Search
CVE Explorer
Search the full tracked CVE corpus across every vendor — by keyword, vendor, severity, CVSS band and publication date. Server-rendered; each filtered view has its own URL.
01
Filters
Submit to refine — state is held in the URL.
02
Results
71,857 matching · page 1316/1438Each CVE id links to its NVD record.
| CVE | Severity | CVSS | Summary | Published |
|---|---|---|---|---|
| CVE-2022-33922(opens NVD record) | High | 7.0 | Dell GeoDrive, versions prior to 2.2, contains Insecure File and Folder Permissions vulnerabilities. A low privilege attacker could potentially exploit this vulnerability, leading to the execution of arbitrary code in the SYSTEM security context. Dell recommends customers to upgrade at the earliest opportunity. | Oct 12, 2022 |
| CVE-2022-33921(opens NVD record) | High | 7.0 | Dell GeoDrive, versions prior to 2.2, contains Multiple DLL Hijacking Vulnerabilities. A low privilege attacker could potentially exploit this vulnerability, leading to the execution of arbitrary code in the SYSTEM security context. | Oct 12, 2022 |
| CVE-2022-33920(opens NVD record) | High | 7.8 | Dell GeoDrive, versions prior to 2.2, contains an Unquoted File Path vulnerability. A low privilege attacker could potentially exploit this vulnerability, leading to the execution of arbitrary code in the SYSTEM security context. | Oct 12, 2022 |
| CVE-2022-33919(opens NVD record) | High | 7.8 | Dell GeoDrive, versions 2.1 - 2.2, contains an information disclosure vulnerability in GUI. An authenticated non-admin user could potentially exploit this vulnerability and view sensitive information. | Oct 12, 2022 |
| CVE-2022-33918(opens NVD record) | Medium | 5.5 | Dell GeoDrive, Versions 2.1 - 2.2, contains an information disclosure vulnerability. An authenticated non-admin user could potentially exploit this vulnerability and gain access to sensitive information. | Oct 12, 2022 |
| CVE-2022-32493(opens NVD record) | Medium | 6.0 | Dell BIOS contains an Stack-Based Buffer Overflow vulnerability. A local authenticated malicious user may potentially exploit this vulnerability by using an SMI to gain arbitrary code execution in SMRAM. | Oct 12, 2022 |
| CVE-2022-32491(opens NVD record) | Medium | 4.1 | Dell Client BIOS contains a Buffer Overflow vulnerability. A local authenticated malicious user may potentially exploit this vulnerability by manipulating an SMI to cause an arbitrary write during SMM. | Oct 12, 2022 |
| CVE-2022-32489(opens NVD record) | High | 8.2 | Dell BIOS contains an improper input validation vulnerability. A local authenticated malicious user may potentially exploit this vulnerability by using an SMI to gain arbitrary code execution in SMRAM. | Oct 12, 2022 |
| CVE-2022-32488(opens NVD record) | High | 8.2 | Dell BIOS contains an improper input validation vulnerability. A local authenticated malicious user may potentially exploit this vulnerability by using an SMI to gain arbitrary code execution in SMRAM. | Oct 12, 2022 |
| CVE-2022-32487(opens NVD record) | High | 7.5 | Dell BIOS contains an improper input validation vulnerability. A local authenticated malicious user may potentially exploit this vulnerability by using an SMI to gain arbitrary code execution in SMRAM. | Oct 12, 2022 |
| CVE-2022-32485(opens NVD record) | High | 7.5 | Dell BIOS contains an improper input validation vulnerability. A local authenticated malicious user may potentially exploit this vulnerability by using an SMI to gain arbitrary code execution in SMRAM. | Oct 12, 2022 |
| CVE-2022-32484(opens NVD record) | Medium | 5.6 | Dell BIOS contains an improper input validation vulnerability. A local authenticated malicious user with admin privileges may potentially exploit this vulnerability in order to modify a UEFI variable. | Oct 12, 2022 |
| CVE-2022-32483(opens NVD record) | Medium | 5.6 | Dell BIOS contains an improper input validation vulnerability. A local authenticated malicious user with admin privileges may potentially exploit this vulnerability in order to modify a UEFI variable. | Oct 12, 2022 |
| CVE-2022-31228(opens NVD record) | High | 8.1 | Dell EMC XtremIO versions prior to X2 6.4.0-22 contain a bruteforce vulnerability. A remote unauthenticated attacker can potentially exploit this vulnerability and gain access to an admin account. | Oct 12, 2022 |
| CVE-2022-28887(opens NVD record) | Medium | 4.3 | Multiple Denial-of-Service (DoS) vulnerability was discovered in F-Secure & WithSecure products whereby the aerdl.dll unpacker handler function crashes. This can lead to a possible scanning engine crash. | Oct 12, 2022 |
| CVE-2022-0030(opens NVD record) | High | 8.1 | An authentication bypass vulnerability in the Palo Alto Networks PAN-OS 8.1 web interface allows a network-based attacker with specific knowledge of the target firewall or Panorama appliance to impersonate an existing PAN-OS administrator and perform privileged actions. | Oct 12, 2022 |
| CVE-2022-33106(opens NVD record) | Critical | 9.8 | WiJungle NGFW Version U250 was discovered to be vulnerable to No Rate Limit attack, allowing the attacker to brute force the admin password leading to Account Take Over. | Oct 12, 2022 |
| CVE-2022-42711(opens NVD record) | Critical | 9.6 | In Progress WhatsUp Gold before 22.1.0, an SNMP MIB Walker application endpoint failed to adequately sanitize malicious input. This could allow an unauthenticated attacker to execute arbitrary code in a victim's browser. | Oct 12, 2022 |
| CVE-2022-40440(opens NVD record) | Medium | 6.1 | mxGraph v4.2.2 was discovered to contain a cross-site scripting (XSS) vulnerability via the setTooltips() function. | Oct 12, 2022 |
| CVE-2022-28866(opens NVD record) | High | 8.8 | Multiple Improper Access Control was discovered in Nokia AirFrame BMC Web GUI < R18 Firmware v4.13.00. It does not properly validate requests for access to (or editing of) data and functionality in all endpoints under /#settings/* and /api/settings/*. By not verifying the permissions for access to resources, it allows a potential attacker to view pages, with sensitive data, that are not allowed, and modify system configurations also causing DoS, which should be accessed only by user with administration profile, bypassing all controls (without checking for user identity). | Oct 12, 2022 |
| CVE-2022-31682(opens NVD record) | Medium | 4.9 | VMware Aria Operations contains an arbitrary file read vulnerability. A malicious actor with administrative privileges may be able to read arbitrary files containing sensitive data. | Oct 11, 2022 |
| CVE-2022-41083(opens NVD record) | High | 7.8 | Visual Studio Code Elevation of Privilege Vulnerability | Oct 11, 2022 |
| CVE-2022-41081(opens NVD record) | High | 8.1 | Windows Point-to-Point Tunneling Protocol Remote Code Execution Vulnerability | Oct 11, 2022 |
| CVE-2022-41043(opens NVD record) | Low | 3.3 | Microsoft Office Information Disclosure Vulnerability | Oct 11, 2022 |
| CVE-2022-41042(opens NVD record) | High | 7.4 | Visual Studio Code Information Disclosure Vulnerability | Oct 11, 2022 |
| CVE-2022-41038(opens NVD record) | High | 8.8 | Microsoft SharePoint Server Remote Code Execution Vulnerability | Oct 11, 2022 |
| CVE-2022-41037(opens NVD record) | High | 8.8 | Microsoft SharePoint Server Remote Code Execution Vulnerability | Oct 11, 2022 |
| CVE-2022-41036(opens NVD record) | High | 8.8 | Microsoft SharePoint Server Remote Code Execution Vulnerability | Oct 11, 2022 |
| CVE-2022-41035(opens NVD record) | Medium | 5.3 | Microsoft Edge (Chromium-based) Spoofing Vulnerability | Oct 11, 2022 |
| CVE-2022-41034(opens NVD record) | High | 7.8 | Visual Studio Code Remote Code Execution Vulnerability | Oct 11, 2022 |
| CVE-2022-41033(opens NVD record) | High | 7.8 | Windows COM+ Event System Service Elevation of Privilege Vulnerability | Oct 11, 2022 |
| CVE-2022-41032(opens NVD record) | High | 7.8 | NuGet Client Elevation of Privilege Vulnerability | Oct 11, 2022 |
| CVE-2022-41031(opens NVD record) | High | 7.8 | Microsoft Word Remote Code Execution Vulnerability | Oct 11, 2022 |
| CVE-2022-40047(opens NVD record) | Medium | 5.4 | Flatpress v1.2.1 was discovered to contain a reflected cross-site scripting (XSS) vulnerability via the page parameter at /flatpress/admin.php. | Oct 11, 2022 |
| CVE-2022-38053(opens NVD record) | High | 8.8 | Microsoft SharePoint Server Remote Code Execution Vulnerability | Oct 11, 2022 |
| CVE-2022-38051(opens NVD record) | High | 7.8 | Windows Graphics Component Elevation of Privilege Vulnerability | Oct 11, 2022 |
| CVE-2022-38050(opens NVD record) | High | 7.8 | Win32k Elevation of Privilege Vulnerability | Oct 11, 2022 |
| CVE-2022-38049(opens NVD record) | High | 7.8 | Microsoft Office Graphics Remote Code Execution Vulnerability | Oct 11, 2022 |
| CVE-2022-38048(opens NVD record) | High | 7.8 | Microsoft Office Remote Code Execution Vulnerability | Oct 11, 2022 |
| CVE-2022-38047(opens NVD record) | High | 8.1 | Windows Point-to-Point Tunneling Protocol Remote Code Execution Vulnerability | Oct 11, 2022 |
| CVE-2022-38046(opens NVD record) | High | 7.5 | Web Account Manager Information Disclosure Vulnerability | Oct 11, 2022 |
| CVE-2022-38045(opens NVD record) | High | 8.8 | Windows Server Service Elevation of Privilege Vulnerability | Oct 11, 2022 |
| CVE-2022-38044(opens NVD record) | High | 7.8 | Windows CD-ROM File System Driver Remote Code Execution Vulnerability | Oct 11, 2022 |
| CVE-2022-38043(opens NVD record) | Medium | 5.5 | Windows Security Support Provider Interface Information Disclosure Vulnerability | Oct 11, 2022 |
| CVE-2022-38042(opens NVD record) | High | 7.1 | Active Directory Domain Services Elevation of Privilege Vulnerability | Oct 11, 2022 |
| CVE-2022-38041(opens NVD record) | High | 7.5 | Windows Secure Channel Denial of Service Vulnerability | Oct 11, 2022 |
| CVE-2022-38040(opens NVD record) | High | 8.8 | Microsoft ODBC Driver Remote Code Execution Vulnerability | Oct 11, 2022 |
| CVE-2022-38039(opens NVD record) | High | 7.8 | Windows Kernel Elevation of Privilege Vulnerability | Oct 11, 2022 |
| CVE-2022-38038(opens NVD record) | High | 7.8 | Windows Kernel Elevation of Privilege Vulnerability | Oct 11, 2022 |
| CVE-2022-38037(opens NVD record) | High | 7.8 | Windows Kernel Elevation of Privilege Vulnerability | Oct 11, 2022 |