CISA Known Exploited Vulnerabilities (KEV)

CISA's Known Exploited Vulnerabilities (KEV) catalog lists vulnerabilities actively used in real-world attacks. CVEFeed.io tracks the latest additions so you can prioritize remediation as new entries are published.

    8.1

    HIGH
    CVE-2017-12617 - Apache Tomcat Remote Code Execution Vulnerability -

    Action Due Apr 15, 2022 Target Vendor : Apache

    Description :When running Apache Tomcat, it is possible to upload a JSP file to the server via a specially crafted request. This JSP could then be requested and any code it contained would be executed by the server.

    Action :Apply updates per vendor instructions.

    Known To Be Used in Ransomware Campaigns? : Unknown

    Notes :https://nvd.nist.gov/vuln/detail/CVE-2017-12617

    Alert Date: Mar 25, 2022 | 1443 days ago

    8.1

    HIGH
    CVE-2017-12615 - Apache Tomcat on Windows Remote Code Execution Vulnerability -

    Action Due Apr 15, 2022 Target Vendor : Apache

    Description :When running Apache Tomcat on Windows with HTTP PUTs enabled, it is possible to upload a JSP file to the server via a specially crafted request. This JSP could then be requested and any code it contained would be executed by the server.

    Action :Apply updates per vendor instructions.

    Known To Be Used in Ransomware Campaigns? : Known Detected Mar 25, 2022

    Notes :https://nvd.nist.gov/vuln/detail/CVE-2017-12615

    Alert Date: Mar 25, 2022 | 1443 days ago

    9.3

    HIGH
    CVE-2017-0146 - Microsoft Windows SMB Remote Code Execution Vulnerability -

    Action Due Apr 15, 2022 Target Vendor : Microsoft

    Description :The SMBv1 server in Microsoft Windows allows remote attackers to perform remote code execution.

    Action :Apply updates per vendor instructions.

    Known To Be Used in Ransomware Campaigns? : Known Detected Mar 25, 2022

    Notes :https://nvd.nist.gov/vuln/detail/CVE-2017-0146

    Alert Date: Mar 25, 2022 | 1443 days ago

    9.3

    HIGH
    CVE-2016-7892 - Adobe Flash Player Use-After-Free Vulnerability -

    Action Due Apr 15, 2022 Target Vendor : Adobe

    Description :Adobe Flash Player has an exploitable use-after-free vulnerability in the TextField class.

    Action :The impacted product is end-of-life and should be disconnected if still in use.

    Known To Be Used in Ransomware Campaigns? : Unknown

    Notes :https://nvd.nist.gov/vuln/detail/CVE-2016-7892

    Alert Date: Mar 25, 2022 | 1443 days ago

    10.0

    HIGH
    CVE-2016-4171 - Adobe Flash Player Remote Code Execution Vulnerability -

    Action Due Apr 15, 2022 Target Vendor : Adobe

    Description :Unspecified vulnerability in Adobe Flash Player allows for remote code execution.

    Action :The impacted product is end-of-life and should be disconnected if still in use.

    Known To Be Used in Ransomware Campaigns? : Unknown

    Notes :https://nvd.nist.gov/vuln/detail/CVE-2016-4171

    Alert Date: Mar 25, 2022 | 1443 days ago

    10.0

    HIGH
    CVE-2016-1555 - NETGEAR Multiple WAP Devices Command Injection Vulnerability -

    Action Due Apr 15, 2022 Target Vendor : NETGEAR

    Description :Multiple NETGEAR Wireless Access Point devices allows unauthenticated web pages to pass form input directly to the command-line interface. Exploitation allows for arbitrary code execution.

    Action :Apply updates per vendor instructions.

    Known To Be Used in Ransomware Campaigns? : Unknown

    Notes :https://nvd.nist.gov/vuln/detail/CVE-2016-1555

    Alert Date: Mar 25, 2022 | 1443 days ago

    9.0

    HIGH
    CVE-2016-11021 - D-Link DCS-930L Devices OS Command Injection Vulnerability -

    Action Due Apr 15, 2022 Target Vendor : D-Link

    Description :setSystemCommand on D-Link DCS-930L devices allows a remote attacker to execute code via an OS command.

    Action :The impacted product is end-of-life and should be disconnected if still in use.

    Known To Be Used in Ransomware Campaigns? : Unknown

    Notes :https://nvd.nist.gov/vuln/detail/CVE-2016-11021

    Alert Date: Mar 25, 2022 | 1443 days ago

    10.0

    HIGH
    CVE-2016-10174 - NETGEAR WNR2000v5 Router Buffer Overflow Vulnerability -

    Action Due Apr 15, 2022 Target Vendor : NETGEAR

    Description :The NETGEAR WNR2000v5 router contains a buffer overflow which can be exploited to achieve remote code execution.

    Action :Apply updates per vendor instructions.

    Known To Be Used in Ransomware Campaigns? : Unknown

    Notes :https://nvd.nist.gov/vuln/detail/CVE-2016-10174

    Alert Date: Mar 25, 2022 | 1443 days ago

    7.5

    HIGH
    CVE-2016-0752 - Ruby on Rails Directory Traversal Vulnerability -

    Action Due Apr 15, 2022 Target Vendor : Rails

    Description :Directory traversal vulnerability in Action View in Ruby on Rails allows remote attackers to read arbitrary files.

    Action :Apply updates per vendor instructions.

    Known To Be Used in Ransomware Campaigns? : Unknown

    Notes :https://nvd.nist.gov/vuln/detail/CVE-2016-0752

    Alert Date: Mar 25, 2022 | 1443 days ago

    10.0

    HIGH
    CVE-2015-1187 - D-Link and TRENDnet Multiple Devices Remote Code Execution Vulnerability -

    Action Due Apr 15, 2022 Target Vendor : D-Link and TRENDnet

    Description :The ping tool in multiple D-Link and TRENDnet devices allow remote attackers to perform remote code execution.

    Action :The impacted product is end-of-life and should be disconnected if still in use.

    Known To Be Used in Ransomware Campaigns? : Unknown

    Notes :https://nvd.nist.gov/vuln/detail/CVE-2015-1187

    Alert Date: Mar 25, 2022 | 1443 days ago

    9.3

    HIGH
    CVE-2014-6332 - Microsoft Windows Object Linking & Embedding (OLE) Automation Array Remote Code Execution Vulnerability -

    Action Due Apr 15, 2022 Target Vendor : Microsoft

    Description :OleAut32.dll in OLE in Microsoft Windows allows remote attackers to remotely execute code via a crafted web site.

    Action :Apply updates per vendor instructions.

    Known To Be Used in Ransomware Campaigns? : Unknown

    Notes :https://nvd.nist.gov/vuln/detail/CVE-2014-6332

    Alert Date: Mar 25, 2022 | 1443 days ago

    7.8

    HIGH
    CVE-2010-4345 - Exim Privilege Escalation Vulnerability -

    Action Due Apr 15, 2022 Target Vendor : Exim

    Description :Exim allows local users to gain privileges by leveraging the ability of the exim user account to specify an alternate configuration file with a directive that contains arbitrary commands.

    Action :Apply updates per vendor instructions.

    Known To Be Used in Ransomware Campaigns? : Unknown

    Notes :https://nvd.nist.gov/vuln/detail/CVE-2010-4345

    Alert Date: Mar 25, 2022 | 1443 days ago

    9.8

    CRITICAL
    CVE-2010-4344 - Exim Heap-Based Buffer Overflow Vulnerability -

    Action Due Apr 15, 2022 Target Vendor : Exim

    Description :Heap-based buffer overflow in the string_vformat function in string.c in Exim before 4.70 allows remote attackers to execute arbitrary code via an SMTP session.

    Action :Apply updates per vendor instructions.

    Known To Be Used in Ransomware Campaigns? : Unknown

    Notes :https://nvd.nist.gov/vuln/detail/CVE-2010-4344

    Alert Date: Mar 25, 2022 | 1443 days ago

    7.5

    HIGH
    CVE-2010-3035 - Cisco IOS XR Border Gateway Protocol (BGP) Denial-of-Service Vulnerability -

    Action Due Apr 15, 2022 Target Vendor : Cisco

    Description :Cisco IOS XR, when BGP is the configured routing feature, allows remote attackers to cause a denial-of-service (DoS).

    Action :Apply updates per vendor instructions.

    Known To Be Used in Ransomware Campaigns? : Unknown

    Notes :https://nvd.nist.gov/vuln/detail/CVE-2010-3035

    Alert Date: Mar 25, 2022 | 1443 days ago

    9.8

    CRITICAL
    CVE-2009-1151 - phpMyAdmin Remote Code Execution Vulnerability -

    Action Due Apr 15, 2022 Target Vendor : phpMyAdmin

    Description :Setup script used to generate configuration can be fooled using a crafted POST request to include arbitrary PHP code in generated configuration file.

    Action :Apply updates per vendor instructions.

    Known To Be Used in Ransomware Campaigns? : Unknown

    Notes :https://nvd.nist.gov/vuln/detail/CVE-2009-1151

    Alert Date: Mar 25, 2022 | 1443 days ago

    9.3

    HIGH
    CVE-2009-0927 - Adobe Reader and Adobe Acrobat Stack-Based Buffer Overflow Vulnerability -

    Action Due Apr 15, 2022 Target Vendor : Adobe

    Description :Stack-based buffer overflow in Adobe Reader and Adobe Acrobat allows remote attackers to execute arbitrary code.

    Action :Apply updates per vendor instructions.

    Known To Be Used in Ransomware Campaigns? : Unknown

    Notes :https://nvd.nist.gov/vuln/detail/CVE-2009-0927

    Alert Date: Mar 25, 2022 | 1443 days ago

    9.8

    CRITICAL
    CVE-2005-2773 - HP OpenView Network Node Manager Remote Code Execution Vulnerability -

    Action Due Apr 15, 2022 Target Vendor : Hewlett Packard (HP)

    Description :HP OpenView Network Node Manager could allow a remote attacker to execute arbitrary commands on the system.

    Action :Apply updates per vendor instructions.

    Known To Be Used in Ransomware Campaigns? : Unknown

    Notes :https://nvd.nist.gov/vuln/detail/CVE-2005-2773

    Alert Date: Mar 25, 2022 | 1443 days ago

    8.1

    HIGH
    CVE-2014-3120 - Elasticsearch Remote Code Execution Vulnerability -

    Action Due Apr 15, 2022 Target Vendor : Elastic

    Description :Elasticsearch enables dynamic scripting, which allows remote attackers to execute arbitrary MVEL expressions and Java code.

    Action :Apply updates per vendor instructions.

    Known To Be Used in Ransomware Campaigns? : Unknown

    Notes :https://nvd.nist.gov/vuln/detail/CVE-2014-3120

    Alert Date: Mar 25, 2022 | 1443 days ago

    8.1

    HIGH
    CVE-2018-6961 - VMware SD-WAN Edge by VeloCloud Command Injection Vulnerability -

    Action Due Apr 15, 2022 Target Vendor : VMware

    Description :VMware SD-WAN Edge by VeloCloud contains a command injection vulnerability in the local web UI component. Successful exploitation of this issue could result in remote code execution.

    Action :Apply updates per vendor instructions.

    Known To Be Used in Ransomware Campaigns? : Unknown

    Notes :https://nvd.nist.gov/vuln/detail/CVE-2018-6961

    Alert Date: Mar 25, 2022 | 1443 days ago

    7.2

    HIGH
    CVE-2019-2616 - Oracle BI Publisher Unauthorized Access Vulnerability -

    Action Due Apr 15, 2022 Target Vendor : Oracle

    Description :Oracle BI Publisher, formerly XML Publisher, contains an unspecified vulnerability that allows for various unauthorized actions. Open-source reporting attributes this vulnerability to allowing for authentication bypass.

    Action :Apply updates per vendor instructions.

    Known To Be Used in Ransomware Campaigns? : Unknown

    Notes :https://nvd.nist.gov/vuln/detail/CVE-2019-2616

    Alert Date: Mar 25, 2022 | 1443 days ago
Showing 20 of 1540 Results

Filters