Export limit exceeded: 359125 CVEs match your query. Please refine your search to export 10,000 CVEs or fewer.
Export limit exceeded: 359125 CVEs match your query. Please refine your search to export 10,000 CVEs or fewer.
Search
Search Results (359125 CVEs found)
| CVE | Vendors | Products | Updated | CVSS v3.1 |
|---|---|---|---|---|
| CVE-2020-17094 | 1 Microsoft | 10 Windows 10, Windows 10 1809, Windows 10 1909 and 7 more | 2025-08-28 | 5.5 Medium |
| Windows Error Reporting Information Disclosure Vulnerability | ||||
| CVE-2020-17092 | 1 Microsoft | 16 Windows 10, Windows 10 1507, Windows 10 1607 and 13 more | 2025-08-28 | 7.8 High |
| Windows Network Connections Service Elevation of Privilege Vulnerability | ||||
| CVE-2020-17089 | 1 Microsoft | 5 Sharepoint Foundation, Sharepoint Foundation 2013, Sharepoint Server and 2 more | 2025-08-28 | 7.1 High |
| Microsoft SharePoint Elevation of Privilege Vulnerability | ||||
| CVE-2020-17002 | 1 Microsoft | 6 Azure C Shared Utility, Azure Uamqp C, Azure Uhttp C and 3 more | 2025-08-28 | 7.4 High |
| Azure SDK for C Security Feature Bypass Vulnerability | ||||
| CVE-2020-16996 | 1 Microsoft | 8 Windows Server 1903, Windows Server 1909, Windows Server 2004 and 5 more | 2025-08-28 | 6.5 Medium |
| Kerberos Security Feature Bypass Vulnerability | ||||
| CVE-2020-16964 | 1 Microsoft | 15 Windows 10, Windows 10 1507, Windows 10 1607 and 12 more | 2025-08-28 | 7.8 High |
| Windows Backup Engine Elevation of Privilege Vulnerability | ||||
| CVE-2020-16963 | 1 Microsoft | 15 Windows 10, Windows 10 1507, Windows 10 1607 and 12 more | 2025-08-28 | 7.8 High |
| Windows Backup Engine Elevation of Privilege Vulnerability | ||||
| CVE-2020-16962 | 1 Microsoft | 15 Windows 10, Windows 10 1507, Windows 10 1607 and 12 more | 2025-08-28 | 7.8 High |
| Windows Backup Engine Elevation of Privilege Vulnerability | ||||
| CVE-2020-16961 | 1 Microsoft | 15 Windows 10, Windows 10 1507, Windows 10 1607 and 12 more | 2025-08-28 | 7.8 High |
| Windows Backup Engine Elevation of Privilege Vulnerability | ||||
| CVE-2020-16960 | 1 Microsoft | 15 Windows 10, Windows 10 1507, Windows 10 1607 and 12 more | 2025-08-28 | 7.8 High |
| Windows Backup Engine Elevation of Privilege Vulnerability | ||||
| CVE-2020-16959 | 1 Microsoft | 15 Windows 10, Windows 10 1507, Windows 10 1607 and 12 more | 2025-08-28 | 7.8 High |
| Windows Backup Engine Elevation of Privilege Vulnerability | ||||
| CVE-2020-16958 | 1 Microsoft | 15 Windows 10, Windows 10 1507, Windows 10 1607 and 12 more | 2025-08-28 | 7.8 High |
| Windows Backup Engine Elevation of Privilege Vulnerability | ||||
| CVE-2020-16971 | 1 Microsoft | 2 Azure Core Amqp, Azure Sdk For Java | 2025-08-28 | 7.4 High |
| Azure SDK for Java Security Feature Bypass Vulnerability | ||||
| CVE-2025-9140 | 2 51mis, Shanghai Lingdang Information Technology | 2 Lingdang Crm, Lingdang Crm | 2025-08-28 | 6.3 Medium |
| A vulnerability was identified in Shanghai Lingdang Information Technology Lingdang CRM up to 8.6.4.7. Affected by this issue is some unknown functionality of the file /crm/crmapi/erp/tabdetail_moduleSave.php. The manipulation of the argument getvaluestring leads to sql injection. It is possible to initiate the attack remotely. The exploit is publicly available and might be used. Upgrading to version 8.6.5.4 can resolve this issue. The affected component should be upgraded. The vendor explains: "All SQL injection vectors were patched via parameterized queries and input sanitization in v8.6.5+." | ||||
| CVE-2025-2950 | 1 Ibm | 1 I | 2025-08-28 | 5.4 Medium |
| IBM i 7.3, 7.4, 7.5, and 7.5 is vulnerable to a host header injection attack caused by improper neutralization of HTTP header content by IBM Navigator for i. An authenticated user can manipulate the host header in HTTP requests to change domain/IP address which may lead to unexpected behavior. | ||||
| CVE-2024-22314 | 1 Ibm | 1 Storage Defender Resiliency Service | 2025-08-28 | 5.9 Medium |
| IBM Storage Defender - Resiliency Service 2.0.0 through 2.0.12 uses weaker than expected cryptographic algorithms that could allow an attacker to decrypt highly sensitive information. | ||||
| CVE-2022-30332 | 1 Talend | 1 Administration Center | 2025-08-28 | 5.3 Medium |
| In Talend Administration Center 7.3.1.20200219 before TAC-15950, the Forgot Password feature provides different error messages for invalid reset attempts depending on whether the email address is associated with any account. This allows remote attackers to enumerate accounts via a series of requests. | ||||
| CVE-2025-1891 | 1 Qzw1210 | 1 Shishuocms | 2025-08-28 | 4.3 Medium |
| A vulnerability was found in shishuocms 1.1 and classified as problematic. This issue affects some unknown processing. The manipulation leads to cross-site request forgery. The attack may be initiated remotely. The exploit has been disclosed to the public and may be used. | ||||
| CVE-2025-25045 | 3 Ibm, Linux, Microsoft | 4 Aix, Infosphere Information Server, Linux Kernel and 1 more | 2025-08-28 | 4.3 Medium |
| IBM InfoSphere Information 11.7 Server authenticated user to obtain sensitive information when a detailed technical error message is returned in a request. This information could be used in further attacks against the system. | ||||
| CVE-2025-25046 | 1 Ibm | 1 Infosphere Information Server | 2025-08-28 | 3.7 Low |
| IBM InfoSphere Information Server 11.7 DataStage Flow Designer transmits sensitive information via URL or query parameters that could be exposed to an unauthorized actor using man in the middle techniques. | ||||