Search Results (9096 CVEs found)

CVE Vendors Products Updated CVSS v3.1
CVE-2020-17132 1 Microsoft 1 Exchange Server 2025-08-28 9.1 Critical
Microsoft Exchange Remote Code Execution Vulnerability
CVE-2020-17129 1 Microsoft 5 365 Apps, Excel, Office and 2 more 2025-08-28 7.8 High
Microsoft Excel Remote Code Execution Vulnerability
CVE-2020-17128 1 Microsoft 5 365 Apps, Excel, Office and 2 more 2025-08-28 7.8 High
Microsoft Excel Remote Code Execution Vulnerability
CVE-2020-17127 1 Microsoft 1 Excel 2025-08-28 7.8 High
Microsoft Excel Remote Code Execution Vulnerability
CVE-2020-17125 1 Microsoft 5 365 Apps, Excel, Office and 2 more 2025-08-28 7.8 High
Microsoft Excel Remote Code Execution Vulnerability
CVE-2020-17124 1 Microsoft 3 365 Apps, Office, Powerpoint 2025-08-28 7.8 High
Microsoft PowerPoint Remote Code Execution Vulnerability
CVE-2020-17123 1 Microsoft 4 365 Apps, Excel, Office Online Server and 1 more 2025-08-28 7.8 High
Microsoft Excel Remote Code Execution Vulnerability
CVE-2020-17122 1 Microsoft 3 Office, Office Web Apps, Sharepoint Server 2025-08-28 7.8 High
Microsoft Excel Remote Code Execution Vulnerability
CVE-2020-17121 1 Microsoft 2 Sharepoint Foundation, Sharepoint Server 2025-08-28 8.8 High
Microsoft SharePoint Remote Code Execution Vulnerability
CVE-2020-17118 1 Microsoft 2 Sharepoint Foundation, Sharepoint Server 2025-08-28 8.1 High
Microsoft SharePoint Remote Code Execution Vulnerability
CVE-2020-17117 1 Microsoft 1 Exchange Server 2025-08-28 6.6 Medium
Microsoft Exchange Remote Code Execution Vulnerability
CVE-2020-17096 1 Microsoft 6 Windows 10, Windows 8.1, Windows Rt 8.1 and 3 more 2025-08-28 7.5 High
Windows NTFS Remote Code Execution Vulnerability
CVE-2020-17095 1 Microsoft 3 Windows 10, Windows Server 2016, Windows Server 2019 2025-08-28 8.5 High
Windows Hyper-V Remote Code Execution Vulnerability
CVE-2024-21546 1 Unisharp 1 Laravel-filemanager 2025-08-28 9.8 Critical
Versions of the package unisharp/laravel-filemanager before 2.9.1 are vulnerable to Remote Code Execution (RCE) through using a valid mimetype and inserting the . character after the php file extension. This allows the attacker to execute malicious code.
CVE-2024-48956 2025-08-27 9.8 Critical
Serviceware Processes 6.0 through 7.3 before 7.4 allows attackers without valid authentication to send a specially crafted HTTP request to a service endpoint resulting in remote code execution.
CVE-2024-30020 1 Microsoft 14 Windows 10 1507, Windows 10 1607, Windows 10 1809 and 11 more 2025-08-27 8.1 High
Windows Cryptographic Services Remote Code Execution Vulnerability
CVE-2017-17485 4 Debian, Fasterxml, Netapp and 1 more 15 Debian Linux, Jackson-databind, E-series Santricity Os Controller and 12 more 2025-08-27 9.8 Critical
FasterXML jackson-databind through 2.8.10 and 2.9.x through 2.9.3 allows unauthenticated remote code execution because of an incomplete fix for the CVE-2017-7525 deserialization flaw. This is exploitable by sending maliciously crafted JSON input to the readValue method of the ObjectMapper, bypassing a blacklist that is ineffective if the Spring libraries are available in the classpath.
CVE-2024-5989 1 Rockwellautomation 2 Thinmanager, Thinserver 2025-08-27 9.8 Critical
Due to an improper input validation, an unauthenticated threat actor can send a malicious message to invoke SQL injection into the program and cause a remote code execution condition on the Rockwell Automation ThinManager® ThinServer™.
CVE-2024-5988 1 Rockwellautomation 2 Thinmanager, Thinserver 2025-08-27 9.8 Critical
Due to an improper input validation, an unauthenticated threat actor can send a malicious message to invoke a local or remote executable and cause a remote code execution condition on the Rockwell Automation ThinManager® ThinServer™.
CVE-2024-39865 1 Siemens 1 Sinema Remote Connect Server 2025-08-27 8.8 High
A vulnerability has been identified in SINEMA Remote Connect Server (All versions < V3.2 SP1). The affected application allows users to upload encrypted backup files. As part of this backup, files can be restored without correctly checking the path of the restored file. This could allow an attacker with access to the backup encryption key to upload malicious files, that could potentially lead to remote code execution.