Search Results (9920 CVEs found)

CVE Vendors Products Updated CVSS v3.1
CVE-2021-36968 1 Microsoft 4 Windows 7, Windows Server 2008, Windows Server 2008 R2 and 1 more 2026-08-10 7.8 High
Windows DNS Elevation of Privilege Vulnerability
CVE-2021-36967 1 Microsoft 11 Windows 10, Windows 10 1507, Windows 10 1607 and 8 more 2026-08-10 8 High
Windows WLAN AutoConfig Service Elevation of Privilege Vulnerability
CVE-2021-36966 1 Microsoft 9 Windows 10, Windows 10 1809, Windows 10 1909 and 6 more 2026-08-10 7.8 High
Windows Subsystem for Linux Elevation of Privilege Vulnerability
CVE-2021-36964 1 Microsoft 20 Windows 10, Windows 10 1507, Windows 10 1607 and 17 more 2026-08-10 7.8 High
Windows Event Tracing Elevation of Privilege Vulnerability
CVE-2021-36963 1 Microsoft 20 Windows 10, Windows 10 1507, Windows 10 1607 and 17 more 2026-08-10 7.8 High
Windows Common Log File System Driver Elevation of Privilege Vulnerability
CVE-2021-36954 1 Microsoft 10 Windows 10, Windows 10 1809, Windows 10 1909 and 7 more 2026-08-10 8.8 High
Windows Bind Filter Driver Elevation of Privilege Vulnerability
CVE-2021-36930 1 Microsoft 2 Edge, Edge Chromium 2026-08-10 5.3 Medium
Microsoft Edge (Chromium-based) Elevation of Privilege Vulnerability
CVE-2021-36943 1 Microsoft 1 Azure Cyclecloud 2026-08-10 4 Medium
Azure CycleCloud Elevation of Privilege Vulnerability
CVE-2021-36927 1 Microsoft 8 Windows 7, Windows 8.1, Windows Rt 8.1 and 5 more 2026-08-10 7.8 High
Windows Digital TV Tuner device registration application Elevation of Privilege Vulnerability
CVE-2021-34483 1 Microsoft 19 Windows 10, Windows 10 1507, Windows 10 1607 and 16 more 2026-08-10 7.8 High
Windows Print Spooler Elevation of Privilege Vulnerability
CVE-2021-34471 1 Microsoft 1 Malware Protection Engine 2026-08-10 7.8 High
Microsoft Defender Elevation of Privilege Vulnerability
CVE-2021-36945 1 Microsoft 1 Windows 10 Update Assistant 2026-08-10 7.3 High
Windows 10 Update Assistant Elevation of Privilege Vulnerability
CVE-2021-34537 1 Microsoft 18 Windows 10, Windows 10 1507, Windows 10 1607 and 15 more 2026-08-10 7.8 High
Windows Bluetooth Driver Elevation of Privilege Vulnerability
CVE-2021-34487 1 Microsoft 10 Windows 10, Windows 10 1607, Windows 10 1809 and 7 more 2026-08-10 7 High
Windows Event Tracing Elevation of Privilege Vulnerability
CVE-2026-19360 1 Wongcyrus 1 Excellexbot 2026-08-10 4.7 Medium
A vulnerability was detected in wongcyrus ExcelLexBot up to 0.0.3. This affects the function ExcelLexBotS3TriggerFunction of the component Lambda Function Handler. Performing a manipulation results in improper privilege management. The attack may be initiated remotely. The vendor was contacted early about this disclosure but did not respond in any way. This vulnerability only affects products that are no longer supported by the maintainer.
CVE-2026-54415 1 Azuriom 1 Azuriom 2026-08-10 8.1 High
Missing Authorization in the server management routes (routes/admin.php) in Azuriom Azuriom CMS before 1.2.11 on all platforms allows an authenticated attacker with the admin.access permission to create AzLink server tokens and take over non-admin user accounts by changing their passwords and email addresses via crafted HTTP requests to /admin/servers/create and the AzLink API endpoints (/api/azlink/password, /api/azlink/email, /api/azlink/user/{id}).
CVE-2026-19376 1 Uasoft 1 Badaso 2026-08-09 7.3 High
A vulnerability has been found in Uasoft Badaso 3.0.0-alpha. This vulnerability affects the function ApiRequest::class of the file src/Routes/api.php of the component File API. The manipulation leads to permission issues. It is possible to initiate the attack remotely. The exploit has been disclosed to the public and may be used. The project was informed of the problem early through an issue report but has not responded yet.
CVE-2026-66662 2 Shabti, Wordpress 2 Frontend Admin By Dynamapps, Wordpress 2026-08-08 9.8 Critical
Unauthenticated Privilege Escalation in Frontend Admin by DynamiApps <= 3.29.10 versions.
CVE-2026-15215 2 Wordpress, Wpswings 2 Wordpress, Subscriptions For Woocommerce 2026-08-08 8.8 High
The Subscriptions for WooCommerce WordPress plugin before 2.0.1 does not verify the user's capability before installing and activating a Subscriptions for WooCommerce WordPress plugin before 2.0.1 from a user-supplied slug through a nonce-protected AJAX action, allowing users with the Shop Manager role (who lack Subscriptions for WooCommerce WordPress plugin before 2.0.1-management capabilities) to install and activate arbitrary Subscriptions for WooCommerce WordPress plugin before 2.0.1, resulting in remote code execution.
CVE-2026-19192 1 Deepcool 1 Displayservice 2026-08-08 7.8 High
A vulnerability was detected in DeepCool DisplayService 1.2.12. This issue affects some unknown processing of the file C:\DeepCool\resources\service\x64\DeepCoolDisplayService.exe. Performing a manipulation results in improper access controls. The attack must be initiated from a local position. The exploit is now public and may be used.