Search
CVE Explorer
Search the full tracked CVE corpus across every vendor — by keyword, vendor, severity, CVSS band and publication date. Server-rendered; each filtered view has its own URL.
01
Filters
Submit to refine — state is held in the URL.
02
Results
71,670 matching · page 1290/1434Each CVE id links to its NVD record.
| CVE | Severity | CVSS | Summary | Published |
|---|---|---|---|---|
| CVE-2023-21678(opens NVD record) | High | 7.8 | Windows Print Spooler Elevation of Privilege Vulnerability | Jan 10, 2023 |
| CVE-2023-21677(opens NVD record) | High | 7.5 | Windows Internet Key Exchange (IKE) Extension Denial of Service Vulnerability | Jan 10, 2023 |
| CVE-2023-21676(opens NVD record) | High | 8.8 | Windows Lightweight Directory Access Protocol (LDAP) Remote Code Execution Vulnerability | Jan 10, 2023 |
| CVE-2023-21675(opens NVD record) | High | 7.8 | Windows Kernel Elevation of Privilege Vulnerability | Jan 10, 2023 |
| CVE-2023-21674(opens NVD record) | High | 8.8 | Windows Advanced Local Procedure Call (ALPC) Elevation of Privilege Vulnerability | Jan 10, 2023 |
| CVE-2023-21563(opens NVD record) | Medium | 6.8 | BitLocker Security Feature Bypass Vulnerability | Jan 10, 2023 |
| CVE-2023-21561(opens NVD record) | High | 7.8 | Microsoft Cryptographic Services Elevation of Privilege Vulnerability | Jan 10, 2023 |
| CVE-2023-21560(opens NVD record) | Medium | 6.6 | Windows Boot Manager Security Feature Bypass Vulnerability | Jan 10, 2023 |
| CVE-2023-21559(opens NVD record) | Medium | 5.5 | Windows Cryptographic Information Disclosure Vulnerability | Jan 10, 2023 |
| CVE-2023-21558(opens NVD record) | High | 7.8 | Windows Error Reporting Service Elevation of Privilege Vulnerability | Jan 10, 2023 |
| CVE-2023-21557(opens NVD record) | High | 7.5 | Windows Lightweight Directory Access Protocol (LDAP) Denial of Service Vulnerability | Jan 10, 2023 |
| CVE-2023-21556(opens NVD record) | High | 8.1 | Windows Layer 2 Tunneling Protocol (L2TP) Remote Code Execution Vulnerability | Jan 10, 2023 |
| CVE-2023-21555(opens NVD record) | High | 8.1 | Windows Layer 2 Tunneling Protocol (L2TP) Remote Code Execution Vulnerability | Jan 10, 2023 |
| CVE-2023-21552(opens NVD record) | High | 7.8 | Windows GDI Elevation of Privilege Vulnerability | Jan 10, 2023 |
| CVE-2023-21551(opens NVD record) | High | 7.8 | Microsoft Cryptographic Services Elevation of Privilege Vulnerability | Jan 10, 2023 |
| CVE-2023-21550(opens NVD record) | Medium | 5.5 | Windows Cryptographic Information Disclosure Vulnerability | Jan 10, 2023 |
| CVE-2023-21549(opens NVD record) | High | 8.8 | Windows SMB Witness Service Elevation of Privilege Vulnerability | Jan 10, 2023 |
| CVE-2023-21548(opens NVD record) | High | 8.1 | Windows Secure Socket Tunneling Protocol (SSTP) Remote Code Execution Vulnerability | Jan 10, 2023 |
| CVE-2023-21547(opens NVD record) | High | 7.5 | Internet Key Exchange (IKE) Protocol Denial of Service Vulnerability | Jan 10, 2023 |
| CVE-2023-21546(opens NVD record) | High | 8.1 | Windows Layer 2 Tunneling Protocol (L2TP) Remote Code Execution Vulnerability | Jan 10, 2023 |
| CVE-2023-21543(opens NVD record) | High | 8.1 | Windows Layer 2 Tunneling Protocol (L2TP) Remote Code Execution Vulnerability | Jan 10, 2023 |
| CVE-2023-21542(opens NVD record) | High | 7.0 | Windows Installer Elevation of Privilege Vulnerability | Jan 10, 2023 |
| CVE-2023-21541(opens NVD record) | High | 7.8 | Windows Task Scheduler Elevation of Privilege Vulnerability | Jan 10, 2023 |
| CVE-2023-21540(opens NVD record) | Medium | 5.5 | Windows Cryptographic Information Disclosure Vulnerability | Jan 10, 2023 |
| CVE-2023-21539(opens NVD record) | High | 7.5 | Windows Authentication Remote Code Execution Vulnerability | Jan 10, 2023 |
| CVE-2023-21538(opens NVD record) | High | 7.5 | .NET Denial of Service Vulnerability | Jan 10, 2023 |
| CVE-2023-21537(opens NVD record) | High | 7.8 | Microsoft Message Queuing (MSMQ) Elevation of Privilege Vulnerability | Jan 10, 2023 |
| CVE-2023-21536(opens NVD record) | Medium | 4.7 | Event Tracing for Windows Information Disclosure Vulnerability | Jan 10, 2023 |
| CVE-2023-21535(opens NVD record) | High | 8.1 | Windows Secure Socket Tunneling Protocol (SSTP) Remote Code Execution Vulnerability | Jan 10, 2023 |
| CVE-2023-21532(opens NVD record) | High | 7.0 | Windows GDI Elevation of Privilege Vulnerability | Jan 10, 2023 |
| CVE-2023-21531(opens NVD record) | High | 7.0 | Azure Service Fabric Container Elevation of Privilege Vulnerability | Jan 10, 2023 |
| CVE-2023-21527(opens NVD record) | High | 7.5 | Windows iSCSI Service Denial of Service Vulnerability | Jan 10, 2023 |
| CVE-2023-21525(opens NVD record) | Medium | 5.3 | Remote Procedure Call Runtime Denial of Service Vulnerability | Jan 10, 2023 |
| CVE-2023-21524(opens NVD record) | High | 7.8 | Windows Local Security Authority (LSA) Elevation of Privilege Vulnerability | Jan 10, 2023 |
| CVE-2023-0140(opens NVD record) | Medium | 6.5 | Inappropriate implementation in in File System API in Google Chrome on Windows prior to 109.0.5414.74 allowed a remote attacker to bypass file system restrictions via a crafted HTML page. (Chromium security severity: Low) | Jan 10, 2023 |
| CVE-2023-0139(opens NVD record) | Medium | 6.5 | Insufficient validation of untrusted input in Downloads in Google Chrome on Windows prior to 109.0.5414.74 allowed a remote attacker to bypass download restrictions via a crafted HTML page. (Chromium security severity: Low) | Jan 10, 2023 |
| CVE-2023-0132(opens NVD record) | Medium | 6.5 | Inappropriate implementation in in Permission prompts in Google Chrome on Windows prior to 109.0.5414.74 allowed a remote attacker to force acceptance of a permission prompt via a crafted HTML page. (Chromium security severity: Medium) | Jan 10, 2023 |
| CVE-2022-4294(opens NVD record) | High | 7.1 | Norton, Avira, Avast and AVG Antivirus for Windows may be susceptible to a Privilege Escalation vulnerability, which is a type of issue whereby an attacker may attempt to compromise the software application to gain elevated access to resources that are normally protected from an application or user. | Jan 10, 2023 |
| CVE-2023-0012(opens NVD record) | Medium | 6.4 | In SAP Host Agent (Windows) - versions 7.21, 7.22, an attacker who gains local membership to SAP_LocalAdmin could be able to replace executables with a malicious file that will be started under a privileged account. Note that by default all user members of SAP_LocaAdmin are denied the ability to logon locally by security policy so that this can only occur if the system has already been compromised. | Jan 10, 2023 |
| CVE-2022-2196(opens NVD record) | Medium | 5.8 | A regression exists in the Linux Kernel within KVM: nVMX that allowed for speculative execution attacks. L2 can carry out Spectre v2 attacks on L1 due to L1 thinking it doesn't need retpolines or IBPB after running L2 due to KVM (L0) advertising eIBRS support to L1. An attacker at L2 with code execution can execute code on an indirect branch on the host machine. We recommend upgrading to Kernel 6.2 or applying the relevant stable backports (v5.4.233, v5.10.170, v5.15.96, v6.1.14). | Jan 9, 2023 |
| CVE-2022-35281(opens NVD record) | Medium | 5.5 | IBM Maximo Asset Management 7.6.1.1, 7.6.1.2, 7.6.1.3 and the IBM Maximo Manage 8.3, 8.4 application in IBM Maximo Application Suite are vulnerable to CSV injection. IBM X-Force ID: 2306335. | Jan 9, 2023 |
| CVE-2022-22470(opens NVD record) | Medium | 4.1 | IBM Security Verify Governance 10.0 stores user credentials in plain clear text which can be read by a local user. IBM X-Force ID: 225232. | Jan 9, 2023 |
| CVE-2022-2484(opens NVD record) | High | 8.4 | The signature check in the Nokia ASIK AirScale system module version 474021A.101 can be bypassed allowing an attacker to run modified firmware. This could result in the execution of a malicious kernel, arbitrary programs, or modified Nokia programs. | Jan 6, 2023 |
| CVE-2022-2483(opens NVD record) | High | 8.4 | The bootloader in the Nokia ASIK AirScale system module (versions 474021A.101 and 474021A.102) loads public keys for firmware verification signature. If an attacker modifies the flash contents to corrupt the keys, secure boot could be permanently disabled on a given device. | Jan 6, 2023 |
| CVE-2022-2482(opens NVD record) | High | 8.4 | A vulnerability exists in Nokia’s ASIK AirScale system module (versions 474021A.101 and 474021A.102) that could allow an attacker to place a script on the file system accessible from Linux. A script placed in the appropriate place could allow for arbitrary code execution in the bootloader. | Jan 6, 2023 |
| CVE-2022-47976(opens NVD record) | High | 7.5 | The DMSDP module of the distributed hardware has a vulnerability that may cause imposter control connections.Successful exploitation of this vulnerability may disconnect normal service connections. | Jan 6, 2023 |
| CVE-2022-47975(opens NVD record) | High | 7.5 | The DUBAI module has a double free vulnerability. Successful exploitation of this vulnerability may affect system availability. | Jan 6, 2023 |
| CVE-2022-47974(opens NVD record) | Medium | 6.5 | The Bluetooth AVRCP module has a vulnerability that can lead to DoS attacks.Successful exploitation of this vulnerability may cause the Bluetooth process to restart. | Jan 6, 2023 |
| CVE-2022-46762(opens NVD record) | High | 7.5 | The memory management module has a logic bypass vulnerability.Successful exploitation of this vulnerability may affect data confidentiality. | Jan 6, 2023 |
| CVE-2022-46761(opens NVD record) | High | 7.5 | The system has a vulnerability that may cause dynamic hiding and restoring of app icons.Successful exploitation of this vulnerability may cause malicious hiding of app icons. | Jan 6, 2023 |