CISA Known Exploited Vulnerabilities (KEV)

CISA's Known Exploited Vulnerabilities (KEV) catalog lists vulnerabilities actively used in real-world attacks. CVEFeed.io tracks the latest additions so you can prioritize remediation as new entries are published.

    9.3

    HIGH
    CVE-2015-2426 - Microsoft Windows Adobe Type Manager Library Remote Code Execution Vulnerability -

    Action Due Apr 18, 2022 Target Vendor : Microsoft

    Description : A remote code execution vulnerability exists in Microsoft Windows when the Windows Adobe Type Manager Library improperly handles specially crafted OpenType fonts.

    Action : Apply updates per vendor instructions.

    Known To Be Used in Ransomware Campaigns? : Unknown

    Notes : https://nvd.nist.gov/vuln/detail/CVE-2015-2426

    Alert Date: Mar 28, 2022 | 1439 days ago

    7.8

    HIGH
    CVE-2016-0040 - Microsoft Windows Kernel Privilege Escalation Vulnerability -

    Action Due Apr 18, 2022 Target Vendor : Microsoft

    Description : The kernel in Microsoft Windows allows local users to gain privileges via a crafted application.

    Action : Apply updates per vendor instructions.

    Known To Be Used in Ransomware Campaigns? : Unknown

    Notes : https://nvd.nist.gov/vuln/detail/CVE-2016-0040

    Alert Date: Mar 28, 2022 | 1439 days ago

    8.1

    HIGH
    CVE-2017-0037 - Microsoft Edge and Internet Explorer Type Confusion Vulnerability -

    Action Due Apr 18, 2022 Target Vendor : Microsoft

    Description : Microsoft Edge and Internet Explorer have a type confusion vulnerability in mshtml.dll, which allows remote code execution.

    Action : Apply updates per vendor instructions.

    Known To Be Used in Ransomware Campaigns? : Unknown

    Notes : https://nvd.nist.gov/vuln/detail/CVE-2017-0037

    Alert Date: Mar 28, 2022 | 1439 days ago

    4.3

    MEDIUM
    CVE-2017-0059 - Microsoft Internet Explorer Information Disclosure Vulnerability -

    Action Due Apr 18, 2022 Target Vendor : Microsoft

    Description : Microsoft Internet Explorer allow remote attackers to obtain sensitive information from process memory via a crafted web site.

    Action : Apply updates per vendor instructions.

    Known To Be Used in Ransomware Campaigns? : Unknown

    Notes : https://nvd.nist.gov/vuln/detail/CVE-2017-0059

    Alert Date: Mar 28, 2022 | 1439 days ago

    7.5

    HIGH
    CVE-2019-7483 - SonicWall SMA100 Directory Traversal Vulnerability -

    Action Due Apr 18, 2022 Target Vendor : SonicWall

    Description : In SonicWall SMA100, an unauthenticated Directory Traversal vulnerability in the handleWAFRedirect CGI allows the user to test for the presence of a file on the server.

    Action : Apply updates per vendor instructions.

    Known To Be Used in Ransomware Campaigns? : Unknown

    Notes : https://nvd.nist.gov/vuln/detail/CVE-2019-7483

    Alert Date: Mar 28, 2022 | 1439 days ago

    7.8

    HIGH
    CVE-2021-34486 - Microsoft Windows Event Tracing Privilege Escalation Vulnerability -

    Action Due Apr 18, 2022 Target Vendor : Microsoft

    Description : Microsoft Windows Event Tracing contains an unspecified vulnerability which can allow for privilege escalation.

    Action : Apply updates per vendor instructions.

    Known To Be Used in Ransomware Campaigns? : Unknown

    Notes : https://nvd.nist.gov/vuln/detail/CVE-2021-34486

    Alert Date: Mar 28, 2022 | 1439 days ago

    10.0

    CRITICAL
    CVE-2022-0543 - Debian-specific Redis Server Lua Sandbox Escape Vulnerability -

    Action Due Apr 18, 2022 Target Vendor : Redis

    Description : Redis is prone to a (Debian-specific) Lua sandbox escape, which could result in remote code execution.

    Action : Apply updates per vendor instructions.

    Known To Be Used in Ransomware Campaigns? : Unknown

    Notes : https://nvd.nist.gov/vuln/detail/CVE-2022-0543

    Alert Date: Mar 28, 2022 | 1439 days ago

    7.8

    HIGH
    CVE-2010-4398 - Microsoft Windows Kernel Stack-Based Buffer Overflow Vulnerability -

    Action Due Apr 21, 2022 Target Vendor : Microsoft

    Description : Stack-based buffer overflow in the RtlQueryRegistryValues function in win32k.sys in Microsoft Windows allows local users to gain privileges, and bypass the User Account Control (UAC) feature.

    Action : Apply updates per vendor instructions.

    Known To Be Used in Ransomware Campaigns? : Unknown

    Notes : https://nvd.nist.gov/vuln/detail/CVE-2010-4398

    Alert Date: Mar 28, 2022 | 1439 days ago

    8.8

    HIGH
    CVE-2016-7200 - Microsoft Edge Memory Corruption Vulnerability -

    Action Due Apr 18, 2022 Target Vendor : Microsoft

    Description : The Chakra JavaScript scripting engine in Microsoft Edge allows remote attackers to execute remote code or cause a denial of service (memory corruption) via a crafted web site.

    Action : Apply updates per vendor instructions.

    Known To Be Used in Ransomware Campaigns? : Unknown

    Notes : https://nvd.nist.gov/vuln/detail/CVE-2016-7200

    Alert Date: Mar 28, 2022 | 1439 days ago

    8.8

    HIGH
    CVE-2016-7201 - Microsoft Edge Memory Corruption Vulnerability -

    Action Due Apr 18, 2022 Target Vendor : Microsoft

    Description : The Chakra JavaScript scripting engine in Microsoft Edge allows remote attackers to execute remote code or cause a denial of service (memory corruption) via a crafted web site.

    Action : Apply updates per vendor instructions.

    Known To Be Used in Ransomware Campaigns? : Unknown

    Notes : https://nvd.nist.gov/vuln/detail/CVE-2016-7201

    Alert Date: Mar 28, 2022 | 1439 days ago

    7.3

    HIGH
    CVE-2017-0213 - Microsoft Windows Privilege Escalation Vulnerability -

    Action Due Apr 18, 2022 Target Vendor : Microsoft

    Description : Microsoft Windows COM Aggregate Marshaler allows for privilege escalation when an attacker runs a specially crafted application.

    Action : Apply updates per vendor instructions.

    Known To Be Used in Ransomware Campaigns? : Known Detected Mar 28, 2022

    Notes : https://nvd.nist.gov/vuln/detail/CVE-2017-0213

    Alert Date: Mar 28, 2022 | 1439 days ago

    7.8

    HIGH
    CVE-2018-8440 - Microsoft Windows Privilege Escalation Vulnerability -

    Action Due Apr 18, 2022 Target Vendor : Microsoft

    Description : An elevation of privilege vulnerability exists when Windows improperly handles calls to Advanced Local Procedure Call (ALPC).

    Action : Apply updates per vendor instructions.

    Known To Be Used in Ransomware Campaigns? : Known Detected Mar 28, 2022

    Notes : https://nvd.nist.gov/vuln/detail/CVE-2018-8440

    Alert Date: Mar 28, 2022 | 1439 days ago

    9.8

    CRITICAL
    CVE-2021-20028 - SonicWall Secure Remote Access (SRA) SQL Injection Vulnerability -

    Action Due Apr 18, 2022 Target Vendor : SonicWall

    Description : SonicWall Secure Remote Access (SRA) products contain an improper neutralization of a SQL Command leading to SQL injection.

    Action : The impacted product is end-of-life and should be disconnected if still in use.

    Known To Be Used in Ransomware Campaigns? : Known Detected Mar 28, 2022

    Notes : https://nvd.nist.gov/vuln/detail/CVE-2021-20028

    Alert Date: Mar 28, 2022 | 1439 days ago

    5.3

    MEDIUM
    CVE-2021-26085 - Atlassian Confluence Server Pre-Authorization Arbitrary File Read Vulnerability -

    Action Due Apr 18, 2022 Target Vendor : Atlassian

    Description : Affected versions of Atlassian Confluence Server allow remote attackers to view restricted resources via a pre-authorization arbitrary file read vulnerability in the /s/ endpoint.

    Action : Apply updates per vendor instructions.

    Known To Be Used in Ransomware Campaigns? : Known Detected Mar 28, 2022

    Notes : https://nvd.nist.gov/vuln/detail/CVE-2021-26085

    Alert Date: Mar 28, 2022 | 1439 days ago

    7.6

    HIGH
    CVE-2016-0189 - Microsoft Internet Explorer Memory Corruption Vulnerability -

    Action Due Apr 18, 2022 Target Vendor : Microsoft

    Description : The Microsoft JScript nd VBScript engines, as used in Internet Explorer and other products, allow attackers to execute remote code or cause a denial of service (memory corruption) via a crafted web site.

    Action : Apply updates per vendor instructions.

    Known To Be Used in Ransomware Campaigns? : Unknown

    Notes : https://nvd.nist.gov/vuln/detail/CVE-2016-0189

    Alert Date: Mar 28, 2022 | 1439 days ago

    7.8

    HIGH
    CVE-2013-3660 - Microsoft Win32k Privilege Escalation Vulnerability -

    Action Due Apr 18, 2022 Target Vendor : Microsoft

    Description : The EPATHOBJ::pprFlattenRec function in win32k.sys in the kernel-mode drivers in Microsoft does not properly initialize a pointer for the next object in a certain list, which allows local users to gain privileges.

    Action : Apply updates per vendor instructions.

    Known To Be Used in Ransomware Campaigns? : Unknown

    Notes : https://nvd.nist.gov/vuln/detail/CVE-2013-3660

    Alert Date: Mar 28, 2022 | 1439 days ago

    9.3

    HIGH
    CVE-2013-2551 - Microsoft Internet Explorer Use-After-Free Vulnerability -

    Action Due Apr 18, 2022 Target Vendor : Microsoft

    Description : Use-after-free vulnerability in Microsoft Internet Explorer allows remote attackers to execute remote code via a crafted web site that triggers access to a deleted object.

    Action : Apply updates per vendor instructions.

    Known To Be Used in Ransomware Campaigns? : Known Detected Mar 28, 2022

    Notes : https://nvd.nist.gov/vuln/detail/CVE-2013-2551

    Alert Date: Mar 28, 2022 | 1439 days ago

    7.8

    HIGH
    CVE-2011-2005 - Microsoft Ancillary Function Driver (afd.sys) Improper Input Validation Vulnerability -

    Action Due Apr 18, 2022 Target Vendor : Microsoft

    Description : afd.sys in the Ancillary Function Driver in Microsoft Windows does not properly validate user-mode input passed to kernel mode, which allows local users to gain privileges via a crafted application.

    Action : Apply updates per vendor instructions.

    Known To Be Used in Ransomware Campaigns? : Unknown

    Notes : https://nvd.nist.gov/vuln/detail/CVE-2011-2005

    Alert Date: Mar 28, 2022 | 1439 days ago

    7.8

    HIGH
    CVE-2018-8406 - Microsoft DirectX Graphics Kernel Privilege Escalation Vulnerability -

    Action Due Apr 18, 2022 Target Vendor : Microsoft

    Description : An elevation of privilege vulnerability exists when the DirectX Graphics Kernel (DXGKRNL) driver improperly handles objects in memory.

    Action : Apply updates per vendor instructions.

    Known To Be Used in Ransomware Campaigns? : Known Detected Mar 28, 2022

    Notes : https://nvd.nist.gov/vuln/detail/CVE-2018-8406

    Alert Date: Mar 28, 2022 | 1439 days ago

    9.3

    HIGH
    CVE-2012-2034 - Adobe Flash Player Memory Corruption Vulnerability -

    Action Due Apr 18, 2022 Target Vendor : Adobe

    Description : Adobe Flash Player contains a memory corruption vulnerability that allows for remote code execution or denial-of-service (DoS).

    Action : The impacted product is end-of-life and should be disconnected if still in use.

    Known To Be Used in Ransomware Campaigns? : Unknown

    Notes : https://nvd.nist.gov/vuln/detail/CVE-2012-2034

    Alert Date: Mar 28, 2022 | 1439 days ago
Showing 20 of 1540 Results

Filters