Critical
|
10 Apr 2023 |
20 Oct 2024 |
CPAI-2023-0176
|
|
CVE-2023-1177 CVE-2023-2780 CVE-2023-6977
|
LF Projects MLflow Directory Traversal (CVE-2023-1177; CVE-2023-2780; CVE-2023-6977)
|
High
|
7 Aug 2023 |
10 Oct 2024 |
CPAI-2023-0604
|
|
CVE-2023-26347 CVE-2023-38205 CVE-2023-44347
|
Adobe ColdFusion Improper Access Control (CVE-2023-26347; CVE-2023-38205; CVE-2023-44347)
|
Critical
|
19 Feb 2023 |
9 Oct 2024 |
CPAI-2022-1180
|
|
CVE-2022-45665 CVE-2022-45666 CVE-2024-7582 CVE-2024-7583 CVE-2024-7584 CVE-2024-7585
|
Tenda i22 Buffer Overflow (CVE-2022-45665; CVE-2022-45666; CVE-2024-7582; CVE-2024-7583; CVE-2024-7584; CVE-2024-7585)
|
Critical
|
9 Jul 2023 |
1 Oct 2024 |
CPAI-2023-0499
|
|
CVE-2023-25280
|
D-Link DIR-820L Command Injection (CVE-2023-25280)
|
High
|
18 Jan 2023 |
26 Sep 2024 |
CPAI-2022-1107
|
|
|
Assetnote Security Scanner
|
Medium
|
8 May 2023 |
24 Sep 2024 |
CPAI-2020-3820
|
|
CVE-2020-10819 CVE-2020-10820
|
Nagios XI Cross-Site Scripting (CVE-2020-10819; CVE-2020-10820)
|
Critical
|
12 Jan 2023 |
22 Sep 2024 |
CPAI-2021-1552
|
|
CVE-2021-21242
|
OneDev Platform Insecure Deserialization(CVE-2021-21242)
|
Critical
|
7 Dec 2023 |
19 Sep 2024 |
CPAI-2022-1952
|
|
CVE-2022-21445
|
Oracle JDeveloper Remote Code Execution (CVE-2022-21445)
|
Critical
|
30 Aug 2023 |
19 Sep 2024 |
CPAI-2023-0738
|
|
CVE-2023-36844 CVE-2023-36845 CVE-2023-36846 CVE-2023-36847 CVE-2023-36851
|
Juniper Junos Remote Code Execution (CVE-2023-36844; CVE-2023-36845; CVE-2023-36846; CVE-2023-36847; CVE-2023-36851)
|
High
|
29 Jun 2023 |
19 Sep 2024 |
CPAI-2023-0471
|
|
CVE-2023-31740 CVE-2023-31741 CVE-2023-31742 CVE-2024-25852 CVE-2024-33788 CVE-2024-33789
|
Linksys Routers Command Injection (CVE-2023-31740; CVE-2023-31741; CVE-2023-31742; CVE-2024-25852; CVE-2024-33788; CVE-2024-33789)
|
High
|
26 Feb 2023 |
16 Sep 2024 |
CPAI-2021-1666
|
|
CVE-2021-34527
|
Microsoft Windows Remote Code Execution (CVE-2021-34527)
|
Critical
|
7 Feb 2023 |
12 Sep 2024 |
CPAI-2022-1161
|
|
CVE-2022-46552 CVE-2022-46641 CVE-2022-46642 CVE-2023-43284 CVE-2024-41622 CVE-2024-44340 CVE-2024-44342
|
D-Link DIR-846 Command Injection (CVE-2022-46552; CVE-2022-46641; CVE-2022-46642; CVE-2023-43284; CVE-2024-41622; CVE-2024-44340; CVE-2024-44342)
|
High
|
4 Dec 2023 |
9 Sep 2024 |
CPAI-2017-1726
|
|
CVE-2017-13156
|
Google Android Privilege Escalation (CVE-2017-13156)
|
High
|
11 Jul 2023 |
9 Sep 2024 |
CPAI-2023-0530
|
Adobe APSB23-40
|
CVE-2023-29300 CVE-2023-38203
|
Adobe ColdFusion Insecure Deserialization (CVE-2023-29300; CVE-2023-38203)
|
Critical
|
25 Oct 2023 |
8 Sep 2024 |
CPAI-2023-0750
|
|
CVE-2023-2915 CVE-2023-2917
|
Rockwell Automation Thinmanager Thinserver Directory Traversal (CVE-2023-2915; CVE-2023-2917)
|
High
|
21 Aug 2023 |
8 Sep 2024 |
CPAI-2023-0435
|
|
|
PHP Object Injection
|
Critical
|
20 Feb 2023 |
8 Sep 2024 |
CPAI-2021-1618
|
|
CVE-2021-21243
|
OneDev Insecure Deserialization (CVE-2021-21243)
|
Critical
|
10 May 2023 |
5 Sep 2024 |
CPAI-2023-0287
|
|
CVE-2023-27855 CVE-2023-27856
|
Rockwell Automation ThinManager Directory Traversal (CVE-2023-27855; CVE-2023-27856)
|
High
|
24 Oct 2023 |
3 Sep 2024 |
CPAI-2023-0743
|
|
CVE-2023-2914
|
Rockwell Automation Thinmanager Thinserver Integer Overflow (CVE-2023-2914)
|
Medium
|
4 Dec 2023 |
27 Aug 2024 |
CPAI-2023-1179
|
|
|
Mythic HTTP C2 Communication
|
Medium
|
25 Jul 2023 |
22 Aug 2024 |
CPAI-2019-2930
|
|
CVE-2019-3964 CVE-2019-3965
|
OpenEMR Cross-Site Scripting (CVE-2019-3964; CVE-2019-3965)
|
Medium
|
27 Jun 2023 |
22 Aug 2024 |
CPAI-2021-1789
|
|
CVE-2021-31806 CVE-2021-31807
|
Squid Denial of Service (CVE-2021-31806; CVE-2021-31807)
|
Critical
|
18 Jul 2023 |
19 Aug 2024 |
CPAI-2023-0517
|
|
CVE-2023-32521 CVE-2023-32522 CVE-2023-32523 CVE-2023-32524
|
Trend Micro Mobile Security Enterprise Directory Traversal (CVE-2023-32521; CVE-2023-32522; CVE-2023-32523; CVE-2023-32524)
|
Medium
|
5 Nov 2023 |
19 Aug 2024 |
CPAI-2021-1778
|
|
CVE-2021-21801 CVE-2021-21802 CVE-2021-21803
|
Advantech R-SeeNet Remote Code Execution (CVE-2021-21801; CVE-2021-21802; CVE-2021-21803)
|
High
|
13 Dec 2023 |
15 Aug 2024 |
CPAI-2023-1276
|
|
CVE-2023-32164 CVE-2023-32165
|
D-Link D-View Directory Traversal (CVE-2023-32164; CVE-2023-32165)
|
Medium
|
21 Nov 2023 |
14 Aug 2024 |
CPAI-2023-1131
|
|
CVE-2023-41763
|
Microsoft Skype for Business Server-Side Request Forgery (CVE-2023-41763)
|
Critical
|
13 Jun 2023 |
12 Aug 2024 |
CPAI-2022-1521
|
|
CVE-2022-2068
|
OpenSSL Command Injection (CVE-2022-2068)
|
High
|
11 Sep 2023 |
8 Aug 2024 |
CPAI-2021-1837
|
|
CVE-2021-28472
|
Microsoft Vscode-Maven Remote Code Execution (CVE-2021-28472)
|
High
|
29 Jan 2023 |
7 Aug 2024 |
CPAI-2021-1567
|
|
CVE-2021-44142
|
Samba Out-Of-Bounds Read and Write (CVE-2021-44142)
|
High
|
18 Dec 2023 |
6 Aug 2024 |
CPAI-2023-1380
|
|
CVE-2023-38831
|
RARLAB WinRAR Remote Code Execution (CVE-2023-38831)
|
High
|
2 May 2023 |
5 Aug 2024 |
CPAI-2023-0226
|
|
CVE-2023-29084
|
Zoho ManageEngine ADManager Plus Remote Code Execution (CVE-2023-29084)
|
High
|
21 Nov 2023 |
1 Aug 2024 |
CPAI-2023-0913
|
|
CVE-2023-28384
|
MySCADA myPRO Command Injection (CVE-2023-28384)
|
Critical
|
14 Dec 2023 |
28 Jul 2024 |
CPAI-2023-0802
|
|
|
File Type Mismatch
|
Critical
|
13 Dec 2023 |
23 Jul 2024 |
CPAI-2023-1377
|
|
CVE-2023-41265 CVE-2023-48365
|
Qlik Sense HTTP Request Smuggling (CVE-2023-41265; CVE-2023-48365)
|
Critical
|
12 Mar 2023 |
18 Jul 2024 |
CPAI-2022-1331
|
|
CVE-2022-45025
|
Markdown Preview Enhanced Command Injection (CVE-2022-45025)
|
Critical
|
18 Jul 2023 |
15 Jul 2024 |
CPAI-2014-2505
|
|
CVE-2014-3791
|
Easy File Sharing Buffer Overflow (CVE-2014-3791)
|
High
|
9 Jul 2023 |
15 Jul 2024 |
CPAI-2022-1683
|
|
CVE-2022-30216
|
Microsoft Windows Server Service Authentication Bypass (CVE-2022-30216)
|
Critical
|
18 Jan 2023 |
14 Jul 2024 |
CPAI-2022-1130
|
|
CVE-2022-44877
|
CentOS Web Panel Command Injection (CVE-2022-44877)
|
High
|
25 Jun 2023 |
10 Jul 2024 |
CPAI-2021-1759
|
|
CVE-2021-21017 CVE-2021-28550
|
PDF Malicious JavaScript Obfuscations (CVE-2021-21017; CVE-2021-28550)
|
Critical
|
13 Sep 2023 |
4 Jul 2024 |
CPAI-2023-0694
|
|
CVE-2023-38646
|
Metabase Remote Code Execution (CVE-2023-38646)
|
Critical
|
18 Oct 2023 |
25 Jun 2024 |
CPAI-2023-0927
|
|
CVE-2023-20198
|
Cisco IOS XE Authentication Bypass (CVE-2023-20198)
|
High
|
9 Jul 2023 |
25 Jun 2024 |
CPAI-2021-1798
|
|
CVE-2021-37200
|
Siemens SINEC Network Management System Arbitrary File Download (CVE-2021-37200)
|
Medium
|
7 May 2023 |
25 Jun 2024 |
CPAI-2021-1735
|
|
CVE-2021-35590
|
Oracle MySQL Cluster Remote Code Execution (CVE-2021-35590)
|
Critical
|
4 May 2023 |
25 Jun 2024 |
CPAI-2021-1724
|
|
CVE-2021-37926
|
Zoho Corp ManageEngine ADManager Plus Unrestricted File Upload (CVE-2021-37926)
|
Critical
|
30 Apr 2023 |
25 Jun 2024 |
CPAI-2021-1713
|
|
CVE-2021-38294
|
Apache Storm Nimbus Server Remote Code Execution (CVE-2021-38294)
|
Critical
|
29 Aug 2023 |
24 Jun 2024 |
CPAI-2023-0686
|
|
CVE-2022-28491 CVE-2022-28495 CVE-2022-40847 CVE-2023-1457 CVE-2023-1458 CVE-2023-24154 CVE-2023-24159 CVE-2023-31569 CVE-2023-31856 CVE-2023-33486 CVE-2023-36457 CVE-2023-38862 CVE-2023-38863 CVE-2023-38864
|
Generic HTTP Command Injection (CVE-2022-28491; CVE-2022-28495; CVE-2022-40847; CVE-2023-1457; CVE-2023-1458; CVE-2023-24154; CVE-2023-24159; CVE-2023-31569; CVE-2023-31856; CVE-2023-33486; CVE-2023-36457; CVE-2023-38862; CVE-2023-38863; CVE-2023-38864)
|
High
|
7 May 2023 |
24 Jun 2024 |
CPAI-2021-1736
|
|
CVE-2021-27276
|
NETGEAR ProSAFE Network Management System Denial of Service (CVE-2021-27276)
|
Critical
|
6 Sep 2023 |
23 Jun 2024 |
CPAI-2023-0664
|
|
CVE-2018-20676 CVE-2018-20677 CVE-2019-8331 CVE-2020-11110 CVE-2020-35946 CVE-2022-0963 CVE-2022-42141 CVE-2022-44957 CVE-2023-27008 CVE-2023-33408 CVE-2023-36287 CVE-2023-4636 CVE-2024-30989 CVE-2024-3378
|
Cross-Site Scripting Over HTTP (CVE-2018-20676; CVE-2018-20677; CVE-2019-8331; CVE-2020-11110; CVE-2020-35946; CVE-2022-0963; CVE-2022-42141; CVE-2022-44957; CVE-2023-27008; CVE-2023-33408; CVE-2023-36287; CVE-2023-4636; CVE-2024-30989; CVE-2024-3378)
|
High
|
14 Aug 2023 |
23 Jun 2024 |
CPAI-2021-1817
|
|
CVE-2021-23138
|
WECON LeviStudioU Buffer Overflow (CVE-2021-23138)
|
Medium
|
7 May 2023 |
23 Jun 2024 |
CPAI-2021-1730
|
|
CVE-2021-25919
|
OpenEMR Cross-Site Scripting (CVE-2021-25919)
|