CISA Catalog
Data sourced from the official CISA Known Exploited Vulnerabilities Catalog. Federal agencies are required to remediate these vulnerabilities by the due date per BOD 22-01.
KEV Entries
1,661
Ransomware Use
335
Overdue
1,655
Vendors
276
Products
671
382 results · Page 15/16
Microsoft Office Memory Corruption Vulnerability
Microsoft · Office
Microsoft Office contains a memory corruption vulnerability due to the way objects are handled in memory. Successful exploitation allows for remote code execution in the context of the current user. This vulnerability is known to be chained with CVE-2018-0798.
Required Action
Apply updates per vendor instructions.
Microsoft MSCOMCTL.OCX Remote Code Execution Vulnerability
Microsoft · MSCOMCTL.OCX
Microsoft MSCOMCTL.OCX contains an unspecified vulnerability that allows for remote code execution, allowing an attacker to take complete control of an affected system under the context of the current user.
Required Action
Apply updates per vendor instructions.
Microsoft Office Memory Corruption Vulnerability
Microsoft · Office
Microsoft Office contains a memory corruption vulnerability due to failure to properly handle rich text format files in memory. Successful exploitation allows for remote code execution in the context of the current user.
Required Action
Apply updates per vendor instructions.
Microsoft Internet Explorer Remote Code Execution Vulnerability
Microsoft · Internet Explorer
Microsoft Internet Explorer contains an unspecified vulnerability that allows for remote code execution.
Required Action
Apply updates per vendor instructions.
Microsoft MSHTML Remote Code Execution Vulnerability
Microsoft · MSHTML
Microsoft MSHTML engine contains an improper input validation vulnerability that allows for remote code execution vulnerability.
Required Action
Apply updates per vendor instructions.
Microsoft Office Memory Corruption Vulnerability
Microsoft · Office
Microsoft Office contains a memory corruption vulnerability that allows remote code execution in the context of the current user.
Required Action
Apply updates per vendor instructions.
Microsoft Internet Explorer Scripting Engine Memory Corruption Vulnerability
Microsoft · Internet Explorer
Microsoft Internet Explorer contains a memory corruption vulnerability due to the way the Scripting Engine handles objects in memory. Successful exploitation could allow remote code execution in the context of the current user.
Required Action
Apply updates per vendor instructions.
Microsoft Office Remote Code Execution Vulnerability
Microsoft · Office
Microsoft Office contains an unspecified vulnerability that allows for remote code execution.
Required Action
Apply updates per vendor instructions.
Microsoft Internet Explorer Scripting Engine Memory Corruption Vulnerability
Microsoft · Internet Explorer
Microsoft Internet Explorer contains a memory corruption vulnerability in how the scripting engine handles objects in memory. Successful exploitation allows for remote code execution in the context of the current user.
Required Action
Apply updates per vendor instructions.
Microsoft Office and WordPad Remote Code Execution Vulnerability
Microsoft · Office and WordPad
Microsoft Office and WordPad contain an unspecified vulnerability due to the way the applications parse specially crafted files. Successful exploitation allows for remote code execution.
Required Action
Apply updates per vendor instructions.
Microsoft Internet Explorer Scripting Engine Memory Corruption Vulnerability
Microsoft · Internet Explorer
Microsoft Internet Explorer contains a memory corruption vulnerability which can allow for remote code execution in the context of the current user.
Required Action
Apply updates per vendor instructions.
Microsoft Internet Explorer Scripting Engine Memory Corruption Vulnerability
Microsoft · Internet Explorer
Microsoft Internet Explorer contains a memory corruption vulnerability which can allow for remote code execution in the context of the current user.
Required Action
Apply updates per vendor instructions.
Microsoft Office Outlook Security Feature Bypass Vulnerability
Microsoft · Office
Microsoft Office Outlook contains a security feature bypass vulnerability due to improperly handling objects in memory. Successful exploitation allows an attacker to execute commands.
Required Action
Apply updates per vendor instructions.
Microsoft Internet Explorer Scripting Engine Memory Corruption Vulnerability
Microsoft · Internet Explorer
Microsoft Internet Explorer contains a memory corruption vulnerability due to how the Scripting Engine handles objects in memory, leading to remote code execution.
Required Action
Apply updates per vendor instructions.
Microsoft Netlogon Privilege Escalation Vulnerability
Microsoft · Netlogon
Microsoft's Netlogon Remote Protocol (MS-NRPC) contains a privilege escalation vulnerability when an attacker establishes a vulnerable Netlogon secure channel connection to a domain controller. An attacker who successfully exploits the vulnerability could run a specially crafted application on a device on the network. The vulnerability is also known under the moniker of Zerologon.
Required Action
Apply updates per vendor instructions.
Microsoft Exchange Server Remote Code Execution Vulnerability
Microsoft · Exchange Server
Microsoft Exchange Server contains an unspecified vulnerability that allows for remote code execution. This vulnerability is part of the ProxyLogon exploit chain.
Required Action
Apply updates per vendor instructions.
Microsoft Exchange Server Remote Code Execution Vulnerability
Microsoft · Exchange Server
Microsoft Exchange Server contains an unspecified vulnerability that allows for remote code execution. This vulnerability is part of the ProxyLogon exploit chain.
Required Action
Apply updates per vendor instructions.
Microsoft Exchange Server Remote Code Execution Vulnerability
Microsoft · Exchange Server
Microsoft Exchange Server contains an unspecified vulnerability that allows for remote code execution. This vulnerability is part of the ProxyLogon exploit chain.
Required Action
Apply updates per vendor instructions.
Microsoft Win32k Privilege Escalation Vulnerability
Microsoft · Win32k
Microsoft Win32k contains a privilege escalation vulnerability when the Windows kernel-mode driver fails to properly handle objects in memory. Successful exploitation allows an attacker to execute code in kernel mode.
Required Action
Apply updates per vendor instructions.
Microsoft Windows Print Spooler Remote Code Execution Vulnerability
Microsoft · Windows
Microsoft Windows Print Spooler contains an unspecified vulnerability that allows for remote code execution.
Required Action
Apply updates per vendor instructions.
Microsoft Windows Scripting Engine Memory Corruption Vulnerability
Microsoft · Windows
Microsoft Windows Scripting Engine contains an unspecified vulnerability that allows for memory corruption.
Required Action
Apply updates per vendor instructions.
Microsoft Windows CryptoAPI Spoofing Vulnerability
Microsoft · Windows
Microsoft Windows CryptoAPI (Crypt32.dll) contains a spoofing vulnerability in the way it validates Elliptic Curve Cryptography (ECC) certificates. An attacker could exploit the vulnerability by using a spoofed code-signing certificate to sign a malicious executable, making it appear the file was from a trusted, legitimate source. A successful exploit could also allow the attacker to conduct man-in-the-middle attacks and decrypt confidential information on user connections to the affected software. The vulnerability is also known under the moniker of CurveBall.
Required Action
Apply updates per vendor instructions.
Microsoft SharePoint Remote Code Execution Vulnerability
Microsoft · SharePoint
Microsoft SharePoint fails to check the source markup of an application package. An attacker who successfully exploits the vulnerability could run remote code in the context of the SharePoint application pool and the SharePoint server farm account.
Required Action
Apply updates per vendor instructions.
Microsoft .NET Framework Remote Code Execution Vulnerability
Microsoft · .NET Framework
Microsoft .NET Framework contains an improper input validation vulnerability that allows for remote code execution.
Required Action
Apply updates per vendor instructions.
Microsoft Win32k Privilege Escalation Vulnerability
Microsoft · Win32k
Microsoft Win32k contains a privilege escalation vulnerability due to the component failing to properly handle objects in memory. Successful exploitation allows an attacker to run code in kernel mode.
Required Action
Apply updates per vendor instructions.