| CVE ID | Title | Vendor | Product | Severity | CVSS Score | Published At | AI Analysis |
|---|---|---|---|---|---|---|---|
| CVE-2021-41349 📌 💣 | Microsoft Exchange Server Spoofing Vulnerability EPSS 0.93 | Microsoft | Microsoft Exchange Server 2013 Cumulative Update 23 | Medium | 6.5 | 2021-11-10 00:46:32 | Deep Dive |
| CVE-2021-42237 KEV 📌 💣 | Sitecore 代码问题漏洞 EPSS 0.98 | - | - | 超危 | - | 2021-11-05 09:51:18 | Deep Dive |
| CVE-2021-41174 📌 💣 | XSS vulnerability allowing arbitrary JavaScript execution EPSS 0.85 | grafana | grafana | Medium | 6.9 | 2021-11-03 18:00:12 | Deep Dive |
| CVE-2021-20837 📌 💣 | Six Apart Movable Type 操作系统命令注入漏洞 EPSS 0.88 | Six Apart Ltd. | Movable Type | 超危 | - | 2021-10-26 05:15:12 | Deep Dive |
| CVE-2021-38294 💣 | Shell Command Injection Vulnerability in Nimbus Thrift Server EPSS 0.84 | Apache Software Foundation | Apache Storm | 超危 | - | 2021-10-25 12:22:36 | Deep Dive |
| CVE-2021-42258 KEV 📌 💣 | BEQ BillQuick Web Suite SQL注入漏洞 EPSS 0.74 | - | - | 超危 | - | 2021-10-22 21:25:55 | Deep Dive |
| CVE-2021-35590 | Oracle MySQL Cluster 输入验证错误漏洞 EPSS 0.88 | Oracle Corporation | MySQL Cluster | Medium | 6.3 | 2021-10-20 10:50:33 | Deep Dive |
| CVE-2021-27561 KEV 📌 💣 | Yealink Device Management 操作系统命令注入漏洞 EPSS 0.83 | - | - | 超危 | - | 2021-10-15 17:11:45 | Deep Dive |
| CVE-2021-20124 KEV 📌 💣 | Draytek VigorConnect 路径遍历漏洞 EPSS 0.96 | - | Draytek VigorConnect | 高危 | - | 2021-10-13 15:48:03 | Deep Dive |
| CVE-2021-20123 KEV 📌 💣 | Draytek VigorConnect 路径遍历漏洞 EPSS 0.90 | - | Draytek VigorConnect | 高危 | - | 2021-10-13 15:47:58 | Deep Dive |
| CVE-2021-40449 KEV 📌 💣 | Win32k Elevation of Privilege Vulnerability EPSS 0.74 | Microsoft | Windows 10 Version 1809 | High | 7.8 | 2021-10-13 00:26:47 | Deep Dive |
| CVE-2021-42013 KEV 📌 💣 | Path Traversal and Remote Code Execution in Apache HTTP Server 2.4.49 and 2.4.50 (incomplete fix of CVE-2021-41773) EPSS 1.00 | Apache Software Foundation | Apache HTTP Server | 超危 | - | 2021-10-07 15:50:14 | Deep Dive |
| CVE-2021-37918 | Zoho ManageEngine ADManager Plus 代码问题漏洞 EPSS 0.74 | - | - | 超危 | - | 2021-10-07 15:33:18 | Deep Dive |
| CVE-2021-37926 | Zoho ManageEngine ADManager Plus 代码问题漏洞 EPSS 0.74 | - | - | 超危 | - | 2021-10-07 15:20:03 | Deep Dive |
| CVE-2021-39226 KEV 📌 💣 | Snapshot authentication bypass in grafana EPSS 1.00 | grafana | grafana | Critical | 9.8 | 2021-10-05 17:30:11 | Deep Dive |
| CVE-2021-41773 KEV 📌 💣 | Path traversal and file disclosure vulnerability in Apache HTTP Server 2.4.49 EPSS 1.00 | Apache Software Foundation | Apache HTTP Server | 高危 | - | 2021-10-05 08:40:12 | Deep Dive |
| CVE-2021-40323 📌 💣 | Cobbler 代码注入漏洞 EPSS 0.87 | - | - | 超危 | - | 2021-10-04 05:37:50 | Deep Dive |
| CVE-2021-41288 | Zoho Corporation ManageEngine OpManager SQL注入漏洞 EPSS 0.80 | - | - | 超危 | - | 2021-09-30 18:11:14 | Deep Dive |
| CVE-2021-41291 📌 💣 | ECOA BAS controller - Path Traversal-1 EPSS 0.83 | ECOA | ECS Router Controller ECS (FLASH) | High | 7.5 | 2021-09-30 10:40:51 | Deep Dive |
| CVE-2021-39843 | Adobe Acrobat Reader XObject Out-of-Bound Write Vulnerability EPSS 0.77 | Adobe | Acrobat Reader | High | 7.8 | 2021-09-29 15:38:11 | Deep Dive |