CISA Catalog
Data sourced from the official CISA Known Exploited Vulnerabilities Catalog. Federal agencies are required to remediate these vulnerabilities by the due date per BOD 22-01.
KEV Entries
1,660
Ransomware Use
335
Overdue
1,655
Vendors
276
Products
671
80 results · Page 4/4
Adobe ColdFusion Deserialization of Untrusted Data Vulnerability
Adobe · ColdFusion
Adobe ColdFusion contains a deserialization of untrusted data vulnerability that could allow for code execution.
Required Action
Apply updates per vendor instructions.
Adobe ColdFusion Unrestricted File Upload Vulnerability
Adobe · ColdFusion
Adobe ColdFusion contains an unrestricted file upload vulnerability that could allow for code execution.
Required Action
Apply updates per vendor instructions.
Adobe Acrobat and Reader Heap-based Buffer Overflow Vulnerability
Adobe · Acrobat and Reader
Acrobat Acrobat and Reader contain a heap-based buffer overflow vulnerability that could allow an unauthenticated attacker to achieve code execution in the context of the current user.
Required Action
Apply updates per vendor instructions.
Adobe Acrobat and Reader Use-After-Free Vulnerability
Adobe · Acrobat and Reader
Adobe Acrobat and Reader contains a use-after-free vulnerability that could allow an unauthenticated attacker to achieve code execution in the context of the current user.
Required Action
Apply updates per vendor instructions.
Adobe Flash Player Use-After-Free Vulnerability
Adobe · Flash Player
Adobe Flash Player contains a use-after-free vulnerability that could allow for code execution.
Required Action
The impacted product is end-of-life and should be disconnected if still in use.