Known exploited vulnerabilities

Vulnerabilities CISA has confirmed are being exploited, newest additions first — with the remediation deadline federal agencies must meet.

48,654 CVEs · 1,739 known exploited · CVE data updated 30 min ago · EPSS 4 hours ago

1,739 results · page 82 of 87 EPSS = probability of exploitation in the next 30 days (FIRST)
Matching CVEs
Score CVE Affected EPSS Added to KEV
9.8 critical CVE-2020-3161 KEV Cisco IP phone A vulnerability in the web server for Cisco IP Phones could allow an unauthenticated, remote attacker to execute code with root privileges or cause a reload of an affected IP phone, resulting in a denial of service (DoS) condition. The vulnerability is due to a lack of proper input validation of HTTP requests. An attacker could exploit this vulnerability by sending a crafted HTTP request to the web server of a targeted device. A successful exploit could allow the attacker to remotely execute code with root privileges or cause a reload of an affected IP phone, resulting in a DoS condition. 84% 3 Nov 2021
8.8 high CVE-2020-1020 KEV Microsoft Windows A remote code execution vulnerability exists in Microsoft Windows when the Windows Adobe Type Manager Library improperly handles a specially-crafted multi-master font - Adobe Type 1 PostScript format.For all systems except Windows 10, an attacker who successfully exploited the vulnerability could execute code remotely, aka 'Adobe Font Manager Library Remote Code Execution Vulnerability'. This CVE ID is unique from CVE-2020-0938. 65% 3 Nov 2021
7.5 high CVE-2020-0968 KEV Microsoft Internet Explorer 9 A remote code execution vulnerability exists in the way that the scripting engine handles objects in memory in Internet Explorer, aka 'Scripting Engine Memory Corruption Vulnerability'. This CVE ID is unique from CVE-2020-0970. 31% 3 Nov 2021
7.8 high CVE-2020-0938 KEV Microsoft Windows A remote code execution vulnerability exists in Microsoft Windows when the Windows Adobe Type Manager Library improperly handles a specially-crafted multi-master font - Adobe Type 1 PostScript format.For all systems except Windows 10, an attacker who successfully exploited the vulnerability could execute code remotely, aka 'Adobe Font Manager Library Remote Code Execution Vulnerability'. This CVE ID is unique from CVE-2020-1020. 69% 3 Nov 2021
7.5 high CVE-2020-11738 KEV awesomemotive duplicator The Snap Creek Duplicator plugin before 1.3.28 for WordPress (and Duplicator Pro before 3.8.7.1) allows Directory Traversal via ../ in the file parameter to duplicator_download or duplicator_init. 98% 3 Nov 2021
9.8 critical CVE-2020-3952 KEV VMware vCenter Server Under certain conditions, vmdir that ships with VMware vCenter Server, as part of an embedded or external Platform Services Controller (PSC), does not correctly implement access controls. 90% 3 Nov 2021
8.8 high CVE-2020-5735 KEV Amcrest Amcrest cameras and NVR are vulnerable to a stack-based buffer overflow over port 37777. An authenticated remote attacker can abuse this issue to crash the device and possibly execute arbitrary code. 36% 3 Nov 2021
8.8 high CVE-2020-10199 KEV sonatype nexus Sonatype Nexus Repository before 3.21.2 allows JavaEL Injection (issue 1 of 2). 99% 3 Nov 2021
9.8 critical CVE-2020-7961 KEV liferay portal Deserialization of Untrusted Data in Liferay Portal prior to 7.2.1 CE GA2 allows remote attackers to execute arbitrary code via JSON web services (JSONWS). >99% 3 Nov 2021
9.8 critical CVE-2020-8599 KEV Trend Micro OfficeScan, Trend Micro Apex One Trend Micro Apex One (2019) and OfficeScan XG server contain a vulnerable EXE file that could allow a remote attacker to write arbitrary data to an arbitrary path on affected installations and bypass ROOT login. Authentication is not required to exploit this vulnerability. 12% 3 Nov 2021
8.8 high CVE-2020-8468 KEV Trend Micro OfficeScan, Trend Micro Apex One, Trend Micro Worry-Free Business Security (WFBS) Trend Micro Apex One (2019), OfficeScan XG and Worry-Free Business Security (9.0, 9.5, 10.0) agents are affected by a content validation escape vulnerability which could allow an attacker to manipulate certain agent client components. An attempted attack requires user authentication. 6.2% 3 Nov 2021
8.8 high CVE-2020-8467 KEV Trend Micro OfficeScan, Trend Micro Apex One A migration tool component of Trend Micro Apex One (2019) and OfficeScan XG contains a vulnerability which could allow remote attackers to execute arbitrary code on affected installations (RCE). An attempted attack requires user authentication. 11% 3 Nov 2021
7.8 high CVE-2020-3950 KEV VMware Fusion, VMware Remote Console for Mac and Horizon Client for Mac VMware Fusion (11.x before 11.5.2), VMware Remote Console for Mac (11.x and prior before 11.0.1) and Horizon Client for Mac (5.x and prior before 5.4.0) contain a privilege escalation vulnerability due to improper use of setuid binaries. Successful exploitation of this issue may allow attackers with normal user privileges to escalate their privileges to root on the system where Fusion, VMRC or Horizon Client is installed. 7.3% 3 Nov 2021
7.5 high CVE-2020-5849 KEV unraid Unraid 6.8.0 allows authentication bypass. 93% 3 Nov 2021
9.8 critical CVE-2020-5847 KEV unraid Unraid through 6.8.0 allows Remote Code Execution. 96% 3 Nov 2021
9.8 critical CVE-2020-10181 KEV sumavision enhanced multimedia router firmware goform/formEMR30 in Sumavision Enhanced Multimedia Router (EMR) 3.0.4.27 allows creation of arbitrary users with elevated privileges (administrator) on a device, as demonstrated by a setString=new_user<*1*>administrator<*1*>123456 request. 15% 3 Nov 2021
9.8 critical CVE-2020-6207 KEV SAP SE SAP Solution Manager (User Experience Monitoring) SAP Solution Manager (User Experience Monitoring), version- 7.2, due to Missing Authentication Check does not perform any authentication for a service resulting in complete compromise of all SMDAgents connected to the Solution Manager. 98% 3 Nov 2021
7.8 high CVE-2020-0069 KEV Android In the ioctl handlers of the Mediatek Command Queue driver, there is a possible out of bounds write due to insufficient input sanitization and missing SELinux restrictions. This could lead to local escalation of privilege with no additional execution privileges needed. User interaction is not needed for exploitation.Product: AndroidVersions: Android kernelAndroid ID: A-147882143References: M-ALPS04356754 1.4% 3 Nov 2021
7.8 high CVE-2020-0041 KEV Android In binder_transaction of binder.c, there is a possible out of bounds write due to an incorrect bounds check. This could lead to local escalation of privilege with no additional execution privileges needed. User interaction is not needed for exploitation.Product: AndroidVersions: Android kernelAndroid ID: A-145988638References: Upstream kernel 3.1% 3 Nov 2021
8.8 high CVE-2020-10221 KEV rconfig lib/ajaxHandlers/ajaxAddTemplate.php in rConfig through 3.94 allows remote attackers to execute arbitrary OS commands via shell metacharacters in the fileName POST parameter. 77% 3 Nov 2021