Fixed Intel

CVE Tracker

Track known exploited vulnerabilities, CISA KEV alerts, and linked threat intelligence.

2,235

Total CVEs

1,590

CISA KEV

41

Known Exploits

8.8

Avg CVSS Score

Severity Distribution

CRITICAL 8
HIGH 1600
MEDIUM 7
INFO 620

Showing 20 of 1,585 CVEs · HIGH · CISA KEV

CVE-2016-5195KEV
High

Race condition in mm/gup.c in the Linux kernel allows local users to escalate privileges.

LinuxEPSS 94.2%
CVE-2015-2545KEV
High

Microsoft Office allows remote attackers to execute arbitrary code via a crafted EPS image.

MicrosoftEPSS 93.4%
CVE-2009-3129KEV
High

Microsoft Office Excel allows remote attackers to execute arbitrary code via a spreadsheet with a FEATHEADER record containing an invalid cbHdrData size element that affects a pointer offset.

MicrosoftEPSS 91.6%
CVE-2016-7193KEV
High

Microsoft Office contains a memory corruption vulnerability which can allow for remote code execution.

MicrosoftEPSS 71.2%
CVE-2016-7262KEV
High

A security feature bypass vulnerability exists when Microsoft Office improperly handles input. An attacker who successfully exploited the vulnerability could execute arbitrary commands.

MicrosoftEPSS 87.1%
CVE-2016-1019KEV
High

Adobe Flash Player allows remote attackers to cause a denial of service or possibly execute arbitrary code.

AdobeEPSS 72.4%
CVE-2015-1701KEV
High

An unspecified vulnerability exists in the Win32k.sys kernel-mode driver in Microsoft Windows Server that allows a local attacker to execute arbitrary code with elevated privileges.

MicrosoftEPSS 89.7%
CVE-2009-1123KEV
High

The kernel in Microsoft Windows does not properly validate changes to unspecified kernel objects, which allows local users to gain privileges via a crafted application.

MicrosoftEPSS 4.3%
CVE-2017-6738KEV
High

The Simple Network Management Protocol (SNMP) subsystem of Cisco IOS and IOS XE contains a vulnerability that could allow an authenticated, remote attacker to remotely execute code.

CiscoEPSS 28.8%
CVE-2017-6743KEV
High

The Simple Network Management Protocol (SNMP) subsystem of Cisco IOS and IOS XE contains a vulnerability that could allow an authenticated, remote attacker to remotely execute code.

CiscoEPSS 28.8%
CVE-2012-1856KEV
High

The TabStrip ActiveX control in the Common Controls in MSCOMCTL.OCX in Microsoft Office allows remote attackers to execute arbitrary code via a crafted (1) document or (2) web page that triggers system-state corruption.

MicrosoftEPSS 91.9%
CVE-2012-1723KEV
High

Unspecified vulnerability in the Java Runtime Environment (JRE) component in Oracle Java SE allows remote attackers to affect confidentiality, integrity, and availability via Unknown vectors related to Hotspot.

OracleEPSS 94.1%
CVE-2013-0632KEV
High

An authentication bypass vulnerability exists in Adobe ColdFusion which could result in an unauthorized user gaining administrative access.

AdobeEPSS 92.7%
CVE-2012-4681KEV
High

The Java Runtime Environment (JRE) component in Oracle Java SE allow for remote code execution.

OracleEPSS 94.1%
CVE-2013-1347KEV
High

This vulnerability may corrupt memory in a way that could allow an attacker to execute arbitrary code in the context of the current user within Internet Explorer.

MicrosoftEPSS 88.0%
CVE-2017-6739KEV
High

The Simple Network Management Protocol (SNMP) subsystem of Cisco IOS and IOS XE contains a vulnerability that could allow an authenticated, remote attacker to remotely execute code on an affected system or cause an affected system to reload.

CiscoEPSS 28.8%
CVE-2008-2992KEV
High

Adobe Acrobat and Reader contain an input validation issue in a JavaScript method that could potentially lead to remote code execution.

AdobeEPSS 93.7%
CVE-2010-0232KEV
High

The kernel in Microsoft Windows, when access to 16-bit applications is enabled on a 32-bit x86 platform, does not properly validate certain BIOS calls, which allows local users to gain privileges.

MicrosoftEPSS 72.6%
CVE-2012-1535KEV
High

Unspecified vulnerability in Adobe Flash Player allows remote attackers to execute arbitrary code or cause a denial of service via crafted SWF content.

AdobeEPSS 91.4%
CVE-2010-0188KEV
High

Unspecified vulnerability in Adobe Reader and Acrobat allows attackers to cause a denial of service or possibly execute arbitrary code.

AdobeEPSS 93.4%