Critical
|
2 Jun 2024 |
19 Sep 2024 |
CPAI-2022-1601
|
|
CVE-2022-38142
|
Delta InfraSuite Device Master Insecure Deserialization (CVE-2022-38142)
|
Critical
|
18 Sep 2024 |
18 Sep 2024 |
CPAI-2021-2021
|
|
CVE-2021-38389
|
Advantech WebAccess Buffer Overflow (CVE-2021-38389)
|
Critical
|
17 Sep 2024 |
17 Sep 2024 |
CPAI-2023-1898
|
|
CVE-2023-51409
|
WordPress AI Engine Plugin Arbitrary File Upload (CVE-2023-51409)
|
Critical
|
17 Sep 2024 |
17 Sep 2024 |
CPAI-2023-1897
|
|
CVE-2023-3595 CVE-2023-3596
|
Rockwell Automation Multiple Products Remote Code Execution (CVE-2023-3595; CVE-2023-3596)
|
High
|
17 Sep 2024 |
17 Sep 2024 |
CPAI-2024-0805
|
|
CVE-2024-5505
|
Netgear ProSAFE NMS300 Directory Traversal (CVE-2024-5505)
|
Critical
|
16 Sep 2024 |
16 Sep 2024 |
CPAI-2024-0814
|
|
CVE-2024-8517
|
SPIP Remote Code Execution (CVE-2024-8517)
|
Medium
|
16 Sep 2024 |
16 Sep 2024 |
CPAI-2024-0811
|
|
CVE-2024-24494
|
Daily Habit Tracker Cross-Site Scripting (CVE-2024-24494)
|
High
|
16 Sep 2024 |
16 Sep 2024 |
CPAI-2024-0807
|
|
|
Tongda OA Directory Traversal
|
High
|
16 Sep 2024 |
16 Sep 2024 |
CPAI-2024-0801
|
|
CVE-2024-43425
|
Moodle Remote Code Execution (CVE-2024-43425)
|
High
|
16 Sep 2024 |
16 Sep 2024 |
CPAI-2024-0800
|
|
CVE-2024-35181 CVE-2024-35182
|
Meshery SQL Injection (CVE-2024-35181; CVE-2024-35182)
|
High
|
16 Sep 2024 |
16 Sep 2024 |
CPAI-2024-0785
|
|
|
Ruijie EWEB Command Injection
|
High
|
16 Sep 2024 |
16 Sep 2024 |
CPAI-2024-0781
|
|
CVE-2024-43044
|
Jenkins Arbitrary File Read (CVE-2024-43044)
|
Critical
|
16 Sep 2024 |
16 Sep 2024 |
CPAI-2024-0778
|
|
CVE-2024-38077
|
Microsoft Windows Server Remote Code Execution (CVE-2024-38077)
|
Critical
|
14 Mar 2024 |
16 Sep 2024 |
CPAI-2024-0032
|
|
CVE-2022-0944 CVE-2023-29827
|
Node.js Server-Side Template Injection (CVE-2022-0944; CVE-2023-29827)
|
Medium
|
16 Sep 2024 |
16 Sep 2024 |
CPAI-2022-1549
|
|
CVE-2022-37985
|
Microsoft Windows Information Disclosure (CVE-2022-37985)
|
Critical
|
15 Sep 2024 |
15 Sep 2024 |
CPAI-2024-0812
|
|
CVE-2024-28986
|
SolarWinds Web Help Desk Insecure Deserialization (CVE-2024-28986)
|
Medium
|
15 Sep 2024 |
15 Sep 2024 |
CPAI-2024-0804
|
|
CVE-2024-5723
|
Centreon Project Centreon Web SQL Injection (CVE-2024-5723)
|
Critical
|
15 Sep 2024 |
15 Sep 2024 |
CPAI-2023-1895
|
|
CVE-2023-51364
|
QNAP QTS Command Injection (CVE-2023-51364)
|
Critical
|
12 Sep 2024 |
12 Sep 2024 |
CPAI-2024-0794
|
|
CVE-2024-27747
|
Petrol Pump Management System Arbitrary File Upload (CVE-2024-27747)
|
Critical
|
12 Sep 2024 |
12 Sep 2024 |
CPAI-2024-0792
|
|
CVE-2024-27746
|
Petrol Pump Management System SQL Injection (CVE-2024-27746)
|
High
|
11 Sep 2024 |
12 Sep 2024 |
CPAI-2015-1670
|
|
CVE-2015-2387
|
Microsoft Windows Memory Corruption (CVE-2015-2387)
|
High
|
12 Sep 2024 |
12 Sep 2024 |
CPAI-2021-1773
|
|
CVE-2021-22797
|
Schneider Electric EcoStruxure Directory Traversal (CVE-2021-22797)
|
Critical
|
11 Sep 2024 |
11 Sep 2024 |
CPAI-2023-1892
|
|
CVE-2023-31475
|
Gl-Inet GL-S20 Buffer Overflow (CVE-2023-31475)
|
High
|
11 Sep 2024 |
11 Sep 2024 |
CPAI-2010-0813
|
|
CVE-2010-2551
|
Microsoft Windows Denial of Service (CVE-2010-2551)
|
High
|
11 Sep 2024 |
11 Sep 2024 |
CPAI-2023-1890
|
|
CVE-2023-33919
|
Siemens Multiple Products Command Injection (CVE-2023-33919)
|
Medium
|
11 Sep 2024 |
11 Sep 2024 |
CPAI-2024-0768
|
|
CVE-2024-4044
|
National Instruments FlexLogger Insecure Deserialization (CVE-2024-4044)
|
Critical
|
11 Sep 2024 |
11 Sep 2024 |
CPAI-2023-1873
|
|
CVE-2023-5222
|
Viessmann Vitogate 300 Hardcoded Credentials (CVE-2023-5222)
|
Critical
|
11 Sep 2024 |
11 Sep 2024 |
CPAI-2024-0702
|
|
CVE-2024-4883
|
WhatsUp Gold Directory Traversal (CVE-2024-4883)
|
Medium
|
7 Jul 2024 |
11 Sep 2024 |
CPAI-2019-3209
|
|
CVE-2019-14470
|
WordPress UserPro Plugin Cross-Site Scripting (CVE-2019-14470)
|
High
|
11 Sep 2024 |
11 Sep 2024 |
CPAI-2023-1146
|
|
CVE-2023-43622
|
Apache HTTP Server Remote Code Execution (CVE-2023-43622)
|
High
|
10 Sep 2024 |
10 Sep 2024 |
CPAI-2024-0790
|
Adobe APSB24-70
|
CVE-2024-41869
|
Adobe Acrobat and Reader Use After Free (APSB24-70: CVE-2024-41869)
|
High
|
10 Sep 2024 |
10 Sep 2024 |
CPAI-2024-0789
|
Adobe APSB24-70
|
CVE-2024-39420
|
Adobe Acrobat and Reader Time-of-check Time-of-use (APSB24-70: CVE-2024-39420)
|
High
|
10 Sep 2024 |
10 Sep 2024 |
CPAI-2024-0765
|
Microsoft CVE-2024-38244
|
CVE-2024-38244
|
Microsoft Kernel Streaming Service Driver Elevation of Privilege (CVE-2024-38244)
|
High
|
10 Sep 2024 |
10 Sep 2024 |
CPAI-2024-0762
|
Microsoft CVE-2024-38243
|
CVE-2024-38243
|
Microsoft Kernel Streaming Service Driver Elevation of Privilege (CVE-2024-38243)
|
High
|
10 Sep 2024 |
10 Sep 2024 |
CPAI-2024-0760
|
Microsoft CVE-2024-38237
|
CVE-2024-38237
|
Microsoft Kernel Streaming WOW Thunk Service Driver Elevation of Privilege (CVE-2024-38237)
|
High
|
10 Sep 2024 |
10 Sep 2024 |
CPAI-2024-0759
|
Microsoft CVE-2024-38241
|
CVE-2024-38241
|
Microsoft Kernel Streaming Service Driver Elevation of Privilege (CVE-2024-38241)
|
High
|
9 Sep 2024 |
9 Sep 2024 |
CPAI-2024-0788
|
|
CVE-2024-45195
|
Apache OFBiz Remote Code Execution (CVE-2024-45195)
|
High
|
9 Sep 2024 |
9 Sep 2024 |
CPAI-2024-0777
|
|
CVE-2024-7331
|
Totolink A3300R Buffer Overflow (CVE-2024-7331)
|
High
|
9 Sep 2024 |
9 Sep 2024 |
CPAI-2023-1889
|
|
CVE-2023-3450
|
Ruijie RG-BCR860 Command Injection (CVE-2023-3450)
|
High
|
9 Sep 2024 |
9 Sep 2024 |
CPAI-2024-0775
|
|
|
Dahua Smart Park Arbitrary File Upload
|
Medium
|
9 Sep 2024 |
9 Sep 2024 |
CPAI-2023-1884
|
|
CVE-2023-0084
|
WordPress Metform Elementor Plugin Cross-Site Scripting (CVE-2023-0084)
|
Critical
|
9 Sep 2024 |
9 Sep 2024 |
CPAI-2024-0722
|
|
CVE-2024-41660
|
OpenBMC slpd-lite Heap Buffer Overflow (CVE-2024-41660)
|
High
|
20 Aug 2024 |
9 Sep 2024 |
CPAI-2018-2785
|
|
CVE-2018-12543
|
Eclipse Mosquitto Denial-of-Service (CVE-2018-12543)
|
High
|
9 Sep 2024 |
9 Sep 2024 |
CPAI-2024-0648
|
|
CVE-2024-1167
|
SEW-EURODRIVE MOVITOOLS MotionStudio External Entity Injection (CVE-2024-1167)
|
Medium
|
19 Jun 2024 |
9 Sep 2024 |
CPAI-2023-1589
|
|
CVE-2023-0921 CVE-2024-2874
|
GitLab Denial of Service (CVE-2023-0921; CVE-2024-2874)
|
Medium
|
9 Sep 2024 |
9 Sep 2024 |
CPAI-2019-2908
|
|
CVE-2019-0948
|
Microsoft Windows XML External Entity Injection (CVE-2019-0948)
|
High
|
8 Sep 2024 |
8 Sep 2024 |
CPAI-2024-0783
|
|
CVE-2024-39906
|
Haven Command Injection (CVE-2024-39906)
|
High
|
8 Sep 2024 |
8 Sep 2024 |
CPAI-2023-1893
|
|
CVE-2023-51389 CVE-2024-42362
|
Apache HertzBeat Insecure Deserialization (CVE-2023-51389; CVE-2024-42362)
|
High
|
8 Sep 2024 |
8 Sep 2024 |
CPAI-2024-0776
|
|
CVE-2024-45528
|
CodeAstro Membership Management System Cross-Site Scripting (CVE-2024-45528)
|
Critical
|
8 Sep 2024 |
8 Sep 2024 |
CPAI-2024-0773
|
|
CVE-2024-6633
|
Fortra FileCatalyst Workflow Remote Code Execution (CVE-2024-6633)
|