แคตตาล็อก KEV ทั้งหมด 2024
ทุกรายการในแคตตาล็อกช่องโหว่ที่ถูกใช้โจมตีจริงของ CISA เรียงจากใหม่ไปเก่า
อัปเดตล่าสุด: · เวอร์ชันแคตตาล็อก 2026.10.04
วันที่เพิ่ม2024186 CVE
| CVE | ผู้ผลิต | ผลิตภัณฑ์ | วันที่เพิ่ม |
|---|---|---|---|
| CVE-2024-3393 | Palo Alto Networks | PAN-OS | 2024-12-30 |
| CVE-2021-44207 | Acclaim Systems | USAHERDS | 2024-12-23 |
| CVE-2024-12356 | BeyondTrust | Privileged Remote Access (PRA) and Remote Support (RS) | 2024-12-19 |
| CVE-2022-23227 | NUUO | NVRmini2 Devices | 2024-12-18 |
| CVE-2021-40407 | Reolink | RLC-410W IP Camera | 2024-12-18 |
| CVE-2019-11001 | Reolink | Multiple IP Cameras | 2024-12-18 |
| CVE-2018-14933 | NUUO | NVRmini Devices | 2024-12-18 |
| CVE-2024-55956 | Cleo | Multiple Products | 2024-12-17 |
| CVE-2024-35250 | Microsoft | Windows | 2024-12-16 |
| CVE-2024-20767 | Adobe | ColdFusion | 2024-12-16 |
| CVE-2024-50623 | Cleo | Multiple Products | 2024-12-13 |
| CVE-2024-49138 | Microsoft | Windows | 2024-12-10 |
| CVE-2024-51378 | CyberPersons | CyberPanel | 2024-12-04 |
| CVE-2024-11680 | ProjectSend | ProjectSend | 2024-12-03 |
| CVE-2024-11667 | Zyxel | Multiple Firewalls | 2024-12-03 |
| CVE-2023-45727 | North Grid | Proself | 2024-12-03 |
| CVE-2023-28461 | Array Networks | AG/vxAG ArrayOS | 2024-11-25 |
| CVE-2024-44309 | Apple | Multiple Products | 2024-11-21 |
| CVE-2024-44308 | Apple | Multiple Products | 2024-11-21 |
| CVE-2024-21287 | Oracle | Agile Product Lifecycle Management (PLM) | 2024-11-21 |
| CVE-2024-38813 | VMware | vCenter Server | 2024-11-20 |
| CVE-2024-38812 | VMware | vCenter Server | 2024-11-20 |
| CVE-2024-9474 | Palo Alto Networks | PAN-OS | 2024-11-18 |
| CVE-2024-1212 | Progress | Kemp LoadMaster | 2024-11-18 |
| CVE-2024-0012 | Palo Alto Networks | PAN-OS | 2024-11-18 |
| CVE-2024-9465 | Palo Alto Networks | Expedition | 2024-11-14 |
| CVE-2024-9463 | Palo Alto Networks | Expedition | 2024-11-14 |
| CVE-2024-49039 | Microsoft | Windows | 2024-11-12 |
| CVE-2024-43451 | Microsoft | Windows | 2024-11-12 |
| CVE-2021-41277 | Metabase | Metabase | 2024-11-12 |
| CVE-2021-26086 | Atlassian | Jira Server and Data Center | 2024-11-12 |
| CVE-2014-2120 | Cisco | Adaptive Security Appliance (ASA) | 2024-11-12 |
| CVE-2024-5910 | Palo Alto Networks | Expedition | 2024-11-07 |
| CVE-2024-51567 | CyberPersons | CyberPanel | 2024-11-07 |
| CVE-2024-43093 | Android | Framework | 2024-11-07 |
| CVE-2019-16278 | Nostromo | nhttpd | 2024-11-07 |
| CVE-2024-8957 | PTZOptics | PT30X-SDI/NDI Cameras | 2024-11-04 |
| CVE-2024-8956 | PTZOptics | PT30X-SDI/NDI Cameras | 2024-11-04 |
| CVE-2024-37383 | Roundcube | Webmail | 2024-10-24 |
| CVE-2024-20481 | Cisco | Adaptive Security Appliance (ASA) and Firepower Threat Defense (FTD) | 2024-10-24 |
| CVE-2024-47575 | Fortinet | FortiManager | 2024-10-23 |
| CVE-2024-38094 | Microsoft | SharePoint | 2024-10-22 |
| CVE-2024-9537 | ScienceLogic | SL1 | 2024-10-21 |
| CVE-2024-40711 | Veeam | Backup & Replication | 2024-10-17 |
| CVE-2024-9680 | Mozilla | Firefox | 2024-10-15 |
| CVE-2024-30088 | Microsoft | Windows | 2024-10-15 |
| CVE-2024-28987 | SolarWinds | Web Help Desk | 2024-10-15 |
| CVE-2024-9380 | Ivanti | Cloud Services Appliance (CSA) | 2024-10-09 |
| CVE-2024-9379 | Ivanti | Cloud Services Appliance (CSA) | 2024-10-09 |
| CVE-2024-23113 | Fortinet | Multiple Products | 2024-10-09 |
| CVE-2024-43573 | Microsoft | Windows | 2024-10-08 |
| CVE-2024-43572 | Microsoft | Windows | 2024-10-08 |
| CVE-2024-43047 | Qualcomm | Multiple Chipsets | 2024-10-08 |
| CVE-2024-45519 | Synacor | Zimbra Collaboration Suite (ZCS) | 2024-10-03 |
| CVE-2024-29824 | Ivanti | Endpoint Manager (EPM) | 2024-10-02 |
| CVE-2023-25280 | D-Link | DIR-820 Router | 2024-09-30 |
| CVE-2020-15415 | DrayTek | Multiple Vigor Routers | 2024-09-30 |
| CVE-2019-0344 | SAP | Commerce Cloud | 2024-09-30 |
| CVE-2024-7593 | Ivanti | Virtual Traffic Manager | 2024-09-24 |
| CVE-2024-8963 | Ivanti | Cloud Services Appliance (CSA) | 2024-09-19 |
| CVE-2024-27348 | Apache | HugeGraph-Server | 2024-09-18 |
| CVE-2022-21445 | Oracle | ADF Faces | 2024-09-18 |
| CVE-2020-14644 | Oracle | WebLogic Server | 2024-09-18 |
| CVE-2020-0618 | Microsoft | SQL Server | 2024-09-18 |
| CVE-2014-0502 | Adobe | Flash Player | 2024-09-17 |
| CVE-2014-0497 | Adobe | Flash Player | 2024-09-17 |
| CVE-2013-0648 | Adobe | Flash Player | 2024-09-17 |
| CVE-2013-0643 | Adobe | Flash Player | 2024-09-17 |
| CVE-2024-6670 | Progress | WhatsUp Gold | 2024-09-16 |
| CVE-2024-43461 | Microsoft | Windows | 2024-09-16 |
| CVE-2024-8190 | Ivanti | Cloud Services Appliance | 2024-09-13 |
| CVE-2024-38226 | Microsoft | Publisher | 2024-09-10 |
| CVE-2024-38217 | Microsoft | Windows | 2024-09-10 |
| CVE-2024-38014 | Microsoft | Windows | 2024-09-10 |
| CVE-2024-40766 | SonicWall | SonicOS | 2024-09-09 |
| CVE-2017-1000253 | Linux | Kernel | 2024-09-09 |
| CVE-2016-3714 | ImageMagick | ImageMagick | 2024-09-09 |
| CVE-2024-7262 | Kingsoft | WPS Office | 2024-09-03 |
| CVE-2021-20124 | DrayTek | VigorConnect | 2024-09-03 |
| CVE-2021-20123 | DrayTek | VigorConnect | 2024-09-03 |
| CVE-2024-7965 | Chromium V8 | 2024-08-28 | |
| CVE-2024-38856 | Apache | OFBiz | 2024-08-27 |
| CVE-2024-7971 | Chromium V8 | 2024-08-26 | |
| CVE-2024-39717 | Versa | Director | 2024-08-23 |
| CVE-2022-0185 | Linux | Kernel | 2024-08-21 |
| CVE-2021-33045 | Dahua | IP Camera Firmware | 2024-08-21 |
| CVE-2021-33044 | Dahua | IP Camera Firmware | 2024-08-21 |
| CVE-2021-31196 | Microsoft | Exchange Server | 2024-08-21 |
| CVE-2024-23897 | Jenkins | Jenkins Command Line Interface (CLI) | 2024-08-19 |
| CVE-2024-28986 | SolarWinds | Web Help Desk | 2024-08-15 |
| CVE-2024-38213 | Microsoft | Windows | 2024-08-13 |
| CVE-2024-38193 | Microsoft | Windows | 2024-08-13 |
| CVE-2024-38189 | Microsoft | Project | 2024-08-13 |
| CVE-2024-38178 | Microsoft | Windows | 2024-08-13 |
| CVE-2024-38107 | Microsoft | Windows | 2024-08-13 |
| CVE-2024-38106 | Microsoft | Windows | 2024-08-13 |
| CVE-2024-36971 | Android | Kernel | 2024-08-07 |
| CVE-2024-32113 | Apache | OFBiz | 2024-08-07 |
| CVE-2018-0824 | Microsoft | Windows | 2024-08-05 |
| CVE-2024-37085 | VMware | ESXi | 2024-07-30 |
| CVE-2024-5217 | ServiceNow | Utah, Vancouver, and Washington DC Now Platform | 2024-07-29 |
| CVE-2024-4879 | ServiceNow | Utah, Vancouver, and Washington DC Now Platform | 2024-07-29 |
| CVE-2023-45249 | Acronis | Cyber Infrastructure (ACI) | 2024-07-29 |
| CVE-2024-39891 | Twilio | Authy | 2024-07-23 |
| CVE-2012-4792 | Microsoft | Internet Explorer | 2024-07-23 |
| CVE-2024-34102 | Adobe | Commerce and Magento Open Source | 2024-07-17 |
| CVE-2024-28995 | SolarWinds | Serv-U | 2024-07-17 |
| CVE-2022-22948 | VMware | vCenter Server | 2024-07-17 |
| CVE-2024-36401 | OSGeo | GeoServer | 2024-07-15 |
| CVE-2024-38112 | Microsoft | Windows | 2024-07-09 |
| CVE-2024-38080 | Microsoft | Windows | 2024-07-09 |
| CVE-2024-23692 | Rejetto | HTTP File Server | 2024-07-09 |
| CVE-2024-20399 | Cisco | NX-OS | 2024-07-02 |
| CVE-2022-2586 | Linux | Kernel | 2024-06-26 |
| CVE-2022-24816 | OSGeo | JAI-EXT | 2024-06-26 |
| CVE-2020-13965 | Roundcube | Webmail | 2024-06-26 |
| CVE-2024-4358 | Progress | Telerik Report Server | 2024-06-13 |
| CVE-2024-32896 | Android | Pixel | 2024-06-13 |
| CVE-2024-26169 | Microsoft | Windows | 2024-06-13 |
| CVE-2024-4610 | Arm | Mali GPU Kernel Driver | 2024-06-12 |
| CVE-2024-4577 | PHP Group | PHP | 2024-06-12 |
| CVE-2017-3506 | Oracle | WebLogic Server | 2024-06-03 |
| CVE-2024-24919 | Check Point | Quantum Security Gateways | 2024-05-30 |
| CVE-2024-1086 | Linux | Kernel | 2024-05-30 |
| CVE-2024-4978 | Justice AV Solutions | Viewer | 2024-05-29 |
| CVE-2024-5274 | Chromium V8 | 2024-05-28 | |
| CVE-2020-17519 | Apache | Flink | 2024-05-23 |
| CVE-2024-4947 | Chromium V8 | 2024-05-20 | |
| CVE-2023-43208 | NextGen Healthcare | Mirth Connect | 2024-05-20 |
| CVE-2024-4761 | Chromium V8 | 2024-05-16 | |
| CVE-2021-40655 | D-Link | DIR-605 Router | 2024-05-16 |
| CVE-2014-100005 | D-Link | DIR-600 Router | 2024-05-16 |
| CVE-2024-30051 | Microsoft | DWM Core Library | 2024-05-14 |
| CVE-2024-30040 | Microsoft | Windows | 2024-05-14 |
| CVE-2024-4671 | Chromium | 2024-05-13 | |
| CVE-2023-7028 | GitLab | GitLab CE/EE | 2024-05-01 |
| CVE-2024-29988 | Microsoft | SmartScreen Prompt | 2024-04-30 |
| CVE-2024-4040 | CrushFTP | CrushFTP | 2024-04-24 |
| CVE-2024-20359 | Cisco | Adaptive Security Appliance (ASA) and Firepower Threat Defense (FTD) | 2024-04-24 |
| CVE-2024-20353 | Cisco | Adaptive Security Appliance (ASA) and Firepower Threat Defense (FTD) | 2024-04-24 |
| CVE-2022-38028 | Microsoft | Windows | 2024-04-23 |
| CVE-2024-3400 | Palo Alto Networks | PAN-OS | 2024-04-12 |
| CVE-2024-3273 | D-Link | Multiple NAS Devices | 2024-04-11 |
| CVE-2024-3272 | D-Link | Multiple NAS Devices | 2024-04-11 |
| CVE-2024-29748 | Android | Pixel | 2024-04-04 |
| CVE-2024-29745 | Android | Pixel | 2024-04-04 |
| CVE-2023-24955 | Microsoft | SharePoint Server | 2024-03-26 |
| CVE-2023-48788 | Fortinet | FortiClient EMS | 2024-03-25 |
| CVE-2021-44529 | Ivanti | Endpoint Manager Cloud Service Appliance (EPM CSA) | 2024-03-25 |
| CVE-2019-7256 | Nice | Linear eMerge E3-Series | 2024-03-25 |
| CVE-2024-27198 | JetBrains | TeamCity | 2024-03-07 |
| CVE-2024-23296 | Apple | Multiple Products | 2024-03-06 |
| CVE-2024-23225 | Apple | Multiple Products | 2024-03-06 |
| CVE-2023-21237 | Android | Pixel | 2024-03-05 |
| CVE-2021-36380 | Sunhillo | SureLine | 2024-03-05 |
| CVE-2024-21338 | Microsoft | Windows | 2024-03-04 |
| CVE-2023-29360 | Microsoft | Streaming Service | 2024-02-29 |
| CVE-2024-1709 | ConnectWise | ScreenConnect | 2024-02-22 |
| CVE-2024-21410 | Microsoft | Exchange Server | 2024-02-15 |
| CVE-2020-3259 | Cisco | Adaptive Security Appliance (ASA) and Firepower Threat Defense (FTD) | 2024-02-15 |
| CVE-2024-21412 | Microsoft | Windows | 2024-02-13 |
| CVE-2024-21351 | Microsoft | Windows | 2024-02-13 |
| CVE-2023-43770 | Roundcube | Webmail | 2024-02-12 |
| CVE-2024-21762 | Fortinet | FortiOS | 2024-02-09 |
| CVE-2023-4762 | Chromium V8 | 2024-02-06 | |
| CVE-2024-21893 | Ivanti | Connect Secure, Policy Secure, and Neurons | 2024-01-31 |
| CVE-2022-48618 | Apple | Multiple Products | 2024-01-31 |
| CVE-2023-22527 | Atlassian | Confluence Data Center and Server | 2024-01-24 |
| CVE-2024-23222 | Apple | Multiple Products | 2024-01-23 |
| CVE-2023-34048 | VMware | vCenter Server | 2024-01-22 |
| CVE-2023-35082 | Ivanti | Endpoint Manager Mobile (EPMM) and MobileIron Core | 2024-01-18 |
| CVE-2024-0519 | Chromium V8 | 2024-01-17 | |
| CVE-2023-6549 | Citrix | NetScaler ADC and NetScaler Gateway | 2024-01-17 |
| CVE-2023-6548 | Citrix | NetScaler ADC and NetScaler Gateway | 2024-01-17 |
| CVE-2018-15133 | Laravel | Laravel Framework | 2024-01-16 |
| CVE-2024-21887 | Ivanti | Connect Secure and Policy Secure | 2024-01-10 |
| CVE-2023-46805 | Ivanti | Connect Secure and Policy Secure | 2024-01-10 |
| CVE-2023-29357 | Microsoft | SharePoint Server | 2024-01-10 |
| CVE-2023-41990 | Apple | Multiple Products | 2024-01-08 |
| CVE-2023-38203 | Adobe | ColdFusion | 2024-01-08 |
| CVE-2023-29300 | Adobe | ColdFusion | 2024-01-08 |
| CVE-2023-27524 | Apache | Superset | 2024-01-08 |
| CVE-2023-23752 | Joomla! | Joomla! | 2024-01-08 |
| CVE-2016-20017 | D-Link | DSL-2750B Devices | 2024-01-08 |
| CVE-2023-7101 | Spreadsheet::ParseExcel | Spreadsheet::ParseExcel | 2024-01-02 |
| CVE-2023-7024 | Chromium WebRTC | 2024-01-02 |