Medium
|
9 Feb 2025 |
20 Feb 2025 |
CPAI-2024-1360
|
|
CVE-2024-39288 CVE-2024-39359
|
Wavlink AC3000 Buffer Overflow (CVE-2024-39288; CVE-2024-39359)
|
High
|
20 Feb 2025 |
20 Feb 2025 |
CPAI-2021-2296
|
|
CVE-2021-27030
|
Autodesk FBX Review Directory Traversal (CVE-2021-27030)
|
Critical
|
20 Feb 2025 |
20 Feb 2025 |
CPAI-2024-1404
|
|
CVE-2024-34204 CVE-2024-34206 CVE-2024-34210
|
TOTOLINK CP450 Command Injection (CVE-2024-34204; CVE-2024-34206; CVE-2024-34210)
|
Critical
|
19 Feb 2025 |
19 Feb 2025 |
CPAI-2025-0043
|
|
CVE-2014-0130 CVE-2015-3035 CVE-2016-4523 CVE-2019-20085 CVE-2020-5410 CVE-2023-2825 CVE-2023-32315 CVE-2023-34843 CVE-2023-34990 CVE-2023-35843 CVE-2023-35844 CVE-2023-37607 CVE-2023-41266 CVE-2024-57727
|
Web Servers Directory Traversal (CVE-2014-0130; CVE-2015-3035; CVE-2016-4523; CVE-2019-20085; CVE-2020-5410; CVE-2023-2825; CVE-2023-32315; CVE-2023-34843; CVE-2023-34990; CVE-2023-35843; CVE-2023-35844; CVE-2023-37607; CVE-2023-41266; CVE-2024-57727)
|
High
|
19 Feb 2025 |
19 Feb 2025 |
CPAI-2024-1401
|
|
CVE-2024-40890
|
Zyxel VMG1312-B10A Firmware Command Injection (CVE-2024-40890)
|
High
|
13 Feb 2025 |
19 Feb 2025 |
CPAI-2025-0038
|
|
CVE-2025-0108
|
Palo Alto Networks PAN-OS Authentication Bypass (CVE-2025-0108)
|
Critical
|
2 Feb 2025 |
19 Feb 2025 |
CPAI-2024-1351
|
|
CVE-2024-53704
|
SonicWall SonicOS Authentication Bypass (CVE-2024-53704)
|
High
|
18 Feb 2025 |
18 Feb 2025 |
CPAI-2024-1394
|
|
CVE-2024-37569 CVE-2024-37570
|
Mitel 6869i Command Injection (CVE-2024-37569; CVE-2024-37570)
|
High
|
18 Feb 2025 |
18 Feb 2025 |
CPAI-2024-1388
|
|
CVE-2024-48456
|
Netis Multiple Products Remote Code Execution (CVE-2024-48456)
|
High
|
18 Feb 2025 |
18 Feb 2025 |
CPAI-2024-1372
|
|
CVE-2024-57357
|
TP-Link TL-WPA 8630 Command Injection (CVE-2024-57357)
|
Critical
|
17 Feb 2025 |
17 Feb 2025 |
CPAI-2025-0042
|
|
CVE-2025-25064
|
Zimbra Collaboration SQL Injection (CVE-2025-25064)
|
High
|
17 Feb 2025 |
17 Feb 2025 |
CPAI-2025-0041
|
|
CVE-2025-1094
|
PostgreSQL SQL Injection (CVE-2025-1094)
|
Critical
|
17 Feb 2025 |
17 Feb 2025 |
CPAI-2024-1402
|
|
CVE-2024-12356
|
BeyondTrust Multiple Products Command Injection (CVE-2024-12356)
|
High
|
17 Feb 2025 |
17 Feb 2025 |
CPAI-2025-0036
|
|
CVE-2025-24367
|
Cacti Group Cacti CRLF Injection (CVE-2025-24367)
|
High
|
17 Feb 2025 |
17 Feb 2025 |
CPAI-2024-1384
|
|
CVE-2024-23333
|
LDAP Account Manager Remote Code Execution (CVE-2024-23333)
|
High
|
16 Feb 2025 |
16 Feb 2025 |
CPAI-2024-1385
|
|
CVE-2024-48455 CVE-2024-48457
|
Netis Multiple Products Authentication Bypass (CVE-2024-48455; CVE-2024-48457)
|
High
|
16 Feb 2025 |
16 Feb 2025 |
CPAI-2025-0031
|
|
CVE-2025-21385
|
Microsoft Purview Server-Side Request Forgery (CVE-2025-21385)
|
Medium
|
16 Feb 2025 |
16 Feb 2025 |
CPAI-2024-1377
|
|
CVE-2024-54502
|
Apple Multiple Products Use After Free (CVE-2024-54502)
|
Critical
|
16 Feb 2025 |
16 Feb 2025 |
CPAI-2023-1999
|
|
CVE-2023-45249
|
Acronis Cyber Infrastructure Authentication Bypass (CVE-2023-45249)
|
Critical
|
13 Feb 2025 |
13 Feb 2025 |
CPAI-2024-1393
|
|
CVE-2024-9916
|
HuangDou UTCMS Command Injection (CVE-2024-9916)
|
Critical
|
13 Feb 2025 |
13 Feb 2025 |
CPAI-2024-1386
|
|
CVE-2024-39363
|
Wavlink AC3000 Cross-Site Scripting (CVE-2024-39363)
|
Medium
|
13 Feb 2025 |
13 Feb 2025 |
CPAI-2025-0033
|
|
CVE-2025-25181
|
Advantive VeraCore SQL Injection (CVE-2025-25181)
|
High
|
13 Feb 2025 |
13 Feb 2025 |
CPAI-2024-1383
|
|
CVE-2024-45518
|
Zimbra Collaboration Server-Side Request Forgery (CVE-2024-45518)
|
Critical
|
13 Feb 2025 |
13 Feb 2025 |
CPAI-2024-1382
|
|
CVE-2024-57968
|
Advantive VeraCore Arbitrary File Upload (CVE-2024-57968)
|
Medium
|
13 Feb 2025 |
13 Feb 2025 |
CPAI-2024-1367
|
|
CVE-2024-55947
|
Gogs Path Traversal (CVE-2024-55947)
|
High
|
13 Feb 2025 |
13 Feb 2025 |
CPAI-2024-1366
|
|
CVE-2024-47008
|
Ivanti Avalanche Server-Side Request Forgery (CVE-2024-47008)
|
Medium
|
13 Feb 2025 |
13 Feb 2025 |
CPAI-2018-2894
|
|
CVE-2018-11552
|
NCH AXON PBX Cross-Site Scripting (CVE-2018-11552)
|
High
|
30 Jan 2025 |
13 Feb 2025 |
CPAI-2024-1345
|
|
CVE-2024-41710
|
Mitel Multiple Products Command Injection (CVE-2024-41710)
|
Critical
|
12 Feb 2025 |
12 Feb 2025 |
CPAI-2025-0035
|
Microsoft CVE-2025-21376
|
CVE-2025-21376
|
Microsoft Windows LDAP Remote Code Execution (CVE-2025-21376)
|
Critical
|
12 Feb 2025 |
12 Feb 2025 |
CPAI-2023-1998
|
|
CVE-2023-49403 CVE-2023-49999
|
Tenda W30E Command Injection (CVE-2023-49403; CVE-2023-49999)
|
Medium
|
12 Feb 2025 |
12 Feb 2025 |
CPAI-2023-1995
|
|
CVE-2023-6065
|
WordPress Quttera Web Malware Scanner Plugin Information Disclosure (CVE-2023-6065)
|
Medium
|
11 Feb 2025 |
11 Feb 2025 |
CPAI-2025-0032
|
Microsoft CVE-2025-21377
|
CVE-2025-21377
|
Microsoft Windows NTLM Information Disclosure (CVE-2025-21377)
|
High
|
11 Feb 2025 |
11 Feb 2025 |
CPAI-2025-0030
|
Microsoft CVE-2025-21400
|
CVE-2025-21400
|
Microsoft SharePoint Server Remote Code Execution (CVE-2025-21400)
|
High
|
10 Feb 2025 |
10 Feb 2025 |
CPAI-2024-1355
|
|
CVE-2024-55417
|
PHP Voyager Package Arbitrary File Upload (CVE-2024-55417)
|
High
|
10 Feb 2025 |
10 Feb 2025 |
CPAI-2024-1302
|
|
CVE-2024-0778
|
Uniview ISC 2500-S Command Injection (CVE-2024-0778)
|
High
|
9 Feb 2025 |
9 Feb 2025 |
CPAI-2024-1363
|
|
CVE-2024-38653
|
Ivanti Avalanche XML External Entity Injection (CVE-2024-38653)
|
Medium
|
9 Feb 2025 |
9 Feb 2025 |
CPAI-2024-1361
|
|
CVE-2024-45607
|
Secreto31126 Whatsapp-Api-js Improper Access Control (CVE-2024-45607)
|
High
|
9 Feb 2025 |
9 Feb 2025 |
CPAI-2024-1353
|
|
CVE-2024-55416
|
PHP Voyager Package Cross-Site Scripting (CVE-2024-55416)
|
High
|
9 Feb 2025 |
9 Feb 2025 |
CPAI-2024-1352
|
|
CVE-2024-55415
|
PHP Voyager Package Path Traversal (CVE-2024-55415)
|
Critical
|
9 Feb 2025 |
9 Feb 2025 |
CPAI-2024-1335
|
|
CVE-2024-50603
|
Aviatrix Controller Remote Code Execution (CVE-2024-50603)
|
High
|
9 Feb 2025 |
9 Feb 2025 |
CPAI-2021-2287
|
|
CVE-2021-40410
|
Reolink RLC-410W Firmware Command Injection (CVE-2021-40410)
|
High
|
9 Feb 2025 |
9 Feb 2025 |
CPAI-2021-2286
|
|
CVE-2021-40412
|
Reolink RLC-410W Firmware Command Injection (CVE-2021-40412)
|
Critical
|
9 Feb 2025 |
9 Feb 2025 |
CPAI-2024-1334
|
|
CVE-2024-43468
|
Microsoft Configuration Manager Remote Code Execution (CVE-2024-43468)
|
Critical
|
6 Feb 2025 |
6 Feb 2025 |
CPAI-2018-2892
|
|
CVE-2018-19410
|
Paessler PRTG Network Monitor Authentication Bypass (CVE-2018-19410)
|
High
|
6 Feb 2025 |
6 Feb 2025 |
CPAI-2024-1358
|
|
CVE-2024-48766
|
NetAlertX Directory Traversal (CVE-2024-48766)
|
High
|
6 Feb 2025 |
6 Feb 2025 |
CPAI-2024-1327
|
|
CVE-2024-28726
|
D-Link DWR-2000M Command Injection (CVE-2024-28726)
|
Critical
|
6 Feb 2025 |
6 Feb 2025 |
CPAI-2025-0012
|
|
CVE-2025-22904 CVE-2025-22907 CVE-2025-22913 CVE-2025-22916
|
EDIMAX RE11S Stack Overflow (CVE-2025-22904; CVE-2025-22907; CVE-2025-22913; CVE-2025-22916)
|
High
|
6 Feb 2025 |
6 Feb 2025 |
CPAI-2024-1323
|
|
CVE-2024-45802
|
Squid Denial of Service (CVE-2024-45802)
|
Critical
|
6 Feb 2025 |
6 Feb 2025 |
CPAI-2024-1321
|
|
CVE-2024-48914
|
Vendure Asset Server Plugin Directory Traversal (CVE-2024-48914)
|
Medium
|
4 Feb 2025 |
4 Feb 2025 |
CPAI-2025-0015
|
|
|
Nagios Enterprises Nagios XI Command Injection
|