Critical
|
12 Aug 2024 |
20 Feb 2025 |
CPAI-2024-0669
|
|
CVE-2024-6782
|
Calibre Remote Code Execution (CVE-2024-6782)
|
High
|
6 May 2024 |
20 Feb 2025 |
CPAI-2023-1682
|
|
CVE-2023-51835 CVE-2024-0920
|
TRENDnet TEW-822DRE Command Injection (CVE-2023-51835; CVE-2024-0920)
|
Critical
|
15 Oct 2024 |
13 Feb 2025 |
CPAI-2024-0962
|
|
CVE-2024-8963 CVE-2024-9381
|
Ivanti Cloud Services Appliance Path Traversal (CVE-2024-8963; CVE-2024-9381)
|
High
|
20 Aug 2024 |
12 Feb 2025 |
CPAI-2024-0707
|
|
CVE-2024-38472
|
Apache HTTP Server Server-Side Request Forgery (CVE-2024-38472)
|
High
|
12 Dec 2024 |
9 Feb 2025 |
CPAI-2024-1155
|
|
CVE-2024-50623
|
Cleo Arbitrary File Upload (CVE-2024-50623)
|
Critical
|
2 Dec 2024 |
9 Feb 2025 |
CPAI-2024-1108
|
|
CVE-2024-11680
|
ProjectSend Authentication Bypass (CVE-2024-11680)
|
Critical
|
19 Nov 2024 |
9 Feb 2025 |
CPAI-2024-1076
|
|
CVE-2024-0012
|
Palo Alto Networks PAN-OS Authentication Bypass (CVE-2024-0012)
|
High
|
19 Nov 2024 |
9 Feb 2025 |
CPAI-2024-1075
|
|
CVE-2024-9474
|
Palo Alto Networks PAN-OS Command Injection (CVE-2024-9474)
|
High
|
13 Oct 2024 |
9 Feb 2025 |
CPAI-2024-0954
|
|
CVE-2024-9463
|
Palo Alto Networks Expedition Command Injection (CVE-2024-9463)
|
Critical
|
6 Aug 2024 |
9 Feb 2025 |
CPAI-2024-0661
|
|
CVE-2024-7593
|
Ivanti Virtual Traffic Manager Authentication Bypass (CVE-2024-7593)
|
Critical
|
12 Aug 2024 |
9 Feb 2025 |
CPAI-2024-0656
|
|
CVE-2024-34102
|
Adobe Multiple Products XML External Entity Injection (CVE-2024-34102)
|
Critical
|
1 Jul 2024 |
9 Feb 2025 |
CPAI-2024-0531
|
|
CVE-2024-0769
|
D-Link DIR-859 Directory Traversal (CVE-2024-0769)
|
Critical
|
17 Jun 2024 |
9 Feb 2025 |
CPAI-2024-0406
|
|
CVE-2024-29824
|
Ivanti Endpoint Manager SQL Injection (CVE-2024-29824)
|
High
|
29 May 2024 |
9 Feb 2025 |
CPAI-2024-0313
|
|
CVE-2024-29059
|
Microsoft .NET Framework Authentication Bypass (CVE-2024-29059)
|
High
|
6 Mar 2024 |
9 Feb 2025 |
CPAI-2024-0106
|
|
CVE-2024-27199
|
JetBrains TeamCity Path Traversal (CVE-2024-27199)
|
Critical
|
2 May 2024 |
9 Feb 2025 |
CPAI-2022-1731
|
|
CVE-2022-22965
|
Vmware Spring Framework Remote Code Execution (CVE-2022-22965)
|
High
|
9 Sep 2024 |
6 Feb 2025 |
CPAI-2024-0788
|
|
CVE-2024-45195
|
Apache OFBiz Remote Code Execution (CVE-2024-45195)
|
Critical
|
5 Aug 2024 |
6 Feb 2025 |
CPAI-2023-1859
|
|
CVE-2024-42736 CVE-2024-42737 CVE-2024-42738 CVE-2024-42739 CVE-2024-42740 CVE-2024-42741 CVE-2024-42742 CVE-2024-42743 CVE-2024-42744 CVE-2024-42745 CVE-2024-42747 CVE-2024-42748 CVE-2024-43533
|
TOTOLINK Multiple Routers Command Injection (CVE-2024-42736; CVE-2024-42737; CVE-2024-42738; CVE-2024-42739; CVE-2024-42740; CVE-2024-42741; CVE-2024-42742; CVE-2024-42743; CVE-2024-42744; CVE-2024-42745; CVE-2024-42747; CVE-2024-42748; CVE-2024-43533)
|
Medium
|
29 Jul 2024 |
2 Feb 2025 |
CPAI-2020-4190
|
|
CVE-2020-1464
|
Microsoft Windows File Signature Spoofing (CVE-2020-1464)
|
Critical
|
11 Dec 2024 |
29 Jan 2025 |
CPAI-2024-1150
|
|
CVE-2024-45216
|
Apache Solr Authentication Bypass (CVE-2024-45216)
|
High
|
20 Oct 2024 |
29 Jan 2025 |
CPAI-2024-0939
|
|
CVE-2024-9566 CVE-2024-9567 CVE-2024-9568 CVE-2024-9569 CVE-2024-9570 CVE-2024-9782 CVE-2024-9783 CVE-2024-9784 CVE-2024-9785 CVE-2024-9786 CVE-2024-9909 CVE-2024-9910 CVE-2024-9911 CVE-2024-9912
|
D-Link Multiple Routers Buffer Overflow (CVE-2024-9566; CVE-2024-9567; CVE-2024-9568; CVE-2024-9569; CVE-2024-9570; CVE-2024-9782; CVE-2024-9783; CVE-2024-9784; CVE-2024-9785; CVE-2024-9786; CVE-2024-9909; CVE-2024-9910; CVE-2024-9911; CVE-2024-9912)
|
High
|
8 Oct 2024 |
28 Jan 2025 |
CPAI-2024-0896
|
Microsoft CVE-2024-43502
|
CVE-2024-43502
|
Microsoft Windows Kernel Elevation of Privilege (CVE-2024-43502)
|
High
|
10 Sep 2024 |
28 Jan 2025 |
CPAI-2024-0765
|
Microsoft CVE-2024-38244
|
CVE-2024-38244
|
Microsoft Kernel Streaming Service Driver Elevation of Privilege (CVE-2024-38244)
|
High
|
10 Sep 2024 |
28 Jan 2025 |
CPAI-2024-0760
|
Microsoft CVE-2024-38237
|
CVE-2024-38237
|
Microsoft Kernel Streaming WOW Thunk Service Driver Elevation of Privilege (CVE-2024-38237)
|
High
|
10 Sep 2024 |
28 Jan 2025 |
CPAI-2024-1329
|
Microsoft CVE-2024-38241
|
CVE-2024-38241
|
Microsoft Kernel Streaming Service Driver Elevation of Privilege (CVE-2024-38241)
|
High
|
13 Aug 2024 |
28 Jan 2025 |
CPAI-2024-0650
|
Microsoft CVE-2024-38196
|
CVE-2024-38196
|
Microsoft Windows Common Log File System Driver Elevation of Privilege (CVE-2024-38196)
|
High
|
13 Aug 2024 |
28 Jan 2025 |
CPAI-2024-0645
|
Microsoft CVE-2024-38141
|
CVE-2024-38141
|
Microsoft Windows Ancillary Function Driver for WinSock Elevation of Privilege (CVE-2024-38141)
|
High
|
13 Aug 2024 |
28 Jan 2025 |
CPAI-2024-0642
|
Microsoft CVE-2024-38150
|
CVE-2024-38150
|
Microsoft Windows DWM Core Library Elevation of Privilege (CVE-2024-38150)
|
High
|
13 Feb 2024 |
28 Jan 2025 |
CPAI-2024-0046
|
Adobe APSB24-07
|
CVE-2024-20726
|
Adobe Acrobat and Reader Out-of-bounds Write (APSB24-07: CVE-2024-20726)
|
Critical
|
24 Dec 2024 |
21 Jan 2025 |
CPAI-2024-1184
|
|
CVE-2024-56145
|
Craft CMS Remote Code Execution (CVE-2024-56145)
|
Critical
|
26 Dec 2024 |
20 Jan 2025 |
CPAI-2020-4220
|
|
CVE-2020-8657
|
EyesOfNetwork Hardcoded Credentials (CVE-2020-8657)
|
High
|
3 Sep 2024 |
20 Jan 2025 |
CPAI-2018-2791
|
|
CVE-2018-16855
|
PowerDNS Recursor Out-of-Bounds Read (CVE-2018-16855)
|
High
|
16 Sep 2024 |
16 Jan 2025 |
CPAI-2024-0704
|
|
|
HTML Entity Encoding Multiple Vulnerabilities
|
Critical
|
16 May 2024 |
16 Jan 2025 |
CPAI-2024-0257
|
|
CVE-2024-31848 CVE-2024-31849 CVE-2024-31850 CVE-2024-31851
|
CData Multiple Products Path Traversal (CVE-2024-31848; CVE-2024-31849; CVE-2024-31850; CVE-2024-31851)
|
Critical
|
24 Nov 2024 |
13 Jan 2025 |
CPAI-2024-1048
|
|
|
ALFA Webshell Over HTTP
|
Critical
|
8 Dec 2024 |
8 Jan 2025 |
CPAI-2024-1140
|
|
CVE-2024-41713 CVE-2024-55550
|
Mitel MiCollab Path Traversal (CVE-2024-41713; CVE-2024-55550)
|
Critical
|
8 Dec 2024 |
8 Jan 2025 |
CPAI-2024-1139
|
|
CVE-2024-51378
|
CyberPanel Command Injection (CVE-2024-51378)
|
Critical
|
23 Dec 2024 |
6 Jan 2025 |
CPAI-2024-1154
|
|
CVE-2024-38473 CVE-2024-38474 CVE-2024-38475
|
Apache HTTP Server Remote Code Execution (CVE-2024-38473; CVE-2024-38474; CVE-2024-38475)
|
Critical
|
21 Oct 2024 |
1 Jan 2025 |
CPAI-2024-0981
|
|
CVE-2024-9680
|
Mozilla Multiple Products Use After Free (CVE-2024-9680)
|
Critical
|
10 Apr 2024 |
1 Jan 2025 |
CPAI-2024-0179
|
|
CVE-2024-10914 CVE-2024-10915 CVE-2024-3272 CVE-2024-3273
|
D-Link DNS Series Command Injection (CVE-2024-10914; CVE-2024-10915; CVE-2024-3272; CVE-2024-3273)
|
Critical
|
28 Jan 2024 |
1 Jan 2025 |
CPAI-2024-0020
|
|
CVE-2024-23897
|
Jenkins Information Disclosure (CVE-2024-23897)
|
High
|
18 Jan 2024 |
1 Jan 2025 |
CPAI-2023-1476
|
|
CVE-2023-46805
|
Ivanti Authentication Bypass (CVE-2023-46805)
|
High
|
10 Sep 2024 |
31 Dec 2024 |
CPAI-2024-1215
|
Microsoft CVE-2024-38245
|
CVE-2024-38245
|
Microsoft Kernel Streaming Service Driver Elevation of Privilege (CVE-2024-38245)
|
High
|
30 Dec 2024 |
30 Dec 2024 |
CPAI-2024-1208
|
|
CVE-2024-12856
|
Four-Faith F3x Series Command Injection (CVE-2024-12856)
|
Critical
|
30 Dec 2024 |
30 Dec 2024 |
CPAI-2024-1187
|
|
CVE-2024-41314 CVE-2024-41315 CVE-2024-41316 CVE-2024-41317 CVE-2024-41318 CVE-2024-41319 CVE-2024-41320
|
TOTOLINK A6000R Command Injection (CVE-2024-41314; CVE-2024-41315; CVE-2024-41316; CVE-2024-41317; CVE-2024-41318; CVE-2024-41319; CVE-2024-41320)
|
Critical
|
30 Dec 2024 |
30 Dec 2024 |
CPAI-2024-1072
|
|
|
Directory Traversal Over SMTP
|
Critical
|
22 Jan 2024 |
30 Dec 2024 |
CPAI-2023-1486
|
|
CVE-2023-22527
|
Atlassian Confluence Template Injection (CVE-2023-22527)
|
Critical
|
18 Dec 2024 |
29 Dec 2024 |
CPAI-2024-1166
|
|
CVE-2024-55956
|
Cleo Arbitrary File Upload (CVE-2024-55956)
|
High
|
4 Dec 2024 |
29 Dec 2024 |
CPAI-2024-1106
|
|
|
Zoho ManageEngine OpManager SQL Injection
|
High
|
29 Dec 2024 |
29 Dec 2024 |
CPAI-2024-1179
|
|
CVE-2024-47841
|
MediaWiki CSS Extension Directory Traversal (CVE-2024-47841)
|