Critical
|
28 Jul 2024 |
28 Jul 2024 |
CPAI-2024-0606
|
|
CVE-2024-1651
|
Torrentpier Insecure Deserialization (CVE-2024-1651)
|
Critical
|
28 Jul 2024 |
28 Jul 2024 |
CPAI-2023-1848
|
|
CVE-2023-37145 CVE-2023-37148
|
TOTOLINK LR350 Command Injection (CVE-2023-37145; CVE-2023-37148)
|
High
|
28 Jul 2024 |
28 Jul 2024 |
CPAI-2024-0595
|
|
CVE-2024-39943
|
Rejetto HTTP File Server Remote Code Execution (CVE-2024-39943)
|
High
|
28 Jul 2024 |
28 Jul 2024 |
CPAI-2007-0657
|
|
CVE-2007-6506
|
HP Software Update Arbitrary File Overwrite (CVE-2007-6506)
|
Critical
|
2 Apr 2024 |
28 Jul 2024 |
CPAI-2023-1623
|
|
CVE-2022-32039 CVE-2022-32040 CVE-2022-32043 CVE-2023-37710 CVE-2023-37714 CVE-2023-37715 CVE-2023-37716 CVE-2023-37717 CVE-2023-37718 CVE-2023-37719 CVE-2023-37721 CVE-2023-37722 CVE-2023-37723 CVE-2023-51093
|
Tenda Multiple Products Stack Overflow (CVE-2022-32039; CVE-2022-32040; CVE-2022-32043; CVE-2023-37710; CVE-2023-37714; CVE-2023-37715; CVE-2023-37716; CVE-2023-37717; CVE-2023-37718; CVE-2023-37719; CVE-2023-37721; CVE-2023-37722; CVE-2023-37723; CVE-2023-51093)
|
Critical
|
3 Mar 2024 |
25 Jul 2024 |
CPAI-2024-0034
|
|
CVE-2020-9437
|
Client-Side Template Injection (CVE-2020-9437)
|
Critical
|
24 Jul 2024 |
24 Jul 2024 |
CPAI-2024-0587
|
|
CVE-2024-27172
|
Toshiba Multi-Function Printers Command Injection (CVE-2024-27172)
|
Medium
|
24 Jul 2024 |
24 Jul 2024 |
CPAI-2016-1333
|
|
CVE-2016-0489
|
Oracle Application Testing Suite Directory Traversal (CVE-2016-0489)
|
High
|
28 Feb 2024 |
24 Jul 2024 |
CPAI-2023-1545
|
|
CVE-2023-52251
|
Provectus ui Remote Code Execution (CVE-2023-52251)
|
Critical
|
23 Jul 2024 |
23 Jul 2024 |
CPAI-2024-0602
|
|
CVE-2024-0986
|
Issabel PBX Command Injection (CVE-2024-0986)
|
High
|
23 Jul 2024 |
23 Jul 2024 |
CPAI-2023-1843
|
|
CVE-2023-0234
|
WordPress SiteGround Security Plugin SQL Injection (CVE-2023-0234)
|
High
|
23 Jul 2024 |
23 Jul 2024 |
CPAI-2023-1841
|
|
CVE-2023-45363
|
MediaWiki Denial Of Service (CVE-2023-45363)
|
Critical
|
24 Jun 2024 |
23 Jul 2024 |
CPAI-2022-2084
|
|
CVE-2022-29805
|
Fishbowl Insecure Deserialization (CVE-2022-29805)
|
High
|
22 Jul 2024 |
22 Jul 2024 |
CPAI-2024-0597
|
|
CVE-2024-4884
|
Progress Software WhatsUp Gold Unrestricted File Upload (CVE-2024-4884)
|
High
|
22 Jul 2024 |
22 Jul 2024 |
CPAI-2024-0586
|
|
CVE-2024-38023 CVE-2024-38024 CVE-2024-38094
|
Microsoft SharePoint Server Remote Code Execution (CVE-2024-38023; CVE-2024-38024; CVE-2024-38094)
|
High
|
21 Jul 2024 |
21 Jul 2024 |
CPAI-2024-0599
|
|
CVE-2024-38457
|
XenForo Cross-Site Request Forgery (CVE-2024-38457)
|
Medium
|
21 Jul 2024 |
21 Jul 2024 |
CPAI-2024-0592
|
|
CVE-2024-37389
|
Apache NiFi Cross-Site Scripting (CVE-2024-37389)
|
Critical
|
21 Jul 2024 |
21 Jul 2024 |
CPAI-2023-1845
|
|
CVE-2023-1715 CVE-2023-1716 CVE-2023-1717
|
Bitrix24 Cross-Site Scripting (CVE-2023-1715; CVE-2023-1716; CVE-2023-1717)
|
High
|
21 Jul 2024 |
21 Jul 2024 |
CPAI-2023-1844
|
|
CVE-2023-0259 CVE-2023-0260 CVE-2023-0261 CVE-2023-0262 CVE-2023-0263
|
WordPress Review Slider Plugins SQL Injection (CVE-2023-0259; CVE-2023-0260; CVE-2023-0261; CVE-2023-0262; CVE-2023-0263)
|
Medium
|
21 Jul 2024 |
21 Jul 2024 |
CPAI-2024-0583
|
|
CVE-2024-29510
|
Artifex Ghostscript Memory Corruption (CVE-2024-29510)
|
High
|
21 Jul 2024 |
21 Jul 2024 |
CPAI-2024-0561
|
|
CVE-2024-38526
|
JavaScript Supply Chain Attack (CVE-2024-38526)
|
Critical
|
21 Jul 2024 |
21 Jul 2024 |
CPAI-2024-0411
|
|
CVE-2024-29855
|
Veeam Recovery Orchestrator Authentication Bypass (CVE-2024-29855)
|
High
|
18 Jul 2024 |
18 Jul 2024 |
CPAI-2023-1842
|
|
CVE-2023-1713 CVE-2023-1714
|
Bitrix24 Remote Code Execution (CVE-2023-1713; CVE-2023-1714)
|
High
|
18 Jul 2024 |
18 Jul 2024 |
CPAI-2024-0580
|
|
CVE-2024-39309
|
Parse Server SQL Injection (CVE-2024-39309)
|
High
|
18 Jul 2024 |
18 Jul 2024 |
CPAI-2024-0579
|
|
CVE-2024-32030
|
Provectus UI for Apache Kafka Insecure Deserialization (CVE-2024-32030)
|
Critical
|
18 Jul 2024 |
18 Jul 2024 |
CPAI-2023-1829
|
|
CVE-2023-51011 CVE-2023-51012 CVE-2023-51013 CVE-2023-51014 CVE-2023-51015 CVE-2023-51017 CVE-2023-51018 CVE-2023-51019 CVE-2023-51020 CVE-2023-51021 CVE-2023-51022
|
TOTOLINK EX1800T Command Injection (CVE-2023-51011; CVE-2023-51012; CVE-2023-51013; CVE-2023-51014; CVE-2023-51015; CVE-2023-51017; CVE-2023-51018; CVE-2023-51019; CVE-2023-51020; CVE-2023-51021; CVE-2023-51022)
|
Critical
|
18 Jul 2024 |
18 Jul 2024 |
CPAI-2023-1827
|
|
CVE-2023-3306
|
Ruijie RG-EW1200G Command Injection (CVE-2023-3306)
|
High
|
18 Jul 2024 |
18 Jul 2024 |
CPAI-2023-1528
|
|
CVE-2023-49285
|
Squid Denial of Service (CVE-2023-49285)
|
High
|
17 Jul 2024 |
17 Jul 2024 |
CPAI-2023-1816
|
|
CVE-2023-20209
|
Cisco Multiple Products Command Injection (CVE-2023-20209)
|
Critical
|
16 Jul 2024 |
16 Jul 2024 |
CPAI-2024-0584
|
|
CVE-2024-39929
|
Exim Remote Code Execution (CVE-2024-39929)
|
High
|
7 Jul 2024 |
16 Jul 2024 |
CPAI-2024-0558
|
|
|
XMCO-Serenety Security Scanner
|
High
|
15 Jul 2024 |
15 Jul 2024 |
CPAI-2024-0225
|
|
CVE-2024-31984
|
XWiki Remote Code Execution (CVE-2024-31984)
|
High
|
15 Jul 2024 |
15 Jul 2024 |
CPAI-2024-0551
|
|
CVE-2024-29825
|
Ivanti Endpoint Manager SQL Injection (CVE-2024-29825)
|
Critical
|
9 Jun 2024 |
15 Jul 2024 |
CPAI-2024-0384
|
|
CVE-2024-38112
|
Internet Shortcut File Remote Code Execution (CVE-2024-38112)
|
High
|
14 Jul 2024 |
14 Jul 2024 |
CPAI-2024-0566
|
|
CVE-2024-29823
|
Ivanti Endpoint Manager SQL Injection (CVE-2024-29823)
|
High
|
14 Jul 2024 |
14 Jul 2024 |
CPAI-2023-1838
|
|
CVE-2023-2288
|
WordPress Otter Gutenberg Blocks Plugin Insecure Deserialization (CVE-2023-2288)
|
Medium
|
14 Jul 2024 |
14 Jul 2024 |
CPAI-2024-0564
|
|
CVE-2024-23118
|
Centreon Project Centreon Web SQL Injection (CVE-2024-23118)
|
High
|
14 Jul 2024 |
14 Jul 2024 |
CPAI-2017-1859
|
|
CVE-2017-17099
|
Flexense SyncBreeze Buffer Overflow (CVE-2017-17099)
|
Critical
|
14 Jul 2024 |
14 Jul 2024 |
CPAI-2016-1268
|
|
CVE-2016-4350
|
SolarWinds Storage Resource Monitor SQL Injection (CVE-2016-4350)
|
High
|
3 Jun 2024 |
11 Jul 2024 |
CPAI-2022-2071
|
|
CVE-2022-45667 CVE-2022-45980 CVE-2024-2560 CVE-2024-2817
|
Tenda Multiple Products Cross-Site Request Forgery (CVE-2022-45667; CVE-2022-45980; CVE-2024-2560; CVE-2024-2817)
|
Critical
|
10 Jul 2024 |
10 Jul 2024 |
CPAI-2023-1833
|
|
CVE-2023-51987
|
D-Link DIR-822 Authentication Bypass (CVE-2023-51987)
|
High
|
10 Jul 2024 |
10 Jul 2024 |
CPAI-2024-0548
|
|
|
Telecom Gateway Configuration Management System Command Injection
|
High
|
10 Jul 2024 |
10 Jul 2024 |
CPAI-2023-1831
|
|
CVE-2023-33538
|
TP-Link Routers Command Injection (CVE-2023-33538)
|
High
|
9 Jul 2024 |
10 Jul 2024 |
CPAI-2024-0539
|
Microsoft CVE-2024-38080
|
CVE-2024-38080
|
Microsoft Windows Hyper-V Elevation of Privilege (CVE-2024-38080)
|
High
|
10 Jul 2024 |
10 Jul 2024 |
CPAI-2024-0505
|
|
CVE-2024-21318
|
Microsoft SharePoint Server Remote Code Execution (CVE-2024-21318)
|
High
|
10 Jul 2024 |
10 Jul 2024 |
CPAI-2024-0504
|
|
CVE-2024-5035
|
TP-Link Archer C5400X Command Injection (CVE-2024-5035)
|
Critical
|
10 Jul 2024 |
10 Jul 2024 |
CPAI-2023-1813
|
|
CVE-2023-33831
|
Frangoteam FUXA Remote Code Execution (CVE-2023-33831)
|
Medium
|
10 Jul 2024 |
10 Jul 2024 |
CPAI-2021-2180
|
|
CVE-2021-1385
|
Cisco IOx Directory Traversal (CVE-2021-1385)
|
High
|
10 Jul 2024 |
10 Jul 2024 |
CPAI-2023-1782
|
|
CVE-2023-51810
|
Joomla! EasyDiscuss Plugin SQL Injection (CVE-2023-51810)
|
Critical
|
10 Jul 2024 |
10 Jul 2024 |
CPAI-2023-1775
|
|
CVE-2023-30765
|
Delta Electronics InfraSuite Device Master Privilege Escalation (CVE-2023-30765)
|