High
|
20 Jul 2022 |
30 Dec 2024 |
CPAI-2022-0357
|
|
CVE-2022-27924
|
Zimbra Collaboration CRLF Injection (CVE-2022-27924)
|
Critical
|
16 Feb 2022 |
30 Dec 2024 |
CPAI-2021-1024
|
|
CVE-2021-37415
|
Zoho ManageEngine ServiceDesk Authentication Bypass (CVE-2021-37415)
|
High
|
26 May 2022 |
30 Dec 2024 |
CPAI-2018-1803
|
|
CVE-2018-17553
|
Naviwebs Navigate CMS Arbitrary File Upload (CVE-2018-17553)
|
Medium
|
2 Mar 2022 |
23 Dec 2024 |
CPAI-2022-0056
|
|
CVE-2022-23134
|
Zabbix Authentication Bypass (CVE-2022-23134)
|
High
|
17 Nov 2022 |
16 Dec 2024 |
CPAI-2021-1364
|
|
CVE-2021-42129
|
Ivanti Avalanche Enterprise Service Command Injection (CVE-2021-42129)
|
High
|
17 Nov 2022 |
16 Dec 2024 |
CPAI-2021-1363
|
|
CVE-2021-42131
|
Ivanti Avalanche Enterprise Service SQL Injection (CVE-2021-42131)
|
High
|
14 Nov 2022 |
16 Dec 2024 |
CPAI-2021-1362
|
|
CVE-2021-42128
|
Ivanti Avalanche EnterpriseServer Service setUser Authentication Bypass (CVE-2021-42128)
|
High
|
14 Nov 2022 |
16 Dec 2024 |
CPAI-2021-1361
|
|
CVE-2021-42130
|
Ivanti Avalanche DataRepository Service Insecure Deserialization (CVE-2021-42130)
|
High
|
14 Nov 2022 |
16 Dec 2024 |
CPAI-2021-1360
|
|
CVE-2021-42132
|
Ivanti Avalanche PrinterDeviceServer Service Command Injection (CVE-2021-42132)
|
Critical
|
29 Aug 2022 |
16 Dec 2024 |
CPAI-2021-1185
|
|
CVE-2021-44529
|
Ivanti Endpoint Manager Cloud Services Appliance Remote Code Execution (CVE-2021-44529)
|
Medium
|
22 Feb 2022 |
8 Dec 2024 |
CPAI-2021-1094
|
|
CVE-2021-21029
|
Magento Cross-Site Scripting (CVE-2021-21029)
|
High
|
9 Nov 2022 |
5 Dec 2024 |
CPAI-2022-0787
|
|
CVE-2022-28096
|
Skycaiji Command Injection (CVE-2022-28096)
|
Critical
|
19 Apr 2022 |
5 Dec 2024 |
CPAI-2022-0109
|
|
CVE-2022-26318
|
Watchguard Fireware Remote Code Execution (CVE-2022-26318)
|
High
|
21 Nov 2022 |
28 Nov 2024 |
CPAI-2021-1389
|
|
CVE-2021-44224
|
Apache httpd mod_proxy NULL Pointer Dereference (CVE-2021-44224)
|
Critical
|
9 Nov 2022 |
19 Nov 2024 |
CPAI-2022-0845
|
|
CVE-2022-1281
|
WordPress Photo Gallery Plugin SQL Injection (CVE-2022-1281)
|
Medium
|
20 Sep 2022 |
18 Nov 2024 |
CPAI-2021-1283
|
|
CVE-2021-23124
|
Joomla! Cross-Site Scripting (CVE-2021-23124)
|
High
|
3 May 2022 |
18 Nov 2024 |
CPAI-2022-0219
|
|
CVE-2022-29464
|
WSO2 Multiple Products Directory Traversal (CVE-2022-29464)
|
Critical
|
5 Apr 2022 |
18 Nov 2024 |
CPAI-2022-0067
|
|
CVE-2022-24112
|
Apache APISIX Remote Code Execution (CVE-2022-24112)
|
High
|
29 Mar 2022 |
13 Nov 2024 |
CPAI-2021-1146
|
|
CVE-2021-41277
|
Metabase GeoJSON Map Information Disclosure (CVE-2021-41277)
|
Medium
|
6 Feb 2022 |
13 Nov 2024 |
CPAI-2021-1063
|
|
CVE-2021-26085 CVE-2021-26086
|
Atlassian Confluence Server Arbitrary File Read (CVE-2021-26086; CVE-2021-26085)
|
Critical
|
28 Mar 2022 |
13 Nov 2024 |
CPAI-2021-1025
|
|
CVE-2021-36260
|
Hikvision Web Server Command Injection (CVE-2021-36260)
|
Critical
|
9 Feb 2022 |
10 Nov 2024 |
CPAI-2020-3454
|
|
CVE-2020-13927
|
Apache Airflow Authentication Bypass (CVE-2020-13927)
|
Critical
|
14 Dec 2022 |
4 Nov 2024 |
CPAI-2022-1068
|
|
CVE-2018-18706 CVE-2022-32383 CVE-2022-32385 CVE-2023-0782 CVE-2023-40797 CVE-2023-40798 CVE-2023-40799 CVE-2023-40801 CVE-2023-45481 CVE-2024-0922 CVE-2024-0923 CVE-2024-0925 CVE-2024-0927 CVE-2024-0928
|
Tenda AC Routers Stack Overflow (CVE-2018-18706; CVE-2022-32383; CVE-2022-32385; CVE-2023-0782; CVE-2023-40797; CVE-2023-40798; CVE-2023-40799; CVE-2023-40801; CVE-2023-45481; CVE-2024-0922; CVE-2024-0923; CVE-2024-0925; CVE-2024-0927; CVE-2024-0928)
|
Critical
|
20 Sep 2022 |
29 Oct 2024 |
CPAI-2018-2102
|
|
CVE-2018-19987 CVE-2018-19988 CVE-2018-19989 CVE-2018-19990 CVE-2018-6530 CVE-2024-3272 CVE-2024-44333 CVE-2024-44334 CVE-2024-44335 CVE-2024-44401 CVE-2024-44402 CVE-2024-48629 CVE-2024-48630 CVE-2024-48631
|
D-Link Multiple Products Command Injection (CVE-2018-19987; CVE-2018-19988; CVE-2018-19989; CVE-2018-19990; CVE-2018-6530; CVE-2024-3272; CVE-2024-44333; CVE-2024-44334; CVE-2024-44335; CVE-2024-44401; CVE-2024-44402; CVE-2024-48629; CVE-2024-48630; CVE-2024-48631)
|
Medium
|
5 Dec 2022 |
29 Oct 2024 |
CPAI-2021-1450
|
|
CVE-2021-2429
|
Oracle MySQL Server InnoDB Buffer Overflow (CVE-2021-2429)
|
Critical
|
11 Dec 2022 |
28 Oct 2024 |
CPAI-2022-1010
|
|
CVE-2022-32032 CVE-2023-49046 CVE-2023-51957 CVE-2023-51958 CVE-2023-51959 CVE-2023-51960 CVE-2023-51961 CVE-2023-51962 CVE-2023-51963 CVE-2023-51964 CVE-2023-51965 CVE-2023-51966 CVE-2024-30620 CVE-2024-30621
|
Tenda AX Routers Stack Overflow (CVE-2022-32032; CVE-2023-49046; CVE-2023-51957; CVE-2023-51958; CVE-2023-51959; CVE-2023-51960; CVE-2023-51961; CVE-2023-51962; CVE-2023-51963; CVE-2023-51964; CVE-2023-51965; CVE-2023-51966; CVE-2024-30620; CVE-2024-30621)
|
Critical
|
5 Dec 2022 |
28 Oct 2024 |
CPAI-2021-1415
|
|
CVE-2021-25274
|
SolarWinds Orion Platform Insecure Deserialization (CVE-2021-25274)
|
Critical
|
12 Dec 2022 |
15 Oct 2024 |
CPAI-2022-1015
|
|
CVE-2022-38325 CVE-2022-38326 CVE-2022-40853 CVE-2022-40854 CVE-2022-40855 CVE-2022-40860 CVE-2022-40862 CVE-2022-40864 CVE-2022-40865 CVE-2022-40866 CVE-2022-40867 CVE-2022-40868 CVE-2022-40869 CVE-2023-27061
|
Tenda Routers Buffer Overflow (CVE-2022-38325; CVE-2022-38326; CVE-2022-40853; CVE-2022-40854; CVE-2022-40855; CVE-2022-40860; CVE-2022-40862; CVE-2022-40864; CVE-2022-40865; CVE-2022-40866; CVE-2022-40867; CVE-2022-40868; CVE-2022-40869; CVE-2023-27061)
|
Critical
|
4 Dec 2022 |
10 Oct 2024 |
CPAI-2022-0974
|
|
CVE-2022-30472 CVE-2022-30476 CVE-2022-30477 CVE-2022-38309 CVE-2022-38310 CVE-2022-38311 CVE-2022-38312 CVE-2022-38313 CVE-2022-38314 CVE-2022-40854 CVE-2023-37711 CVE-2023-38823 CVE-2023-45479 CVE-2023-4744
|
Tenda AC Routers Buffer Overflow (CVE-2022-30472; CVE-2022-30476; CVE-2022-30477; CVE-2022-38309; CVE-2022-38310; CVE-2022-38311; CVE-2022-38312; CVE-2022-38313; CVE-2022-38314; CVE-2022-40854; CVE-2023-37711; CVE-2023-38823; CVE-2023-45479; CVE-2023-4744)
|
Critical
|
11 Dec 2022 |
23 Sep 2024 |
CPAI-2021-1455
|
|
CVE-2021-30181
|
Apache Dubbo Remote Code Execution (CVE-2021-30181)
|
Critical
|
28 Nov 2022 |
9 Sep 2024 |
CPAI-2021-1430
|
|
CVE-2021-22802
|
Schneider-Electric Interactive Graphical SCADA Remote Code Execution (CVE-2021-22802)
|
High
|
14 Nov 2022 |
20 Aug 2024 |
CPAI-2022-0807
|
|
CVE-2022-1292
|
OpenSSL Command Injection (CVE-2022-1292)
|
High
|
20 Sep 2022 |
12 Aug 2024 |
CPAI-2021-1282
|
|
CVE-2021-27084
|
Microsoft Visual Studio Code Remote Code Execution (CVE-2021-27084)
|
Critical
|
23 May 2022 |
12 Aug 2024 |
CPAI-2022-0249
|
|
CVE-2022-0441 CVE-2024-5973
|
WordPress MasterStudy LMS Plugin Privilege Escalation (CVE-2022-0441; CVE-2024-5973)
|
High
|
12 Dec 2022 |
6 Aug 2024 |
CPAI-2022-1042
|
|
CVE-2022-41034
|
Microsoft Visual Studio Code Remote Code Execution (CVE-2022-41034)
|
Medium
|
8 Mar 2022 |
14 Jul 2024 |
CPAI-2022-0061
|
Microsoft CVE-2022-23253
|
CVE-2022-23253
|
Microsoft Point-to-Point Tunneling Protocol Denial of Service (CVE-2022-23253)
|
Critical
|
16 Mar 2022 |
8 Jul 2024 |
CPAI-2021-1110
|
|
CVE-2021-44515
|
ZohoCorp ManageEngine Desktop Central Authentication Bypass (CVE-2021-44515)
|
Critical
|
18 Dec 2022 |
4 Jul 2024 |
CPAI-2022-1074
|
|
CVE-2022-24144 CVE-2023-27239
|
Tenda AX3 Stack Overflow (CVE-2022-24144; CVE-2023-27239)
|
Critical
|
22 Nov 2022 |
4 Jul 2024 |
CPAI-2022-0866
|
|
CVE-2022-24148 CVE-2022-24150 CVE-2023-27240
|
Tenda AX3 Command Injection (CVE-2022-24148; CVE-2022-24150; CVE-2023-27240)
|
Critical
|
19 Apr 2022 |
4 Jul 2024 |
CPAI-2022-0202
|
|
CVE-2022-26809
|
Microsoft RPC Remote Code Execution (CVE-2022-26809)
|
High
|
14 Dec 2022 |
2 Jul 2024 |
CPAI-2022-1047
|
|
CVE-2022-30129
|
Microsoft Visual Studio Code Remote Code Execution (CVE-2022-30129)
|
High
|
11 Oct 2022 |
2 Jul 2024 |
CPAI-2022-0641
|
Microsoft CVE-2022-38053
|
CVE-2022-38053
|
Microsoft SharePoint Server Remote Code Execution (CVE-2022-38053)
|
High
|
8 Dec 2022 |
24 Jun 2024 |
CPAI-2021-1477
|
|
CVE-2021-27212
|
OpenLDAP slapd Denial of Service (CVE-2021-27212)
|
High
|
8 Dec 2022 |
24 Jun 2024 |
CPAI-2021-1476
|
|
CVE-2021-27273
|
Netgear ProSAFE Command Injection (CVE-2021-27273)
|
High
|
8 Dec 2022 |
24 Jun 2024 |
CPAI-2021-1475
|
|
CVE-2021-27275
|
Netgear ProSAFE Network Management System Arbitrary File Deletion (CVE-2021-27275)
|
Medium
|
5 Dec 2022 |
24 Jun 2024 |
CPAI-2021-1454
|
|
CVE-2021-2401
|
Oracle Fusion Middleware Business Intelligence External Entity Injection (CVE-2021-2401)
|
Critical
|
5 Dec 2022 |
24 Jun 2024 |
CPAI-2021-1451
|
|
CVE-2021-2456
|
Oracle Fusion Middleware Business Intelligence Insecure Deserialization (CVE-2021-2456)
|
High
|
5 Dec 2022 |
23 Jun 2024 |
CPAI-2021-1453
|
|
CVE-2021-2396
|
Oracle Fusion Middleware Business Intelligence Remote Code Execution (CVE-2021-2396)
|
Medium
|
28 Nov 2022 |
23 Jun 2024 |
CPAI-2021-1429
|
|
CVE-2021-22242
|
GitLab Community and Enterprise Edition Cross-Site Scripting (CVE-2021-22242)
|
Medium
|
17 Nov 2022 |
20 Jun 2024 |
CPAI-2022-0883
|
|
CVE-2022-1178
|
OpenEMR Cross-Site Scripting (CVE-2022-1178)
|