Critical
|
5 Jun 2025 |
5 Jun 2025 |
CPAI-2025-0317
|
|
CVE-2025-4978
|
Netgear DGND3700 Authentication Bypass (CVE-2025-4978)
|
Critical
|
5 Jun 2025 |
5 Jun 2025 |
CPAI-2025-0303
|
|
CVE-2025-45859 CVE-2025-45861 CVE-2025-45862 CVE-2025-45863 CVE-2025-45864 CVE-2025-45865 CVE-2025-45866 CVE-2025-45867
|
TOTOLINK A3002R Buffer Overflow (CVE-2025-45859; CVE-2025-45861; CVE-2025-45862; CVE-2025-45863; CVE-2025-45864; CVE-2025-45865; CVE-2025-45866; CVE-2025-45867)
|
Critical
|
14 Apr 2025 |
5 Jun 2025 |
CPAI-2025-0171
|
|
CVE-2025-25579 CVE-2025-45858
|
TOTOLINK A3002R Command Injection (CVE-2025-25579; CVE-2025-45858)
|
Critical
|
4 Jun 2025 |
4 Jun 2025 |
CPAI-2025-0367
|
|
CVE-2025-48827 CVE-2025-48828
|
vBulletin Remote Code Execution (CVE-2025-48827; CVE-2025-48828)
|
High
|
3 Jun 2025 |
4 Jun 2025 |
CPAI-2023-2061
|
|
CVE-2023-39780
|
ASUS RT-AX55 Firmware Command Injection (CVE-2023-39780)
|
High
|
4 Jun 2025 |
4 Jun 2025 |
CPAI-2014-2698
|
|
CVE-2014-0239
|
Samba Denial of Service (CVE-2014-0239)
|
Critical
|
31 Mar 2025 |
4 Jun 2025 |
CPAI-2025-0141
|
|
CVE-2025-2825 CVE-2025-31161
|
CrushFTP Authentication Bypass (CVE-2025-2825; CVE-2025-31161)
|
Medium
|
3 Jun 2025 |
3 Jun 2025 |
CPAI-2025-0364
|
|
CVE-2025-32103
|
CrushFTP Directory Traversal (CVE-2025-32103)
|
Medium
|
3 Jun 2025 |
3 Jun 2025 |
CPAI-2025-0365
|
|
CVE-2025-32102
|
CrushFTP Server-Side Request Forgery (CVE-2025-32102)
|
Critical
|
3 Jun 2025 |
3 Jun 2025 |
CPAI-2025-0351
|
|
CVE-2025-24434
|
Adobe Commerce Privilege Escalation (CVE-2025-24434)
|
High
|
3 Jun 2025 |
3 Jun 2025 |
CPAI-2019-3281
|
|
CVE-2019-12527
|
Squid Buffer Overflow (CVE-2019-12527)
|
High
|
3 Jun 2025 |
3 Jun 2025 |
CPAI-2018-2917
|
|
CVE-2018-7658
|
Softros Network Time System Denial of Service (CVE-2018-7658)
|
High
|
29 May 2025 |
3 Jun 2025 |
CPAI-2024-1670
|
|
CVE-2024-6235
|
Citrix NetScaler Console Information Disclosure (CVE-2024-6235)
|
High
|
18 May 2025 |
3 Jun 2025 |
CPAI-2025-0304
|
|
CVE-2025-4427 CVE-2025-4428
|
Ivanti EPMM Remote Code Execution (CVE-2025-4427; CVE-2025-4428)
|
Critical
|
3 Jun 2025 |
3 Jun 2025 |
CPAI-2024-1659
|
|
CVE-2024-0939
|
Byzoro Smart S210 Management Platform Arbitrary File Upload (CVE-2024-0939)
|
Critical
|
3 Jun 2025 |
3 Jun 2025 |
CPAI-2023-2053
|
|
CVE-2023-39560
|
ECTouch SQL Injection (CVE-2023-39560)
|
High
|
23 Jan 2025 |
3 Jun 2025 |
CPAI-2025-0009
|
|
CVE-2025-0107
|
Palo Alto Networks Expedition Command Injection (CVE-2025-0107)
|
High
|
3 Jun 2025 |
3 Jun 2025 |
CPAI-2015-1638
|
|
CVE-2015-1896
|
IBM Tivoli Storage Manager FastBack Buffer Overflow (CVE-2015-1896)
|
Medium
|
29 May 2025 |
29 May 2025 |
CPAI-2025-0350
|
|
CVE-2025-45859
|
TOTOLINK A3002R Buffer Overflow (CVE-2025-45859)
|
Medium
|
29 May 2025 |
29 May 2025 |
CPAI-2025-0347
|
|
CVE-2025-0133
|
Palo Alto Networks PAN-OS Cross-Site Scripting (CVE-2025-0133)
|
High
|
29 May 2025 |
29 May 2025 |
CPAI-2025-0346
|
|
CVE-2025-26086
|
RSI Queue Management System SQL Injection (CVE-2025-26086)
|
High
|
29 May 2025 |
29 May 2025 |
CPAI-2025-0345
|
|
CVE-2025-2725
|
H3C Multiple Products Command Injection (CVE-2025-2725)
|
Medium
|
29 May 2025 |
29 May 2025 |
CPAI-2025-0344
|
|
CVE-2025-45864
|
TOTOLINK A3002R Buffer Overflow (CVE-2025-45864)
|
Medium
|
29 May 2025 |
29 May 2025 |
CPAI-2025-0343
|
|
CVE-2025-29513
|
NodeBB Cross-Site Scripting (CVE-2025-29513)
|
High
|
29 May 2025 |
29 May 2025 |
CPAI-2025-0342
|
|
CVE-2025-3693
|
Tenda W12 Buffer Overflow (CVE-2025-3693)
|
Medium
|
29 May 2025 |
29 May 2025 |
CPAI-2023-2059
|
|
CVE-2023-52163
|
Digiever DS-2105 Pro Command Injection (CVE-2023-52163)
|
Medium
|
29 May 2025 |
29 May 2025 |
CPAI-2025-0340
|
|
CVE-2025-45867
|
TOTOLINK A3002R Buffer Overflow (CVE-2025-45867)
|
Medium
|
29 May 2025 |
29 May 2025 |
CPAI-2025-0339
|
|
CVE-2025-4185
|
Wangshen SecGate 3600 Directory Traversal (CVE-2025-4185)
|
Low
|
29 May 2025 |
29 May 2025 |
CPAI-2025-0335
|
|
CVE-2025-3994
|
TOTOLINK N150RT Firmware Cross-Site Scripting (CVE-2025-3994)
|
Medium
|
29 May 2025 |
29 May 2025 |
CPAI-2025-0329
|
|
CVE-2025-4544
|
Dlink DI-8100 Firmware Buffer Overflow (CVE-2025-4544)
|
Critical
|
29 May 2025 |
29 May 2025 |
CPAI-2025-0328
|
|
CVE-2025-45858
|
Totolink A3002r Firmware Command Injection (CVE-2025-45858)
|
Low
|
29 May 2025 |
29 May 2025 |
CPAI-2025-0326
|
|
CVE-2025-46618
|
JetBrains TeamCity Cross-Site Scripting (CVE-2025-46618)
|
High
|
29 May 2025 |
29 May 2025 |
CPAI-2014-2660
|
|
CVE-2014-2994
|
Acunetix Web Vulnerability Scanner Buffer Overflow (CVE-2014-2994)
|
Critical
|
8 May 2025 |
29 May 2025 |
CPAI-2025-0269
|
|
CVE-2025-2775 CVE-2025-2776 CVE-2025-2777
|
SysAid On-Premise XML External Entity Injection (CVE-2025-2775; CVE-2025-2776; CVE-2025-2777)
|
Critical
|
8 May 2025 |
29 May 2025 |
CPAI-2024-1640
|
|
CVE-2024-11120 CVE-2024-6047
|
GeoVision Devices Command Injection (CVE-2024-11120; CVE-2024-6047)
|
High
|
29 May 2025 |
29 May 2025 |
CPAI-2025-0256
|
|
CVE-2025-2284
|
Sante PACS Server Denial of Service (CVE-2025-2284)
|
High
|
28 May 2025 |
28 May 2025 |
CPAI-2014-2699
|
|
CVE-2014-0221
|
OpenSSL Denial of Service (CVE-2014-0221)
|
Critical
|
7 May 2025 |
27 May 2025 |
CPAI-2024-1638
|
|
CVE-2024-7399 CVE-2025-4632
|
Samsung MagicINFO Remote Code Execution (CVE-2024-7399; CVE-2025-4632)
|
Critical
|
26 May 2025 |
26 May 2025 |
CPAI-2024-1668
|
|
CVE-2024-27781
|
Fortinet FortiSandbox Stored Cross-Site Scripting (CVE-2024-27781)
|
High
|
26 May 2025 |
26 May 2025 |
CPAI-2024-1664
|
|
CVE-2024-8945
|
RISE Ultimate Project Manager SQL Injection (CVE-2024-8945)
|
High
|
22 May 2025 |
26 May 2025 |
CPAI-2025-0306
|
|
CVE-2025-29306
|
FoxCMS Remote Code Execution (CVE-2025-29306)
|
High
|
26 May 2025 |
26 May 2025 |
CPAI-2015-1695
|
|
CVE-2015-0969
|
SearchBlox Information Disclosure (CVE-2015-0969)
|
Critical
|
20 Feb 2025 |
26 May 2025 |
CPAI-2024-1410
|
|
CVE-2024-10811 CVE-2024-13159 CVE-2024-13160 CVE-2024-13161
|
Ivanti Endpoint Manager Path Traversal (CVE-2024-10811; CVE-2024-13159; CVE-2024-13160; CVE-2024-13161)
|
Critical
|
26 May 2025 |
26 May 2025 |
CPAI-2025-0320
|
|
CVE-2025-4322
|
WordPress Motors Theme Privilege Escalation (CVE-2025-4322)
|
Critical
|
25 May 2025 |
25 May 2025 |
CPAI-2025-0322
|
|
CVE-2025-34026 CVE-2025-34027
|
Versa Concerto Authentication Bypass (CVE-2025-34026; CVE-2025-34027)
|
Critical
|
25 May 2025 |
25 May 2025 |
CPAI-2020-4312
|
|
CVE-2020-28429
|
Python geojson2kml Package Command Injection (CVE-2020-28429)
|
High
|
25 May 2025 |
25 May 2025 |
CPAI-2014-2689
|
|
CVE-2014-1773
|
Microsoft Internet Explorer Memory Corruption (CVE-2014-1773)
|
Critical
|
25 May 2025 |
25 May 2025 |
CPAI-2025-0314
|
|
CVE-2025-45487
|
Linksys E5600 firmware Command Injection (CVE-2025-45487)
|
Critical
|
25 May 2025 |
25 May 2025 |
CPAI-2025-0313
|
|
CVE-2025-45488
|
Linksys E5600 firmware Command Injection (CVE-2025-45488)
|
Critical
|
25 May 2025 |
25 May 2025 |
CPAI-2025-0309
|
|
CVE-2025-32756
|
Fortinet Multiple Products Buffer Overflow (CVE-2025-32756)
|