Public-source reporting · Cybersecurity

CISA Exploited Vulnerabilities

Vulnerabilities with evidence of exploitation, including affected products and required actions.

1733 records · Collected Oct 4, 2026 · 15:04 UTCOfficial source · JSON
CVE-2021-1732 · CISA Known Exploited Vulnerabilities

Microsoft Win32k Privilege Escalation Vulnerability

Vendor: Microsoft | Product: Win32k | Microsoft Win32k contains an unspecified vulnerability that allows for privilege escalation. | Required action: Apply updates per vendor instructions. | Federal remediation due: 2021-11-17
CVE-2021-34527 · CISA Known Exploited Vulnerabilities

Microsoft Windows Print Spooler Remote Code Execution Vulnerability

Vendor: Microsoft | Product: Windows | Microsoft Windows Print Spooler contains an unspecified vulnerability due to the Windows Print Spooler service improperly performing privileged file operations. Successful exploitation allows an attacker to perform remote code execution with SYSTEM privileges. The vulnerability is also known under the moniker of PrintNightmare. | Required action: Apply updates per vendor…
Read full source summary
Vendor: Microsoft | Product: Windows | Microsoft Windows Print Spooler contains an unspecified vulnerability due to the Windows Print Spooler service improperly performing privileged file operations. Successful exploitation allows an attacker to perform remote code execution with SYSTEM privileges. The vulnerability is also known under the moniker of PrintNightmare. | Required action: Apply updates per vendor instructions. | Federal remediation due: 2022-05-03
CVE-2021-31207 · CISA Known Exploited Vulnerabilities

Microsoft Exchange Server Security Feature Bypass Vulnerability

Vendor: Microsoft | Product: Exchange Server | Microsoft Exchange Server contains an unspecified vulnerability that allows for security feature bypass. | Required action: Apply updates per vendor instructions. | Federal remediation due: 2021-11-17
CVE-2019-0803 · CISA Known Exploited Vulnerabilities

Microsoft Win32k Privilege Escalation Vulnerability

Vendor: Microsoft | Product: Win32k | Microsoft Win32k contains an unspecified vulnerability due to it failing to properly handle objects in memory causing privilege escalation. Successful exploitation allows an attacker to run code in kernel mode. | Required action: Apply updates per vendor instructions. | Federal remediation due: 2022-05-03
CVE-2020-1040 · CISA Known Exploited Vulnerabilities

Microsoft Hyper-V RemoteFX vGPU Remote Code Execution Vulnerability

Vendor: Microsoft | Product: Hyper-V RemoteFX | Microsoft Hyper-V RemoteFX vGPU contains an improper input validation vulnerability due to the host server failing to properly validate input from an authenticated user on a guest operating system. Successful exploitation allows for remote code execution on the host operating system. | Required action: Apply updates per vendor instructions. | Federal remediation due:…
Read full source summary
Vendor: Microsoft | Product: Hyper-V RemoteFX | Microsoft Hyper-V RemoteFX vGPU contains an improper input validation vulnerability due to the host server failing to properly validate input from an authenticated user on a guest operating system. Successful exploitation allows for remote code execution on the host operating system. | Required action: Apply updates per vendor instructions. | Federal remediation due: 2022-05-03
CVE-2021-28310 · CISA Known Exploited Vulnerabilities

Microsoft Win32k Privilege Escalation Vulnerability

Vendor: Microsoft | Product: Win32k | Microsoft Windows Win32k contains an unspecified vulnerability that allows for privilege escalation. | Required action: Apply updates per vendor instructions. | Federal remediation due: 2021-11-17
CVE-2020-1350 · CISA Known Exploited Vulnerabilities

Microsoft Windows DNS Server Remote Code Execution Vulnerability

Vendor: Microsoft | Product: Windows | Microsoft Windows DNS Servers fail to properly handle requests, allowing an attacker to perform remote code execution in the context of the Local System Account. The vulnerability is also known under the moniker of SIGRed. | Required action: Apply updates per vendor instructions. | Federal remediation due: 2022-05-03
CVE-2021-26411 · CISA Known Exploited Vulnerabilities

Microsoft Internet Explorer Memory Corruption Vulnerability

Vendor: Microsoft | Product: Internet Explorer | Microsoft Internet Explorer contains an unspecified vulnerability that allows for memory corruption. | Required action: Apply updates per vendor instructions. | Federal remediation due: 2021-11-17
CVE-2019-0859 · CISA Known Exploited Vulnerabilities

Microsoft Win32k Privilege Escalation Vulnerability

Vendor: Microsoft | Product: Win32k | Microsoft Win32k fails to properly handle objects in memory causing privilege escalation. Successful exploitation allows an attacker to run code in kernel mode. | Required action: Apply updates per vendor instructions. | Federal remediation due: 2022-05-03
CVE-2021-40444 · CISA Known Exploited Vulnerabilities

Microsoft MSHTML Remote Code Execution Vulnerability

Vendor: Microsoft | Product: MSHTML | Microsoft MSHTML contains a unspecified vulnerability that allows for remote code execution. | Required action: Apply updates per vendor instructions. | Federal remediation due: 2021-11-17
CVE-2017-8759 · CISA Known Exploited Vulnerabilities

Microsoft .NET Framework Remote Code Execution Vulnerability

Vendor: Microsoft | Product: .NET Framework | Microsoft .NET Framework contains a remote code execution vulnerability when processing untrusted input that could allow an attacker to take control of an affected system. | Required action: Apply updates per vendor instructions. | Federal remediation due: 2022-05-03
CVE-2018-8653 · CISA Known Exploited Vulnerabilities

Microsoft Internet Explorer Scripting Engine Memory Corruption Vulnerability

Vendor: Microsoft | Product: Internet Explorer | Microsoft Internet Explorer contains a memory corruption vulnerability due to how the Scripting Engine handles objects in memory, leading to remote code execution. | Required action: Apply updates per vendor instructions. | Federal remediation due: 2022-05-03
CVE-2019-0797 · CISA Known Exploited Vulnerabilities

Microsoft Win32k Privilege Escalation Vulnerability

Vendor: Microsoft | Product: Win32k | Microsoft Win32k contains a privilege escalation vulnerability when the Win32k component fails to properly handle objects in memory. Successful exploitation allows an attacker to execute code in kernel mode. | Required action: Apply updates per vendor instructions. | Federal remediation due: 2022-05-03
CVE-2021-36942 · CISA Known Exploited Vulnerabilities

Microsoft Windows Local Security Authority (LSA) Spoofing Vulnerability

Vendor: Microsoft | Product: Windows | Microsoft Windows Local Security Authority (LSA) contains a spoofing vulnerability allowing an unauthenticated attacker to call a method on the LSARPC interface and coerce the domain controller to authenticate against another server using NTLM. | Required action: Apply updates per vendor instructions. | Federal remediation due: 2021-11-17
CVE-2019-1215 · CISA Known Exploited Vulnerabilities

Microsoft Windows Privilege Escalation Vulnerability

Vendor: Microsoft | Product: Windows | Microsoft Windows contains an unspecified vulnerability due to the way ws2ifsl.sys (Winsock) handles objects in memory, allowing for privilege escalation. Successful exploitation allows an attacker to execute code with elevated privileges. | Required action: Apply updates per vendor instructions. | Federal remediation due: 2022-05-03
CVE-2018-0798 · CISA Known Exploited Vulnerabilities

Microsoft Office Memory Corruption Vulnerability

Vendor: Microsoft | Product: Office | Microsoft Office contains a memory corruption vulnerability due to the way objects are handled in memory. Successful exploitation allows for remote code execution in the context of the current user. This vulnerability is known to be chained with CVE-2018-0802. | Required action: Apply updates per vendor instructions. | Federal remediation due: 2022-05-03
CVE-2018-0802 · CISA Known Exploited Vulnerabilities

Microsoft Office Memory Corruption Vulnerability

Vendor: Microsoft | Product: Office | Microsoft Office contains a memory corruption vulnerability due to the way objects are handled in memory. Successful exploitation allows for remote code execution in the context of the current user. This vulnerability is known to be chained with CVE-2018-0798. | Required action: Apply updates per vendor instructions. | Federal remediation due: 2022-05-03
CVE-2012-0158 · CISA Known Exploited Vulnerabilities

Microsoft MSCOMCTL.OCX Remote Code Execution Vulnerability

Vendor: Microsoft | Product: MSCOMCTL.OCX | Microsoft MSCOMCTL.OCX contains an unspecified vulnerability that allows for remote code execution, allowing an attacker to take complete control of an affected system under the context of the current user. | Required action: Apply updates per vendor instructions. | Federal remediation due: 2022-05-03
CVE-2015-1641 · CISA Known Exploited Vulnerabilities

Microsoft Office Memory Corruption Vulnerability

Vendor: Microsoft | Product: Office | Microsoft Office contains a memory corruption vulnerability due to failure to properly handle rich text format files in memory. Successful exploitation allows for remote code execution in the context of the current user. | Required action: Apply updates per vendor instructions. | Federal remediation due: 2022-05-03
CVE-2021-27085 · CISA Known Exploited Vulnerabilities

Microsoft Internet Explorer Remote Code Execution Vulnerability

Vendor: Microsoft | Product: Internet Explorer | Microsoft Internet Explorer contains an unspecified vulnerability that allows for remote code execution. | Required action: Apply updates per vendor instructions. | Federal remediation due: 2021-11-17
Browse saved snapshots

Sources & context

About these feeds

About BioThreat Corporation

BioThreat Corporation threat monitoring workflows bring together reports published by the named source institutions. These are public-source reports; publication dates and source links accompany each record.

01 / SOURCE

Read the source

Open a feed to search titles, summaries, or CVE IDs. Follow a record’s title or the Official source link to read the reporting in its original context.

Browse public feeds
02 / HISTORY

Compare over time

Daily snapshots are collected when a source is visited and successfully refreshed. Archive dates indicate collection dates, and the archive may contain gaps.

Browse saved snapshots
03 / RECORDS

Use the records

JSON links provide machine-readable records with source names, titles, summaries, links, and publication dates. Choose a saved date for the records collected in that snapshot.

Archive sitemap

The BioThreat Corporation Library brings together research, analysis, and reference material across our areas of focus.

Archive index