Critical
|
6 Sep 2023 |
20 Jan 2025 |
CPAI-2023-0664
|
|
CVE-2018-20676 CVE-2018-20677 CVE-2019-8331 CVE-2020-11110 CVE-2020-35946 CVE-2022-0963 CVE-2022-42141 CVE-2022-44957 CVE-2023-27008 CVE-2023-33408 CVE-2023-36287 CVE-2023-4636 CVE-2024-30989 CVE-2024-3378
|
Cross-Site Scripting Over HTTP (CVE-2018-20676; CVE-2018-20677; CVE-2019-8331; CVE-2020-11110; CVE-2020-35946; CVE-2022-0963; CVE-2022-42141; CVE-2022-44957; CVE-2023-27008; CVE-2023-33408; CVE-2023-36287; CVE-2023-4636; CVE-2024-30989; CVE-2024-3378)
|
High
|
17 Dec 2023 |
16 Jan 2025 |
CPAI-2023-1390
|
|
CVE-2023-3420
|
Google Chrome Type Confusion (CVE-2023-3420)
|
Critical
|
7 Dec 2023 |
16 Jan 2025 |
CPAI-2022-1952
|
|
CVE-2022-21445
|
Oracle Application Development Framework Remote Code Execution (CVE-2022-21445)
|
High
|
29 Aug 2023 |
15 Jan 2025 |
CPAI-2022-1729
|
|
CVE-2022-30333
|
RARLAB UnRAR Directory Traversal (CVE-2022-30333)
|
Critical
|
13 Jun 2023 |
15 Jan 2025 |
CPAI-2022-1521
|
|
CVE-2022-2068
|
OpenSSL Command Injection (CVE-2022-2068)
|
Critical
|
30 Aug 2023 |
13 Jan 2025 |
CPAI-2023-0738
|
|
CVE-2023-36844 CVE-2023-36845 CVE-2023-36846 CVE-2023-36847 CVE-2023-36851
|
Juniper Junos Remote Code Execution (CVE-2023-36844; CVE-2023-36845; CVE-2023-36846; CVE-2023-36847; CVE-2023-36851)
|
High
|
17 Jul 2023 |
12 Jan 2025 |
CPAI-2021-1799
|
|
CVE-2021-35218
|
SolarWinds Orion Platform Insecure Deserialization (CVE-2021-35218)
|
High
|
9 Jul 2023 |
9 Jan 2025 |
CPAI-2022-1683
|
|
CVE-2022-30216
|
Microsoft Windows Server Service Authentication Bypass (CVE-2022-30216)
|
Critical
|
15 Jun 2023 |
9 Jan 2025 |
CPAI-2023-0405
|
|
CVE-2021-34429 CVE-2022-31268
|
Java Server Files Information Disclosure (CVE-2021-34429; CVE-2022-31268)
|
Critical
|
5 Jan 2023 |
6 Jan 2025 |
CPAI-2019-2716
|
|
CVE-2019-1003030
|
Jenkins Pipeline Groovy Plugin Remote Code Execution (CVE-2019-1003030)
|
Critical
|
16 Nov 2023 |
1 Jan 2025 |
CPAI-2023-1176
|
|
CVE-2023-47246
|
SysAid On-Premise Path Traversal (CVE-2023-47246)
|
High
|
13 Nov 2023 |
1 Jan 2025 |
CPAI-2019-2949
|
|
CVE-2019-9621
|
Zimbra Collaboration Suite Arbitrary File Upload (CVE-2019-9621)
|
Critical
|
9 Jul 2023 |
1 Jan 2025 |
CPAI-2023-0499
|
|
CVE-2023-25280
|
D-Link DIR-820L Command Injection (CVE-2023-25280)
|
Critical
|
8 May 2023 |
1 Jan 2025 |
CPAI-2023-0286
|
|
CVE-2023-1671
|
Sophos Web Appliance Command Injection (CVE-2023-1671)
|
High
|
4 May 2023 |
1 Jan 2025 |
CPAI-2023-0272
|
|
CVE-2023-1389
|
TP-Link Archer AX21 Command Injection (CVE-2023-1389)
|
Critical
|
2 Mar 2023 |
1 Jan 2025 |
CPAI-2022-1316
|
|
CVE-2022-47986
|
IBM Aspera Faspex Remote Code Execution (CVE-2022-47986)
|
Critical
|
29 Jan 2023 |
1 Jan 2025 |
CPAI-2021-1561
|
|
CVE-2021-46422 CVE-2024-29269
|
Telesquare Multiple Products Command Injection (CVE-2021-46422; CVE-2024-29269)
|
Critical
|
30 Nov 2023 |
30 Dec 2024 |
CPAI-2023-1255
|
|
CVE-2023-6549
|
Malicious Payloads Over HTTP Headers (CVE-2023-6549)
|
Critical
|
4 Dec 2023 |
26 Dec 2024 |
CPAI-2018-2636
|
|
CVE-2018-14933 CVE-2018-15716
|
NUUO NVRMini Command Injection (CVE-2018-14933; CVE-2018-15716)
|
Critical
|
13 Jun 2023 |
22 Dec 2024 |
CPAI-2023-0422
|
|
CVE-2023-27997
|
Fortinet Multiple Products Heap-Based Buffer Overflow (CVE-2023-27997)
|
Critical
|
16 Oct 2023 |
18 Dec 2024 |
CPAI-2019-3106
|
|
CVE-2019-15976
|
Cisco Data Center Network Manager Authentication Bypass (CVE-2019-15976)
|
Critical
|
8 Mar 2023 |
18 Dec 2024 |
CPAI-2022-1241
|
|
CVE-2022-43781
|
Atlassian Bitbucket Command Injection (CVE-2022-43781)
|
High
|
4 Jun 2023 |
17 Dec 2024 |
CPAI-2023-0386
|
|
CVE-2023-34362 CVE-2023-35036
|
Progress MOVEit Transfer SQL Injection (CVE-2023-34362; CVE-2023-35036)
|
Critical
|
29 Oct 2023 |
16 Dec 2024 |
CPAI-2023-0940
|
|
|
Ivanti Avalanche Certificate Management Server Insecure Deserialization
|
Critical
|
24 Oct 2023 |
16 Dec 2024 |
CPAI-2023-0918
|
|
|
Ivanti Avalanche Notification Server Insecure Deserialization
|
High
|
1 Oct 2023 |
16 Dec 2024 |
CPAI-2022-1895
|
|
CVE-2022-44574
|
Ivanti Avalanche Authentication Bypass (CVE-2022-44574)
|
Critical
|
9 Oct 2023 |
16 Dec 2024 |
CPAI-2023-0805
|
|
CVE-2023-32563
|
Ivanti Avalanche Remote Code Execution (CVE-2023-32563)
|
Critical
|
10 Sep 2023 |
16 Dec 2024 |
CPAI-2023-0753
|
|
CVE-2023-32560
|
Ivanti Avalanche Buffer Overflow (CVE-2023-32560)
|
Critical
|
16 Nov 2023 |
16 Dec 2024 |
CPAI-2023-0749
|
|
CVE-2023-32562
|
Ivanti Avalanche Unrestricted File Upload (CVE-2023-32562)
|
High
|
25 Aug 2023 |
16 Dec 2024 |
CPAI-2023-0728
|
|
CVE-2023-38035
|
Ivanti MobileIron Sentry Authentication Bypass (CVE-2023-38035)
|
High
|
16 Oct 2023 |
16 Dec 2024 |
CPAI-2023-0643
|
|
CVE-2023-28128
|
Ivanti Avalanche Unrestricted File Upload (CVE-2023-28128)
|
Critical
|
27 Jul 2023 |
16 Dec 2024 |
CPAI-2023-0593
|
|
CVE-2023-35078 CVE-2023-35082
|
Ivanti Endpoint Manager Mobile Authentication Bypass (CVE-2023-35078; CVE-2023-35082)
|
High
|
26 Jun 2023 |
16 Dec 2024 |
CPAI-2022-1669
|
|
CVE-2022-36971 CVE-2022-36974
|
Ivanti Avalanche Web File Server Insecure Deserialization (CVE-2022-36971; CVE-2022-36974)
|
Critical
|
27 Jun 2023 |
16 Dec 2024 |
CPAI-2021-1786
|
|
CVE-2021-42127
|
Ivanti Avalanche Insecure Deserialization (CVE-2021-42127)
|
High
|
1 Oct 2023 |
16 Dec 2024 |
CPAI-2022-1596
|
|
CVE-2022-36980
|
Ivanti Avalanche Authentication Bypass (CVE-2022-36980)
|
High
|
11 Jun 2023 |
16 Dec 2024 |
CPAI-2022-1560
|
|
CVE-2022-36982
|
Ivanti Avalanche Information Disclosure (CVE-2022-36982)
|
High
|
8 Jun 2023 |
16 Dec 2024 |
CPAI-2023-0344
|
|
CVE-2023-28127
|
Ivanti Avalanche Directory Traversal (CVE-2023-28127)
|
High
|
8 Jun 2023 |
16 Dec 2024 |
CPAI-2023-0322
|
|
CVE-2023-28126
|
Ivanti Avalanche Authentication Bypass (CVE-2023-28126)
|
Critical
|
7 May 2023 |
16 Dec 2024 |
CPAI-2022-1491
|
|
CVE-2022-36981
|
Ivanti Avalanche SmartDeviceServer DeviceLogResource Directory Traversal (CVE-2022-36981)
|
High
|
29 Mar 2023 |
16 Dec 2024 |
CPAI-2021-1456
|
|
CVE-2021-30497
|
Ivanti Avalanche Directory Traversal (CVE-2021-30497)
|
High
|
12 Feb 2023 |
8 Dec 2024 |
CPAI-2023-0069
|
|
CVE-2023-0669
|
GoAnywhere MFT Insecure Deserialization (CVE-2023-0669)
|
Critical
|
17 May 2023 |
3 Dec 2024 |
CPAI-2023-0326
|
|
|
Directory Traversal Obfuscations
|
Critical
|
24 Jul 2023 |
28 Nov 2024 |
CPAI-2023-0557
|
|
CVE-2023-24489
|
Citrix ShareFile StorageZones Controller Directory Traversal (CVE-2023-24489)
|
High
|
9 Jul 2023 |
28 Nov 2024 |
CPAI-2022-1681
|
|
CVE-2022-2086
|
Sourcecodester Bank Management System SQL Injection (CVE-2022-2086)
|
Critical
|
21 Feb 2023 |
28 Nov 2024 |
CPAI-2022-1216
|
|
CVE-2022-4855
|
Lead Management System SQL Injection (CVE-2022-4855)
|
Critical
|
15 Nov 2023 |
27 Nov 2024 |
CPAI-2023-0976
|
|
CVE-2018-14716 CVE-2020-12790 CVE-2021-26119 CVE-2021-41749 CVE-2022-2073 CVE-2023-3393 CVE-2023-34448 CVE-2024-28116
|
PHP Server-Side Template Injection (CVE-2018-14716; CVE-2020-12790; CVE-2021-26119; CVE-2021-41749; CVE-2022-2073; CVE-2023-3393; CVE-2023-34448; CVE-2024-28116)
|
Critical
|
26 Nov 2023 |
26 Nov 2024 |
CPAI-2023-0972
|
|
CVE-2018-13818 CVE-2019-8341 CVE-2021-21479 CVE-2022-34625 CVE-2023-33570 CVE-2024-22722 CVE-2024-25624 CVE-2024-27516 CVE-2024-27623 CVE-2024-2952 CVE-2024-29686 CVE-2024-32406
|
Python Server-Side Template Injection (CVE-2018-13818; CVE-2019-8341; CVE-2021-21479; CVE-2022-34625; CVE-2023-33570; CVE-2024-22722; CVE-2024-25624; CVE-2024-27516; CVE-2024-27623; CVE-2024-2952; CVE-2024-29686; CVE-2024-32406)
|
Medium
|
12 Nov 2023 |
25 Nov 2024 |
CPAI-2022-1941
|
|
CVE-2022-31470
|
Axigen Mobile WebMail Cross-Site Scripting (CVE-2022-31470)
|
High
|
8 Jun 2023 |
24 Nov 2024 |
CPAI-2022-1629
|
|
CVE-2022-40224
|
Moxa SDS-3008 Denial Of Service (CVE-2022-40224)
|
Critical
|
29 Jun 2023 |
19 Nov 2024 |
CPAI-2021-1792
|
|
CVE-2021-30128
|
Apache OFBiz Insecure Deserialization (CVE-2021-30128)
|