Known Exploits

56 CVEs · 33 críticos · 13 altos · CVSS promedio: 8.7

CRITICAL 33HIGH 13MEDIUM 8UNKNOWN 2
CVEVendorProductoCVSSSeveridadGrupo
CVE-2024-3400Palo Alto NetworksPAN-OS (Edge Firewalls)10CRITICAL0apt
CVE-2024-1709 & CVE-2024-1709ConnectWiseScreenConnect10CRITICALblackbasta
CVE-2021-44228 ("Log4Shell")ApacheLog4j10CRITICALlockbit
CVE-2023-46604ApacheActiveMQ10CRITICALransomhub
CVE-2025-61882OracleOracle E-Business Suite (EBS)9.8CRITICAL0apt
CVE-2022-40684FortinetFortiOS9.8CRITICALakira
CVE-2023-48788FortinetFortiClient9.8CRITICALakira
CVE-2024-40766SonicWallSonicOS SSL-VPN9.8CRITICALakira
CVE-2024-40711VeeamBackup & Replication9.8CRITICALakira
CVE-2021-21972VMwarevSphere Client9.8CRITICALakira
CVE-2021-27101, CVE-2021-27102, CVE-2021-27103, CVE-2021-27104AccellionAccellion File Transfer Appliance9.8CRITICALclop
CVE-2024-55956CleoCleo VLTrader, Harmony, LexiCom9.8CRITICALclop
CVE-2025-61882OracleE-Business9.8CRITICALclop
CVE-2023-34362Progress SoftwareMOVEit9.8CRITICALclop
CVE-2023-27350 & CVE-2023-27351PaperCutPaperCut Application Server9.8CRITICALclop
CVE-2021-22986F5iControl REST9.8CRITICALlockbit
CVE-2019-0708 ("BlueKeep")WindowsRemote Desktop Services9.8CRITICALlockbit
CVE-2023-22515AtlassianConfluence Data Center & Server9.8CRITICALransomhub
CVE-2023-3519CitrixNetScaler ADC & Gateway9.8CRITICALransomhub
CVE-2023-27997FortinetFortiOS SSL-VPN & FortiProxy9.8CRITICALransomhub
CVE-2023-48788FortinetFortiClientEMS9.8CRITICALransomhub
CVE-2023-46747F5BIG-IP9.8CRITICALransomhub
CVE-2025-61882OracleOracle E-Business Suite (EBS)9.8CRITICALshinyhunters
CVE-2025-61882OracleOracle E-Business Suite (EBS)9.8CRITICALsinobi
CVE-2024-53704SonicWallSonicWall SSL VPN9.8CRITICALsinobi
CVE-2024-40766SonicWallSonicWall SonicOS9.8CRITICALsinobi
CVE-2025-43995DSMDSM Data Collector9.8CRITICALtengu
CVE-2025-55754OtherConsole (ANSI Injection)9.6CRITICALtengu
CVE-2023-4966 ("Citrixbleed")CitrixNetScaler ADC & Gateway9.4CRITICALlockbit
CVE-2024-21887IvantiVPN Appliance9.1CRITICAL0apt
CVE-2018-13379FortinetFortiOS9.1CRITICALlockbit
CVE-2025-22457IvantiIvanti ICS9CRITICAL0apt
CVE-2021-35211SolarWindsSolarWinds Serv-U FTP9CRITICALclop
CVE-2021-1675 & CVE-2021-34527 ("PrintNightmare")WindowsPrint Spooler8.8HIGHblackbasta
CVE-2017-0144 ("EternalBlue")WindowsSMBv18.8HIGHransomhub
CVE-2026-20045CiscoCisco Unified Communications8.2HIGHshinyhunters
CVE-2024-26169WindowsWindows Error Reporting Service7.8HIGHblackbasta
CVE-2022-30190 ("Follina")WindowsMSDT7.8HIGHblackbasta
CVE-2020-0787WindowsBITS7.8HIGHransomhub
CVE-2020-3259CiscoASA & FTD7.5HIGHakira
CVE-2023-27532VeeamBackup & Replication7.5HIGHakira
CVE-2021-42278 & CVE-2021-42287 ("NoPac")WindowsActive Directory7.5HIGHblackbasta
CVE-2024-57727SimpleHelpSimpleHelp RMM7.5HIGHmedusa
CVE-2024-38178MicrosoftWindows Scripting Engine7.5HIGHtengu
CVE-2023-0669FortraGoAnywhere Managed File Transfer7.2HIGHclop
CVE-2023-0669FortraGoAnywhere Managed File Transfer7.2HIGHlockbit
CVE-2024-37085 ("ESX Admins")VMwareESXi6.8MEDIUMakira
CVE-2024-37085 ("ESX Admins")VMwareESXi6.8MEDIUMblackbasta
CVE-2019-6693FortinetFortiOS6.5MEDIUMakira
CVE-2020-1472 ("ZeroLogon")WindowsNetLogon5.5MEDIUMblackbasta
CVE-2020-1472 ("ZeroLogon")WindowsNetLogon5.5MEDIUMlockbit
CVE-2020-1472 ("ZeroLogon")WindowsNetLogon5.5MEDIUMransomhub
CVE-2023-20269CiscoASA & FTD5MEDIUMakira
CVE-2023-20263CiscoASA & FTD4.7MEDIUMakira
CVE-2023–27350 & CVE-2023–27351PaperCutPaperCut Application Server0UNKNOWNlockbit
OAuth AbuseSnowflakeSnowflake (credential stuffing / no MFA)0UNKNOWNshinyhunters