vulnti.work

漏洞列表

按严重度 / 渠道 / 厂商 / 时间筛选公开漏洞条目。

清除筛选
RARLAB UnRAR Directory Traversal Vulnerability
高危 7.5 KEV

CVE-2022-30333 · 2026-09-03 · pending_review

RARLAB UnRAR on Linux and UNIX contains a directory traversal vulnerability, allowing an attacker to write to files during an extract (unpack) operation.

Microsoft Windows Print Spooler Remote Code Execution Vulnerability
高危 8.8 KEV

CVE-2021-34527 · 2026-09-04 · pending_review

Microsoft Windows Print Spooler contains an unspecified vulnerability due to the Windows Print Spooler service improperly performing privileged file operations. Successful exploitation allows an attacker to perform remot…

VMware Server Side Request Forgery in vRealize Operations Manager API
高危 7.5 KEV

CVE-2021-21975 · 2026-09-04 · pending_review

Server Side Request Forgery (SSRF) in vRealize Operations Manager API prior to 8.4 may allow a malicious actor with network access to the vRealize Operations Manager API to perform a SSRF attack to steal administrative c…

Microsoft Win32k Privilege Escalation Vulnerability
高危 7.0 KEV

CVE-2020-1054 · 2026-09-04 · pending_review

Microsoft Win32k contains a privilege escalation vulnerability when the Windows kernel-mode driver fails to properly handle objects in memory. Successful exploitation allows an attacker to execute code in kernel mode.

Microsoft Win32k Privilege Escalation Vulnerability
高危 7.8 KEV

CVE-2019-1458 · 2026-09-04 · pending_review

A privilege escalation vulnerability exists in Windows when the Win32k component fails to properly handle objects in memory, aka 'Win32k EoP.

Zyxel EMG2926 Routers Command Injection Vulnerability
高危 8.8 KEV

CVE-2017-6884 · 2026-09-02 · pending_review

Zyxel EMG2926 routers contain a command injection vulnerability located in the diagnostic tools, specifically the nslookup function. A malicious user may exploit numerous vectors to execute malicious commands on the rout…

Apache Tomcat Remote Code Execution Vulnerability
高危 8.1 KEV

CVE-2017-12617 · 2026-09-03 · pending_review

When running Apache Tomcat, it is possible to upload a JSP file to the server via a specially crafted request. This JSP could then be requested and any code it contained would be executed by the server.

Apache Tomcat on Windows Remote Code Execution Vulnerability
高危 8.1 KEV

CVE-2017-12615 · 2026-09-03 · pending_review

When running Apache Tomcat on Windows with HTTP PUTs enabled, it is possible to upload a JSP file to the server via a specially crafted request. This JSP could then be requested and any code it contained would be execute…

Microsoft Win32k Privilege Escalation Vulnerability
高危 7.8 KEV

CVE-2016-7255 · 2026-09-13 · pending_review

Microsoft Win32k kernel-mode driver fails to properly handle objects in memory which allows for privilege escalation. Successful exploitation allows an attacker to run code in kernel mode.

Microsoft Win32k Privilege Escalation Vulnerability
高危 7.8 KEV

CVE-2015-1701 · 2026-09-04 · pending_review

An unspecified vulnerability exists in the Win32k.sys kernel-mode driver in Microsoft Windows Server that allows a local attacker to execute arbitrary code with elevated privileges.