Medium
|
18 Apr 2024 |
18 Apr 2024 |
CPAI-2023-1628
|
|
CVE-2023-39265
|
Apache Superset Authentication Bypass (CVE-2023-39265)
|
Critical
|
6 Mar 2024 |
18 Apr 2024 |
CPAI-2024-0104
|
|
CVE-2024-27198
|
JetBrains TeamCity Authentication Bypass (CVE-2024-27198)
|
High
|
18 Apr 2024 |
18 Apr 2024 |
CPAI-2022-2029
|
|
CVE-2022-36635
|
ZKTeco ZKBioSecurity SQL Injection (CVE-2022-36635)
|
High
|
18 Apr 2024 |
18 Apr 2024 |
CPAI-2023-0930
|
|
CVE-2023-38124
|
Inductive Automation Ignition Cross-Site Scripting (CVE-2023-38124)
|
Medium
|
17 Apr 2024 |
17 Apr 2024 |
CPAI-2023-1651
|
|
CVE-2023-0992
|
WordPress Shield Security Plugin Cross-Site Scripting (CVE-2023-0992)
|
Medium
|
17 Apr 2024 |
17 Apr 2024 |
CPAI-2023-1656
|
|
CVE-2023-36563
|
Microsoft WordPad Information Disclosure (CVE-2023-36563)
|
High
|
17 Apr 2024 |
17 Apr 2024 |
CPAI-2022-2052
|
|
CVE-2022-45768
|
EDIMAX BR-6428nS Command Injection (CVE-2022-45768)
|
High
|
17 Apr 2024 |
17 Apr 2024 |
CPAI-2023-0449
|
|
CVE-2023-32714
|
Splunk Arbitrary File Read and Write (CVE-2023-32714)
|
High
|
16 Apr 2024 |
16 Apr 2024 |
CPAI-2023-1646
|
|
CVE-2023-25437
|
vTech VCS754 Information Disclosure (CVE-2023-25437)
|
High
|
15 Apr 2024 |
15 Apr 2024 |
CPAI-2023-1652
|
|
CVE-2023-47565
|
QNAP QVR Command Injection (CVE-2023-47565)
|
High
|
14 Apr 2024 |
14 Apr 2024 |
CPAI-2024-0187
|
|
CVE-2024-20767
|
Adobe ColdFusion Information Disclosure (CVE-2024-20767)
|
Critical
|
14 Apr 2024 |
14 Apr 2024 |
CPAI-2022-2049
|
|
CVE-2022-24838
|
Nextcloud Calendar SMTP Command Injection (CVE-2022-24838)
|
Critical
|
14 Apr 2024 |
14 Apr 2024 |
CPAI-2023-1642
|
|
CVE-2023-34747
|
UJCMS Arbitrary File Upload (CVE-2023-34747)
|
High
|
14 Apr 2024 |
14 Apr 2024 |
CPAI-2024-0163
|
|
CVE-2024-1538
|
WordPress File Manager Plugin Cross-Site Scripting (CVE-2024-1538)
|
High
|
14 Apr 2024 |
14 Apr 2024 |
CPAI-2023-1632
|
|
CVE-2023-2833
|
WordPress ReviewX Plugin Privilege Escalation (CVE-2023-2833)
|
Medium
|
14 Apr 2024 |
14 Apr 2024 |
CPAI-2021-2147
|
|
CVE-2021-21816
|
D-Link DIR-3040 Information Disclosure (CVE-2021-21816)
|
Medium
|
14 Apr 2024 |
14 Apr 2024 |
CPAI-2023-0461
|
|
CVE-2023-34225
|
JetBrains TeamCity Cross-Site Scripting (CVE-2023-34225)
|
High
|
14 Apr 2024 |
14 Apr 2024 |
CPAI-2018-2731
|
|
CVE-2018-15517
|
D-Link Central WiFiManager Server-Side Request Forgery (CVE-2018-15517)
|
High
|
11 Apr 2024 |
11 Apr 2024 |
CPAI-2023-1643
|
|
CVE-2023-34096
|
Thruk Path Traversal (CVE-2023-34096)
|
Critical
|
11 Apr 2024 |
11 Apr 2024 |
CPAI-2023-1641
|
|
CVE-2023-3643
|
Boss Mini Information Disclosure (CVE-2023-3643)
|
High
|
11 Apr 2024 |
11 Apr 2024 |
CPAI-2023-1616
|
|
CVE-2023-48725
|
Netgear RAX30 Buffer Overflow (CVE-2023-48725)
|
Medium
|
10 Apr 2024 |
10 Apr 2024 |
CPAI-2023-1634
|
|
CVE-2023-2745
|
WordPress Directory Traversal (CVE-2023-2745)
|
High
|
9 Apr 2024 |
9 Apr 2024 |
CPAI-2024-0183
|
Microsoft CVE-2024-26234
|
CVE-2024-26234
|
Microsoft Proxy Driver Spoofing (CVE-2024-26234)
|
High
|
9 Apr 2024 |
9 Apr 2024 |
CPAI-2024-0180
|
Microsoft CVE-2024-26212
|
CVE-2024-26212
|
Microsoft DHCP Server Service Denial of Service (CVE-2024-26212)
|
High
|
9 Apr 2024 |
9 Apr 2024 |
CPAI-2024-0174
|
Microsoft CVE-2024-26211
|
CVE-2024-26211
|
Microsoft Windows Remote Access Connection Manager Elevation of Privilege (CVE-2024-26211)
|
High
|
9 Apr 2024 |
9 Apr 2024 |
CPAI-2024-0172
|
Microsoft CVE-2024-26158
|
CVE-2024-26158
|
Microsoft Install Service Elevation of Privilege (CVE-2024-26158)
|
High
|
9 Apr 2024 |
9 Apr 2024 |
CPAI-2024-0171
|
Microsoft CVE-2024-26256
|
CVE-2024-26256
|
Microsoft libarchive Remote Code Execution (CVE-2024-26256)
|
High
|
9 Apr 2024 |
9 Apr 2024 |
CPAI-2024-0170
|
Microsoft CVE-2024-26230
|
CVE-2024-26230
|
Microsoft Windows Telephony Server Elevation of Privilege (CVE-2024-26230)
|
High
|
9 Apr 2024 |
9 Apr 2024 |
CPAI-2024-0169
|
Microsoft CVE-2024-26209
|
CVE-2024-26209
|
Microsoft Local Security Authority Subsystem Service Information Disclosure (CVE-2024-26209)
|
High
|
9 Apr 2024 |
9 Apr 2024 |
CPAI-2024-0168
|
Microsoft CVE-2024-26218
|
CVE-2024-26218
|
Microsoft Windows Kernel Elevation of Privilege (CVE-2024-26218)
|
High
|
8 Apr 2024 |
8 Apr 2024 |
CPAI-2022-2050
|
|
CVE-2022-28955
|
D-Link DIR-816L Authentication Bypass (CVE-2022-28955)
|
Critical
|
8 Apr 2024 |
8 Apr 2024 |
CPAI-2021-2153
|
|
CVE-2021-41266
|
Minio Console Authentication Bypass (CVE-2021-41266)
|
Critical
|
8 Apr 2024 |
8 Apr 2024 |
CPAI-2021-2152
|
|
CVE-2021-44427
|
RosarioSIS SQL Injection (CVE-2021-44427)
|
Medium
|
8 Apr 2024 |
8 Apr 2024 |
CPAI-2021-2151
|
|
CVE-2021-36450
|
Verint Workforce Optimization Cross-Site Scripting (CVE-2021-36450)
|
High
|
8 Apr 2024 |
8 Apr 2024 |
CPAI-2022-2046
|
|
CVE-2022-46443
|
Bangresto Project SQL Injection (CVE-2022-46443)
|
High
|
8 Apr 2024 |
8 Apr 2024 |
CPAI-2023-1625
|
|
CVE-2023-38944
|
Multilaser Routers Authentication Bypass (CVE-2023-38944)
|
Medium
|
8 Apr 2024 |
8 Apr 2024 |
CPAI-2022-1912
|
|
CVE-2022-48428
|
JetBrains TeamCity Cross-Site Scripting (CVE-2022-48428)
|
Medium
|
7 Apr 2024 |
7 Apr 2024 |
CPAI-2023-1640
|
|
CVE-2023-5914
|
Citrix StoreFront Cross-Site Scripting (CVE-2023-5914)
|
High
|
7 Apr 2024 |
7 Apr 2024 |
CPAI-2023-1639
|
|
CVE-2023-6184
|
Citrix Session Recording Remote Code Execution (CVE-2023-6184)
|
Critical
|
7 Apr 2024 |
7 Apr 2024 |
CPAI-2024-0173
|
|
CVE-2024-24497 CVE-2024-24499
|
Employee Management System SQL Injection (CVE-2024-24497; CVE-2024-24499)
|
Critical
|
7 Apr 2024 |
7 Apr 2024 |
CPAI-2024-0167
|
|
CVE-2024-24496
|
Daily Habit Tracker Authentication Bypass (CVE-2024-24496)
|
Critical
|
7 Apr 2024 |
7 Apr 2024 |
CPAI-2024-0164
|
|
CVE-2024-22836
|
Akaunting Command Injection (CVE-2024-22836)
|
Medium
|
7 Apr 2024 |
7 Apr 2024 |
CPAI-2023-1633
|
|
CVE-2023-0157
|
WordPress All-in-One Security Plugin Privilege Escalation (CVE-2023-0157)
|
High
|
7 Apr 2024 |
7 Apr 2024 |
CPAI-2024-0160
|
|
CVE-2024-24724
|
Gibbon Server-Side Template Injection (CVE-2024-24724)
|
Medium
|
7 Apr 2024 |
7 Apr 2024 |
CPAI-2023-1631
|
|
CVE-2023-0156
|
WordPress All-in-One Security Plugin Path Traversal (CVE-2023-0156)
|
High
|
7 Apr 2024 |
7 Apr 2024 |
CPAI-2024-0147
|
|
CVE-2024-23898
|
Jenkins Cross-Site Request Forgery (CVE-2024-23898)
|
Medium
|
7 Apr 2024 |
7 Apr 2024 |
CPAI-2023-1622
|
|
CVE-2023-40028
|
Ghost Arbitrary File Upload (CVE-2023-40028)
|
Critical
|
7 Apr 2024 |
7 Apr 2024 |
CPAI-2021-2141
|
|
CVE-2021-27651
|
Pega Infinity Authentication Bypass (CVE-2021-27651)
|
Critical
|
11 Mar 2024 |
7 Apr 2024 |
CPAI-2022-2035
|
|
CVE-2022-0788 CVE-2022-0948
|
WordPress Multiple Plugins SQL Injection (CVE-2022-0788; CVE-2022-0948)
|
High
|
4 Apr 2024 |
4 Apr 2024 |
CPAI-2023-1630
|
|
CVE-2023-37474
|
Copyparty Project Path Traversal (CVE-2023-37474)
|