Known Exploited
Dashboard / Known Exploited
CVE-2016-3643
SolarWinds Virtualization Manager allows for privilege escalation through leveraging a misconfiguration of sudo.
Note: https://nvd.nist.gov/vuln/detail/CVE-2016-3643
CVE-2020-10199
Sonatype Nexus Repository contains an unspecified vulnerability that allows for remote code execution.
Note: https://nvd.nist.gov/vuln/detail/CVE-2020-10199
CVE-2021-20021
SonicWall Email Security contains an improper privilege management vulnerability that allows an attacker to create an administrative account by sending a crafted HTTP request to the remote host. This vulnerability has known usage in a SonicWall Email Security exploit chain along with CVE-2021-20022 and CVE-2021-20023 to achieve privilege escalation.
Note: https://nvd.nist.gov/vuln/detail/CVE-2021-20021
CVE-2019-7481
SonicWall SMA100 contains a SQL injection vulnerability allowing an unauthenticated user to gain read-only access to unauthorized resources.
Note: https://nvd.nist.gov/vuln/detail/CVE-2019-7481
CVE-2021-20022
SonicWall Email Security contains an unrestricted upload of file with dangerous type vulnerability that allows a post-authenticated attacker to upload a file to the remote host. This vulnerability has known usage in a SonicWall Email Security exploit chain along with CVE-2021-20021 and CVE-2021-20023 to achieve privilege escalation.
Note: https://nvd.nist.gov/vuln/detail/CVE-2021-20022
CVE-2021-20023
SonicWall Email Security contains a path traversal vulnerability that allows a post-authenticated attacker to read files on the remote host. This vulnerability has known usage in a SonicWall Email Security exploit chain along with CVE-2021-20021 and CVE-2021-20022 to achieve privilege escalation.
Note: https://nvd.nist.gov/vuln/detail/CVE-2021-20023
CVE-2021-20016
SonicWall SSLVPN SMA100 contains a SQL injection vulnerability that allows remote exploitation for credential access by an unauthenticated attacker.
Note: https://nvd.nist.gov/vuln/detail/CVE-2021-20016
CVE-2020-12271
Sophos Firewall operating system (SFOS) firmware contains a SQL injection vulnerability when configured with either the administration (HTTPS) service or the User Portal is exposed on the WAN zone. Successful exploitation may cause remote code execution to exfiltrate usernames and hashed passwords for the local device admin(s), portal admins, and user accounts used for remote access (but not external Active Directory or LDAP passwords).
Note: https://nvd.nist.gov/vuln/detail/CVE-2020-12271
CVE-2020-10181
Sumavision Enhanced Multimedia Router (EMR) contains a cross-site request forgery (CSRF) vulnerability allowing the creation of users with elevated privileges as administrator on a device.
Note: https://nvd.nist.gov/vuln/detail/CVE-2020-10181
CVE-2017-6327
Symantec Messaging Gateway contains an unspecified vulnerability which can allow for remote code execution. With the ability to perform remote code execution, an attacker may also desire to perform privilege escalating actions.
Note: https://nvd.nist.gov/vuln/detail/CVE-2017-6327
CVE-2019-18988
TeamViewer Desktop allows for bypass of remote-login access control because the same AES key is used for different customers' installations. If an attacker were to know this key, they could decrypt protected information stored in registry or configuration files or decryption of the Unattended Access password to the system (which allows for remote login to the system).
Note: https://nvd.nist.gov/vuln/detail/CVE-2019-18988
CVE-2017-9248
Progress Telerik UI for ASP.NET AJAX and Sitefinity have a cryptographic weakness in Telerik.Web.UI.dll that can be exploited to disclose encryption keys (Telerik.Web.UI.DialogParametersEncryptionKey and/or the MachineKey), perform cross-site-scripting (XSS) attacks, compromise the ASP.NET ViewState, and/or upload and download files.
Note: https://nvd.nist.gov/vuln/detail/CVE-2017-9248
CVE-2021-31755
Tenda AC11 devices contain a stack buffer overflow vulnerability in /goform/setmac which allows attackers to execute code via a crafted post request.
Note: https://nvd.nist.gov/vuln/detail/CVE-2021-31755
CVE-2020-10987
Tenda AC1900 Router AC15 Model contains an unspecified vulnerability that allows remote attackers to execute system commands via the deviceName POST parameter.
Note: https://nvd.nist.gov/vuln/detail/CVE-2020-10987
CVE-2018-14558
Tenda AC7, AC9, and AC10 devices contain a command injection vulnerability due to the "formsetUsbUnload" function executes a dosystemCmd function with untrusted input. Successful exploitation allows an attacker to execute OS commands via a crafted goform/setUsbUnload request.
Note: https://nvd.nist.gov/vuln/detail/CVE-2018-14558
CVE-2018-20062
ThinkPHP "noneCms" contains an unspecified vulnerability that allows for remote code execution through crafted use of the filter parameter.
Note: https://nvd.nist.gov/vuln/detail/CVE-2018-20062
CVE-2019-9082
ThinkPHP contains an unspecified vulnerability that allows for remote code execution via public//?s=index/\think\app/invokefunction&function=call_user_func_array&vars[0]=system&vars[1][]= followed by the command.
Note: https://nvd.nist.gov/vuln/detail/CVE-2019-9082
CVE-2019-18187
Trend Micro OfficeScan contains a directory traversal vulnerability by extracting files from a zip file to a specific folder on the OfficeScan server, leading to remote code execution.
Note: https://nvd.nist.gov/vuln/detail/CVE-2019-18187
CVE-2020-8467
Trend Micro Apex One and OfficeScan contain an unspecified vulnerability within a migration tool component that allows for remote code execution.
Note: https://nvd.nist.gov/vuln/detail/CVE-2020-8467
CVE-2020-8468
Trend Micro Apex One, OfficeScan, and Worry-Free Business Security agents contain a content validation escape vulnerability that could allow an attacker to manipulate certain agent client components.
Note: https://nvd.nist.gov/vuln/detail/CVE-2020-8468
CVE-2020-24557
Trend Micro Apex One, OfficeScan, and Worry-Free Business Security on Microsoft Windows contain an improper access control vulnerability that may allow an attacker to manipulate a particular product folder to disable the security temporarily, abuse a specific Windows function, and attain privilege escalation.
Note: https://nvd.nist.gov/vuln/detail/CVE-2020-24557
CVE-2020-8599
Trend Micro Apex One and OfficeScan server contain a vulnerable EXE file that could allow a remote attacker to write data to a path on affected installations and bypass root login.
Note: https://nvd.nist.gov/vuln/detail/CVE-2020-8599
CVE-2021-36742
Trend Micro Apex One, Apex One as a Service, and Worry-Free Business Security contain an improper input validation vulnerability that allows for privilege escalation.
Note: https://success.trendmicro.com/dcx/s/solution/000287819?language=en_US, https://success.trendmicro.com/dcx/s/solution/000287820?language=en_US; https://nvd.nist.gov/vuln/detail/CVE-2021-36742
CVE-2021-36741
Trend Micro Apex One, Apex One as a Service, and Worry-Free Business Security contain an improper input validation vulnerability that allows a remote attacker to upload files.
Note: https://success.trendmicro.com/dcx/s/solution/000287819?language=en_US, https://success.trendmicro.com/dcx/s/solution/000287820?language=en_US; https://nvd.nist.gov/vuln/detail/CVE-2021-36741
CVE-2019-20085
TVT devices utilizing NVMS-1000 software contain a directory traversal vulnerability via GET /.. requests.
Note: https://nvd.nist.gov/vuln/detail/CVE-2019-20085
CVE-2020-5849
Unraid contains an authentication bypass vulnerability that allows attackers to gain access to the administrative interface. This CVE is chainable with CVE-2020-5847 for remote code execution.
Note: https://nvd.nist.gov/vuln/detail/CVE-2020-5849
CVE-2020-5847
Unraid contains a vulnerability due to the insecure use of the extract PHP function that can be abused to execute remote code as root. This CVE is chainable with CVE-2020-5849 for initial access.
Note: https://nvd.nist.gov/vuln/detail/CVE-2020-5847
CVE-2019-16759
The PHP module within vBulletin contains an unspecified vulnerability that allows for remote code execution via the widgetConfig[code] parameter in an ajax/render/widget_php routestring request.
Note: https://nvd.nist.gov/vuln/detail/CVE-2019-16759
CVE-2020-17496
The PHP module within vBulletin contains an unspecified vulnerability that allows for remote code execution via crafted subWidgets data in an ajax/render/widget_tabbedcontainer_tab_panel request. This CVE ID resolves an incomplete patch for CVE-2019-16759.
Note: https://nvd.nist.gov/vuln/detail/CVE-2020-17496
CVE-2019-5544
VMware ESXi and Horizon Desktop as a Service (DaaS) OpenSLP contains a heap-based buffer overflow vulnerability that allows an attacker with network access to port 427 to overwrite the heap of the OpenSLP service to perform remote code execution.
Note: https://nvd.nist.gov/vuln/detail/CVE-2019-5544
CVE-2020-3992
VMware ESXi OpenSLP contains a use-after-free vulnerability that allows an attacker residing in the management network with access to port 427 to perform remote code execution.
Note: https://nvd.nist.gov/vuln/detail/CVE-2020-3992
CVE-2020-3950
VMware Fusion, Remote Console (VMRC) for Mac, and Horizon Client for Mac contain a privilege escalation vulnerability due to improper use of setuid binaries that allows attackers to escalate privileges to root.
Note: https://nvd.nist.gov/vuln/detail/CVE-2020-3950
CVE-2021-22005
VMware vCenter Server contains a file upload vulnerability in the Analytics service that allows a user with network access to port 443 to execute code.
Note: https://nvd.nist.gov/vuln/detail/CVE-2021-22005
CVE-2020-3952
VMware vCenter Server contains an information disclosure vulnerability in the VMware Directory Service (vmdir) when the Platform Services Controller (PSC) does not correctly implement access controls. Successful exploitation allows an attacker with network access to port 389 to extract sensitive information.
Note: https://nvd.nist.gov/vuln/detail/CVE-2020-3952
CVE-2021-21972
VMware vCenter Server vSphere Client contains a remote code execution vulnerability in a vCenter Server plugin which allows an attacker with network access to port 443 to execute commands with unrestricted privileges on the underlying operating system.
Note: https://nvd.nist.gov/vuln/detail/CVE-2021-21972
CVE-2021-21985
VMware vSphere Client contains an improper input validation vulnerability in the Virtual SAN Health Check plug-in, which is enabled by default in vCenter Server, which allows for remote code execution.
Note: https://nvd.nist.gov/vuln/detail/CVE-2021-21985
CVE-2020-4006
VMware Workspace One Access, Access Connector, Identity Manager, and Identity Manager Connector contain a command injection vulnerability. An attacker with network access to the administrative configurator on port 8443 and a valid password for the configurator administrator account can execute commands with unrestricted privileges on the underlying operating system.
Note: https://nvd.nist.gov/vuln/detail/CVE-2020-4006
CVE-2020-25213
WordPress File Manager plugin contains a remote code execution vulnerability that allows unauthenticated users to execute PHP code and upload malicious files on a target site.
Note: https://nvd.nist.gov/vuln/detail/CVE-2020-25213
CVE-2020-11738
WordPress Snap Creek Duplicator plugin contains a file download vulnerability when an administrator creates a new copy of their site that allows an attacker to download the generated files from their Wordpress dashboard. This vulnerability affects Duplicator and Dulplicator Pro.
Note: https://nvd.nist.gov/vuln/detail/CVE-2020-11738
CVE-2019-9978
WordPress Social Warfare plugin contains a cross-site scripting (XSS) vulnerability that allows for remote code execution. This vulnerability affects Social Warfare and Social Warfare Pro.
Note: https://nvd.nist.gov/vuln/detail/CVE-2019-9978
CVE-2021-27561
Yealink Device Management contains a server-side request forgery (SSRF) vulnerability that allows for unauthenticated remote code execution.
Note: https://nvd.nist.gov/vuln/detail/CVE-2021-27561
CVE-2021-40539
Zoho ManageEngine ADSelfService Plus contains an authentication bypass vulnerability affecting the REST API URLs which allow for remote code execution.
Note: https://nvd.nist.gov/vuln/detail/CVE-2021-40539
CVE-2020-10189
Zoho ManageEngine Desktop Central contains a file upload vulnerability that allows for unauthenticated remote code execution.
Note: https://nvd.nist.gov/vuln/detail/CVE-2020-10189
CVE-2019-8394
Zoho ManageEngine ServiceDesk Plus (SDP) contains an unspecified vulnerability that allows remote users to upload files via login page customization.
Note: https://nvd.nist.gov/vuln/detail/CVE-2019-8394
CVE-2020-29583
Zyxel firewalls (ATP, USG, VM) and AP Controllers (NXC2500 and NXC5500) contain a use of hard-coded credentials vulnerability in an undocumented account ("zyfwp") with an unchangeable password.
Note: https://nvd.nist.gov/vuln/detail/CVE-2020-29583
