Search Results (17428 CVEs found)

CVE Vendors Products Updated CVSS v3.1
CVE-2024-49808 3 Ibm, Linux, Microsoft 4 Aix, Sterling Connect Direct Web Services, Linux Kernel and 1 more 2025-09-01 6.3 Medium
IBM Sterling Connect:Direct Web Services 6.1.0, 6.2.0, and 6.3.0 could allow an authenticated user to spoof the identity of another user due to improper authorization which could allow the user to bypass access restrictions.
CVE-2024-45651 3 Ibm, Linux, Microsoft 4 Aix, Sterling Connect Direct Web Services, Linux Kernel and 1 more 2025-09-01 6.3 Medium
IBM Sterling Connect:Direct Web Services 6.1.0, 6.2.0, and 6.3.0 does not invalidate session after a browser closure which could allow an authenticated user to impersonate another user on the system.
CVE-2025-27907 5 Hp, Ibm, Linux and 2 more 8 Hp-ux, Aix, I and 5 more 2025-09-01 4.1 Medium
IBM WebSphere Application Server 8.5 and 9.0 is vulnerable to server-side request forgery (SSRF). This may allow an authenticated attacker to send unauthorized requests from the system, potentially leading to network enumeration or facilitating other attacks.
CVE-2024-22351 3 Ibm, Linux, Microsoft 4 Aix, Infosphere Information Server, Linux Kernel and 1 more 2025-09-01 6.3 Medium
IBM InfoSphere Information 11.7 Server does not invalidate session after logout which could allow an authenticated user to impersonate another user on the system.
CVE-2024-6769 1 Microsoft 5 Windows 10, Windows 11, Windows Server 2016 and 2 more 2025-08-29 6.7 Medium
A DLL Hijacking caused by drive remapping combined with a poisoning of the activation cache in Microsoft Windows 10, Windows 11, Windows Server 2016, Windows Server 2019, and Windows Server 2022 allows a malicious authenticated attacker to elevate from a medium integrity process to a high integrity process without the intervention of a UAC prompt.
CVE-2025-9578 2 Acronis, Microsoft 2 Cyber Protect Cloud Agent, Windows 2025-08-29 N/A
Local privilege escalation due to insecure folder permissions. The following products are affected: Acronis Cyber Protect Cloud Agent (Windows) before build 40734.
CVE-2025-30038 1 Microsoft 1 Windows 2025-08-29 N/A
The vulnerability consists of a session ID leak when saving a file downloaded from CGM CLININET. The identifier is exposed through a built-in Windows security feature that stores additional metadata in an NTFS alternate data stream (ADS) for all files downloaded from potentially untrusted sources.
CVE-2020-17140 1 Microsoft 8 Windows 10, Windows 7, Windows 8.1 and 5 more 2025-08-28 8.1 High
Windows SMB Information Disclosure Vulnerability
CVE-2020-17139 1 Microsoft 3 Windows 10, Windows Server 2016, Windows Server 2019 2025-08-28 7.8 High
Windows Overlay Filter Security Feature Bypass Vulnerability
CVE-2020-17138 1 Microsoft 2 Windows 10, Windows Server 2016 2025-08-28 5.5 Medium
Windows Error Reporting Information Disclosure Vulnerability
CVE-2020-17137 1 Microsoft 2 Windows 10, Windows Server 2016 2025-08-28 7.8 High
DirectX Graphics Kernel Elevation of Privilege Vulnerability
CVE-2020-17136 1 Microsoft 3 Windows 10, Windows Server 2016, Windows Server 2019 2025-08-28 7.8 High
Windows Cloud Files Mini Filter Driver Elevation of Privilege Vulnerability
CVE-2020-17134 1 Microsoft 3 Windows 10, Windows Server 2016, Windows Server 2019 2025-08-28 7.8 High
Windows Cloud Files Mini Filter Driver Elevation of Privilege Vulnerability
CVE-2020-17131 1 Microsoft 4 Chakracore, Edge, Windows 10 and 1 more 2025-08-28 4.2 Medium
Chakra Scripting Engine Memory Corruption Vulnerability
CVE-2020-17103 1 Microsoft 3 Windows 10, Windows Server 2016, Windows Server 2019 2025-08-28 7 High
Windows Cloud Files Mini Filter Driver Elevation of Privilege Vulnerability
CVE-2020-17099 1 Microsoft 3 Windows 10, Windows Server 2016, Windows Server 2019 2025-08-28 6.8 Medium
Windows Lock Screen Security Feature Bypass Vulnerability
CVE-2020-17098 1 Microsoft 8 Windows 10, Windows 7, Windows 8.1 and 5 more 2025-08-28 5.5 Medium
Windows GDI+ Information Disclosure Vulnerability
CVE-2020-17097 1 Microsoft 6 Windows 10, Windows 8.1, Windows Rt 8.1 and 3 more 2025-08-28 3.3 Low
Windows Digital Media Receiver Elevation of Privilege Vulnerability
CVE-2020-17096 1 Microsoft 6 Windows 10, Windows 8.1, Windows Rt 8.1 and 3 more 2025-08-28 7.5 High
Windows NTFS Remote Code Execution Vulnerability
CVE-2020-17095 1 Microsoft 3 Windows 10, Windows Server 2016, Windows Server 2019 2025-08-28 8.5 High
Windows Hyper-V Remote Code Execution Vulnerability