Exploited vulnerabilities

CVEs published in the last 120 days, plus everything on CISA’s known-exploited list. Scores, exploit likelihood and exploitation status in one place.

47,452 CVEs · 1,734 known exploited · CVE data updated 4 min ago · EPSS 4 hours ago

1,734 results · page 37 of 87 EPSS = probability of exploitation in the next 30 days (FIRST)
Matching CVEs
Score CVE Affected EPSS Published
7.8 high CVE-2022-42827 KEV Apple iOS and iPadOS An out-of-bounds write issue was addressed with improved bounds checking. This issue is fixed in iOS 15.7.1 and iPadOS 15.7.1, iOS 16.1 and iPadOS 16. An application may be able to execute arbitrary code with kernel privileges. Apple is aware of a report that this issue may have been actively exploited.. 1.0% 1 Nov 2022
8.8 high CVE-2022-38181 KEV arm bifrost gpu kernel driver The Arm Mali GPU kernel driver allows unprivileged users to access freed memory because GPU memory operations are mishandled. This affects Bifrost r0p0 through r38p1, and r39p0; Valhall r19p0 through r38p1, and r39p0; and Midgard r4p0 through r32p0. 14% 25 Oct 2022
9.8 critical CVE-2016-20017 KEV dlink dsl-2750b firmware D-Link DSL-2750B devices before 1.05 allow remote unauthenticated command injection via the login.cgi cli parameter, as exploited in the wild in 2016 through 2022. 64% 19 Oct 2022
9.8 critical CVE-2022-21587 KEV Oracle Corporation Web Applications Desktop Integrator Vulnerability in the Oracle Web Applications Desktop Integrator product of Oracle E-Business Suite (component: Upload). Supported versions that are affected are 12.2.3-12.2.11. Easily exploitable vulnerability allows unauthenticated attacker with network access via HTTP to compromise Oracle Web Applications Desktop Integrator. Successful attacks of this vulnerability can result in takeover of Oracle Web Applications Desktop Integrator. CVSS 3.1 Base Score 9.8 (Confidentiality, Integrity and Availability impacts). CVSS Vector: (CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H). 98% 18 Oct 2022
9.8 critical CVE-2022-40684 KEV Fortinet FortiOS, FortiProxy, FortiSwitchManager An authentication bypass using an alternate path or channel [CWE-288] in Fortinet FortiOS version 7.2.0 through 7.2.1 and 7.0.0 through 7.0.6, FortiProxy version 7.2.0 and version 7.0.0 through 7.0.6 and FortiSwitchManager version 7.2.0 and 7.0.0 allows an unauthenticated atttacker to perform operations on the administrative interface via specially crafted HTTP or HTTPS requests. >99% 18 Oct 2022
7.8 high CVE-2022-41033 KEV Microsoft Windows 10 Version 1809 Windows COM+ Event System Service Elevation of Privilege Vulnerability 1.7% 11 Oct 2022
7.8 high CVE-2022-38028 KEV Microsoft Windows 10 Version 1809 Windows Print Spooler Elevation of Privilege Vulnerability 15% 11 Oct 2022
8.0 high CVE-2022-41082 KEV Microsoft Exchange Server 2013 Cumulative Update 23 Microsoft Exchange Server Remote Code Execution Vulnerability >99% 3 Oct 2022
8.8 high CVE-2022-41040 KEV Microsoft Exchange Server 2013 Cumulative Update 23 Microsoft Exchange Server Elevation of Privilege Vulnerability >99% 3 Oct 2022
7.8 high CVE-2022-20775 KEV Cisco Catalyst SD-WAN A vulnerability in the CLI of Cisco SD-WAN Software could allow an authenticated, local attacker to gain elevated privileges. This vulnerability is due to improper access controls on commands within the application CLI. An attacker could exploit this vulnerability by running a maliciously crafted command on the application CLI. A successful exploit could allow the attacker to execute arbitrary commands as the root user. Cisco has released software updates that address this vulnerability. There are no workarounds that address this vulnerability. https://sec.cloudapps.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-sd-wan-priv-E6e8tEdF 12% 30 Sept 2022
9.6 critical CVE-2022-3075 KEV Google Chrome Insufficient data validation in Mojo in Google Chrome prior to 105.0.5195.102 allowed a remote attacker who had compromised the renderer process to potentially perform a sandbox escape via a crafted HTML page. 5.8% 26 Sept 2022
8.8 high CVE-2022-3038 KEV Google Chrome Use after free in Network Service in Google Chrome prior to 105.0.5195.52 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML page. 25% 26 Sept 2022
6.5 medium CVE-2022-2856 KEV Google Chrome Insufficient validation of untrusted input in Intents in Google Chrome on Android prior to 104.0.5112.101 allowed a remote attacker to arbitrarily browse to a malicious website via a crafted HTML page. 4.5% 26 Sept 2022
9.8 critical CVE-2022-41352 KEV synacor zimbra collaboration suite An issue was discovered in Zimbra Collaboration (ZCS) 8.8.15 and 9.0. An attacker can upload arbitrary files through amavis via a cpio loophole (extraction to /opt/zimbra/jetty/webapps/zimbra/public) that can lead to incorrect access to any other user accounts. Zimbra recommends pax over cpio. Also, pax is in the prerequisites of Zimbra on Ubuntu; however, pax is no longer part of a default Red Hat installation after RHEL 6 (or CentOS 6). Once pax is installed, amavis automatically prefers it over cpio. 95% 26 Sept 2022
9.8 critical CVE-2022-3236 KEV Sophos Firewall A code injection vulnerability in the User Portal and Webadmin allows a remote attacker to execute code in Sophos Firewall version v19.0 MR1 and older. 99% 23 Sept 2022
6.1 medium CVE-2022-39197 KEV helpsystems cobalt strike An XSS (Cross Site Scripting) vulnerability was found in HelpSystems Cobalt Strike through 4.7 that allowed a remote attacker to execute HTML on the Cobalt Strike teamserver. To exploit the vulnerability, one must first inspect a Cobalt Strike payload, and then modify the username field in the payload (or create a new payload with the extracted information and then modify that username field to be malformed). 46% 22 Sept 2022
7.8 high CVE-2022-32917 KEV Apple iOS The issue was addressed with improved bounds checks. This issue is fixed in macOS Monterey 12.6, iOS 15.7 and iPadOS 15.7, iOS 16, macOS Big Sur 11.7. An application may be able to execute arbitrary code with kernel privileges. Apple is aware of a report that this issue may have been actively exploited.. 5.6% 20 Sept 2022
7.2 high CVE-2022-40139 KEV Trend Micro Apex One Improper validation of some components used by the rollback mechanism in Trend Micro Apex One and Trend Micro Apex One as a Service clients could allow a Apex One server administrator to instruct affected clients to download an unverified rollback package, which could lead to remote code execution. Please note: an attacker must first obtain Apex One server administration console access in order to exploit this vulnerability. 3.3% 19 Sept 2022
9.8 critical CVE-2022-35914 KEV glpi-project glpi /vendor/htmlawed/htmlawed/htmLawedTest.php in the htmlawed module for GLPI through 10.0.2 allows PHP code injection. >99% 19 Sept 2022
7.8 high CVE-2022-37969 KEV Microsoft Windows 10 Version 1809 Windows Common Log File System Driver Elevation of Privilege Vulnerability 28% 13 Sept 2022