Critical
|
4 Dec 2023 |
19 Dec 2024 |
CPAI-2018-2636
|
|
CVE-2018-14933 CVE-2018-15716
|
NUUO NVRMini Command Injection (CVE-2018-14933; CVE-2018-15716)
|
Critical
|
16 Oct 2023 |
18 Dec 2024 |
CPAI-2019-3106
|
|
CVE-2019-15976
|
Cisco Data Center Network Manager Authentication Bypass (CVE-2019-15976)
|
Critical
|
13 Jun 2023 |
18 Dec 2024 |
CPAI-2023-0422
|
|
CVE-2023-27997
|
Fortinet Multiple Products Heap-Based Buffer Overflow (CVE-2023-27997)
|
Critical
|
8 Mar 2023 |
18 Dec 2024 |
CPAI-2022-1241
|
|
CVE-2022-43781
|
Atlassian Bitbucket Command Injection (CVE-2022-43781)
|
High
|
4 Jun 2023 |
17 Dec 2024 |
CPAI-2023-0386
|
|
CVE-2023-34362 CVE-2023-35036
|
Progress MOVEit Transfer SQL Injection (CVE-2023-34362; CVE-2023-35036)
|
Critical
|
29 Oct 2023 |
16 Dec 2024 |
CPAI-2023-0940
|
|
|
Ivanti Avalanche Certificate Management Server Insecure Deserialization
|
Critical
|
24 Oct 2023 |
16 Dec 2024 |
CPAI-2023-0918
|
|
|
Ivanti Avalanche Notification Server Insecure Deserialization
|
High
|
1 Oct 2023 |
16 Dec 2024 |
CPAI-2022-1895
|
|
CVE-2022-44574
|
Ivanti Avalanche Authentication Bypass (CVE-2022-44574)
|
Critical
|
9 Oct 2023 |
16 Dec 2024 |
CPAI-2023-0805
|
|
CVE-2023-32563
|
Ivanti Avalanche Remote Code Execution (CVE-2023-32563)
|
Critical
|
10 Sep 2023 |
16 Dec 2024 |
CPAI-2023-0753
|
|
CVE-2023-32560
|
Ivanti Avalanche Buffer Overflow (CVE-2023-32560)
|
Critical
|
16 Nov 2023 |
16 Dec 2024 |
CPAI-2023-0749
|
|
CVE-2023-32562
|
Ivanti Avalanche Unrestricted File Upload (CVE-2023-32562)
|
High
|
25 Aug 2023 |
16 Dec 2024 |
CPAI-2023-0728
|
|
CVE-2023-38035
|
Ivanti MobileIron Sentry Authentication Bypass (CVE-2023-38035)
|
High
|
16 Oct 2023 |
16 Dec 2024 |
CPAI-2023-0643
|
|
CVE-2023-28128
|
Ivanti Avalanche Unrestricted File Upload (CVE-2023-28128)
|
Critical
|
27 Jul 2023 |
16 Dec 2024 |
CPAI-2023-0593
|
|
CVE-2023-35078 CVE-2023-35082
|
Ivanti Endpoint Manager Mobile Authentication Bypass (CVE-2023-35078; CVE-2023-35082)
|
High
|
26 Jun 2023 |
16 Dec 2024 |
CPAI-2022-1669
|
|
CVE-2022-36971 CVE-2022-36974
|
Ivanti Avalanche Web File Server Insecure Deserialization (CVE-2022-36971; CVE-2022-36974)
|
Critical
|
27 Jun 2023 |
16 Dec 2024 |
CPAI-2021-1786
|
|
CVE-2021-42127
|
Ivanti Avalanche Insecure Deserialization (CVE-2021-42127)
|
High
|
1 Oct 2023 |
16 Dec 2024 |
CPAI-2022-1596
|
|
CVE-2022-36980
|
Ivanti Avalanche Authentication Bypass (CVE-2022-36980)
|
High
|
11 Jun 2023 |
16 Dec 2024 |
CPAI-2022-1560
|
|
CVE-2022-36982
|
Ivanti Avalanche Information Disclosure (CVE-2022-36982)
|
High
|
8 Jun 2023 |
16 Dec 2024 |
CPAI-2023-0344
|
|
CVE-2023-28127
|
Ivanti Avalanche Directory Traversal (CVE-2023-28127)
|
High
|
8 Jun 2023 |
16 Dec 2024 |
CPAI-2023-0322
|
|
CVE-2023-28126
|
Ivanti Avalanche Authentication Bypass (CVE-2023-28126)
|
Critical
|
7 May 2023 |
16 Dec 2024 |
CPAI-2022-1491
|
|
CVE-2022-36981
|
Ivanti Avalanche SmartDeviceServer DeviceLogResource Directory Traversal (CVE-2022-36981)
|
High
|
29 Mar 2023 |
16 Dec 2024 |
CPAI-2021-1456
|
|
CVE-2021-30497
|
Ivanti Avalanche Directory Traversal (CVE-2021-30497)
|
High
|
12 Feb 2023 |
8 Dec 2024 |
CPAI-2023-0069
|
|
CVE-2023-0669
|
GoAnywhere MFT Insecure Deserialization (CVE-2023-0669)
|
Critical
|
17 May 2023 |
3 Dec 2024 |
CPAI-2023-0326
|
|
|
Directory Traversal Obfuscations
|
Critical
|
24 Jul 2023 |
28 Nov 2024 |
CPAI-2023-0557
|
|
CVE-2023-24489
|
Citrix ShareFile StorageZones Controller Directory Traversal (CVE-2023-24489)
|
High
|
9 Jul 2023 |
28 Nov 2024 |
CPAI-2022-1681
|
|
CVE-2022-2086
|
Sourcecodester Bank Management System SQL Injection (CVE-2022-2086)
|
Critical
|
21 Feb 2023 |
28 Nov 2024 |
CPAI-2022-1216
|
|
CVE-2022-4855
|
Lead Management System SQL Injection (CVE-2022-4855)
|
Critical
|
15 Nov 2023 |
27 Nov 2024 |
CPAI-2023-0976
|
|
CVE-2018-14716 CVE-2020-12790 CVE-2021-26119 CVE-2021-41749 CVE-2022-2073 CVE-2023-3393 CVE-2023-34448 CVE-2024-28116
|
PHP Server-Side Template Injection (CVE-2018-14716; CVE-2020-12790; CVE-2021-26119; CVE-2021-41749; CVE-2022-2073; CVE-2023-3393; CVE-2023-34448; CVE-2024-28116)
|
Critical
|
26 Nov 2023 |
26 Nov 2024 |
CPAI-2023-0972
|
|
CVE-2018-13818 CVE-2019-8341 CVE-2021-21479 CVE-2022-34625 CVE-2023-33570 CVE-2024-22722 CVE-2024-25624 CVE-2024-27516 CVE-2024-27623 CVE-2024-2952 CVE-2024-29686 CVE-2024-32406
|
Python Server-Side Template Injection (CVE-2018-13818; CVE-2019-8341; CVE-2021-21479; CVE-2022-34625; CVE-2023-33570; CVE-2024-22722; CVE-2024-25624; CVE-2024-27516; CVE-2024-27623; CVE-2024-2952; CVE-2024-29686; CVE-2024-32406)
|
Medium
|
12 Nov 2023 |
25 Nov 2024 |
CPAI-2022-1941
|
|
CVE-2022-31470
|
Axigen Mobile WebMail Cross-Site Scripting (CVE-2022-31470)
|
High
|
8 Jun 2023 |
24 Nov 2024 |
CPAI-2022-1629
|
|
CVE-2022-40224
|
Moxa SDS-3008 Denial Of Service (CVE-2022-40224)
|
Critical
|
29 Jun 2023 |
19 Nov 2024 |
CPAI-2021-1792
|
|
CVE-2021-30128
|
Apache OFBiz Insecure Deserialization (CVE-2021-30128)
|
Critical
|
5 Sep 2023 |
19 Nov 2024 |
CPAI-2021-0283
|
|
CVE-2021-29441
|
Alibaba Nacos Authentication Bypass (CVE-2021-29441)
|
Medium
|
5 Nov 2023 |
18 Nov 2024 |
CPAI-2020-3987
|
|
CVE-2020-1943
|
Apache OFBiz Cross-Site Scripting (CVE-2020-1943)
|
Critical
|
14 May 2023 |
18 Nov 2024 |
CPAI-2020-3824
|
|
CVE-2020-2950
|
Oracle Business Intelligence Remote Code Execution (CVE-2020-2950)
|
Critical
|
14 May 2023 |
18 Nov 2024 |
CPAI-2023-0313
|
|
CVE-2023-26359 CVE-2023-26360
|
Adobe ColdFusion Insecure Deserialization (CVE-2023-26360; CVE-2023-26359)
|
Critical
|
12 Oct 2023 |
17 Nov 2024 |
CPAI-2023-0811
|
|
CVE-2023-34960
|
Chamilo Command Injection (CVE-2023-34960)
|
High
|
15 Aug 2023 |
17 Nov 2024 |
CPAI-2019-2938
|
|
CVE-2019-20499 CVE-2019-20500 CVE-2019-20501
|
D-Link DWL-2600AP Command Injection (CVE-2019-20499; CVE-2019-20500; CVE-2019-20501)
|
High
|
25 Jul 2023 |
14 Nov 2024 |
CPAI-2023-0229
|
|
|
HTTP Vulnerability Scanner
|
High
|
28 Nov 2023 |
13 Nov 2024 |
CPAI-2023-1241
|
|
CVE-2023-6063
|
WordPress Fastest Cache Plugin SQL Injection (CVE-2023-6063)
|
Critical
|
6 Jun 2023 |
13 Nov 2024 |
CPAI-2023-0356
|
|
CVE-2023-28771
|
Zyxel ZyWALL Command Injection (CVE-2023-28771)
|
High
|
10 Sep 2023 |
10 Nov 2024 |
CPAI-2014-2510
|
|
CVE-2014-100005
|
D-Link DIR-600 Cross-Site Request Forgery (CVE-2014-100005)
|
High
|
11 Jan 2023 |
10 Nov 2024 |
CPAI-2020-3649
|
|
CVE-2020-25540
|
ThinkAdmin Path Traversal (CVE-2020-25540)
|
Critical
|
21 Sep 2023 |
7 Nov 2024 |
CPAI-2022-1744
|
|
CVE-2022-24816
|
GeoSolutionsGroup JAI-EXT Remote Code Execution (CVE-2022-24816)
|
Critical
|
21 Mar 2023 |
7 Nov 2024 |
CPAI-2023-0146
|
|
|
Vulnerability Scanning Techniques
|
High
|
11 Apr 2023 |
5 Nov 2024 |
CPAI-2023-0217
|
Microsoft CVE-2023-28231
|
CVE-2023-28231
|
Microsoft DHCP Server Service Remote Code Execution (CVE-2023-28231)
|
High
|
13 Dec 2023 |
4 Nov 2024 |
CPAI-2022-1959
|
|
CVE-2022-1096
|
Google Chrome Type Confusion (CVE-2022-1096)
|
High
|
24 Apr 2023 |
30 Oct 2024 |
CPAI-2023-0191
|
|
|
Arctic Wolf Security Scanner
|
High
|
26 Feb 2023 |
28 Oct 2024 |
CPAI-2020-3735
|
|
CVE-2020-36222
|
OpenLDAP Denial of Service (CVE-2020-36222)
|
Critical
|
14 Aug 2023 |
27 Oct 2024 |
CPAI-2023-0476
|
|
CVE-2023-27163
|
Malicious Encoded Payloads Over HTTP (CVE-2023-27163)
|