backup Sync. ) If exploited, the vulnerability allows remote attackers to log in to a device. This issue affects: QNAP Systems Inc. HBS 3 versions prior to v16.0.0415 on QTS 4.5.2; versions prior to v3.0.210412 on QTS 4.3.6; versions prior to v3.0.210411 on QTS 4.3.4; versions prior to v3.0.210411 on QTS 4.3.3; versions prior to v16.0.0419 on QuTS hero h4.5.1; versions prior to v16.0.0419 on QuTScloud c4.5.1~c4.5.4. This issue does not affect: QNAP Systems Inc. HBS 2 . QNAP Systems Inc. HBS 1.3 ."
    },
    {
      "id": "CVE-2021-21551",
      "url": "https://spydr.io/cve/CVE-2021-21551",
      "published": "2021-05-04T16:15:07.867Z",
      "modified": "2026-06-17T03:35:45.760Z",
      "score": 7.8,
      "severity": "high",
      "cvss_version": "3.1",
      "vector": "CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H",
      "score_source": "NVD",
      "epss": 0.79249,
      "epss_percentile": 0.99592,
      "exploited": true,
      "kev": {
        "added": "2022-03-31",
        "due": "2022-04-21",
        "action": "Apply updates per vendor instructions.",
        "ransomware": "Unknown"
      },
      "ssvc_exploitation": "active",
      "vendors": [
        "Dell"
      ],
      "products": [
        "Dell dbutil"
      ],
      "cwes": [
        "CWE-782"
      ],
      "description": "Dell dbutil_2_3.sys driver contains an insufficient access control vulnerability which may lead to escalation of privileges, denial of service, or information disclosure. Local authenticated user access is required."
    },
    {
      "id": "CVE-2018-10562",
      "url": "https://spydr.io/cve/CVE-2018-10562",
      "published": "2018-05-04T03:29:00.287Z",
      "modified": "2026-06-17T01:34:10.407Z",
      "score": 9.8,
      "severity": "critical",
      "cvss_version": "3.1",
      "vector": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H",
      "score_source": "NVD",
      "epss": 0.99949,
      "epss_percentile": 0.99973,
      "exploited": true,
      "kev": {
        "added": "2022-03-31",
        "due": "2022-04-21",
        "action": "The impacted product is end-of-life and should be disconnected if still in use.",
        "ransomware": "Known"
      },
      "ssvc_exploitation": "active",
      "vendors": [
        "dasannetworks"
      ],
      "products": [
        "dasannetworks gpon router firmware"
      ],
      "cwes": [
        "CWE-78"
      ],
      "description": "An issue was discovered on Dasan GPON home routers. Command Injection can occur via the dest_host parameter in a diag_action=ping request to a GponForm/diag_Form URI. Because the router saves ping results in /tmp and transmits them to the user when the user revisits /diag.html, it's quite simple to execute commands and retrieve their output."
    },
    {
      "id": "CVE-2018-10561",
      "url": "https://spydr.io/cve/CVE-2018-10561",
      "published": "2018-05-04T03:29:00.227Z",
      "modified": "2026-06-17T01:34:10.200Z",
      "score": 9.8,
      "severity": "critical",
      "cvss_version": "3.1",
      "vector": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H",
      "score_source": "NVD",
      "epss": 0.92893,
      "epss_percentile": 0.9983,
      "exploited": true,
      "kev": {
        "added": "2022-03-31",
        "due": "2022-04-21",
        "action": "The impacted product is end-of-life and should be disconnected if still in use.",
        "ransomware": "Unknown"
      },
      "ssvc_exploitation": "active",
      "vendors": [
        "dasannetworks"
      ],
      "products": [
        "dasannetworks gpon router firmware"
      ],
      "cwes": [
        "CWE-287"
      ],
      "description": "An issue was discovered on Dasan GPON home routers. It is possible to bypass authentication simply by appending \"?images\" to any URL of the device that requires authentication, as demonstrated by the /menu.html?images/ or /GponForm/diag_FORM?images/ URI. One can then manage the device."
    },
    {
      "id": "CVE-2022-1096",
      "url": "https://spydr.io/cve/CVE-2022-1096",
      "published": "2022-07-23T00:15:08.333Z",
      "modified": "2026-06-17T04:21:49.070Z",
      "score": 8.8,
      "severity": "high",
      "cvss_version": "3.1",
      "vector": "CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H",
      "score_source": "NVD",
      "epss": 0.24389,
      "epss_percentile": 0.97818,
      "exploited": true,
      "kev": {
        "added": "2022-03-28",
        "due": "2022-04-18",
        "action": "Apply updates per vendor instructions.",
        "ransomware": "Unknown"
      },
      "ssvc_exploitation": "active",
      "vendors": [
        "Google"
      ],
      "products": [
        "Google Chrome"
      ],
      "cwes": [
        "CWE-843"
      ],
      "description": "Type confusion in V8 in Google Chrome prior to 99.0.4844.84 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML page."
    },
    {
      "id": "CVE-2022-0543",
      "url": "https://spydr.io/cve/CVE-2022-0543",
      "published": "2022-02-18T20:15:17.583Z",
      "modified": "2026-06-17T04:20:48.593Z",
      "score": 10,
      "severity": "critical",
      "cvss_version": "3.1",
      "vector": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:C/C:H/I:H/A:H",
      "score_source": "NVD",
      "epss": 0.99351,
      "epss_percentile": 0.9994,
      "exploited": true,
      "kev": {
        "added": "2022-03-28",
        "due": "2022-04-18",
        "action": "Apply updates per vendor instructions.",
        "ransomware": "Unknown"
      },
      "ssvc_exploitation": "active",
      "vendors": [
        "Debian"
      ],
      "products": [
        "Debian redis"
      ],
      "cwes": [
        "CWE-862"
      ],
      "description": "It was discovered, that redis, a persistent key-value database, due to a packaging issue, is prone to a (Debian-specific) Lua sandbox escape, which could result in remote code execution."
    },
    {
      "id": "CVE-2021-38646",
      "url": "https://spydr.io/cve/CVE-2021-38646",
      "published": "2021-09-15T12:15:15.033Z",
      "modified": "2026-08-10T19:59:12.030Z",
      "score": 7.8,
      "severity": "high",
      "cvss_version": "3.1",
      "vector": "CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H",
      "score_source": "microsoft.com",
      "epss": 0.07987,
      "epss_percentile": 0.94618,
      "exploited": true,
      "kev": {
        "added": "2022-03-28",
        "due": "2022-04-18",
        "action": "Apply updates per vendor instructions.",
        "ransomware": "Known"
      },
      "ssvc_exploitation": "active",
      "vendors": [
        "Microsoft"
      ],
      "products": [
        "Microsoft 365 Apps for Enterprise",
        "Microsoft Office 2013 Service Pack 1",
        "Microsoft Office 2016",
        "Microsoft Office 2019"
      ],
      "cwes": [],
      "description": "Microsoft Office Access Connectivity Engine Remote Code Execution Vulnerability"
    },
    {
      "id": "CVE-2021-34486",
      "url": "https://spydr.io/cve/CVE-2021-34486",
      "published": "2021-08-12T18:15:09.190Z",
      "modified": "2026-08-10T19:59:11.830Z",
      "score": 7.8,
      "severity": "high",
      "cvss_version": "3.1",
      "vector": "CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H",
      "score_source": "microsoft.com",
      "epss": 0.09253,
      "epss_percentile": 0.95239,
      "exploited": true,
      "kev": {
        "added": "2022-03-28",
        "due": "2022-04-18",
        "action": "Apply updates per vendor instructions.",
        "ransomware": "Unknown"
      },
      "ssvc_exploitation": "active",
      "vendors": [
        "Microsoft"
      ],
      "products": [
        "Microsoft Windows 10 Version 1809",
        "Microsoft Windows 10 Version 1909",
        "Microsoft Windows 10 Version 2004",
        "Microsoft Windows 10 Version 20H2",
        "Microsoft Windows 10 Version 21H1",
        "Microsoft Windows Server 2019",
        "Microsoft Windows Server 2019 (Server Core installation)",
        "Microsoft Windows Server version 2004",
        "Microsoft Windows Server version 20H2"
      ],
      "cwes": [
        "CWE-416"
      ],
      "description": "Windows Event Tracing Elevation of Privilege Vulnerability"
    },
    {
      "id": "CVE-2021-20028",
      "url": "https://spydr.io/cve/CVE-2021-20028",
      "published": "2021-08-04T19:15:08.247Z",
      "modified": "2026-06-17T03:33:10.393Z",
      "score": 9.8,
      "severity": "critical",
      "cvss_version": "3.1",
      "vector": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H",
      "score_source": "NVD",
      "epss": 0.30084,
      "epss_percentile": 0.98177,
      "exploited": true,
      "kev": {
        "added": "2022-03-28",
        "due": "2022-04-18",
        "action": "The impacted product is end-of-life and should be disconnected if still in use.",
        "ransomware": "Known"
      },
      "ssvc_exploitation": "active",
      "vendors": [
        "SonicWall"
      ],
      "products": [
        "SonicWall SRA/SMA100"
      ],
      "cwes": [
        "CWE-89"
      ],
      "description": "Improper neutralization of a SQL Command leading to SQL Injection vulnerability impacting end-of-life Secure Remote Access (SRA) products, specifically the SRA appliances running all 8.x firmware and 9.0.0.9-26sv or earlier"
    },
    {
      "id": "CVE-2021-26085",
      "url": "https://spydr.io/cve/CVE-2021-26085",
      "published": "2021-08-03T00:15:08.557Z",
      "modified": "2026-06-17T03:42:49.933Z",
      "score": 5.3,
      "severity": "medium",
      "cvss_version": "3.1",
      "vector": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:L/I:N/A:N",
      "score_source": "NVD",
      "epss": 0.99937,
      "epss_percentile": 0.99971,
      "exploited": true,
      "kev": {
        "added": "2022-03-28",
        "due": "2022-04-18",
        "action": "Apply updates per vendor instructions.",
        "ransomware": "Known"
      },
      "ssvc_exploitation": "active",
      "vendors": [
        "Atlassian"
      ],
      "products": [
        "Atlassian Confluence Server",
        "Atlassian Confluence Data Center"
      ],
      "cwes": [
        "CWE-425"
      ],
      "description": "Affected versions of Atlassian Confluence Server allow remote attackers to view restricted resources via a Pre-Authorization Arbitrary File Read vulnerability in the /s/ endpoint. The affected versions are before version 7.4.10, and from version 7.5.0 before 7.12.3."
    },
    {
      "id": "CVE-2019-7483",
      "url": "https://spydr.io/cve/CVE-2019-7483",
      "published": "2019-12-19T01:15:10.803Z",
      "modified": "2026-06-17T02:40:39.057Z",
      "score": 7.5,
      "severity": "high",
      "cvss_version": "3.1",
      "vector": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N",
      "score_source": "NVD",
      "epss": 0.0401,
      "epss_percentile": 0.90285,
      "exploited": true,
      "kev": {
        "added": "2022-03-28",
        "due": "2022-04-18",
        "action": "Apply updates per vendor instructions.",
        "ransomware": "Unknown"
      },
      "ssvc_exploitation": "active",
      "vendors": [
        "SonicWall"
      ],
      "products": [
        "SonicWall SMA100"
      ],
      "cwes": [
        "CWE-22"
      ],
      "description": "In SonicWall SMA100, an unauthenticated Directory Traversal vulnerability in the handleWAFRedirect CGI allows the user to test for the presence of a file on the server."
    },
    {
      "id": "CVE-2018-8440",
      "url": "https://spydr.io/cve/CVE-2018-8440",
      "published": "2018-09-13T00:29:04.333Z",
      "modified": "2026-06-17T02:04:52.637Z",
      "score": 7.8,
      "severity": "high",
      "cvss_version": "3.1",
      "vector": "CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H",
      "score_source": "NVD",
      "epss": 0.18386,
      "epss_percentile": 0.97164,
      "exploited": true,
      "kev": {
        "added": "2022-03-28",
        "due": "2022-04-18",
        "action": "Apply updates per vendor instructions.",
        "ransomware": "Known"
      },
      "ssvc_exploitation": "active",
      "vendors": [
        "Microsoft"
      ],
      "products": [
        "Microsoft Windows 7",
        "Microsoft Windows Server 2012 R2",
        "Microsoft Windows RT 8.1",
        "Microsoft Windows Server 2008",
        "Microsoft Windows Server 2012",
        "Microsoft Windows 8.1",
        "Microsoft Windows Server 2016",
        "Microsoft Windows Server 2008 R2",
        "Microsoft Windows 10",
        "Microsoft Windows 10 Servers"
      ],
      "cwes": [],
      "description": "An elevation of privilege vulnerability exists when Windows improperly handles calls to Advanced Local Procedure Call (ALPC), aka \"Windows ALPC Elevation of Privilege Vulnerability.\" This affects Windows 7, Windows Server 2012 R2, Windows RT 8.1, Windows Server 2008, Windows Server 2012, Windows 8.1, Windows Server 2016, Windows Server 2008 R2, Windows 10, Windows 10 Servers."
    }
  ],
  "attribution": [
    {
      "source": "NVD",
      "url": "https://nvd.nist.gov",
      "notice": "This product uses data from the NVD API but is not endorsed or certified by the NVD."
    },
    {
      "source": "CISA KEV",
      "url": "https://www.cisa.gov/known-exploited-vulnerabilities-catalog",
      "notice": "Known exploited vulnerabilities from the CISA KEV catalog."
    },
    {
      "source": "FIRST EPSS",
      "url": "https://www.first.org/epss",
      "notice": "Exploit prediction scores from FIRST EPSS."
    }
  ]
}
