|
Critical
|
14 May 2020 |
26 May 2026 |
CPAI-2026-5427
|
|
|
Linux System Files Information Disclosure Over HTTP
|
|
Critical
|
19 Oct 2020 |
23 Apr 2026 |
CPAI-2020-4696
|
|
CVE-2020-10621
|
Advantech WebAccess NMS Arbitrary File Upload (CVE-2020-10621)
|
|
Critical
|
29 Oct 2020 |
19 Apr 2026 |
CPAI-2019-3555
|
|
CVE-2019-19006
|
Sangoma FreePBX Authentication Bypass (CVE-2019-19006)
|
|
High
|
29 Jul 2020 |
30 Mar 2026 |
CPAI-2026-2344
|
|
|
FLIR AX8 Thermal Camera Arbitrary File Disclosure
|
|
Critical
|
3 Jun 2020 |
30 Mar 2026 |
CPAI-2025-14066
|
|
CVE-2014-5470 CVE-2020-10826 CVE-2020-10827 CVE-2020-10828 CVE-2020-13756 CVE-2021-1472 CVE-2021-1473 CVE-2021-42071 CVE-2022-4221 CVE-2025-2611 CVE-2025-58060
|
HTTP Headers Remote Code Execution (CVE-2014-5470; CVE-2020-10826; CVE-2020-10827; CVE-2020-10828; CVE-2020-13756; CVE-2021-1472; CVE-2021-1473; CVE-2021-42071; CVE-2022-4221; CVE-2025-2611; CVE-2025-58060)
|
|
Critical
|
25 Feb 2020 |
15 Mar 2026 |
CPAI-2026-1686
|
|
CVE-2019-5127 CVE-2019-5128 CVE-2019-5129 CVE-2026-29058
|
WWBN AVideo Command Injection (CVE-2019-5127; CVE-2019-5128; CVE-2019-5129; CVE-2026-29058)
|
|
High
|
25 Jun 2020 |
11 Mar 2026 |
CPAI-2018-3306
|
|
CVE-2018-19246
|
PHP-Proxy Information Disclosure (CVE-2018-19246)
|
|
High
|
25 Jun 2020 |
8 Mar 2026 |
CPAI-2018-3300
|
|
CVE-2018-19246
|
PHP-Proxy Information Disclosure (CVE-2018-19246)
|
|
Medium
|
1 Mar 2020 |
24 Feb 2026 |
CPAI-2019-3607
|
|
CVE-2019-13182
|
SolarWinds Serv-U FTP Server Cross-Site Scripting (CVE-2019-13182)
|
|
High
|
21 Dec 2020 |
9 Feb 2026 |
CPAI-2020-1285
|
|
CVE-2020-26217
|
XStream Remote Code Execution (CVE-2020-26217)
|
|
Medium
|
1 Dec 2020 |
9 Feb 2026 |
CPAI-2020-1242
|
|
|
WonderCMS Persistent Cross-Site Scripting
|
|
Medium
|
23 Nov 2020 |
9 Feb 2026 |
CPAI-2020-1194
|
|
CVE-2020-5736
|
Amcrest Cameras Null Pointer Dereference (CVE-2020-5736)
|
|
Critical
|
23 Nov 2020 |
9 Feb 2026 |
CPAI-2019-2403
|
|
CVE-2019-3930
|
Crestron Stack Overflow (CVE-2019-3930)
|
|
High
|
16 Nov 2020 |
9 Feb 2026 |
CPAI-2019-2394
|
|
CVE-2019-19824
|
TOTOLINK Realtek SDK Routers Command Injection (CVE-2019-19824)
|
|
Critical
|
4 Nov 2020 |
9 Feb 2026 |
CPAI-2020-1095
|
|
CVE-2020-1472
|
Winlogon Privilege Escalation (CVE-2020-1472)
|
|
High
|
23 Jul 2020 |
9 Feb 2026 |
CPAI-2020-0704
|
|
|
Redis Authentication Bypass Code Execution
|
|
Critical
|
8 Jul 2020 |
9 Feb 2026 |
CPAI-2020-0575
|
|
CVE-2020-14473
|
DrayTek Vigor Buffer Overflow (CVE-2020-14473)
|
|
High
|
5 Jul 2020 |
9 Feb 2026 |
CPAI-2020-0569
|
|
CVE-2020-14993
|
DrayTek Buffer Overflow (CVE-2020-14993)
|
|
High
|
25 Jun 2020 |
9 Feb 2026 |
CPAI-2020-0560
|
|
|
Redis Authentication Bypass Remote Command Execution
|
|
High
|
28 Jun 2020 |
9 Feb 2026 |
CPAI-2020-0549
|
|
CVE-2020-10823
|
DrayTek Vigor Stack Buffer Overflow (CVE-2020-10823)
|
|
Critical
|
7 May 2020 |
9 Feb 2026 |
CPAI-2020-0320
|
|
CVE-2020-8515
|
Draytek Vigor Command Injection (CVE-2020-8515)
|
|
Critical
|
3 Jun 2020 |
26 Jan 2026 |
CPAI-2025-11323
|
|
CVE-2014-5470 CVE-2020-10826 CVE-2020-10827 CVE-2020-10828 CVE-2020-13756 CVE-2021-1472 CVE-2021-1473 CVE-2021-42071 CVE-2022-4221 CVE-2025-2611 CVE-2025-58060
|
HTTP Headers Remote Code Execution (CVE-2014-5470; CVE-2020-10826; CVE-2020-10827; CVE-2020-10828; CVE-2020-13756; CVE-2021-1472; CVE-2021-1473; CVE-2021-42071; CVE-2022-4221; CVE-2025-2611; CVE-2025-58060)
|
|
High
|
28 Nov 2020 |
25 Dec 2025 |
CPAI-2020-1233
|
|
CVE-2020-28328
|
SuiteCRM Remote Code Execution (CVE-2020-28328)
|
|
Medium
|
23 Nov 2020 |
25 Dec 2025 |
CPAI-2020-1148
|
|
CVE-2020-5730
|
OpenMRS Cross-Site Scripting (CVE-2020-5730)
|
|
High
|
9 Sep 2020 |
25 Dec 2025 |
CPAI-2020-0840
|
|
|
QNAP NAS Remote Code Execution
|
|
Critical
|
27 Aug 2020 |
25 Dec 2025 |
CPAI-2020-0723
|
|
CVE-2020-15916
|
Tenda Command Injection (CVE-2020-15916)
|
|
High
|
28 Jul 2020 |
25 Dec 2025 |
CPAI-2019-2203
|
|
CVE-2019-18277
|
HaProxy HTTP Request Smuggling (CVE-2019-18277)
|
|
High
|
5 Jul 2020 |
25 Dec 2025 |
CPAI-2014-2723
|
|
CVE-2014-8945
|
Lexiglot Command Injection (CVE-2014-8945)
|
|
Critical
|
19 Oct 2020 |
17 Dec 2025 |
CPAI-2020-4489
|
|
CVE-2020-10621
|
Advantech WebAccess NMS Arbitrary File Upload (CVE-2020-10621)
|
|
High
|
21 Nov 2020 |
15 Dec 2025 |
CPAI-2020-1180
|
|
CVE-2020-10644 CVE-2020-12004 CVE-2023-50219 CVE-2023-50220
|
Inductive Automation Ignition Insecure Deserialization (CVE-2020-10644; CVE-2020-12004; CVE-2023-50219; CVE-2023-50220)
|
|
Critical
|
21 Jun 2020 |
11 Dec 2025 |
CPAI-2025-8282
|
|
CVE-2020-13389 CVE-2020-13390 CVE-2020-13391 CVE-2020-13392 CVE-2020-13393 CVE-2024-2892 CVE-2024-33180 CVE-2025-50641 CVE-2025-8940
|
Tenda AC Devices Buffer Overflow (CVE-2020-13389; CVE-2020-13390; CVE-2020-13391; CVE-2020-13392; CVE-2020-13393; CVE-2024-2892; CVE-2024-33180; CVE-2025-50641; CVE-2025-8940)
|
|
Critical
|
28 Dec 2020 |
10 Dec 2025 |
CPAI-2020-4473
|
|
CVE-2020-13921
|
Apache SkyWalking SQL Injection (CVE-2020-13921)
|
|
High
|
10 Nov 2020 |
10 Dec 2025 |
CPAI-2020-4476
|
|
CVE-2020-24435
|
Adobe Acrobat Buffer Overflow (CVE-2020-24435)
|
|
Critical
|
19 Oct 2020 |
9 Dec 2025 |
CPAI-2020-1007
|
|
CVE-2020-10621
|
Advantech WebAccess Arbitrary File Upload (CVE-2020-10621)
|
|
Critical
|
21 Jun 2020 |
4 Dec 2025 |
CPAI-2025-7800
|
|
CVE-2020-13389 CVE-2020-13390 CVE-2020-13391 CVE-2020-13392 CVE-2020-13393 CVE-2024-2892 CVE-2024-33180 CVE-2025-50641
|
Tenda AC Devices Buffer Overflow (CVE-2020-13389; CVE-2020-13390; CVE-2020-13391; CVE-2020-13392; CVE-2020-13393; CVE-2024-2892; CVE-2024-33180; CVE-2025-50641)
|
|
Critical
|
20 Jun 2020 |
2 Dec 2025 |
CPAI-2020-0536
|
|
CVE-2020-12116
|
Zoho ManageEngine Directory Traversal (CVE-2020-12116)
|
|
High
|
16 Apr 2020 |
16 Nov 2025 |
CPAI-2019-3431
|
|
CVE-2019-3993
|
ELOG Project Information Disclosure (CVE-2019-3993)
|
|
High
|
25 Feb 2020 |
16 Nov 2025 |
CPAI-2019-3432
|
|
CVE-2019-6739
|
Malwarebytes AntiMalware Remote Code Execution (CVE-2019-6739)
|
|
Critical
|
3 Jun 2020 |
15 Oct 2025 |
CPAI-2025-2637
|
|
CVE-2014-5470 CVE-2020-10826 CVE-2020-10827 CVE-2020-10828 CVE-2020-13756 CVE-2021-1472 CVE-2021-1473 CVE-2021-42071 CVE-2022-4221 CVE-2025-2611 CVE-2025-58060
|
HTTP Headers Remote Code Execution (CVE-2014-5470; CVE-2020-10826; CVE-2020-10827; CVE-2020-10828; CVE-2020-13756; CVE-2021-1472; CVE-2021-1473; CVE-2021-42071; CVE-2022-4221; CVE-2025-2611; CVE-2025-58060)
|
|
High
|
8 Dec 2020 |
5 Oct 2025 |
CPAI-2020-4366
|
Microsoft CVE-2020-17144
|
CVE-2020-17144
|
Microsoft Exchange Server Remote Code Execution (CVE-2020-17144)
|
|
High
|
14 Jul 2020 |
5 Oct 2025 |
CPAI-2020-4365
|
|
CVE-2020-1147
|
Microsoft Multiple Products Remote Code Execution (CVE-2020-1147)
|
|
Critical
|
3 Jun 2020 |
25 Sep 2025 |
CPAI-2025-1864
|
|
CVE-2014-5470 CVE-2020-10826 CVE-2020-10827 CVE-2020-10828 CVE-2020-13756 CVE-2021-1472 CVE-2021-1473 CVE-2021-42071 CVE-2022-4221 CVE-2025-2611
|
HTTP Headers Remote Code Execution (CVE-2014-5470; CVE-2020-10826; CVE-2020-10827; CVE-2020-10828; CVE-2020-13756; CVE-2021-1472; CVE-2021-1473; CVE-2021-42071; CVE-2022-4221; CVE-2025-2611)
|
|
Critical
|
14 May 2020 |
16 Sep 2025 |
CPAI-2025-1557
|
|
|
Linux System Files Information Disclosure Over HTTP
|
|
Critical
|
8 Jun 2020 |
15 Sep 2025 |
CPAI-2019-3357
|
|
CVE-2019-7194 CVE-2019-7195
|
QNAP Photo Station Directory Traversal (CVE-2019-7194; CVE-2019-7195)
|
|
Critical
|
27 Dec 2020 |
14 Aug 2025 |
CPAI-2020-1269
|
|
CVE-2020-13942
|
Apache Unomi Remote Code Execution(CVE-2020-13942)
|
|
High
|
16 Jun 2020 |
14 Aug 2025 |
CPAI-2018-1417
|
|
CVE-2018-5955
|
GitStack Authentication Bypass (CVE-2018-5955)
|
|
High
|
8 Apr 2020 |
14 Aug 2025 |
CPAI-2019-1978
|
|
CVE-2019-19509
|
rConfig Command Injection (CVE-2019-19509)
|
|
Critical
|
9 Mar 2020 |
14 Aug 2025 |
CPAI-2019-1922
|
|
CVE-2019-1619 CVE-2019-1620 CVE-2019-1621 CVE-2019-1622
|
Cisco Data Center Network Manager Arbitrary File Upload (CVE-2019-1619; CVE-2019-1620; CVE-2019-1621; CVE-2019-1622)
|
|
High
|
11 Feb 2020 |
14 Aug 2025 |
CPAI-2019-1732
|
|
CVE-2019-1003001 CVE-2019-1003002 CVE-2019-1003005
|
Jenkins Pipeline Groovy Remote Code Execution (CVE-2019-1003001; CVE-2019-1003002; CVE-2019-1003005)
|
|
Critical
|
2 Feb 2020 |
14 Aug 2025 |
CPAI-2019-1666
|
|
CVE-2019-7256
|
Linear eMerge Command Injection (CVE-2019-7256)
|