Search

Search Results (314954 CVEs found)

CVE Vendors Products Updated CVSS v3.1
CVE-2021-34523 1 Microsoft 1 Exchange Server 2025-10-22 9 Critical
Microsoft Exchange Server Elevation of Privilege Vulnerability
CVE-2021-34486 1 Microsoft 11 Windows 10 1809, Windows 10 1909, Windows 10 2004 and 8 more 2025-10-22 7.8 High
Windows Event Tracing Elevation of Privilege Vulnerability
CVE-2021-34484 1 Microsoft 22 Windows 10 1507, Windows 10 1607, Windows 10 1809 and 19 more 2025-10-22 7.8 High
Windows User Profile Service Elevation of Privilege Vulnerability
CVE-2021-34473 1 Microsoft 1 Exchange Server 2025-10-22 9.1 Critical
Microsoft Exchange Server Remote Code Execution Vulnerability
CVE-2021-34448 1 Microsoft 18 Windows 10 1507, Windows 10 1607, Windows 10 1809 and 15 more 2025-10-22 6.8 Medium
Scripting Engine Memory Corruption Vulnerability
CVE-2021-33771 1 Microsoft 19 Windows 10 1507, Windows 10 1607, Windows 10 1809 and 16 more 2025-10-22 7.8 High
Windows Kernel Elevation of Privilege Vulnerability
CVE-2021-33766 1 Microsoft 1 Exchange Server 2025-10-22 7.3 High
Microsoft Exchange Server Information Disclosure Vulnerability
CVE-2021-33742 1 Microsoft 19 Windows 10 1507, Windows 10 1607, Windows 10 1809 and 16 more 2025-10-22 7.5 High
Windows MSHTML Platform Remote Code Execution Vulnerability
CVE-2021-33739 1 Microsoft 10 Windows 10 1809, Windows 10 1909, Windows 10 2004 and 7 more 2025-10-22 8.4 High
Microsoft DWM Core Library Elevation of Privilege Vulnerability
CVE-2021-33045 1 Dahuasecurity 36 Ipc-hum7xxx, Ipc-hum7xxx Firmware, Ipc-hx3xxx and 33 more 2025-10-22 9.8 Critical
The identity authentication bypass vulnerability found in some Dahua products during the login process. Attackers can bypass device identity authentication by constructing malicious data packets.
CVE-2021-33044 1 Dahuasecurity 38 Ipc-hum7xxx, Ipc-hum7xxx Firmware, Ipc-hx3xxx and 35 more 2025-10-22 9.8 Critical
The identity authentication bypass vulnerability found in some Dahua products during the login process. Attackers can bypass device identity authentication by constructing malicious data packets.
CVE-2021-32648 1 Octobercms 1 October 2025-10-22 8.2 High
octobercms in a CMS platform based on the Laravel PHP Framework. In affected versions of the october/system package an attacker can request an account password reset and then gain access to the account using a specially crafted request. The issue has been patched in Build 472 and v1.1.5.
CVE-2021-32030 1 Asus 4 Gt-ac2900, Gt-ac2900 Firmware, Lyra Mini and 1 more 2025-10-22 9.8 Critical
The administrator application on ASUS GT-AC2900 devices before 3.0.0.4.386.42643 and Lyra Mini before 3.0.0.4_384_46630 allows authentication bypass when processing remote input from an unauthenticated user, leading to unauthorized access to the administrator interface. This relates to handle_request in router/httpd/httpd.c and auth_check in web_hook.o. An attacker-supplied value of '\0' matches the device's default value of '\0' in some situations. Note: All versions of Lyra Mini and earlier which are unsupported (End-of-Life, EOL) are also affected by this vulnerability, Consumers can mitigate this vulnerability by disabling the remote access features from WAN.
CVE-2021-31979 1 Microsoft 23 Windows 10, Windows 10 1507, Windows 10 1607 and 20 more 2025-10-22 7.8 High
Windows Kernel Elevation of Privilege Vulnerability
CVE-2021-31956 1 Microsoft 23 Windows 10, Windows 10 1507, Windows 10 1607 and 20 more 2025-10-22 7.8 High
Windows NTFS Elevation of Privilege Vulnerability
CVE-2021-31955 1 Microsoft 11 Windows 10 1809, Windows 10 1909, Windows 10 2004 and 8 more 2025-10-22 5.5 Medium
Windows Kernel Information Disclosure Vulnerability
CVE-2021-31755 1 Tenda 2 Ac11, Ac11 Firmware 2025-10-22 9.8 Critical
An issue was discovered on Tenda AC11 devices with firmware through 02.03.01.104_CN. A stack buffer overflow vulnerability in /goform/setmac allows attackers to execute arbitrary code on the system via a crafted post request.
CVE-2021-31207 1 Microsoft 1 Exchange Server 2025-10-22 6.6 Medium
Microsoft Exchange Server Security Feature Bypass Vulnerability
CVE-2021-31201 1 Microsoft 22 Windows 10 1507, Windows 10 1607, Windows 10 1809 and 19 more 2025-10-22 5.2 Medium
Microsoft Enhanced Cryptographic Provider Elevation of Privilege Vulnerability
CVE-2021-31199 1 Microsoft 22 Windows 10 1507, Windows 10 1607, Windows 10 1809 and 19 more 2025-10-22 5.2 Medium
Microsoft Enhanced Cryptographic Provider Elevation of Privilege Vulnerability