Critical
|
6 Nov 2022 |
6 Nov 2022 |
CPAI-2022-0754
|
|
CVE-2022-29592
|
Tenda TX9 Pro Router Command Injection (CVE-2022-29592)
|
High
|
6 Nov 2022 |
6 Nov 2022 |
CPAI-2021-1322
|
|
CVE-2021-21659
|
Jenkins Filesystem Trigger Plugin XML External Entity Expansion (CVE-2021-21659)
|
Critical
|
6 Nov 2022 |
6 Nov 2022 |
CPAI-2019-2674
|
|
CVE-2019-9165
|
Nagios XI SQL Injection (CVE-2019-9165)
|
Critical
|
3 Nov 2022 |
3 Nov 2022 |
CPAI-2022-0785
|
|
CVE-2022-3786
|
OpenSSL Buffer Overflow (CVE-2022-3786)
|
Medium
|
3 Nov 2022 |
3 Nov 2022 |
CPAI-2022-0793
|
|
CVE-2022-0832
|
Pimcore Cross-Site Scripting (CVE-2022-0832)
|
Critical
|
3 Nov 2022 |
3 Nov 2022 |
CPAI-2022-0779
|
|
CVE-2022-34555
|
TP-Link TL-R473G Command Injection (CVE-2022-34555)
|
Critical
|
3 Nov 2022 |
3 Nov 2022 |
CPAI-2022-0749
|
|
CVE-2022-29337
|
C-DATA Command Injection (CVE-2022-29337)
|
Medium
|
3 Nov 2022 |
3 Nov 2022 |
CPAI-2022-0747
|
|
CVE-2022-20615
|
Jenkins Matrix Project Plugin Cross-Site Scripting (CVE-2022-20615)
|
Medium
|
3 Nov 2022 |
3 Nov 2022 |
CPAI-2022-0742
|
|
CVE-2022-0364
|
WordPress Modern Events Calendar Lite Plugin Cross-Site Scripting (CVE-2022-0364)
|
High
|
3 Nov 2022 |
3 Nov 2022 |
CPAI-2022-0740
|
|
CVE-2022-25017
|
Hitron CHITA Command Injection (CVE-2022-25017)
|
Critical
|
2 Nov 2022 |
2 Nov 2022 |
CPAI-2022-0741
|
|
CVE-2022-24223
|
AtomCMS SQL Injection (CVE-2022-24223)
|
Critical
|
2 Nov 2022 |
2 Nov 2022 |
CPAI-2022-0731
|
|
CVE-2022-0888
|
WordPress Ninja Forms Plugin Arbitrary File Upload (CVE-2022-0888)
|
Critical
|
31 Oct 2022 |
31 Oct 2022 |
CPAI-2020-3608
|
|
CVE-2020-17132
|
Microsoft Exchange Remote Code Execution (CVE-2020-17132)
|
Critical
|
31 Oct 2022 |
31 Oct 2022 |
CPAI-2021-1329
|
|
CVE-2021-2394
|
Oracle WebLogic Server Remote Code Execution (CVE-2021-2394)
|
High
|
31 Oct 2022 |
31 Oct 2022 |
CPAI-2017-1531
|
|
CVE-2017-7456
|
Moxa MXView Denial of Service (CVE-2017-7456)
|
High
|
31 Oct 2022 |
31 Oct 2022 |
CPAI-2022-0776
|
|
CVE-2022-0819
|
Dolibarr ERP and CRM Code Injection (CVE-2022-0819)
|
Medium
|
31 Oct 2022 |
31 Oct 2022 |
CPAI-2022-0774
|
|
CVE-2022-34777
|
Jenkins GitLab Plugin Cross-Site Scripting (CVE-2022-34777)
|
High
|
31 Oct 2022 |
31 Oct 2022 |
CPAI-2022-0771
|
|
CVE-2022-27908
|
Zoho ManageEngine SQL Injection (CVE-2022-27908)
|
Medium
|
31 Oct 2022 |
31 Oct 2022 |
CPAI-2022-0768
|
|
CVE-2022-25772
|
Acquia Mautic Cross-Site Scripting (CVE-2022-25772)
|
Critical
|
31 Oct 2022 |
31 Oct 2022 |
CPAI-2022-0767
|
|
CVE-2022-1366
|
Delta Electronics DIAEnergie SQL Injection (CVE-2022-1366)
|
Critical
|
31 Oct 2022 |
31 Oct 2022 |
CPAI-2022-0766
|
|
CVE-2022-2143
|
Advantech iView Command Injection (CVE-2022-2143)
|
Medium
|
31 Oct 2022 |
31 Oct 2022 |
CPAI-2022-0765
|
|
CVE-2022-2136
|
Advantech iView SQL Injection (CVE-2022-2136)
|
High
|
31 Oct 2022 |
31 Oct 2022 |
CPAI-2022-0763
|
|
CVE-2022-21137
|
OMRON CX-One Buffer Overflow (CVE-2022-21137)
|
High
|
31 Oct 2022 |
31 Oct 2022 |
CPAI-2022-0730
|
|
CVE-2022-0513
|
WordPress WP Statistics Plugin SQL Injection (CVE-2022-0513)
|
High
|
31 Oct 2022 |
31 Oct 2022 |
CPAI-2022-0729
|
|
CVE-2022-24237
|
Snapt Aria Command Injection (CVE-2022-24237)
|
Critical
|
31 Oct 2022 |
31 Oct 2022 |
CPAI-2022-0727
|
|
CVE-2022-23389
|
PublicCMS Remote Code Execution (CVE-2022-23389)
|
Medium
|
31 Oct 2022 |
31 Oct 2022 |
CPAI-2022-0684
|
|
CVE-2022-21826
|
Pulse Connect Secure HTTP Request Smuggling (CVE-2022-21826)
|
Critical
|
30 Oct 2022 |
30 Oct 2022 |
CPAI-2022-0762
|
|
CVE-2022-2135
|
Advantech iView SQL Injection (CVE-2022-2135)
|
Medium
|
30 Oct 2022 |
30 Oct 2022 |
CPAI-2022-0761
|
|
CVE-2022-1181
|
OpenEMR Cross-Site Scripting (CVE-2022-1181)
|
Medium
|
30 Oct 2022 |
30 Oct 2022 |
CPAI-2022-0760
|
|
CVE-2022-1179
|
OpenEMR Cross-Site Scripting (CVE-2022-1179)
|
Critical
|
30 Oct 2022 |
30 Oct 2022 |
CPAI-2022-0759
|
|
CVE-2022-2139
|
Advantech iView Directory Traversal (CVE-2022-2139)
|
Medium
|
30 Oct 2022 |
30 Oct 2022 |
CPAI-2022-0757
|
|
CVE-2022-0218
|
Wordpress Email Template Designer Plugin Authentication Bypass (CVE-2022-0218)
|
Critical
|
30 Oct 2022 |
30 Oct 2022 |
CPAI-2022-0725
|
|
CVE-2022-25076 CVE-2022-25078 CVE-2022-25079 CVE-2022-25080 CVE-2022-25081 CVE-2022-25082 CVE-2022-25083 CVE-2022-25084
|
TOTOLink A860R Command Injection (CVE-2022-25076; CVE-2022-25078; CVE-2022-25079; CVE-2022-25080; CVE-2022-25081; CVE-2022-25082; CVE-2022-25083; CVE-2022-25084)
|
High
|
27 Oct 2022 |
27 Oct 2022 |
CPAI-2018-2138
|
|
CVE-2018-15550
|
Supervene RazDC WebUI Cross-Site Scripting (CVE-2018-15550)
|
Critical
|
27 Oct 2022 |
27 Oct 2022 |
CPAI-2022-0732
|
|
CVE-2022-22930
|
MCMS Template Management Remote Code Execution (CVE-2022-22930)
|
High
|
27 Oct 2022 |
27 Oct 2022 |
CPAI-2022-0726
|
|
CVE-2022-27478
|
Victor CMS Remote Code Execution (CVE-2022-27478)
|
Medium
|
27 Oct 2022 |
27 Oct 2022 |
CPAI-2022-0719
|
|
CVE-2022-35829
|
Microsoft Azure Service Fabric Explorer Cross Site Scripting (CVE-2022-35829)
|
Medium
|
27 Oct 2022 |
27 Oct 2022 |
CPAI-2019-2669
|
|
CVE-2019-7213
|
SmarterTools SmarterMail Directory Traversal (CVE-2019-7213)
|
High
|
6 Apr 2022 |
27 Oct 2022 |
CPAI-2022-0040
|
|
|
PHP-Based URL Obfuscation Techniques
|
Medium
|
26 Oct 2022 |
26 Oct 2022 |
CPAI-2022-0737
|
|
CVE-2022-34176
|
Jenkins JUnit Plugin Cross-Site Scripting (CVE-2022-34176)
|
High
|
26 Oct 2022 |
26 Oct 2022 |
CPAI-2022-0736
|
|
CVE-2022-30287
|
Horde Groupware Webmail Edition Insecure Deserialization (CVE-2022-30287)
|
High
|
24 Oct 2022 |
24 Oct 2022 |
CPAI-2018-2129
|
|
CVE-2018-1999002
|
Jenkins Directory Traversal (CVE-2018-1999002)
|
High
|
18 Sep 2022 |
24 Oct 2022 |
CPAI-2020-3594
|
|
CVE-2020-13951 CVE-2021-27576
|
Apache OpenMeetings Denial of Service (CVE-2020-13951; CVE-2021-27576)
|
Medium
|
23 Oct 2022 |
23 Oct 2022 |
CPAI-2022-0632
|
|
CVE-2022-0218
|
WordPress Email Template Designer Plugin Authentication Bypass (CVE-2022-0218)
|
Medium
|
23 Oct 2022 |
23 Oct 2022 |
CPAI-2016-1202
|
|
CVE-2016-7103
|
jQuery UI Cross-site Scripting (CVE-2016-7103)
|
Critical
|
23 Oct 2022 |
23 Oct 2022 |
CPAI-2022-0617
|
|
CVE-2022-35405
|
Zoho Multiple Products Remote Code Execution (CVE-2022-35405)
|
Critical
|
20 Oct 2022 |
20 Oct 2022 |
CPAI-2022-0717
|
|
CVE-2022-0169
|
WordPress Photo Gallery Plugin SQL Injection (CVE-2022-0169)
|
Critical
|
20 Oct 2022 |
20 Oct 2022 |
CPAI-2022-0716
|
|
CVE-2022-1660
|
KeySight N6854A and N6841A RF Sensor Insecure Deserialization (CVE-2022-1660)
|
High
|
20 Oct 2022 |
20 Oct 2022 |
CPAI-2022-0715
|
|
CVE-2022-1661
|
KeySight N6854A and N6841A RF Sensor Directory Traversal (CVE-2022-1661)
|
Medium
|
19 Oct 2022 |
19 Oct 2022 |
CPAI-2021-1288
|
|
CVE-2021-41184
|
jQuery UI Cross-site Scripting (CVE-2021-41184)
|