Latest CVE Feed
-
9.8
CRITICALCVE-2021-24078
Windows DNS Server Remote Code Execution Vulnerability... Read more
- Published: Feb. 25, 2021
- Modified: Nov. 21, 2024
-
9.8
CRITICALCVE-2021-24077
Windows Fax Service Remote Code Execution Vulnerability... Read more
Affected Products : windows_10 windows_7 windows_8.1 windows_rt_8.1 windows_server_2008 windows_server_2012 windows_server_2016 windows_server_2019 windows_10_1607 windows_10_1809 +10 more products- Published: Feb. 25, 2021
- Modified: Nov. 21, 2024
-
5.5
MEDIUMCVE-2021-24076
Microsoft Windows VMSwitch Information Disclosure Vulnerability... Read more
Affected Products : windows_10 windows_8.1 windows_server_2012 windows_server_2016 windows_server_2019 windows_10_1607 windows_10_1809 windows_10_1507 windows_10_1803 windows_10_1909 +4 more products- Published: Feb. 25, 2021
- Modified: Nov. 21, 2024
-
6.8
MEDIUMCVE-2021-24075
Microsoft Windows VMSwitch Denial of Service Vulnerability... Read more
Affected Products : windows_10 windows_server_2016 windows_10_1809 windows_10_20h2 windows_server_20h2 windows_server_2004- Published: Feb. 25, 2021
- Modified: Nov. 21, 2024
-
9.8
CRITICALCVE-2021-24074
Windows TCP/IP Remote Code Execution Vulnerability... Read more
Affected Products : windows_10 windows_7 windows_8.1 windows_rt_8.1 windows_server_2008 windows_server_2012 windows_server_2016 windows_server_2019 windows_10_1607 windows_10_1809 +10 more products- Published: Feb. 25, 2021
- Modified: Nov. 21, 2024
-
7.1
HIGH- Published: Feb. 25, 2021
- Modified: Nov. 21, 2024
-
8.8
HIGH- Published: Feb. 25, 2021
- Modified: Nov. 21, 2024
-
6.5
MEDIUM- Published: Feb. 25, 2021
- Modified: Nov. 21, 2024
-
7.8
HIGHCVE-2021-24070
Microsoft Excel Remote Code Execution Vulnerability... Read more
Affected Products : office 365_apps office_web_apps excel office_online_server office_web_apps_server- Published: Feb. 25, 2021
- Modified: Nov. 21, 2024
-
7.8
HIGHCVE-2021-24069
Microsoft Excel Remote Code Execution Vulnerability... Read more
Affected Products : office 365_apps office_web_apps excel office_online_server office_web_apps_server- Published: Feb. 25, 2021
- Modified: Nov. 21, 2024
-
7.8
HIGH- Published: Feb. 25, 2021
- Modified: Nov. 21, 2024
-
7.8
HIGHCVE-2021-24067
Microsoft Excel Remote Code Execution Vulnerability... Read more
Affected Products : office 365_apps office_web_apps excel office_online_server office_web_apps_server- Published: Feb. 25, 2021
- Modified: Nov. 21, 2024
-
8.8
HIGH- Published: Feb. 25, 2021
- Modified: Nov. 21, 2024
-
5.3
MEDIUMCVE-2021-24046
A logic flaw in Ray-Ban® Stories device software allowed some parameters like video capture duration limit to be modified through the Facebook View application. This issue affected versions of device software before 2107460.6810.0.... Read more
- Published: Jan. 14, 2022
- Modified: Nov. 21, 2024
-
9.8
CRITICALCVE-2021-24045
A type confusion vulnerability could be triggered when resolving the "typeof" unary operator in Facebook Hermes prior to v0.10.0. Note that this is only exploitable if the application using Hermes permits evaluation of untrusted JavaScript. Hence, most Re... Read more
Affected Products : hermes- Published: Dec. 13, 2021
- Modified: Nov. 21, 2024
-
9.8
CRITICALCVE-2021-24044
By passing invalid javascript code where await and yield were called upon non-async and non-generator getter/setter functions, Hermes would invoke generator functions and error out on invalid await/yield positions. This could result in segmentation fault ... Read more
Affected Products : hermes- Published: Jan. 15, 2022
- Modified: Nov. 21, 2024
-
9.1
CRITICALCVE-2021-24043
A missing bound check in RTCP flag parsing code prior to WhatsApp for Android v2.21.23.2, WhatsApp Business for Android v2.21.23.2, WhatsApp for iOS v2.21.230.6, WhatsApp Business for iOS 2.21.230.7, and WhatsApp Desktop v2.2145.0 could have allowed an ou... Read more
- Published: Feb. 02, 2022
- Modified: Nov. 21, 2024
-
9.8
CRITICALCVE-2021-24041
A missing bounds check in image blurring code prior to WhatsApp for Android v2.21.22.7 and WhatsApp Business for Android v2.21.22.7 could have allowed an out-of-bounds write if a user sent a malicious image.... Read more
- Published: Dec. 07, 2021
- Modified: Nov. 21, 2024
-
9.8
CRITICALCVE-2021-24040
Due to use of unsafe YAML deserialization logic, an attacker with the ability to modify local YAML configuration files could provide malicious input, resulting in remote code execution or similar risks. This issue affects ParlAI prior to v1.1.0.... Read more
Affected Products : parlai- Published: Sep. 10, 2021
- Modified: Nov. 21, 2024
-
7.8
HIGHCVE-2021-24038
Due to a bug with management of handles in OVRServiceLauncher.exe, an attacker could expose a privileged process handle to an unprivileged process, leading to local privilege escalation. This issue affects Oculus Desktop versions after 1.39 and prior to 3... Read more
Affected Products : desktop- Published: Aug. 19, 2021
- Modified: Nov. 21, 2024