Common Vulnerabilities and Exposures (CVE) is a critical tool for maintaining software security, providing a standardized way to track and manage vulnerabilities across systems. Organizations should regularly monitor CVE databases, assess the impact of vulnerabilities, and apply patches promptly to reduce the risk of exploitation.
CVE (Common Vulnerabilities and Exposures) is a public database that provides a standardized method for identifying, tracking, and referencing publicly disclosed security vulnerabilities in software and hardware.
Each vulnerability receives a unique identifier called a CVE ID (e.g., CVE-2023-12345), making it easier to reference specific vulnerabilities across different tools and databases.
Total Search Results: 158437
CVE ID | Description | Severity | Published Date | Affected Vendor | Action |
---|---|---|---|---|---|
CVE-2024-38041 | Windows Kernel Information Disclosure Vulnerability | Unknown | N/A | Microsoft | |
CVE-2024-38043 | PowerShell Elevation of Privilege Vulnerability | Unknown | N/A | Microsoft | |
CVE-2024-38044 | DHCP Server Service Remote Code Execution Vulnerability | Unknown | N/A | Microsoft | |
CVE-2024-38045 | Windows TCP/IP Remote Code Execution Vulnerability | Unknown | N/A | Microsoft | |
CVE-2024-38046 | PowerShell Elevation of Privilege Vulnerability | Unknown | N/A | Microsoft | |
CVE-2024-38047 | PowerShell Elevation of Privilege Vulnerability | Unknown | N/A | Microsoft | |
CVE-2024-38048 | Windows Network Driver Interface Specification (NDIS) Denial of Service Vulnerability | Unknown | N/A | Microsoft | |
CVE-2024-38049 | Windows Distributed Transaction Coordinator Remote Code Execution Vulnerability | Unknown | N/A | Microsoft | |
CVE-2024-38050 | Windows Workstation Service Elevation of Privilege Vulnerability | Unknown | N/A | Microsoft | |
CVE-2024-38051 | Windows Graphics Component Remote Code Execution Vulnerability | Unknown | N/A | Microsoft | |
CVE-2024-38052 | Kernel Streaming WOW Thunk Service Driver Elevation of Privilege Vulnerability | Unknown | N/A | Microsoft | |
CVE-2024-38053 | Windows Layer-2 Bridge Network Driver Remote Code Execution Vulnerability | Unknown | N/A | Microsoft | |
CVE-2024-38054 | Kernel Streaming WOW Thunk Service Driver Elevation of Privilege Vulnerability | Unknown | N/A | Microsoft | |
CVE-2024-38055 | Microsoft Windows Codecs Library Information Disclosure Vulnerability | Unknown | N/A | Microsoft | |
CVE-2024-38056 | Microsoft Windows Codecs Library Information Disclosure Vulnerability | Unknown | N/A | Microsoft | |
CVE-2024-38057 | Kernel Streaming WOW Thunk Service Driver Elevation of Privilege Vulnerability | Unknown | N/A | Microsoft | |
CVE-2024-38058 | BitLocker Security Feature Bypass Vulnerability | Unknown | N/A | Microsoft | |
CVE-2024-38059 | Win32k Elevation of Privilege Vulnerability | Unknown | N/A | Microsoft | |
CVE-2024-3806 | The Porto theme for WordPress is vulnerable to Local File Inclusion in all versions up to, and including, 7.1.0 via the 'porto_ajax_posts' function. This makes it possible for unauthenticated attackers to include and execute arbitrary files on the server, allowing the execution of any PHP code in those files. This can be used to bypass access controls, obtain sensitive data, or achieve code execution in cases where php file type can be uploaded and included. | Unknown | N/A | P-THEMES | |
CVE-2024-38060 | Windows Imaging Component Remote Code Execution Vulnerability | Unknown | N/A | Microsoft | |
CVE-2024-38061 | DCOM Remote Cross-Session Activation Elevation of Privilege Vulnerability | Unknown | N/A | Microsoft | |
CVE-2024-38062 | Windows Kernel-Mode Driver Elevation of Privilege Vulnerability | Unknown | N/A | Microsoft | |
CVE-2024-38063 | Windows TCP/IP Remote Code Execution Vulnerability | Unknown | N/A | Microsoft | |
CVE-2024-38064 | Windows TCP/IP Information Disclosure Vulnerability | Unknown | N/A | Microsoft | |
CVE-2024-38065 | Secure Boot Security Feature Bypass Vulnerability | Unknown | N/A | Microsoft | |
CVE-2024-38066 | Windows Win32k Elevation of Privilege Vulnerability | Unknown | N/A | Microsoft | |
CVE-2024-38067 | Windows Online Certificate Status Protocol (OCSP) Server Denial of Service Vulnerability | Unknown | N/A | Microsoft | |
CVE-2024-38068 | Windows Online Certificate Status Protocol (OCSP) Server Denial of Service Vulnerability | Unknown | N/A | Microsoft | |
CVE-2024-38069 | Windows Enroll Engine Security Feature Bypass Vulnerability | Unknown | N/A | Microsoft | |
CVE-2024-3807 | The Porto theme for WordPress is vulnerable to Local File Inclusion in all versions up to, and including, 7.1.0 via 'porto_page_header_shortcode_type', 'slideshow_type' and 'post_layout' post meta. This makes it possible for authenticated attackers, with contributor-level and above permissions, to include and execute arbitrary files on the server, allowing the execution of any PHP code in those files. This can be used to bypass access controls, obtain sensitive data, or achieve code execution in cases where php file type can be uploaded and included. This was partially patched in version 7.1.0 and fully patched in version 7.1.1. | Unknown | N/A | P-THEMES | |
CVE-2024-38070 | Windows LockDown Policy (WLDP) Security Feature Bypass Vulnerability | Unknown | N/A | Microsoft | |
CVE-2024-38071 | Windows Remote Desktop Licensing Service Denial of Service Vulnerability | Unknown | N/A | Microsoft | |
CVE-2024-38072 | Windows Remote Desktop Licensing Service Denial of Service Vulnerability | Unknown | N/A | Microsoft | |
CVE-2024-38073 | Windows Remote Desktop Licensing Service Denial of Service Vulnerability | Unknown | N/A | Microsoft | |
CVE-2024-38074 | Windows Remote Desktop Licensing Service Remote Code Execution Vulnerability | Unknown | N/A | Microsoft | |
CVE-2024-38076 | Windows Remote Desktop Licensing Service Remote Code Execution Vulnerability | Unknown | N/A | Microsoft | |
CVE-2024-38077 | Windows Remote Desktop Licensing Service Remote Code Execution Vulnerability | Unknown | N/A | Microsoft | |
CVE-2024-38078 | Xbox Wireless Adapter Remote Code Execution Vulnerability | Unknown | N/A | Microsoft | |
CVE-2024-38079 | Windows Graphics Component Elevation of Privilege Vulnerability | Unknown | N/A | Microsoft | |
CVE-2024-3808 | The Porto Theme - Functionality plugin for WordPress is vulnerable to Local File Inclusion in all versions up to, and including, 3.1.0 via the 'porto_portfolios' shortcode 'portfolio_layout' attribute. This makes it possible for authenticated attackers, with contributor-level and above permissions, to include and execute arbitrary files on the server, allowing the execution of any PHP code in those files. This can be used to bypass access controls, obtain sensitive data, or achieve code execution in cases where php file type can be uploaded and included. | Unknown | N/A | P-THEMES | |
CVE-2024-38080 | Windows Hyper-V Elevation of Privilege Vulnerability | Unknown | N/A | Microsoft | |
CVE-2024-38081 | .NET, .NET Framework, and Visual Studio Elevation of Privilege Vulnerability | Unknown | N/A | Microsoft | |
CVE-2024-38082 | Microsoft Edge (Chromium-based) Spoofing Vulnerability | Unknown | N/A | Microsoft | |
CVE-2024-38083 | Microsoft Edge (Chromium-based) Spoofing Vulnerability | Unknown | N/A | Microsoft | |
CVE-2024-38084 | Microsoft OfficePlus Elevation of Privilege Vulnerability | Unknown | N/A | Microsoft | |
CVE-2024-38085 | Windows Graphics Component Elevation of Privilege Vulnerability | Unknown | N/A | Microsoft | |
CVE-2024-38086 | Azure Kinect SDK Remote Code Execution Vulnerability | Unknown | N/A | Microsoft | |
CVE-2024-38087 | SQL Server Native Client OLE DB Provider Remote Code Execution Vulnerability | Unknown | N/A | Microsoft | |
CVE-2024-38088 | SQL Server Native Client OLE DB Provider Remote Code Execution Vulnerability | Unknown | N/A | Microsoft | |
CVE-2024-38089 | Microsoft Defender for IoT Elevation of Privilege Vulnerability | Unknown | N/A | Microsoft | |
CVE-2024-3809 | The Porto Theme - Functionality plugin for WordPress is vulnerable to Local File Inclusion in all versions up to, and including, 3.0.9 via the 'slideshow_type' post meta. This makes it possible for authenticated attackers, with contributor-level and above permissions, to include and execute arbitrary files on the server, allowing the execution of any PHP code in those files. This can be used to bypass access controls, obtain sensitive data, or achieve code execution in cases where php file type can be uploaded and included. | Unknown | N/A | P-THEMES | |
CVE-2024-38091 | Microsoft WS-Discovery Denial of Service Vulnerability | Unknown | N/A | Microsoft | |
CVE-2024-38092 | Azure CycleCloud Elevation of Privilege Vulnerability | Unknown | N/A | Microsoft | |
CVE-2024-38093 | Microsoft Edge (Chromium-based) Spoofing Vulnerability | Unknown | N/A | Microsoft | |
CVE-2024-38094 | Microsoft SharePoint Remote Code Execution Vulnerability | Unknown | N/A | Microsoft | |
CVE-2024-38095 | .NET and Visual Studio Denial of Service Vulnerability | Unknown | N/A | Microsoft | |
CVE-2024-38097 | Azure Monitor Agent Elevation of Privilege Vulnerability | Unknown | N/A | Microsoft | |
CVE-2024-38098 | Azure Connected Machine Agent Elevation of Privilege Vulnerability | Unknown | N/A | Microsoft | |
CVE-2024-38099 | Windows Remote Desktop Licensing Service Denial of Service Vulnerability | Unknown | N/A | Microsoft | |
CVE-2024-3810 | The Salient Shortcodes plugin for WordPress is vulnerable to Local File Inclusion in all versions up to, and including, 1.5.3 via the 'icon' shortcode 'image' attribute. This makes it possible for authenticated attackers, with contributor-level and above permissions, to include and execute arbitrary files on the server, allowing the execution of any PHP code in those files. This can be used to bypass access controls, obtain sensitive data, or achieve code execution in cases where php file type can be uploaded and included. | Unknown | N/A | ThemeNectar | |
CVE-2024-38100 | Windows File Explorer Elevation of Privilege Vulnerability | Unknown | N/A | Microsoft | |
CVE-2024-38101 | Windows Layer-2 Bridge Network Driver Denial of Service Vulnerability | Unknown | N/A | Microsoft | |
CVE-2024-38102 | Windows Layer-2 Bridge Network Driver Denial of Service Vulnerability | Unknown | N/A | Microsoft | |
CVE-2024-38103 | Microsoft Edge (Chromium-based) Information Disclosure Vulnerability | Unknown | N/A | Microsoft | |
CVE-2024-38104 | Windows Fax Service Remote Code Execution Vulnerability | Unknown | N/A | Microsoft | |
CVE-2024-38105 | Windows Layer-2 Bridge Network Driver Denial of Service Vulnerability | Unknown | N/A | Microsoft | |
CVE-2024-38106 | Windows Kernel Elevation of Privilege Vulnerability | Unknown | N/A | Microsoft | |
CVE-2024-38107 | Windows Power Dependency Coordinator Elevation of Privilege Vulnerability | Unknown | N/A | Microsoft | |
CVE-2024-38108 | Azure Stack Hub Spoofing Vulnerability | Unknown | N/A | Microsoft | |
CVE-2024-38109 | An authenticated attacker can exploit an Server-Side Request Forgery (SSRF) vulnerability in Microsoft Azure Health Bot to elevate privileges over a network. | Unknown | N/A | Microsoft | |
CVE-2024-3811 | The Salient Shortcodes plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the plugin's 'icon' shortcode in all versions up to, and including, 1.5.3 due to insufficient input sanitization and output escaping on user supplied attributes. This makes it possible for authenticated attackers, with contributor-level access and above, to inject arbitrary web scripts in pages that will execute whenever a user accesses an injected page. | Unknown | N/A | ThemeNectar | |
CVE-2024-38112 | Windows MSHTML Platform Spoofing Vulnerability | Unknown | N/A | Microsoft | |
CVE-2024-38114 | Windows IP Routing Management Snapin Remote Code Execution Vulnerability | Unknown | N/A | Microsoft | |
CVE-2024-38115 | Windows IP Routing Management Snapin Remote Code Execution Vulnerability | Unknown | N/A | Microsoft | |
CVE-2024-38116 | Windows IP Routing Management Snapin Remote Code Execution Vulnerability | Unknown | N/A | Microsoft | |
CVE-2024-38117 | NTFS Elevation of Privilege Vulnerability | Unknown | N/A | Microsoft | |
CVE-2024-38118 | Microsoft Local Security Authority (LSA) Server Information Disclosure Vulnerability | Unknown | N/A | Microsoft | |
CVE-2024-38119 | Windows Network Address Translation (NAT) Remote Code Execution Vulnerability | Unknown | N/A | Microsoft | |
CVE-2024-3812 | The Salient Core plugin for WordPress is vulnerable to Local File Inclusion in all versions up to, and including, 2.0.7 via the 'nectar_icon' shortcode 'icon_linea' attribute. This makes it possible for authenticated attackers, with contributor-level and above permissions, to include and execute arbitrary files on the server, allowing the execution of any PHP code in those files. This can be used to bypass access controls, obtain sensitive data, or achieve code execution in cases where php file type can be uploaded and included. | Unknown | N/A | ThemeNectar | |
CVE-2024-38120 | Windows Routing and Remote Access Service (RRAS) Remote Code Execution Vulnerability | Unknown | N/A | Microsoft | |
CVE-2024-38121 | Windows Routing and Remote Access Service (RRAS) Remote Code Execution Vulnerability | Unknown | N/A | Microsoft | |
CVE-2024-38122 | Microsoft Local Security Authority (LSA) Server Information Disclosure Vulnerability | Unknown | N/A | Microsoft | |
CVE-2024-38123 | Windows Bluetooth Driver Information Disclosure Vulnerability | Unknown | N/A | Microsoft | |
CVE-2024-38124 | Windows Netlogon Elevation of Privilege Vulnerability | Unknown | N/A | Microsoft | |
CVE-2024-38125 | Kernel Streaming WOW Thunk Service Driver Elevation of Privilege Vulnerability | Unknown | N/A | Microsoft | |
CVE-2024-38126 | Windows Network Address Translation (NAT) Denial of Service Vulnerability | Unknown | N/A | Microsoft | |
CVE-2024-38127 | Windows Hyper-V Elevation of Privilege Vulnerability | Unknown | N/A | Microsoft | |
CVE-2024-38128 | Windows Routing and Remote Access Service (RRAS) Remote Code Execution Vulnerability | Unknown | N/A | Microsoft | |
CVE-2024-38129 | Windows Kerberos Elevation of Privilege Vulnerability | Unknown | N/A | Microsoft | |
CVE-2024-3813 | The tagDiv Composer plugin for WordPress is vulnerable to Local File Inclusion in all versions up to, and including, 4.8 via the 'td_block_title' shortcode 'block_template_id' attribute. This makes it possible for authenticated attackers, with contributor-level and above permissions, to include and execute arbitrary files on the server, allowing the execution of any PHP code in those files. This can be used to bypass access controls, obtain sensitive data, or achieve code execution in cases where php file type can be uploaded and included. | Unknown | N/A | tagDiv | |
CVE-2024-38130 | Windows Routing and Remote Access Service (RRAS) Remote Code Execution Vulnerability | Unknown | N/A | Microsoft | |
CVE-2024-38131 | Clipboard Virtual Channel Extension Remote Code Execution Vulnerability | Unknown | N/A | Microsoft | |
CVE-2024-38132 | Windows Network Address Translation (NAT) Denial of Service Vulnerability | Unknown | N/A | Microsoft | |
CVE-2024-38133 | Windows Kernel Elevation of Privilege Vulnerability | Unknown | N/A | Microsoft | |
CVE-2024-38134 | Kernel Streaming WOW Thunk Service Driver Elevation of Privilege Vulnerability | Unknown | N/A | Microsoft | |
CVE-2024-38135 | Windows Resilient File System (ReFS) Elevation of Privilege Vulnerability | Unknown | N/A | Microsoft | |
CVE-2024-38136 | Windows Resource Manager PSM Service Extension Elevation of Privilege Vulnerability | Unknown | N/A | Microsoft | |
CVE-2024-38137 | Windows Resource Manager PSM Service Extension Elevation of Privilege Vulnerability | Unknown | N/A | Microsoft | |
CVE-2024-38138 | Windows Deployment Services Remote Code Execution Vulnerability | Unknown | N/A | Microsoft | |
CVE-2024-38139 | Improper authentication in Microsoft Dataverse allows an authorized attacker to elevate privileges over a network. | Unknown | N/A | Microsoft |
vunerability-insight.com © 2023 - 2025. All Rights Reserved.
Vulnerability Data Repositories v