Latest CVE Feed

Following is the list of latest published vulnerabilities. You can filter the list based on the severity of the vulnerability, whether it is actively exploited (also known as CISA KEV List) or remotely exploitable. You can also sort the list based on the published date, last updated date, or CVSS score.
  • 7.5

    CVSS31
    CVE-2025-21207

    Windows Connected Devices Platform Service (Cdpsvc) Denial of Service Vulnerability... Read more

    • Published: Jan. 14, 2025
    • Modified: Jan. 14, 2025
  • 6.1

    CVSS31
    CVE-2025-21202

    Windows Recovery Environment Agent Elevation of Privilege Vulnerability... Read more

    • Published: Jan. 14, 2025
    • Modified: Jan. 14, 2025
  • 6.5

    CVSS31
    CVE-2025-21193

    Active Directory Federation Server Spoofing Vulnerability... Read more

    • Published: Jan. 14, 2025
    • Modified: Jan. 14, 2025
  • 4.3

    CVSS31
    • Published: Jan. 14, 2025
    • Modified: Jan. 14, 2025
  • 7.8

    CVSS31
    CVE-2025-21187

    Microsoft Power Automate Remote Code Execution Vulnerability... Read more

    Affected Products :
    • Published: Jan. 14, 2025
    • Modified: Jan. 14, 2025
  • 7.8

    CVSS31
    CVE-2025-21186

    Microsoft Access Remote Code Execution Vulnerability... Read more

    Affected Products : office 365_apps
    • Published: Jan. 14, 2025
    • Modified: Jan. 14, 2025
  • 8.8

    CVSS31
    CVE-2025-21178

    Visual Studio Remote Code Execution Vulnerability... Read more

    Affected Products : visual_studio_2017
    • Published: Jan. 14, 2025
    • Modified: Jan. 14, 2025
  • 8.8

    CVSS31
    CVE-2025-21176

    .NET, .NET Framework, and Visual Studio Remote Code Execution Vulnerability... Read more

    Affected Products : visual_studio_2017
    • Published: Jan. 14, 2025
    • Modified: Jan. 14, 2025
  • 7.3

    CVSS31
    CVE-2025-21173

    .NET Elevation of Privilege Vulnerability... Read more

    Affected Products :
    • Published: Jan. 14, 2025
    • Modified: Jan. 14, 2025
  • 7.5

    CVSS31
    CVE-2025-21172

    .NET and Visual Studio Remote Code Execution Vulnerability... Read more

    Affected Products : visual_studio_2017
    • Published: Jan. 14, 2025
    • Modified: Jan. 14, 2025
  • 7.5

    CVSS31
    CVE-2025-21171

    .NET Remote Code Execution Vulnerability... Read more

    Affected Products :
    • Published: Jan. 14, 2025
    • Modified: Jan. 14, 2025
  • 7.3

    CVSS31
    CVE-2025-0465

    A vulnerability was found in AquilaCMS 1.412.13. It has been rated as critical. Affected by this issue is some unknown functionality of the file /api/v2/categories. The manipulation of the argument PostBody.populate leads to deserialization. The attack ma... Read more

    Affected Products :
    • Published: Jan. 14, 2025
    • Modified: Jan. 14, 2025
  • 7.8

    CVSS31
    CVE-2024-13172

    Improper signature verification in Ivanti EPM before the 2024 January-2025 Security Update and 2022 SU6 January-2025 Security Update allows a remote unauthenticated attacker to achieve remote code execution. Local user interaction is required.... Read more

    Affected Products : endpoint_manager
    • Published: Jan. 14, 2025
    • Modified: Jan. 14, 2025
  • 7.8

    CVSS31
    CVE-2024-13171

    Insufficient filename validation in Ivanti EPM before the 2024 January-2025 Security Update and 2022 SU6 January-2025 Security Update allows a remote unauthenticated attacker to achieve remote code execution. Local user interaction is required.... Read more

    Affected Products : endpoint_manager
    • Published: Jan. 14, 2025
    • Modified: Jan. 14, 2025
  • 7.5

    CVSS31
    CVE-2024-13170

    An out-of-bounds write in Ivanti EPM before the 2024 January-2025 Security Update and 2022 SU6 January-2025 Security Update allows a remote unauthenticated attacker to cause a denial of service.... Read more

    Affected Products : endpoint_manager
    • Published: Jan. 14, 2025
    • Modified: Jan. 14, 2025
  • 7.8

    CVSS31
    CVE-2024-13169

    An out-of-bounds read in Ivanti EPM before the 2024 January-2025 Security Update and 2022 SU6 January-2025 Security Update allows a local authenticated attacker to escalate their privileges.... Read more

    Affected Products : endpoint_manager
    • Published: Jan. 14, 2025
    • Modified: Jan. 14, 2025
  • 7.5

    CVSS31
    CVE-2024-13168

    An out-of-bounds write in Ivanti EPM before the 2024 January-2025 Security Update and 2022 SU6 January-2025 Security Update allows a remote unauthenticated attacker to cause a denial of service.... Read more

    Affected Products : endpoint_manager
    • Published: Jan. 14, 2025
    • Modified: Jan. 14, 2025
  • 7.5

    CVSS31
    CVE-2024-13167

    An out-of-bounds write in Ivanti EPM before the 2024 January-2025 Security Update and 2022 SU6 January-2025 Security Update allows a remote unauthenticated attacker to cause a denial of service.... Read more

    Affected Products : endpoint_manager
    • Published: Jan. 14, 2025
    • Modified: Jan. 14, 2025
  • 7.5

    CVSS31
    CVE-2024-13166

    An out-of-bounds write in Ivanti EPM before the 2024 January-2025 Security Update and 2022 SU6 January-2025 Security Update allows a remote unauthenticated attacker to cause a denial of service.... Read more

    Affected Products : endpoint_manager
    • Published: Jan. 14, 2025
    • Modified: Jan. 14, 2025
  • 7.5

    CVSS31
    CVE-2024-13165

    An out-of-bounds write in Ivanti EPM before the 2024 January-2025 Security Update and 2022 SU6 January-2025 Security Update allows a remote unauthenticated attacker to cause a denial of service.... Read more

    Affected Products : endpoint_manager
    • Published: Jan. 14, 2025
    • Modified: Jan. 14, 2025
Showing 20 of 685 Results
© cvefeed.io
Latest DB Update: Jan. 15, 2025 16:43