Search
CVE Explorer
Search the full tracked CVE corpus across every vendor — by keyword, vendor, severity, CVSS band and publication date. Server-rendered; each filtered view has its own URL.
01
Filters
Submit to refine — state is held in the URL.
02
Results
66,988 matching · page 1165/1340Each CVE id links to its NVD record.
| CVE | Severity | CVSS | Summary | Published |
|---|---|---|---|---|
| CVE-2023-28233(opens NVD record) | High | 7.5 | Windows Secure Channel Denial of Service Vulnerability | Apr 11, 2023 |
| CVE-2023-28232(opens NVD record) | High | 7.5 | Windows Point-to-Point Tunneling Protocol Remote Code Execution Vulnerability | Apr 11, 2023 |
| CVE-2023-28231(opens NVD record) | High | 8.8 | DHCP Server Service Remote Code Execution Vulnerability | Apr 11, 2023 |
| CVE-2023-28229(opens NVD record) | High | 7.0 | Windows CNG Key Isolation Service Elevation of Privilege Vulnerability | Apr 11, 2023 |
| CVE-2023-28228(opens NVD record) | Medium | 5.5 | Windows Spoofing Vulnerability | Apr 11, 2023 |
| CVE-2023-28227(opens NVD record) | High | 7.5 | Windows Bluetooth Driver Remote Code Execution Vulnerability | Apr 11, 2023 |
| CVE-2023-28226(opens NVD record) | Medium | 5.3 | Windows Enroll Engine Security Feature Bypass Vulnerability | Apr 11, 2023 |
| CVE-2023-28225(opens NVD record) | High | 7.8 | Windows NTLM Elevation of Privilege Vulnerability | Apr 11, 2023 |
| CVE-2023-28224(opens NVD record) | High | 7.1 | Windows Point-to-Point Protocol over Ethernet (PPPoE) Remote Code Execution Vulnerability | Apr 11, 2023 |
| CVE-2023-28223(opens NVD record) | Medium | 6.6 | Windows Domain Name Service Remote Code Execution Vulnerability | Apr 11, 2023 |
| CVE-2023-28222(opens NVD record) | High | 7.1 | Windows Kernel Elevation of Privilege Vulnerability | Apr 11, 2023 |
| CVE-2023-28221(opens NVD record) | High | 7.0 | Windows Error Reporting Service Elevation of Privilege Vulnerability | Apr 11, 2023 |
| CVE-2023-28220(opens NVD record) | High | 8.1 | Layer 2 Tunneling Protocol Remote Code Execution Vulnerability | Apr 11, 2023 |
| CVE-2023-28219(opens NVD record) | High | 8.1 | Layer 2 Tunneling Protocol Remote Code Execution Vulnerability | Apr 11, 2023 |
| CVE-2023-28218(opens NVD record) | High | 7.0 | Windows Ancillary Function Driver for WinSock Elevation of Privilege Vulnerability | Apr 11, 2023 |
| CVE-2023-28217(opens NVD record) | High | 7.5 | Windows Network Address Translation (NAT) Denial of Service Vulnerability | Apr 11, 2023 |
| CVE-2023-28216(opens NVD record) | High | 7.0 | Windows Advanced Local Procedure Call (ALPC) Elevation of Privilege Vulnerability | Apr 11, 2023 |
| CVE-2023-24935(opens NVD record) | Medium | 6.1 | Microsoft Edge (Chromium-based) Spoofing Vulnerability | Apr 11, 2023 |
| CVE-2023-24931(opens NVD record) | High | 7.5 | Windows Secure Channel Denial of Service Vulnerability | Apr 11, 2023 |
| CVE-2023-24929(opens NVD record) | High | 8.8 | Microsoft PostScript and PCL6 Class Printer Driver Remote Code Execution Vulnerability | Apr 11, 2023 |
| CVE-2023-24928(opens NVD record) | High | 8.8 | Microsoft PostScript and PCL6 Class Printer Driver Remote Code Execution Vulnerability | Apr 11, 2023 |
| CVE-2023-24927(opens NVD record) | High | 8.8 | Microsoft PostScript and PCL6 Class Printer Driver Remote Code Execution Vulnerability | Apr 11, 2023 |
| CVE-2023-24926(opens NVD record) | High | 8.8 | Microsoft PostScript and PCL6 Class Printer Driver Remote Code Execution Vulnerability | Apr 11, 2023 |
| CVE-2023-24925(opens NVD record) | High | 8.8 | Microsoft PostScript and PCL6 Class Printer Driver Remote Code Execution Vulnerability | Apr 11, 2023 |
| CVE-2023-24924(opens NVD record) | High | 8.8 | Microsoft PostScript and PCL6 Class Printer Driver Remote Code Execution Vulnerability | Apr 11, 2023 |
| CVE-2023-24914(opens NVD record) | High | 7.0 | Win32k Elevation of Privilege Vulnerability | Apr 11, 2023 |
| CVE-2023-24912(opens NVD record) | High | 7.8 | Windows Graphics Component Elevation of Privilege Vulnerability | Apr 11, 2023 |
| CVE-2023-24893(opens NVD record) | High | 7.8 | Visual Studio Code Remote Code Execution Vulnerability | Apr 11, 2023 |
| CVE-2023-24887(opens NVD record) | High | 8.8 | Microsoft PostScript and PCL6 Class Printer Driver Remote Code Execution Vulnerability | Apr 11, 2023 |
| CVE-2023-24886(opens NVD record) | High | 8.8 | Microsoft PostScript and PCL6 Class Printer Driver Remote Code Execution Vulnerability | Apr 11, 2023 |
| CVE-2023-24885(opens NVD record) | High | 8.8 | Microsoft PostScript and PCL6 Class Printer Driver Remote Code Execution Vulnerability | Apr 11, 2023 |
| CVE-2023-24884(opens NVD record) | High | 8.8 | Microsoft PostScript and PCL6 Class Printer Driver Remote Code Execution Vulnerability | Apr 11, 2023 |
| CVE-2023-24883(opens NVD record) | Medium | 6.5 | Microsoft PostScript and PCL6 Class Printer Driver Information Disclosure Vulnerability | Apr 11, 2023 |
| CVE-2023-24860(opens NVD record) | High | 7.5 | Microsoft Defender Denial of Service Vulnerability | Apr 11, 2023 |
| CVE-2023-23384(opens NVD record) | High | 7.3 | Microsoft SQL Server Remote Code Execution Vulnerability | Apr 11, 2023 |
| CVE-2023-23375(opens NVD record) | High | 7.8 | Microsoft ODBC and OLE DB Remote Code Execution Vulnerability | Apr 11, 2023 |
| CVE-2023-21769(opens NVD record) | High | 7.5 | Microsoft Message Queuing (MSMQ) Denial of Service Vulnerability | Apr 11, 2023 |
| CVE-2023-21729(opens NVD record) | Medium | 4.3 | Remote Procedure Call Runtime Information Disclosure Vulnerability | Apr 11, 2023 |
| CVE-2023-21727(opens NVD record) | High | 8.8 | Remote Procedure Call Runtime Remote Code Execution Vulnerability | Apr 11, 2023 |
| CVE-2023-21554(opens NVD record) | Critical | 9.8 | Microsoft Message Queuing (MSMQ) Remote Code Execution Vulnerability | Apr 11, 2023 |
| CVE-2023-1989(opens NVD record) | High | 7.0 | A use-after-free flaw was found in btsdio_remove in drivers\bluetooth\btsdio.c in the Linux Kernel. In this flaw, a call to btsdio_remove with an unfinished job, may cause a race problem leading to a UAF on hdev devices. | Apr 11, 2023 |
| CVE-2023-27995(opens NVD record) | High | 7.2 | A improper neutralization of special elements used in a template engine vulnerability in Fortinet FortiSOAR 7.3.0 through 7.3.1 allows an authenticated, remote attacker to execute arbitrary code via a crafted payload. | Apr 11, 2023 |
| CVE-2023-22642(opens NVD record) | High | 7.5 | An improper certificate validation vulnerability [CWE-295] in FortiAnalyzer and FortiManager 7.2.0 through 7.2.1, 7.0.0 through 7.0.5, 6.4.8 through 6.4.10 may allow a remote and unauthenticated attacker to perform a Man-in-the-Middle attack on the communication channel between the device and the remote FortiGuard server hosting outbreakalert ressources. | Apr 11, 2023 |
| CVE-2023-22641(opens NVD record) | Medium | 4.1 | A url redirection to untrusted site ('open redirect') in Fortinet FortiOS version 7.2.0 through 7.2.3, FortiOS version 7.0.0 through 7.0.9, FortiOS versions 6.4.0 through 6.4.12, FortiOS all versions 6.2, FortiOS all versions 6.0, FortiProxy version 7.2.0 through 7.2.2, FortiProxy version 7.0.0 through 7.0.8, FortiProxy all versions 2.0, FortiProxy all versions 1.2, FortiProxy all versions 1.1, FortiProxy all versions 1.0 allows an authenticated attacker to execute unauthorized code or commands via specially crafted requests. | Apr 11, 2023 |
| CVE-2023-22635(opens NVD record) | High | 7.3 | A download of code without Integrity check vulnerability [CWE-494] in FortiClientMac version 7.0.0 through 7.0.7, 6.4 all versions, 6.2 all versions, 6.0 all versions, 5.6 all versions, 5.4 all versions, 5.2 all versions, 5.0 all versions and 4.0 all versions may allow a local attacker to escalate their privileges via modifying the installer upon upgrade. | Apr 11, 2023 |
| CVE-2022-43955(opens NVD record) | High | 8.8 | An improper neutralization of input during web page generation [CWE-79] in the FortiWeb web interface 7.0.0 through 7.0.3, 6.3.0 through 6.3.21, 6.4 all versions, 6.2 all versions, 6.1 all versions and 6.0 all versions may allow an unauthenticated and remote attacker to perform a reflected cross site scripting attack (XSS) via injecting malicious payload in log entries used to build report. | Apr 11, 2023 |
| CVE-2022-43952(opens NVD record) | Low | 3.5 | An improper neutralization of input during web page generation ('Cross-site Scripting') vulnerability [CWE-79] in FortiADC version 7.1.1 and below, version 7.0.3 and below, version 6.2.5 and below may allow an authenticated attacker to perform a cross-site scripting attack via crafted HTTP requests. | Apr 11, 2023 |
| CVE-2022-43951(opens NVD record) | Medium | 5.3 | An exposure of sensitive information to an unauthorized actor vulnerability [CWE-200] in FortiNAC 9.4.1 and below, 9.2.6 and below, 9.1.8 and below, 8.8.11 and below, 8.7.6 and below may allow an unauthenticated attacker to access sensitive information via crafted HTTP requests. | Apr 11, 2023 |
| CVE-2022-43948(opens NVD record) | Medium | 6.7 | A improper neutralization of special elements used in an os command ('os command injection') in Fortinet FortiWeb version 7.0.0 through 7.0.3, FortiADC version 7.1.0 through 7.1.1, FortiADC version 7.0.0 through 7.0.3, FortiADC 6.2 all versions, FortiADC 6.1 all versions, FortiADC 6.0 all versions, FortiADC 5.4 all versions, FortiADC 5.3 all versions, FortiADC 5.2 all versions, FortiADC 5.1 all versions allows attacker to execute unauthorized code or commands via specifically crafted arguments to existing commands. | Apr 11, 2023 |
| CVE-2022-43947(opens NVD record) | Medium | 5.0 | An improper restriction of excessive authentication attempts vulnerability [CWE-307] in Fortinet FortiOS version 7.2.0 through 7.2.3 and before 7.0.10, FortiProxy version 7.2.0 through 7.2.2 and before 7.0.8 administrative interface allows an attacker with a valid user account to perform brute-force attacks on other user accounts via injecting valid login sessions. | Apr 11, 2023 |