{
  "query": {
    "kev": "1",
    "page": "78"
  },
  "count": 20,
  "total": 1739,
  "page": 78,
  "limit": 20,
  "updated": {
    "cves": "2026-10-10T06:52:53.843Z",
    "kev": "2026-10-10T07:52:55.656Z",
    "epss": "2026-10-10T07:02:53.632Z",
    "breaches": "2026-10-10T06:52:53.471Z",
    "posts": "2026-10-10T07:52:56.116Z"
  },
  "links": {
    "web": "https://spydr.io/threats?kev=1&page=78",
    "next": "https://spydr.io/threats.json?kev=1&page=79"
  },
  "coverage": {
    "cves_published_since": "2026-06-12",
    "days": 120,
    "also": "every CVE in CISA KEV"
  },
  "unscored_hidden": 0,
  "warnings": [],
  "results": [
    {
      "id": "CVE-2021-27059",
      "url": "https://spydr.io/cve/CVE-2021-27059",
      "published": "2021-03-11T16:15:17.583Z",
      "modified": "2026-08-19T19:22:31.700Z",
      "score": 7.6,
      "severity": "high",
      "cvss_version": "3.1",
      "vector": "CVSS:3.1/AV:N/AC:H/PR:H/UI:R/S:C/C:H/I:H/A:H",
      "score_source": "microsoft.com",
      "epss": 0.06076,
      "epss_percentile": 0.93226,
      "exploited": true,
      "kev": {
        "added": "2021-11-03",
        "due": "2021-11-17",
        "action": "Apply updates per vendor instructions.",
        "ransomware": "Unknown"
      },
      "ssvc_exploitation": "active",
      "vendors": [
        "Microsoft"
      ],
      "products": [
        "Microsoft Office 2010 Service Pack 2",
        "Microsoft Office 2013 Service Pack 1",
        "Microsoft Office 2016"
      ],
      "cwes": [],
      "description": "Microsoft Office Remote Code Execution Vulnerability"
    },
    {
      "id": "CVE-2021-26411",
      "url": "https://spydr.io/cve/CVE-2021-26411",
      "published": "2021-03-11T16:15:13.863Z",
      "modified": "2026-10-01T21:17:16.540Z",
      "score": 8.8,
      "severity": "high",
      "cvss_version": "3.1",
      "vector": "CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:C/C:L/I:H/A:L",
      "score_source": "microsoft.com",
      "epss": 0.80765,
      "epss_percentile": 0.99623,
      "exploited": true,
      "kev": {
        "added": "2021-11-03",
        "due": "2021-11-17",
        "action": "Apply updates per vendor instructions.",
        "ransomware": "Known"
      },
      "ssvc_exploitation": "active",
      "vendors": [
        "Microsoft"
      ],
      "products": [
        "Microsoft Internet Explorer 11",
        "Microsoft Internet Explorer 9",
        "Microsoft Edge (EdgeHTML-based)"
      ],
      "cwes": [
        "CWE-416"
      ],
      "description": "Internet Explorer Memory Corruption Vulnerability"
    },
    {
      "id": "CVE-2021-21166",
      "url": "https://spydr.io/cve/CVE-2021-21166",
      "published": "2021-03-09T18:15:16.297Z",
      "modified": "2026-06-17T03:34:57.070Z",
      "score": 8.8,
      "severity": "high",
      "cvss_version": "3.1",
      "vector": "CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H",
      "score_source": "NVD",
      "epss": 0.24027,
      "epss_percentile": 0.97795,
      "exploited": true,
      "kev": {
        "added": "2021-11-03",
        "due": "2021-11-17",
        "action": "Apply updates per vendor instructions.",
        "ransomware": "Unknown"
      },
      "ssvc_exploitation": "active",
      "vendors": [
        "Google"
      ],
      "products": [
        "Google Chrome"
      ],
      "cwes": [
        "CWE-362"
      ],
      "description": "Data race in audio in Google Chrome prior to 89.0.4389.72 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML page."
    },
    {
      "id": "CVE-2021-27065",
      "url": "https://spydr.io/cve/CVE-2021-27065",
      "published": "2021-03-03T00:15:12.307Z",
      "modified": "2026-10-01T21:17:17.040Z",
      "score": 7.8,
      "severity": "high",
      "cvss_version": "3.1",
      "vector": "CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H",
      "score_source": "microsoft.com",
      "epss": 0.99876,
      "epss_percentile": 0.99963,
      "exploited": true,
      "kev": {
        "added": "2021-11-03",
        "due": "2022-05-03",
        "action": "Apply updates per vendor instructions.",
        "ransomware": "Known"
      },
      "ssvc_exploitation": "active",
      "vendors": [
        "Microsoft"
      ],
      "products": [
        "Microsoft Exchange Server 2013 Cumulative Update 21",
        "Microsoft Exchange Server 2013 Cumulative Update 22",
        "Microsoft Exchange Server 2013 Cumulative Update 23",
        "Microsoft Exchange Server 2013 Service Pack 1",
        "Microsoft Exchange Server 2016 Cumulative Update 10",
        "Microsoft Exchange Server 2016 Cumulative Update 11",
        "Microsoft Exchange Server 2016 Cumulative Update 12",
        "Microsoft Exchange Server 2016 Cumulative Update 13",
        "Microsoft Exchange Server 2016 Cumulative Update 14",
        "Microsoft Exchange Server 2016 Cumulative Update 15",
        "Microsoft Exchange Server 2016 Cumulative Update 16",
        "Microsoft Exchange Server 2016 Cumulative Update 17",
        "Microsoft Exchange Server 2016 Cumulative Update 18",
        "Microsoft Exchange Server 2016 Cumulative Update 19",
        "Microsoft Exchange Server 2016 Cumulative Update 8",
        "Microsoft Exchange Server 2016 Cumulative Update 9",
        "Microsoft Exchange Server 2019",
        "Microsoft Exchange Server 2019 Cumulative Update 1",
        "Microsoft Exchange Server 2019 Cumulative Update 2",
        "Microsoft Exchange Server 2019 Cumulative Update 3"
      ],
      "cwes": [
        "CWE-22"
      ],
      "description": "Microsoft Exchange Server Remote Code Execution Vulnerability"
    },
    {
      "id": "CVE-2021-26858",
      "url": "https://spydr.io/cve/CVE-2021-26858",
      "published": "2021-03-03T00:15:12.227Z",
      "modified": "2026-10-01T21:17:16.777Z",
      "score": 7.8,
      "severity": "high",
      "cvss_version": "3.1",
      "vector": "CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H",
      "score_source": "microsoft.com",
      "epss": 0.93651,
      "epss_percentile": 0.99842,
      "exploited": true,
      "kev": {
        "added": "2021-11-03",
        "due": "2022-05-03",
        "action": "Apply updates per vendor instructions.",
        "ransomware": "Known"
      },
      "ssvc_exploitation": "active",
      "vendors": [
        "Microsoft"
      ],
      "products": [
        "Microsoft Exchange Server 2013 Cumulative Update 21",
        "Microsoft Exchange Server 2013 Cumulative Update 22",
        "Microsoft Exchange Server 2013 Cumulative Update 23",
        "Microsoft Exchange Server 2016 Cumulative Update 10",
        "Microsoft Exchange Server 2016 Cumulative Update 11",
        "Microsoft Exchange Server 2016 Cumulative Update 12",
        "Microsoft Exchange Server 2016 Cumulative Update 13",
        "Microsoft Exchange Server 2016 Cumulative Update 14",
        "Microsoft Exchange Server 2016 Cumulative Update 15",
        "Microsoft Exchange Server 2016 Cumulative Update 16",
        "Microsoft Exchange Server 2016 Cumulative Update 17",
        "Microsoft Exchange Server 2016 Cumulative Update 18",
        "Microsoft Exchange Server 2016 Cumulative Update 19",
        "Microsoft Exchange Server 2016 Cumulative Update 8",
        "Microsoft Exchange Server 2016 Cumulative Update 9",
        "Microsoft Exchange Server 2019",
        "Microsoft Exchange Server 2019 Cumulative Update 1",
        "Microsoft Exchange Server 2019 Cumulative Update 2",
        "Microsoft Exchange Server 2019 Cumulative Update 3",
        "Microsoft Exchange Server 2019 Cumulative Update 4"
      ],
      "cwes": [],
      "description": "Microsoft Exchange Server Remote Code Execution Vulnerability"
    },
    {
      "id": "CVE-2021-26857",
      "url": "https://spydr.io/cve/CVE-2021-26857",
      "published": "2021-03-03T00:15:12.167Z",
      "modified": "2026-08-19T19:22:27.153Z",
      "score": 7.8,
      "severity": "high",
      "cvss_version": "3.1",
      "vector": "CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H",
      "score_source": "microsoft.com",
      "epss": 0.95762,
      "epss_percentile": 0.99872,
      "exploited": true,
      "kev": {
        "added": "2021-11-03",
        "due": "2022-05-03",
        "action": "Apply updates per vendor instructions.",
        "ransomware": "Known"
      },
      "ssvc_exploitation": "active",
      "vendors": [
        "Microsoft"
      ],
      "products": [
        "Microsoft Exchange Server 2010 Service Pack 3",
        "Microsoft Exchange Server 2013 Cumulative Update 21",
        "Microsoft Exchange Server 2013 Cumulative Update 22",
        "Microsoft Exchange Server 2013 Cumulative Update 23",
        "Microsoft Exchange Server 2013 Service Pack 1",
        "Microsoft Exchange Server 2016 Cumulative Update 10",
        "Microsoft Exchange Server 2016 Cumulative Update 11",
        "Microsoft Exchange Server 2016 Cumulative Update 12",
        "Microsoft Exchange Server 2016 Cumulative Update 13",
        "Microsoft Exchange Server 2016 Cumulative Update 14",
        "Microsoft Exchange Server 2016 Cumulative Update 15",
        "Microsoft Exchange Server 2016 Cumulative Update 16",
        "Microsoft Exchange Server 2016 Cumulative Update 17",
        "Microsoft Exchange Server 2016 Cumulative Update 18",
        "Microsoft Exchange Server 2016 Cumulative Update 19",
        "Microsoft Exchange Server 2016 Cumulative Update 8",
        "Microsoft Exchange Server 2016 Cumulative Update 9",
        "Microsoft Exchange Server 2019",
        "Microsoft Exchange Server 2019 Cumulative Update 1",
        "Microsoft Exchange Server 2019 Cumulative Update 2"
      ],
      "cwes": [
        "CWE-502"
      ],
      "description": "Microsoft Exchange Server Remote Code Execution Vulnerability"
    },
    {
      "id": "CVE-2021-26855",
      "url": "https://spydr.io/cve/CVE-2021-26855",
      "published": "2021-03-03T00:15:12.103Z",
      "modified": "2026-08-19T19:22:24.100Z",
      "score": 9.1,
      "severity": "critical",
      "cvss_version": "3.1",
      "vector": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:N",
      "score_source": "microsoft.com",
      "epss": 0.99996,
      "epss_percentile": 0.99989,
      "exploited": true,
      "kev": {
        "added": "2021-11-03",
        "due": "2022-05-03",
        "action": "Apply updates per vendor instructions.",
        "ransomware": "Known"
      },
      "ssvc_exploitation": "active",
      "vendors": [
        "Microsoft"
      ],
      "products": [
        "Microsoft Exchange Server 2013 Cumulative Update 21",
        "Microsoft Exchange Server 2013 Cumulative Update 22",
        "Microsoft Exchange Server 2013 Cumulative Update 23",
        "Microsoft Exchange Server 2016 Cumulative Update 10",
        "Microsoft Exchange Server 2016 Cumulative Update 11",
        "Microsoft Exchange Server 2016 Cumulative Update 12",
        "Microsoft Exchange Server 2016 Cumulative Update 13",
        "Microsoft Exchange Server 2016 Cumulative Update 14",
        "Microsoft Exchange Server 2016 Cumulative Update 15",
        "Microsoft Exchange Server 2016 Cumulative Update 16",
        "Microsoft Exchange Server 2016 Cumulative Update 17",
        "Microsoft Exchange Server 2016 Cumulative Update 18",
        "Microsoft Exchange Server 2016 Cumulative Update 19",
        "Microsoft Exchange Server 2016 Cumulative Update 8",
        "Microsoft Exchange Server 2016 Cumulative Update 9",
        "Microsoft Exchange Server 2019",
        "Microsoft Exchange Server 2019 Cumulative Update 1",
        "Microsoft Exchange Server 2019 Cumulative Update 2",
        "Microsoft Exchange Server 2019 Cumulative Update 3",
        "Microsoft Exchange Server 2019 Cumulative Update 4"
      ],
      "cwes": [
        "CWE-918"
      ],
      "description": "Microsoft Exchange Server Remote Code Execution Vulnerability"
    },
    {
      "id": "CVE-2021-1732",
      "url": "https://spydr.io/cve/CVE-2021-1732",
      "published": "2021-02-25T23:15:13.930Z",
      "modified": "2026-08-12T05:17:32.590Z",
      "score": 7.8,
      "severity": "high",
      "cvss_version": "3.1",
      "vector": "CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H",
      "score_source": "microsoft.com",
      "epss": 0.78376,
      "epss_percentile": 0.99575,
      "exploited": true,
      "kev": {
        "added": "2021-11-03",
        "due": "2021-11-17",
        "action": "Apply updates per vendor instructions.",
        "ransomware": "Known"
      },
      "ssvc_exploitation": "active",
      "vendors": [
        "Microsoft"
      ],
      "products": [
        "Microsoft Windows 10 Version 1803",
        "Microsoft Windows 10 Version 1809",
        "Microsoft Windows Server 2019",
        "Microsoft Windows Server 2019 (Server Core installation)",
        "Microsoft Windows 10 Version 1909",
        "Microsoft Windows Server, version 1909 (Server Core installation)",
        "Microsoft Windows 10 Version 2004",
        "Microsoft Windows Server version 2004",
        "Microsoft Windows 10 Version 20H2",
        "Microsoft Windows Server version 20H2"
      ],
      "cwes": [
        "CWE-787"
      ],
      "description": "Windows Win32k Elevation of Privilege Vulnerability"
    },
    {
      "id": "CVE-2021-21972",
      "url": "https://spydr.io/cve/CVE-2021-21972",
      "published": "2021-02-24T17:15:15.833Z",
      "modified": "2026-08-12T05:17:35.260Z",
      "score": 9.8,
      "severity": "critical",
      "cvss_version": "3.1",
      "vector": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H",
      "score_source": "NVD",
      "epss": 0.99865,
      "epss_percentile": 0.99962,
      "exploited": true,
      "kev": {
        "added": "2021-11-03",
        "due": "2021-11-17",
        "action": "Apply updates per vendor instructions.",
        "ransomware": "Known"
      },
      "ssvc_exploitation": "active",
      "vendors": [
        "vmware"
      ],
      "products": [
        "VMware vCenter Server",
        "VMware Cloud Foundation"
      ],
      "cwes": [
        "CWE-22"
      ],
      "description": "The vSphere Client (HTML5) contains a remote code execution vulnerability in a vCenter Server plugin. A malicious actor with network access to port 443 may exploit this issue to execute commands with unrestricted privileges on the underlying operating system that hosts vCenter Server. This affects VMware vCenter Server (7.x before 7.0 U1c, 6.7 before 6.7 U3l and 6.5 before 6.5 U3n) and VMware Cloud Foundation (4.x before 4.2 and 3.x before 3.10.1.2)."
    },
    {
      "id": "CVE-2021-27104",
      "url": "https://spydr.io/cve/CVE-2021-27104",
      "published": "2021-02-16T21:15:13.280Z",
      "modified": "2026-06-17T03:44:18.213Z",
      "score": 9.8,
      "severity": "critical",
      "cvss_version": "3.1",
      "vector": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H",
      "score_source": "NVD",
      "epss": 0.56686,
      "epss_percentile": 0.99044,
      "exploited": true,
      "kev": {
        "added": "2021-11-03",
        "due": "2021-11-17",
        "action": "Apply updates per vendor instructions.",
        "ransomware": "Known"
      },
      "ssvc_exploitation": "active",
      "vendors": [
        "accellion"
      ],
      "products": [
        "accellion fta"
      ],
      "cwes": [
        "CWE-78"
      ],
      "description": "Accellion FTA 9_12_370 and earlier is affected by OS command execution via a crafted POST request to various admin endpoints. The fixed version is FTA_9_12_380 and later."
    },
    {
      "id": "CVE-2021-27103",
      "url": "https://spydr.io/cve/CVE-2021-27103",
      "published": "2021-02-16T21:15:13.217Z",
      "modified": "2026-06-17T03:44:18.027Z",
      "score": 9.8,
      "severity": "critical",
      "cvss_version": "3.1",
      "vector": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H",
      "score_source": "NVD",
      "epss": 0.11406,
      "epss_percentile": 0.95905,
      "exploited": true,
      "kev": {
        "added": "2021-11-03",
        "due": "2021-11-17",
        "action": "Apply updates per vendor instructions.",
        "ransomware": "Known"
      },
      "ssvc_exploitation": "active",
      "vendors": [
        "accellion"
      ],
      "products": [
        "accellion fta"
      ],
      "cwes": [
        "CWE-918"
      ],
      "description": "Accellion FTA 9_12_411 and earlier is affected by SSRF via a crafted POST request to wmProgressstat.html. The fixed version is FTA_9_12_416 and later."
    },
    {
      "id": "CVE-2021-27102",
      "url": "https://spydr.io/cve/CVE-2021-27102",
      "published": "2021-02-16T21:15:13.140Z",
      "modified": "2026-06-17T03:44:17.850Z",
      "score": 7.8,
      "severity": "high",
      "cvss_version": "3.1",
      "vector": "CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H",
      "score_source": "NVD",
      "epss": 0.03654,
      "epss_percentile": 0.89322,
      "exploited": true,
      "kev": {
        "added": "2021-11-03",
        "due": "2021-11-17",
        "action": "Apply updates per vendor instructions.",
        "ransomware": "Known"
      },
      "ssvc_exploitation": "active",
      "vendors": [
        "accellion"
      ],
      "products": [
        "accellion fta"
      ],
      "cwes": [
        "CWE-78"
      ],
      "description": "Accellion FTA 9_12_411 and earlier is affected by OS command execution via a local web service call. The fixed version is FTA_9_12_416 and later."
    },
    {
      "id": "CVE-2021-27101",
      "url": "https://spydr.io/cve/CVE-2021-27101",
      "published": "2021-02-16T21:15:13.077Z",
      "modified": "2026-06-17T03:44:17.670Z",
      "score": 9.8,
      "severity": "critical",
      "cvss_version": "3.1",
      "vector": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H",
      "score_source": "NVD",
      "epss": 0.05998,
      "epss_percentile": 0.93149,
      "exploited": true,
      "kev": {
        "added": "2021-11-03",
        "due": "2021-11-17",
        "action": "Apply updates per vendor instructions.",
        "ransomware": "Known"
      },
      "ssvc_exploitation": "active",
      "vendors": [
        "accellion"
      ],
      "products": [
        "accellion fta"
      ],
      "cwes": [],
      "description": "Accellion FTA 9_12_370 and earlier is affected by SQL injection via a crafted Host header in a request to document_root.html. The fixed version is FTA_9_12_380 and later."
    },
    {
      "id": "CVE-2021-21017",
      "url": "https://spydr.io/cve/CVE-2021-21017",
      "published": "2021-02-11T20:15:13.997Z",
      "modified": "2026-06-17T03:34:40.193Z",
      "score": 8.8,
      "severity": "high",
      "cvss_version": "3.1",
      "vector": "CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H",
      "score_source": "adobe.com",
      "epss": 0.86326,
      "epss_percentile": 0.99731,
      "exploited": true,
      "kev": {
        "added": "2021-11-03",
        "due": "2021-11-17",
        "action": "Apply updates per vendor instructions.",
        "ransomware": "Unknown"
      },
      "ssvc_exploitation": "active",
      "vendors": [
        "Adobe"
      ],
      "products": [
        "Adobe Acrobat Reader"
      ],
      "cwes": [
        "CWE-122",
        "CWE-787"
      ],
      "description": "Acrobat Reader DC versions versions 2020.013.20074 (and earlier), 2020.001.30018 (and earlier) and 2017.011.30188 (and earlier) are affected by a heap-based buffer overflow vulnerability. An unauthenticated attacker could leverage this vulnerability to achieve arbitrary code execution in the context of the current user. Exploitation of this issue requires user interaction in that a victim must open a malicious file."
    },
    {
      "id": "CVE-2021-23874",
      "url": "https://spydr.io/cve/CVE-2021-23874",
      "published": "2021-02-10T11:15:12.943Z",
      "modified": "2026-06-17T03:38:57.850Z",
      "score": 7.8,
      "severity": "high",
      "cvss_version": "3.1",
      "vector": "CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H",
      "score_source": "NVD",
      "epss": 0.01026,
      "epss_percentile": 0.62542,
      "exploited": true,
      "kev": {
        "added": "2021-11-03",
        "due": "2021-11-17",
        "action": "Apply updates per vendor instructions.",
        "ransomware": "Unknown"
      },
      "ssvc_exploitation": "active",
      "vendors": [
        "McAfee,LLC"
      ],
      "products": [
        "McAfee,LLC McAfee Total Protection (MTP)"
      ],
      "cwes": [
        "CWE-269",
        "CWE-732"
      ],
      "description": "Arbitrary Process Execution vulnerability in McAfee Total Protection (MTP) prior to 16.0.30 allows a local user to gain elevated privileges and execute arbitrary code bypassing MTP self-defense."
    },
    {
      "id": "CVE-2021-21148",
      "url": "https://spydr.io/cve/CVE-2021-21148",
      "published": "2021-02-09T16:15:12.390Z",
      "modified": "2026-06-17T03:34:54.850Z",
      "score": 8.8,
      "severity": "high",
      "cvss_version": "3.1",
      "vector": "CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H",
      "score_source": "NVD",
      "epss": 0.19968,
      "epss_percentile": 0.97381,
      "exploited": true,
      "kev": {
        "added": "2021-11-03",
        "due": "2021-11-17",
        "action": "Apply updates per vendor instructions.",
        "ransomware": "Unknown"
      },
      "ssvc_exploitation": "active",
      "vendors": [
        "Google"
      ],
      "products": [
        "Google Chrome"
      ],
      "cwes": [
        "CWE-787"
      ],
      "description": "Heap buffer overflow in V8 in Google Chrome prior to 88.0.4324.150 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML page."
    },
    {
      "id": "CVE-2021-22502",
      "url": "https://spydr.io/cve/CVE-2021-22502",
      "published": "2021-02-08T22:15:12.527Z",
      "modified": "2026-06-17T03:37:20.340Z",
      "score": 9.8,
      "severity": "critical",
      "cvss_version": "3.1",
      "vector": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H",
      "score_source": "NVD",
      "epss": 0.9674,
      "epss_percentile": 0.99887,
      "exploited": true,
      "kev": {
        "added": "2021-11-03",
        "due": "2021-11-17",
        "action": "Apply updates per vendor instructions.",
        "ransomware": "Unknown"
      },
      "ssvc_exploitation": "active",
      "vendors": [
        "microfocus"
      ],
      "products": [
        "Operation Bridge Reporter."
      ],
      "cwes": [
        "CWE-78"
      ],
      "description": "Remote Code execution vulnerability in Micro Focus Operation Bridge Reporter (OBR) product, affecting version 10.40. The vulnerability could be exploited to allow Remote Code Execution on the OBR server."
    },
    {
      "id": "CVE-2021-20016",
      "url": "https://spydr.io/cve/CVE-2021-20016",
      "published": "2021-02-04T06:15:13.817Z",
      "modified": "2026-08-12T05:17:33.173Z",
      "score": 9.8,
      "severity": "critical",
      "cvss_version": "3.1",
      "vector": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H",
      "score_source": "NVD",
      "epss": 0.40038,
      "epss_percentile": 0.98601,
      "exploited": true,
      "kev": {
        "added": "2021-11-03",
        "due": "2021-11-17",
        "action": "Apply updates per vendor instructions.",
        "ransomware": "Known"
      },
      "ssvc_exploitation": "active",
      "vendors": [
        "SonicWall"
      ],
      "products": [
        "SonicWall SMA100"
      ],
      "cwes": [
        "CWE-89"
      ],
      "description": "A SQL-Injection vulnerability in the SonicWall SSLVPN SMA100 product allows a remote unauthenticated attacker to perform SQL query to access username password and other session related information. This vulnerability impacts SMA100 build version 10.x."
    },
    {
      "id": "CVE-2020-25506",
      "url": "https://spydr.io/cve/CVE-2020-25506",
      "published": "2021-02-02T13:15:12.570Z",
      "modified": "2026-06-17T03:06:52.573Z",
      "score": 9.8,
      "severity": "critical",
      "cvss_version": "3.1",
      "vector": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H",
      "score_source": "NVD",
      "epss": 0.99968,
      "epss_percentile": 0.99978,
      "exploited": true,
      "kev": {
        "added": "2021-11-03",
        "due": "2022-05-03",
        "action": "Apply updates per vendor instructions.",
        "ransomware": "Unknown"
      },
      "ssvc_exploitation": "active",
      "vendors": [
        "dlink"
      ],
      "products": [
        "dlink dns-320 firmware"
      ],
      "cwes": [
        "CWE-78"
      ],
      "description": "D-Link DNS-320 FW v2.06B01 Revision Ax is affected by command injection in the system_mgr.cgi component, which can lead to remote arbitrary code execution."
    },
    {
      "id": "CVE-2020-29557",
      "url": "https://spydr.io/cve/CVE-2020-29557",
      "published": "2021-01-29T20:15:12.933Z",
      "modified": "2026-06-17T03:11:25.717Z",
      "score": 9.8,
      "severity": "critical",
      "cvss_version": "3.1",
      "vector": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H",
      "score_source": "NVD",
      "epss": 0.5432,
      "epss_percentile": 0.9899,
      "exploited": true,
      "kev": {
        "added": "2021-11-03",
        "due": "2022-05-03",
        "action": "Apply updates per vendor instructions.",
        "ransomware": "Unknown"
      },
      "ssvc_exploitation": "active",
      "vendors": [
        "dlink"
      ],
      "products": [
        "dlink dir-825 r1 firmware"
      ],
      "cwes": [
        "CWE-119"
      ],
      "description": "An issue was discovered on D-Link DIR-825 R1 devices through 3.0.1 before 2020-11-20. A buffer overflow in the web interface allows attackers to achieve pre-authentication remote code execution."
    }
  ],
  "attribution": [
    {
      "source": "NVD",
      "url": "https://nvd.nist.gov",
      "notice": "This product uses data from the NVD API but is not endorsed or certified by the NVD."
    },
    {
      "source": "CISA KEV",
      "url": "https://www.cisa.gov/known-exploited-vulnerabilities-catalog",
      "notice": "Known exploited vulnerabilities from the CISA KEV catalog."
    },
    {
      "source": "FIRST EPSS",
      "url": "https://www.first.org/epss",
      "notice": "Exploit prediction scores from FIRST EPSS."
    }
  ]
}
