CVE Vulnerability Database
Search and browse 394,712 CVE records with CVSS scores, EPSS exploit predictions, and CISA KEV status.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2020-37253 | HIGH | 8.5 | 0.1% | Jun 19, 2026 | Winstep 18.06.0096 contains an unquoted service path vulnerability in the Winstep Xtreme Service that allows local attac... |
| CVE-2020-37252 | HIGH | 8.5 | 0.1% | Jun 19, 2026 | Realtek Audio Service 1.0.0.55 contains an unquoted service path vulnerability in RtkAudioService64.exe that allows loca... |
| CVE-2020-37251 | HIGH | 8.5 | 0.1% | Jun 19, 2026 | RealTimes Desktop Service 18.1.4 contains an unquoted service path vulnerability in the rpdsvc.exe binary that allows lo... |
| CVE-2020-37250 | HIGH | 8.5 | 0.1% | Jun 19, 2026 | TFTP Broadband 4.3.0.1465 contains an unquoted service path vulnerability in the tftpt.exe service binary that allows lo... |
| CVE-2019-25747 | HIGH | 8.5 | 0.1% | Jun 19, 2026 | Network Inventory Advisor 5.0.26.0 installs the niaservice service with an unquoted binary path that allows local attack... |
| CVE-2016-20095 | HIGH | 8.5 | 0.1% | Jun 19, 2026 | Matrix42 Remote Control Host 3.20.0031 contains an unquoted service path vulnerability in the FastViewerRemoteService an... |
| CVE-2016-20094 | HIGH | 8.5 | 0.1% | Jun 19, 2026 | AnyDesk 2.5.0 contains an unquoted service path vulnerability that allows local users to execute arbitrary code with SYS... |
| CVE-2016-20093 | HIGH | 8.5 | 0.1% | Jun 19, 2026 | Wise Care 365 4.27 and Wise Disk Cleaner 9.29 contain unquoted service path vulnerabilities in the WiseBootAssistant and... |
| CVE-2016-20092 | HIGH | 8.5 | 0.1% | Jun 19, 2026 | NetDrive 2.6.12 contains an unquoted service path vulnerability in the Netdrive2_Service_Netdrive2 service that allows l... |
| CVE-2016-20091 | HIGH | 8.5 | 0.1% | Jun 19, 2026 | Windows Firewall Control 4.8.6.0 contains an unquoted service path vulnerability that allows local attackers to escalate... |
| CVE-2016-20090 | HIGH | 8.5 | 0.1% | Jun 19, 2026 | Comodo Dragon Browser versions up to 52.15.25.663 contain a privilege escalation vulnerability in the DragonUpdater serv... |
| CVE-2016-20089 | HIGH | 8.5 | 0.1% | Jun 19, 2026 | Iperius Remote 1.7.0 contains an unquoted service path vulnerability that allows local users to execute arbitrary code w... |
| CVE-2016-20088 | HIGH | 8.5 | 0.1% | Jun 19, 2026 | Comodo Chromodo Browser 52.15.25.664 contains an unquoted service path vulnerability in the ChromodoUpdater service that... |
| CVE-2016-20087 | HIGH | 8.5 | 0.1% | Jun 19, 2026 | Fortitude HTTP 1.0.4.0 contains an unquoted service path vulnerability that allows local users to execute arbitrary code... |
| CVE-2016-20086 | HIGH | 8.5 | 0.1% | Jun 19, 2026 | Vembu StoreGrid 4.0 contains an unquoted service path vulnerability in the RemoteBackup and RemoteBackup_webServer servi... |
| CVE-2016-20085 | HIGH | 8.5 | 0.1% | Jun 19, 2026 | Realtek High Definition Audio Driver 6.0.1.6730 contains an unquoted service path vulnerability that allows local attack... |
| CVE-2026-9143 | MEDIUM | 5.3 | 0.2% | Jun 19, 2026 | There is an incorrect conversion between numeric types vulnerability in NI grpc-device due to missing range checks in Co... |
| CVE-2026-9142 | CRITICAL | 9.3 | 0.3% | Jun 19, 2026 | There is an insecure default credentials vulnerability in NI grpc-device when TLS configuration is not present and the s... |
| CVE-2026-4027 | HIGH | 7.1 | 0.2% | Jun 19, 2026 | A security vulnerability has been identified in FlexNet Manager Suite 2025 R1 and R2 that could allow unauthorized acces... |
| CVE-2026-4026 | HIGH | 8.7 | 0.3% | Jun 19, 2026 | A security vulnerability has been identified in FlexNet Manager Suite 2025 R1 that could allow an authenticated user wit... |
| CVE-2026-49872 | HIGH | 8.1 | 0.3% | Jun 19, 2026 | Improper Authentication vulnerability in Apache APISIX. When the cas-auth plugin is used in a route, an attacker can po... |
| CVE-2026-49871 | CRITICAL | 9.3 | 0.3% | Jun 19, 2026 | Cross-Site Request Forgery (CSRF) vulnerability in the cas-auth plugin under default configurations. This defect allows... |
| CVE-2026-49357 | HIGH | 8.8 | 0.3% | Jun 19, 2026 | Line Desktop MCP is a project that, while unaffiliated with the official line-bot-mcp-server, allows users to directly o... |
| CVE-2026-49231 | MEDIUM | 5.4 | 0.4% | Jun 19, 2026 | Authentication Bypass by Spoofing vulnerability in opa plugin. An attacker could relay spoofed identity headers to upst... |
| CVE-2026-49230 | CRITICAL | 9.1 | 0.2% | Jun 19, 2026 | Improper Validation of Integrity Check Value vulnerability in Apache APISIX. The jwe-decrypt plugin under default confi... |
