Search
CVE Explorer
Search the full tracked CVE corpus across every vendor — by keyword, vendor, severity, CVSS band and publication date. Server-rendered; each filtered view has its own URL.
01
Filters
Submit to refine — state is held in the URL.
02
Results
71,857 matching · page 1325/1438Each CVE id links to its NVD record.
| CVE | Severity | CVSS | Summary | Published |
|---|---|---|---|---|
| CVE-2022-35836(opens NVD record) | High | 8.8 | Microsoft WDAC OLE DB provider for SQL Server Remote Code Execution Vulnerability | Sep 13, 2022 |
| CVE-2022-35835(opens NVD record) | High | 8.8 | Microsoft WDAC OLE DB provider for SQL Server Remote Code Execution Vulnerability | Sep 13, 2022 |
| CVE-2022-35834(opens NVD record) | High | 8.8 | Microsoft WDAC OLE DB provider for SQL Server Remote Code Execution Vulnerability | Sep 13, 2022 |
| CVE-2022-35833(opens NVD record) | High | 7.5 | Windows Secure Channel Denial of Service Vulnerability | Sep 13, 2022 |
| CVE-2022-35832(opens NVD record) | Medium | 5.5 | Windows Event Tracing Denial of Service Vulnerability | Sep 13, 2022 |
| CVE-2022-35831(opens NVD record) | Medium | 5.5 | Windows Remote Access Connection Manager Information Disclosure Vulnerability | Sep 13, 2022 |
| CVE-2022-35830(opens NVD record) | High | 8.1 | Remote Procedure Call Runtime Remote Code Execution Vulnerability | Sep 13, 2022 |
| CVE-2022-35828(opens NVD record) | High | 7.8 | Microsoft Defender for Endpoint for Mac Elevation of Privilege Vulnerability | Sep 13, 2022 |
| CVE-2022-35823(opens NVD record) | High | 8.8 | Microsoft SharePoint Remote Code Execution Vulnerability | Sep 13, 2022 |
| CVE-2022-35805(opens NVD record) | High | 8.8 | Microsoft Dynamics CRM (on-premises) Remote Code Execution Vulnerability | Sep 13, 2022 |
| CVE-2022-35803(opens NVD record) | High | 7.8 | Windows Common Log File System Driver Elevation of Privilege Vulnerability | Sep 13, 2022 |
| CVE-2022-34734(opens NVD record) | High | 8.8 | Microsoft ODBC Driver Remote Code Execution Vulnerability | Sep 13, 2022 |
| CVE-2022-34733(opens NVD record) | High | 8.8 | Microsoft WDAC OLE DB provider for SQL Server Remote Code Execution Vulnerability | Sep 13, 2022 |
| CVE-2022-34732(opens NVD record) | High | 8.8 | Microsoft ODBC Driver Remote Code Execution Vulnerability | Sep 13, 2022 |
| CVE-2022-34731(opens NVD record) | High | 8.8 | Microsoft WDAC OLE DB provider for SQL Server Remote Code Execution Vulnerability | Sep 13, 2022 |
| CVE-2022-34730(opens NVD record) | High | 8.8 | Microsoft ODBC Driver Remote Code Execution Vulnerability | Sep 13, 2022 |
| CVE-2022-34729(opens NVD record) | High | 7.8 | Windows GDI Elevation of Privilege Vulnerability | Sep 13, 2022 |
| CVE-2022-34728(opens NVD record) | Medium | 5.5 | Windows Graphics Component Information Disclosure Vulnerability | Sep 13, 2022 |
| CVE-2022-34727(opens NVD record) | High | 8.8 | Microsoft ODBC Driver Remote Code Execution Vulnerability | Sep 13, 2022 |
| CVE-2022-34726(opens NVD record) | High | 8.8 | Microsoft ODBC Driver Remote Code Execution Vulnerability | Sep 13, 2022 |
| CVE-2022-34725(opens NVD record) | High | 7.0 | Windows ALPC Elevation of Privilege Vulnerability | Sep 13, 2022 |
| CVE-2022-34724(opens NVD record) | High | 7.5 | Windows DNS Server Denial of Service Vulnerability | Sep 13, 2022 |
| CVE-2022-34723(opens NVD record) | Medium | 5.5 | Windows DPAPI (Data Protection Application Programming Interface) Information Disclosure Vulnerability | Sep 13, 2022 |
| CVE-2022-34722(opens NVD record) | Critical | 9.8 | Windows Internet Key Exchange (IKE) Protocol Extensions Remote Code Execution Vulnerability | Sep 13, 2022 |
| CVE-2022-34721(opens NVD record) | Critical | 9.8 | Windows Internet Key Exchange (IKE) Protocol Extensions Remote Code Execution Vulnerability | Sep 13, 2022 |
| CVE-2022-34720(opens NVD record) | High | 7.5 | Windows Internet Key Exchange (IKE) Extension Denial of Service Vulnerability | Sep 13, 2022 |
| CVE-2022-34719(opens NVD record) | High | 7.8 | Windows Distributed File System (DFS) Elevation of Privilege Vulnerability | Sep 13, 2022 |
| CVE-2022-34718(opens NVD record) | Critical | 9.8 | Windows TCP/IP Remote Code Execution Vulnerability | Sep 13, 2022 |
| CVE-2022-34700(opens NVD record) | High | 8.8 | Microsoft Dynamics CRM (on-premises) Remote Code Execution Vulnerability | Sep 13, 2022 |
| CVE-2022-33679(opens NVD record) | High | 8.1 | Windows Kerberos Elevation of Privilege Vulnerability | Sep 13, 2022 |
| CVE-2022-33647(opens NVD record) | High | 8.1 | Windows Kerberos Elevation of Privilege Vulnerability | Sep 13, 2022 |
| CVE-2022-30200(opens NVD record) | High | 7.8 | Windows Lightweight Directory Access Protocol (LDAP) Remote Code Execution Vulnerability | Sep 13, 2022 |
| CVE-2022-30196(opens NVD record) | High | 8.2 | Windows Secure Channel Denial of Service Vulnerability | Sep 13, 2022 |
| CVE-2022-30170(opens NVD record) | High | 7.3 | Windows Credential Roaming Service Elevation of Privilege Vulnerability | Sep 13, 2022 |
| CVE-2022-26929(opens NVD record) | High | 7.8 | .NET Framework Remote Code Execution Vulnerability | Sep 13, 2022 |
| CVE-2022-26928(opens NVD record) | High | 7.0 | Windows Photo Import API Elevation of Privilege Vulnerability | Sep 13, 2022 |
| CVE-2022-1602(opens NVD record) | Medium | 5.5 | A potential security vulnerability has been identified in HP ThinPro 7.2 Service Pack 8 (SP8). The security vulnerability in SP8 is not remedied after upgrading from SP8 to Service Pack 9 (SP9). HP has released Service Pack 10 (SP10) to remediate the potential vulnerability introduced in SP8. | Sep 13, 2022 |
| CVE-2022-2990(opens NVD record) | High | 7.1 | An incorrect handling of the supplementary groups in the Buildah container engine might lead to the sensitive information disclosure or possible data modification if an attacker has direct access to the affected container where supplementary groups are used to set access permissions and is able to execute a binary code in that container. | Sep 13, 2022 |
| CVE-2022-2989(opens NVD record) | High | 7.1 | An incorrect handling of the supplementary groups in the Podman container engine might lead to the sensitive information disclosure or possible data modification if an attacker has direct access to the affected container where supplementary groups are used to set access permissions and is able to execute a binary code in that container. | Sep 13, 2022 |
| CVE-2022-1278(opens NVD record) | High | 7.5 | A flaw was found in WildFly, where an attacker can see deployment names, endpoints, and any other data the trace payload may contain. | Sep 13, 2022 |
| CVE-2022-38616(opens NVD record) | High | 8.8 | SmartVista SVFE2 v2.2.22 was discovered to contain a SQL injection vulnerability via the UserForm:j_id90 parameter at /feegroups/tgrt_group.jsf. | Sep 13, 2022 |
| CVE-2022-31226(opens NVD record) | High | 7.1 | Dell BIOS versions contain a Stack-based Buffer Overflow vulnerability. A local authenticated malicious user could potentially exploit this vulnerability by sending excess data to a function in order to gain arbitrary code execution on the system. | Sep 12, 2022 |
| CVE-2022-31225(opens NVD record) | Low | 3.0 | Dell BIOS versions contain an Unchecked Return Value vulnerability. A local authenticated administrator user could potentially exploit this vulnerability in order to change the state of the system or cause unexpected failures. | Sep 12, 2022 |
| CVE-2022-31224(opens NVD record) | Low | 2.0 | Dell BIOS versions contain an Improper Protection Against Voltage and Clock Glitches vulnerability. An attacker with physical access to the system could potentially exploit this vulnerability by triggering a fault condition in order to change the behavior of the system. | Sep 12, 2022 |
| CVE-2022-31223(opens NVD record) | Low | 2.3 | Dell BIOS versions contain an Improper Neutralization of Null Byte vulnerability. A local authenticated administrator user could potentially exploit this vulnerability by sending unexpected null bytes in order to read memory on the system. | Sep 12, 2022 |
| CVE-2022-31222(opens NVD record) | Low | 2.3 | Dell BIOS versions contain a Missing Release of Resource after Effective Lifetime vulnerability. A local authenticated administrator user could potentially exploit this vulnerability by consuming excess memory in order to cause the application to crash. | Sep 12, 2022 |
| CVE-2022-31221(opens NVD record) | Low | 2.3 | Dell BIOS versions contain an Information Exposure vulnerability. A local authenticated administrator user could potentially exploit this vulnerability in order access sensitive state information on the system. | Sep 12, 2022 |
| CVE-2022-31220(opens NVD record) | Low | 3.0 | Dell BIOS versions contain an Unchecked Return Value vulnerability. A local authenticated administrator user could potentially exploit this vulnerability in order to change the state of the system or cause unexpected failures. | Sep 12, 2022 |
| CVE-2022-1700(opens NVD record) | High | 7.5 | Improper Restriction of XML External Entity Reference ('XXE') vulnerability in the Policy Engine of Forcepoint Data Loss Prevention (DLP), which is also leveraged by Forcepoint One Endpoint (F1E), Web Security Content Gateway, Email Security with DLP enabled, and Cloud Security Gateway prior to June 20, 2022. The XML parser in the Policy Engine was found to be improperly configured to support external entities and external DTD (Document Type Definitions), which can lead to an XXE attack. This issue affects: Forcepoint Data Loss Prevention (DLP) versions prior to 8.8.2. Forcepoint One Endpoint (F1E) with Policy Engine versions prior to 8.8.2. Forcepoint Web Security Content Gateway versions prior to 8.5.5. Forcepoint Email Security with DLP enabled versions prior to 8.5.5. Forcepoint Cloud Security Gateway prior to June 20, 2022. | Sep 12, 2022 |
| CVE-2022-34110(opens NVD record) | Medium | 5.5 | An issue in Micro-Star International MSI Feature Navigator v1.0.1808.0901 allows attackers to download arbitrary files regardless of file type or size. | Sep 12, 2022 |