Show filters
19,892 Total Results
Displaying 201-210 of 10,000
Refine your search criteria for more targeted results.
Sort by:
Attacker Value
Low

CVE-2022-21839

Disclosure Date: January 11, 2022 (last updated December 21, 2023)
Windows Event Tracing Discretionary Access Control List Denial of Service Vulnerability
Attacker Value
Very High

CVE-2022-21836

Disclosure Date: January 11, 2022 (last updated February 23, 2025)
Windows Certificate Spoofing Vulnerability
1
Attacker Value
Very High

CVE-2022-21833

Disclosure Date: January 11, 2022 (last updated December 21, 2023)
Virtual Machine IDE Drive Elevation of Privilege Vulnerability
Attacker Value
Unknown

CVE-2021-43226

Disclosure Date: December 15, 2021 (last updated December 28, 2023)
Windows Common Log File System Driver Elevation of Privilege Vulnerability
Attacker Value
Unknown

CVE-2021-43207

Disclosure Date: December 15, 2021 (last updated December 28, 2023)
Windows Common Log File System Driver Elevation of Privilege Vulnerability
Attacker Value
Unknown

CVE-2021-41349

Disclosure Date: November 10, 2021 (last updated November 28, 2024)
Microsoft Exchange Server Spoofing Vulnerability
1
Attacker Value
Moderate

CVE-2021-22947

Disclosure Date: September 29, 2021 (last updated February 23, 2025)
When curl >= 7.20.0 and <= 7.78.0 connects to an IMAP or POP3 server to retrieve data using STARTTLS to upgrade to TLS security, the server can respond and send back multiple responses at once that curl caches. curl would then upgrade to TLS but not flush the in-queue of cached responses but instead continue using and trustingthe responses it got *before* the TLS handshake as if they were authenticated.Using this flaw, it allows a Man-In-The-Middle attacker to first inject the fake responses, then pass-through the TLS traffic from the legitimate server and trick curl into sending data back to the user thinking the attacker's injected data comes from the TLS-protected server.
Attacker Value
Very High

CVE-2021-36942

Disclosure Date: August 12, 2021 (last updated February 23, 2025)
Windows LSA Spoofing Vulnerability
1
Attacker Value
Moderate

CVE-2021-26431

Disclosure Date: August 12, 2021 (last updated February 23, 2025)
Windows Recovery Environment Agent Elevation of Privilege Vulnerability
1
Attacker Value
Unknown

CVE-2021-35479

Disclosure Date: July 30, 2021 (last updated February 23, 2025)
Nagios Log Server before 2.1.9 contains Stored XSS in the custom column view for the alert history and audit log function through the affected pp parameter. This affects users who open a crafted link or third-party web page.