High
|
23 Sep 2024 |
23 Sep 2024 |
CPAI-2024-0826
|
|
CVE-2024-8504
|
VICIdial Command Injection (CVE-2024-8504)
|
Medium
|
23 Sep 2024 |
23 Sep 2024 |
CPAI-2022-2129
|
|
CVE-2022-26263
|
Yonyou U8 Cross-Site Scripting (CVE-2022-26263)
|
Medium
|
23 Sep 2024 |
23 Sep 2024 |
CPAI-2023-1535
|
|
CVE-2023-50218
|
Inductive Automation Ignition Insecure Deserialization (CVE-2023-50218)
|
High
|
22 Sep 2024 |
22 Sep 2024 |
CPAI-2024-0840
|
|
CVE-2024-6893
|
Journyx XML External Entity Injection (CVE-2024-6893)
|
Critical
|
22 Sep 2024 |
22 Sep 2024 |
CPAI-2024-0824
|
|
CVE-2024-27954
|
WordPress Automatic Arbitrary File Download (CVE-2024-27954)
|
Critical
|
22 Sep 2024 |
22 Sep 2024 |
CPAI-2024-0816
|
|
CVE-2024-44466
|
Comfast CF-XR11 Command Injection (CVE-2024-44466)
|
High
|
22 Sep 2024 |
22 Sep 2024 |
CPAI-2024-0808
|
|
CVE-2024-1884
|
PaperCut NG/MF Server-Side Request Forgery (CVE-2024-1884)
|
High
|
10 Sep 2024 |
22 Sep 2024 |
CPAI-2024-0793
|
Adobe APSB24-71
|
CVE-2024-41874
|
Adobe ColdFusion Deserialization of Untrusted Data (APSB24-71: CVE-2024-41874)
|
Critical
|
19 Sep 2024 |
19 Sep 2024 |
CPAI-2024-0828
|
|
CVE-2024-7954
|
SPIP Remote Code Execution (CVE-2024-7954)
|
Critical
|
2 Jun 2024 |
19 Sep 2024 |
CPAI-2022-1601
|
|
CVE-2022-38142
|
Delta InfraSuite Device Master Insecure Deserialization (CVE-2022-38142)
|
Critical
|
18 Sep 2024 |
18 Sep 2024 |
CPAI-2021-2021
|
|
CVE-2021-38389
|
Advantech WebAccess Buffer Overflow (CVE-2021-38389)
|
Critical
|
17 Sep 2024 |
17 Sep 2024 |
CPAI-2023-1898
|
|
CVE-2023-51409
|
WordPress AI Engine Plugin Arbitrary File Upload (CVE-2023-51409)
|
Critical
|
17 Sep 2024 |
17 Sep 2024 |
CPAI-2023-1897
|
|
CVE-2023-3595 CVE-2023-3596
|
Rockwell Automation Multiple Products Remote Code Execution (CVE-2023-3595; CVE-2023-3596)
|
High
|
17 Sep 2024 |
17 Sep 2024 |
CPAI-2024-0805
|
|
CVE-2024-5505
|
Netgear ProSAFE NMS300 Directory Traversal (CVE-2024-5505)
|
Critical
|
16 Sep 2024 |
16 Sep 2024 |
CPAI-2024-0814
|
|
CVE-2024-8517
|
SPIP Remote Code Execution (CVE-2024-8517)
|
Medium
|
16 Sep 2024 |
16 Sep 2024 |
CPAI-2024-0811
|
|
CVE-2024-24494
|
Daily Habit Tracker Cross-Site Scripting (CVE-2024-24494)
|
High
|
16 Sep 2024 |
16 Sep 2024 |
CPAI-2024-0807
|
|
|
Tongda OA Directory Traversal
|
High
|
16 Sep 2024 |
16 Sep 2024 |
CPAI-2024-0801
|
|
CVE-2024-43425
|
Moodle Remote Code Execution (CVE-2024-43425)
|
High
|
16 Sep 2024 |
16 Sep 2024 |
CPAI-2024-0800
|
|
CVE-2024-35181 CVE-2024-35182
|
Meshery SQL Injection (CVE-2024-35181; CVE-2024-35182)
|
High
|
16 Sep 2024 |
16 Sep 2024 |
CPAI-2024-0785
|
|
|
Ruijie EWEB Command Injection
|
High
|
16 Sep 2024 |
16 Sep 2024 |
CPAI-2024-0781
|
|
CVE-2024-43044
|
Jenkins Arbitrary File Read (CVE-2024-43044)
|
Critical
|
16 Sep 2024 |
16 Sep 2024 |
CPAI-2024-0778
|
|
CVE-2024-38077
|
Microsoft Windows Server Remote Code Execution (CVE-2024-38077)
|
Critical
|
14 Mar 2024 |
16 Sep 2024 |
CPAI-2024-0032
|
|
CVE-2022-0944 CVE-2023-29827
|
Node.js Server-Side Template Injection (CVE-2022-0944; CVE-2023-29827)
|
Medium
|
16 Sep 2024 |
16 Sep 2024 |
CPAI-2022-1549
|
|
CVE-2022-37985
|
Microsoft Windows Information Disclosure (CVE-2022-37985)
|
Critical
|
15 Sep 2024 |
15 Sep 2024 |
CPAI-2024-0812
|
|
CVE-2024-28986
|
SolarWinds Web Help Desk Insecure Deserialization (CVE-2024-28986)
|
Medium
|
15 Sep 2024 |
15 Sep 2024 |
CPAI-2024-0804
|
|
CVE-2024-5723
|
Centreon Project Centreon Web SQL Injection (CVE-2024-5723)
|
Critical
|
15 Sep 2024 |
15 Sep 2024 |
CPAI-2023-1895
|
|
CVE-2023-51364
|
QNAP QTS Command Injection (CVE-2023-51364)
|
Critical
|
12 Sep 2024 |
12 Sep 2024 |
CPAI-2024-0794
|
|
CVE-2024-27747
|
Petrol Pump Management System Arbitrary File Upload (CVE-2024-27747)
|
Critical
|
12 Sep 2024 |
12 Sep 2024 |
CPAI-2024-0792
|
|
CVE-2024-27746
|
Petrol Pump Management System SQL Injection (CVE-2024-27746)
|
High
|
11 Sep 2024 |
12 Sep 2024 |
CPAI-2015-1670
|
|
CVE-2015-2387
|
Microsoft Windows Memory Corruption (CVE-2015-2387)
|
High
|
12 Sep 2024 |
12 Sep 2024 |
CPAI-2021-1773
|
|
CVE-2021-22797
|
Schneider Electric EcoStruxure Directory Traversal (CVE-2021-22797)
|
Critical
|
11 Sep 2024 |
11 Sep 2024 |
CPAI-2023-1892
|
|
CVE-2023-31475
|
Gl-Inet GL-S20 Buffer Overflow (CVE-2023-31475)
|
High
|
11 Sep 2024 |
11 Sep 2024 |
CPAI-2010-0813
|
|
CVE-2010-2551
|
Microsoft Windows Denial of Service (CVE-2010-2551)
|
High
|
11 Sep 2024 |
11 Sep 2024 |
CPAI-2023-1890
|
|
CVE-2023-33919
|
Siemens Multiple Products Command Injection (CVE-2023-33919)
|
Medium
|
11 Sep 2024 |
11 Sep 2024 |
CPAI-2024-0768
|
|
CVE-2024-4044
|
National Instruments FlexLogger Insecure Deserialization (CVE-2024-4044)
|
Critical
|
11 Sep 2024 |
11 Sep 2024 |
CPAI-2023-1873
|
|
CVE-2023-5222
|
Viessmann Vitogate 300 Hardcoded Credentials (CVE-2023-5222)
|
Critical
|
11 Sep 2024 |
11 Sep 2024 |
CPAI-2024-0702
|
|
CVE-2024-4883
|
WhatsUp Gold Directory Traversal (CVE-2024-4883)
|
Medium
|
7 Jul 2024 |
11 Sep 2024 |
CPAI-2019-3209
|
|
CVE-2019-14470
|
WordPress UserPro Plugin Cross-Site Scripting (CVE-2019-14470)
|
High
|
11 Sep 2024 |
11 Sep 2024 |
CPAI-2023-1146
|
|
CVE-2023-43622
|
Apache HTTP Server Remote Code Execution (CVE-2023-43622)
|
High
|
10 Sep 2024 |
10 Sep 2024 |
CPAI-2024-0790
|
Adobe APSB24-70
|
CVE-2024-41869
|
Adobe Acrobat and Reader Use After Free (APSB24-70: CVE-2024-41869)
|
High
|
10 Sep 2024 |
10 Sep 2024 |
CPAI-2024-0789
|
Adobe APSB24-70
|
CVE-2024-39420
|
Adobe Acrobat and Reader Time-of-check Time-of-use (APSB24-70: CVE-2024-39420)
|
High
|
10 Sep 2024 |
10 Sep 2024 |
CPAI-2024-0765
|
Microsoft CVE-2024-38244
|
CVE-2024-38244
|
Microsoft Kernel Streaming Service Driver Elevation of Privilege (CVE-2024-38244)
|
High
|
10 Sep 2024 |
10 Sep 2024 |
CPAI-2024-0762
|
Microsoft CVE-2024-38243
|
CVE-2024-38243
|
Microsoft Kernel Streaming Service Driver Elevation of Privilege (CVE-2024-38243)
|
High
|
10 Sep 2024 |
10 Sep 2024 |
CPAI-2024-0760
|
Microsoft CVE-2024-38237
|
CVE-2024-38237
|
Microsoft Kernel Streaming WOW Thunk Service Driver Elevation of Privilege (CVE-2024-38237)
|
High
|
10 Sep 2024 |
10 Sep 2024 |
CPAI-2024-0759
|
Microsoft CVE-2024-38241
|
CVE-2024-38241
|
Microsoft Kernel Streaming Service Driver Elevation of Privilege (CVE-2024-38241)
|
High
|
9 Sep 2024 |
9 Sep 2024 |
CPAI-2024-0788
|
|
CVE-2024-45195
|
Apache OFBiz Remote Code Execution (CVE-2024-45195)
|
High
|
9 Sep 2024 |
9 Sep 2024 |
CPAI-2024-0777
|
|
CVE-2024-7331
|
Totolink A3300R Buffer Overflow (CVE-2024-7331)
|
High
|
9 Sep 2024 |
9 Sep 2024 |
CPAI-2023-1889
|
|
CVE-2023-3450
|
Ruijie RG-BCR860 Command Injection (CVE-2023-3450)
|
High
|
9 Sep 2024 |
9 Sep 2024 |
CPAI-2024-0775
|
|
|
Dahua Smart Park Arbitrary File Upload
|
Medium
|
9 Sep 2024 |
9 Sep 2024 |
CPAI-2023-1884
|
|
CVE-2023-0084
|
WordPress Metform Elementor Plugin Cross-Site Scripting (CVE-2023-0084)
|