Логотип exploitDog
source:"msrc"
Консоль
Логотип exploitDog

exploitDog

source:"msrc"

Количество 18 824

Количество 18 824

msrc логотип

CVE-2021-40452

около 4 лет назад

HEVC Video Extensions Remote Code Execution Vulnerability

EPSS: Низкий
msrc логотип

CVE-2021-40450

больше 4 лет назад

Win32k Elevation of Privilege Vulnerability

CVSS3: 7.8
EPSS: Низкий
msrc логотип

CVE-2021-40449

больше 4 лет назад

Win32k Elevation of Privilege Vulnerability

CVSS3: 7.8
EPSS: Критический
msrc логотип

CVE-2021-40448

больше 4 лет назад

Microsoft Accessibility Insights for Android Information Disclosure Vulnerability

CVSS3: 6.3
EPSS: Низкий
msrc логотип

CVE-2021-40447

больше 4 лет назад

Windows Print Spooler Elevation of Privilege Vulnerability

CVSS3: 7.8
EPSS: Низкий
msrc логотип

CVE-2021-40444

больше 4 лет назад

Microsoft MSHTML Remote Code Execution Vulnerability

CVSS3: 8.8
EPSS: Критический
msrc логотип

CVE-2021-40443

больше 4 лет назад

Windows Common Log File System Driver Elevation of Privilege Vulnerability

CVSS3: 7.8
EPSS: Низкий
msrc логотип

CVE-2021-40442

около 4 лет назад

Microsoft Excel Remote Code Execution Vulnerability

CVSS3: 7.8
EPSS: Низкий
msrc логотип

CVE-2021-40441

около 4 лет назад

Windows Media Center Elevation of Privilege Vulnerability

CVSS3: 7.8
EPSS: Низкий
msrc логотип

CVE-2021-40440

больше 4 лет назад

Microsoft Dynamics Business Central Cross-site Scripting Vulnerability

CVSS3: 5.4
EPSS: Низкий
msrc логотип

CVE-2021-40438

больше 4 лет назад

mod_proxy SSRF

CVSS3: 9
EPSS: Критический
msrc логотип

CVE-2021-4037

больше 3 лет назад

A vulnerability was found in the fs/inode.c:inode_init_owner() function logic of the LInux kernel that allows local users to create files for the XFS file-system with an unintended group ownership and with group execution and SGID permission bits set in a scenario where a directory is SGID and belongs to a certain group and is writable by a user who is not a member of this group. This can lead to excessive permissions granted in case when they should not. This vulnerability is similar to the previous CVE-2018-13405 and adds the missed fix for the XFS.

CVSS3: 7.8
EPSS: Низкий
msrc логотип

CVE-2021-4034

около 4 лет назад

CVSS3: 7.8
EPSS: Высокий
msrc логотип

CVE-2021-40330

больше 4 лет назад

CVSS3: 7.5
EPSS: Низкий
msrc логотип

CVE-2021-4032

около 4 лет назад

CVSS3: 4.4
EPSS: Низкий
msrc логотип

CVE-2021-4023

почти 4 года назад

A flaw was found in the io-workqueue implementation in the Linux kernel versions prior to 5.15-rc1. The kernel can panic when an improper cancellation operation triggers the submission of new io-uring operations during a shortage of free space. This flaw allows a local user with permissions to execute io-uring requests to possibly crash the system.

CVSS3: 5.5
EPSS: Низкий
msrc логотип

CVE-2021-4019

около 4 лет назад

Heap-based Buffer Overflow in vim/vim

CVSS3: 7.8
EPSS: Низкий
msrc логотип

CVE-2021-40153

около 4 лет назад

CVSS3: 8.1
EPSS: Низкий
msrc логотип

CVE-2021-40145

около 4 лет назад

gdImageGd2Ptr in gd_gd2.c in the GD Graphics Library (aka LibGD) through 2.3.2 has a double free. NOTE: the vendor's position is "The GD2 image format is a proprietary image format of libgd. It has to be regarded as being obsolete and should only be used for development and testing purposes.

CVSS3: 7.5
EPSS: Низкий
msrc логотип

CVE-2021-4002

почти 4 года назад

A memory leak flaw in the Linux kernel's hugetlbfs memory usage was found in the way the user maps some regions of memory twice using shmget() which are aligned to PUD alignment with the fault of some of the memory pages. A local user could use this flaw to get unauthorized access to some data.

CVSS3: 4.4
EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
msrc логотип
CVE-2021-40452

HEVC Video Extensions Remote Code Execution Vulnerability

3%
Низкий
около 4 лет назад
msrc логотип
CVE-2021-40450

Win32k Elevation of Privilege Vulnerability

CVSS3: 7.8
8%
Низкий
больше 4 лет назад
msrc логотип
CVE-2021-40449

Win32k Elevation of Privilege Vulnerability

CVSS3: 7.8
92%
Критический
больше 4 лет назад
msrc логотип
CVE-2021-40448

Microsoft Accessibility Insights for Android Information Disclosure Vulnerability

CVSS3: 6.3
1%
Низкий
больше 4 лет назад
msrc логотип
CVE-2021-40447

Windows Print Spooler Elevation of Privilege Vulnerability

CVSS3: 7.8
0%
Низкий
больше 4 лет назад
msrc логотип
CVE-2021-40444

Microsoft MSHTML Remote Code Execution Vulnerability

CVSS3: 8.8
94%
Критический
больше 4 лет назад
msrc логотип
CVE-2021-40443

Windows Common Log File System Driver Elevation of Privilege Vulnerability

CVSS3: 7.8
0%
Низкий
больше 4 лет назад
msrc логотип
CVE-2021-40442

Microsoft Excel Remote Code Execution Vulnerability

CVSS3: 7.8
5%
Низкий
около 4 лет назад
msrc логотип
CVE-2021-40441

Windows Media Center Elevation of Privilege Vulnerability

CVSS3: 7.8
0%
Низкий
около 4 лет назад
msrc логотип
CVE-2021-40440

Microsoft Dynamics Business Central Cross-site Scripting Vulnerability

CVSS3: 5.4
1%
Низкий
больше 4 лет назад
msrc логотип
CVE-2021-40438

mod_proxy SSRF

CVSS3: 9
94%
Критический
больше 4 лет назад
msrc логотип
CVE-2021-4037

A vulnerability was found in the fs/inode.c:inode_init_owner() function logic of the LInux kernel that allows local users to create files for the XFS file-system with an unintended group ownership and with group execution and SGID permission bits set in a scenario where a directory is SGID and belongs to a certain group and is writable by a user who is not a member of this group. This can lead to excessive permissions granted in case when they should not. This vulnerability is similar to the previous CVE-2018-13405 and adds the missed fix for the XFS.

CVSS3: 7.8
0%
Низкий
больше 3 лет назад
msrc логотип
CVSS3: 7.8
87%
Высокий
около 4 лет назад
msrc логотип
CVSS3: 7.5
0%
Низкий
больше 4 лет назад
msrc логотип
CVSS3: 4.4
0%
Низкий
около 4 лет назад
msrc логотип
CVE-2021-4023

A flaw was found in the io-workqueue implementation in the Linux kernel versions prior to 5.15-rc1. The kernel can panic when an improper cancellation operation triggers the submission of new io-uring operations during a shortage of free space. This flaw allows a local user with permissions to execute io-uring requests to possibly crash the system.

CVSS3: 5.5
0%
Низкий
почти 4 года назад
msrc логотип
CVE-2021-4019

Heap-based Buffer Overflow in vim/vim

CVSS3: 7.8
0%
Низкий
около 4 лет назад
msrc логотип
CVSS3: 8.1
1%
Низкий
около 4 лет назад
msrc логотип
CVE-2021-40145

gdImageGd2Ptr in gd_gd2.c in the GD Graphics Library (aka LibGD) through 2.3.2 has a double free. NOTE: the vendor's position is "The GD2 image format is a proprietary image format of libgd. It has to be regarded as being obsolete and should only be used for development and testing purposes.

CVSS3: 7.5
1%
Низкий
около 4 лет назад
msrc логотип
CVE-2021-4002

A memory leak flaw in the Linux kernel's hugetlbfs memory usage was found in the way the user maps some regions of memory twice using shmget() which are aligned to PUD alignment with the fault of some of the memory pages. A local user could use this flaw to get unauthorized access to some data.

CVSS3: 4.4
0%
Низкий
почти 4 года назад

Уязвимостей на страницу