Search
Search Results (314954 CVEs found)
CVE | Vendors | Products | Updated | CVSS v3.1 |
---|---|---|---|---|
CVE-2021-34523 | 1 Microsoft | 1 Exchange Server | 2025-10-22 | 9 Critical |
Microsoft Exchange Server Elevation of Privilege Vulnerability | ||||
CVE-2021-34486 | 1 Microsoft | 11 Windows 10 1809, Windows 10 1909, Windows 10 2004 and 8 more | 2025-10-22 | 7.8 High |
Windows Event Tracing Elevation of Privilege Vulnerability | ||||
CVE-2021-34484 | 1 Microsoft | 22 Windows 10 1507, Windows 10 1607, Windows 10 1809 and 19 more | 2025-10-22 | 7.8 High |
Windows User Profile Service Elevation of Privilege Vulnerability | ||||
CVE-2021-34473 | 1 Microsoft | 1 Exchange Server | 2025-10-22 | 9.1 Critical |
Microsoft Exchange Server Remote Code Execution Vulnerability | ||||
CVE-2021-34448 | 1 Microsoft | 18 Windows 10 1507, Windows 10 1607, Windows 10 1809 and 15 more | 2025-10-22 | 6.8 Medium |
Scripting Engine Memory Corruption Vulnerability | ||||
CVE-2021-33771 | 1 Microsoft | 19 Windows 10 1507, Windows 10 1607, Windows 10 1809 and 16 more | 2025-10-22 | 7.8 High |
Windows Kernel Elevation of Privilege Vulnerability | ||||
CVE-2021-33766 | 1 Microsoft | 1 Exchange Server | 2025-10-22 | 7.3 High |
Microsoft Exchange Server Information Disclosure Vulnerability | ||||
CVE-2021-33742 | 1 Microsoft | 19 Windows 10 1507, Windows 10 1607, Windows 10 1809 and 16 more | 2025-10-22 | 7.5 High |
Windows MSHTML Platform Remote Code Execution Vulnerability | ||||
CVE-2021-33739 | 1 Microsoft | 10 Windows 10 1809, Windows 10 1909, Windows 10 2004 and 7 more | 2025-10-22 | 8.4 High |
Microsoft DWM Core Library Elevation of Privilege Vulnerability | ||||
CVE-2021-33045 | 1 Dahuasecurity | 36 Ipc-hum7xxx, Ipc-hum7xxx Firmware, Ipc-hx3xxx and 33 more | 2025-10-22 | 9.8 Critical |
The identity authentication bypass vulnerability found in some Dahua products during the login process. Attackers can bypass device identity authentication by constructing malicious data packets. | ||||
CVE-2021-33044 | 1 Dahuasecurity | 38 Ipc-hum7xxx, Ipc-hum7xxx Firmware, Ipc-hx3xxx and 35 more | 2025-10-22 | 9.8 Critical |
The identity authentication bypass vulnerability found in some Dahua products during the login process. Attackers can bypass device identity authentication by constructing malicious data packets. | ||||
CVE-2021-32648 | 1 Octobercms | 1 October | 2025-10-22 | 8.2 High |
octobercms in a CMS platform based on the Laravel PHP Framework. In affected versions of the october/system package an attacker can request an account password reset and then gain access to the account using a specially crafted request. The issue has been patched in Build 472 and v1.1.5. | ||||
CVE-2021-32030 | 1 Asus | 4 Gt-ac2900, Gt-ac2900 Firmware, Lyra Mini and 1 more | 2025-10-22 | 9.8 Critical |
The administrator application on ASUS GT-AC2900 devices before 3.0.0.4.386.42643 and Lyra Mini before 3.0.0.4_384_46630 allows authentication bypass when processing remote input from an unauthenticated user, leading to unauthorized access to the administrator interface. This relates to handle_request in router/httpd/httpd.c and auth_check in web_hook.o. An attacker-supplied value of '\0' matches the device's default value of '\0' in some situations. Note: All versions of Lyra Mini and earlier which are unsupported (End-of-Life, EOL) are also affected by this vulnerability, Consumers can mitigate this vulnerability by disabling the remote access features from WAN. | ||||
CVE-2021-31979 | 1 Microsoft | 23 Windows 10, Windows 10 1507, Windows 10 1607 and 20 more | 2025-10-22 | 7.8 High |
Windows Kernel Elevation of Privilege Vulnerability | ||||
CVE-2021-31956 | 1 Microsoft | 23 Windows 10, Windows 10 1507, Windows 10 1607 and 20 more | 2025-10-22 | 7.8 High |
Windows NTFS Elevation of Privilege Vulnerability | ||||
CVE-2021-31955 | 1 Microsoft | 11 Windows 10 1809, Windows 10 1909, Windows 10 2004 and 8 more | 2025-10-22 | 5.5 Medium |
Windows Kernel Information Disclosure Vulnerability | ||||
CVE-2021-31755 | 1 Tenda | 2 Ac11, Ac11 Firmware | 2025-10-22 | 9.8 Critical |
An issue was discovered on Tenda AC11 devices with firmware through 02.03.01.104_CN. A stack buffer overflow vulnerability in /goform/setmac allows attackers to execute arbitrary code on the system via a crafted post request. | ||||
CVE-2021-31207 | 1 Microsoft | 1 Exchange Server | 2025-10-22 | 6.6 Medium |
Microsoft Exchange Server Security Feature Bypass Vulnerability | ||||
CVE-2021-31201 | 1 Microsoft | 22 Windows 10 1507, Windows 10 1607, Windows 10 1809 and 19 more | 2025-10-22 | 5.2 Medium |
Microsoft Enhanced Cryptographic Provider Elevation of Privilege Vulnerability | ||||
CVE-2021-31199 | 1 Microsoft | 22 Windows 10 1507, Windows 10 1607, Windows 10 1809 and 19 more | 2025-10-22 | 5.2 Medium |
Microsoft Enhanced Cryptographic Provider Elevation of Privilege Vulnerability |