Critical
|
24 Dec 2024 |
21 Jan 2025 |
CPAI-2024-1184
|
|
CVE-2024-56145
|
Craft CMS Remote Code Execution (CVE-2024-56145)
|
Critical
|
26 Dec 2024 |
20 Jan 2025 |
CPAI-2020-4220
|
|
CVE-2020-8657
|
EyesOfNetwork Hardcoded Credentials (CVE-2020-8657)
|
High
|
3 Sep 2024 |
20 Jan 2025 |
CPAI-2018-2791
|
|
CVE-2018-16855
|
PowerDNS Recursor Out-of-Bounds Read (CVE-2018-16855)
|
High
|
10 Sep 2024 |
19 Jan 2025 |
CPAI-2024-0765
|
Microsoft CVE-2024-38244
|
CVE-2024-38244
|
Microsoft Kernel Streaming Service Driver Elevation of Privilege (CVE-2024-38244)
|
High
|
16 Sep 2024 |
16 Jan 2025 |
CPAI-2024-0704
|
|
|
HTML Entity Encoding Multiple Vulnerabilities
|
Critical
|
16 May 2024 |
16 Jan 2025 |
CPAI-2024-0257
|
|
CVE-2024-31848 CVE-2024-31849 CVE-2024-31850 CVE-2024-31851
|
CData Multiple Products Path Traversal (CVE-2024-31848; CVE-2024-31849; CVE-2024-31850; CVE-2024-31851)
|
Critical
|
24 Nov 2024 |
13 Jan 2025 |
CPAI-2024-1048
|
|
|
ALFA Webshell Over HTTP
|
High
|
20 Aug 2024 |
12 Jan 2025 |
CPAI-2024-0707
|
|
CVE-2024-38472
|
Apache HTTP Server Server-Side Request Forgery (CVE-2024-38472)
|
Critical
|
8 Dec 2024 |
8 Jan 2025 |
CPAI-2024-1140
|
|
CVE-2024-41713 CVE-2024-55550
|
Mitel MiCollab Path Traversal (CVE-2024-41713; CVE-2024-55550)
|
Critical
|
8 Dec 2024 |
8 Jan 2025 |
CPAI-2024-1139
|
|
CVE-2024-51378
|
CyberPanel Command Injection (CVE-2024-51378)
|
Critical
|
23 Dec 2024 |
6 Jan 2025 |
CPAI-2024-1154
|
|
CVE-2024-38473 CVE-2024-38474 CVE-2024-38475
|
Apache HTTP Server Remote Code Execution (CVE-2024-38473; CVE-2024-38474; CVE-2024-38475)
|
Critical
|
21 Oct 2024 |
1 Jan 2025 |
CPAI-2024-0981
|
|
CVE-2024-9680
|
Mozilla Multiple Products Use After Free (CVE-2024-9680)
|
Critical
|
10 Apr 2024 |
1 Jan 2025 |
CPAI-2024-0179
|
|
CVE-2024-10914 CVE-2024-10915 CVE-2024-3272 CVE-2024-3273
|
D-Link DNS Series Command Injection (CVE-2024-10914; CVE-2024-10915; CVE-2024-3272; CVE-2024-3273)
|
Critical
|
28 Jan 2024 |
1 Jan 2025 |
CPAI-2024-0020
|
|
CVE-2024-23897
|
Jenkins Information Disclosure (CVE-2024-23897)
|
High
|
18 Jan 2024 |
1 Jan 2025 |
CPAI-2023-1476
|
|
CVE-2023-46805
|
Ivanti Authentication Bypass (CVE-2023-46805)
|
High
|
10 Sep 2024 |
31 Dec 2024 |
CPAI-2024-1215
|
Microsoft CVE-2024-38245
|
CVE-2024-38245
|
Microsoft Kernel Streaming Service Driver Elevation of Privilege (CVE-2024-38245)
|
High
|
30 Dec 2024 |
30 Dec 2024 |
CPAI-2024-1208
|
|
CVE-2024-12856
|
Four-Faith F3x Series Command Injection (CVE-2024-12856)
|
Critical
|
30 Dec 2024 |
30 Dec 2024 |
CPAI-2024-1187
|
|
CVE-2024-41314 CVE-2024-41315 CVE-2024-41316 CVE-2024-41317 CVE-2024-41318 CVE-2024-41319 CVE-2024-41320
|
TOTOLINK A6000R Command Injection (CVE-2024-41314; CVE-2024-41315; CVE-2024-41316; CVE-2024-41317; CVE-2024-41318; CVE-2024-41319; CVE-2024-41320)
|
Critical
|
30 Dec 2024 |
30 Dec 2024 |
CPAI-2024-1072
|
|
|
Directory Traversal Over SMTP
|
Critical
|
22 Jan 2024 |
30 Dec 2024 |
CPAI-2023-1486
|
|
CVE-2023-22527
|
Atlassian Confluence Template Injection (CVE-2023-22527)
|
Critical
|
18 Dec 2024 |
29 Dec 2024 |
CPAI-2024-1166
|
|
CVE-2024-55956
|
Cleo Arbitrary File Upload (CVE-2024-55956)
|
High
|
4 Dec 2024 |
29 Dec 2024 |
CPAI-2024-1106
|
|
|
Zoho ManageEngine OpManager SQL Injection
|
High
|
8 Oct 2024 |
29 Dec 2024 |
CPAI-2024-0896
|
Microsoft CVE-2024-43502
|
CVE-2024-43502
|
Microsoft Windows Kernel Elevation of Privilege (CVE-2024-43502)
|
High
|
29 Dec 2024 |
29 Dec 2024 |
CPAI-2024-1179
|
|
CVE-2024-47841
|
MediaWiki CSS Extension Directory Traversal (CVE-2024-47841)
|
High
|
8 Oct 2024 |
26 Dec 2024 |
CPAI-2024-0917
|
Microsoft CVE-2024-43560
|
CVE-2024-43560
|
Microsoft Windows Storage Port Driver Elevation of Privilege (CVE-2024-43560)
|
Critical
|
26 Dec 2024 |
26 Dec 2024 |
CPAI-2024-1197
|
|
CVE-2024-45387
|
Apache Traffic Control SQL Injection (CVE-2024-45387)
|
High
|
26 Dec 2024 |
26 Dec 2024 |
CPAI-2023-1959
|
|
CVE-2023-28205
|
Apple Multiple Products Use After Free (CVE-2023-28205)
|
High
|
26 Dec 2024 |
26 Dec 2024 |
CPAI-2024-1189
|
|
CVE-2024-5585
|
PHP Command Injection (CVE-2024-5585)
|
High
|
26 Dec 2024 |
26 Dec 2024 |
CPAI-2024-1178
|
|
CVE-2024-42327
|
Zabbix SQL Injection (CVE-2024-42327)
|
Critical
|
26 Dec 2024 |
26 Dec 2024 |
CPAI-2024-1164
|
|
CVE-2024-53677
|
Apache Struts Remote Code Execution (CVE-2024-53677)
|
Critical
|
10 Jul 2024 |
26 Dec 2024 |
CPAI-2024-0559
|
|
CVE-2024-36401
|
GeoServer Remote Code Execution (CVE-2024-36401)
|
Critical
|
1 May 2024 |
26 Dec 2024 |
CPAI-2023-1610
|
|
CVE-2023-34993 CVE-2023-48782
|
Fortinet FortiWLM Command Injection (CVE-2023-34993; CVE-2023-48782)
|
Medium
|
26 Dec 2024 |
26 Dec 2024 |
CPAI-2024-1177
|
|
CVE-2024-50352
|
LibreNMS Cross-Site Scripting (CVE-2024-50352)
|
High
|
25 Dec 2024 |
25 Dec 2024 |
CPAI-2024-1183
|
|
|
DigiEver Command Injection
|
High
|
25 Dec 2024 |
25 Dec 2024 |
CPAI-2024-1172
|
|
CVE-2024-47011
|
Ivanti Avalanche Directory Traversal (CVE-2024-47011)
|
High
|
24 Dec 2024 |
24 Dec 2024 |
CPAI-2024-1176
|
|
CVE-2024-38819
|
VMware Spring Framework Path Traversal (CVE-2024-38819)
|
High
|
9 Dec 2024 |
24 Dec 2024 |
CPAI-2024-1130
|
|
|
LLM Prompt Injection
|
Critical
|
29 Aug 2024 |
24 Dec 2024 |
CPAI-2021-2137
|
|
CVE-2021-33044
|
Dahua Security Multiple Products Authentication Bypass (CVE-2021-33044)
|
High
|
23 Dec 2024 |
23 Dec 2024 |
CPAI-2019-3245
|
|
CVE-2019-11001
|
Reolink Multiple Products Command Injection (CVE-2019-11001)
|
Critical
|
23 Dec 2024 |
23 Dec 2024 |
CPAI-2021-2231
|
|
CVE-2021-40407
|
Reolink RLC-410W Command Injection (CVE-2021-40407)
|
High
|
23 Dec 2024 |
23 Dec 2024 |
CPAI-2024-1171
|
|
|
Ovalsec Security Scanner
|
Critical
|
23 Dec 2024 |
23 Dec 2024 |
CPAI-2022-2160
|
|
CVE-2022-23227
|
NUUO NVRmini Authentication Bypass (CVE-2022-23227)
|
Medium
|
23 Dec 2024 |
23 Dec 2024 |
CPAI-2023-1951
|
|
CVE-2023-1009
|
Draytek Vigor2960 Firmware Directory Traversal (CVE-2023-1009)
|
High
|
23 Dec 2024 |
23 Dec 2024 |
CPAI-2024-1169
|
|
CVE-2024-45230
|
Django Denial of Service (CVE-2024-45230)
|
High
|
23 Dec 2024 |
23 Dec 2024 |
CPAI-2023-1946
|
|
CVE-2023-6909
|
LF Projects MLflow Directory Traversal (CVE-2023-6909)
|
High
|
19 Dec 2024 |
19 Dec 2024 |
CPAI-2024-1167
|
|
CVE-2024-53376
|
CyberPanel Command Injection (CVE-2024-53376)
|
High
|
19 Dec 2024 |
19 Dec 2024 |
CPAI-2024-1158
|
|
CVE-2024-39573
|
Apache HTTP Server Server-Side Request Forgery (CVE-2024-39573)
|
Medium
|
19 Dec 2024 |
19 Dec 2024 |
CPAI-2024-1162
|
|
CVE-2024-43365
|
Cacti Cross-Site Scripting (CVE-2024-43365)
|
High
|
19 Dec 2024 |
19 Dec 2024 |
CPAI-2024-1160
|
|
CVE-2024-0200
|
GitHub Enterprise Server Remote Code Execution (CVE-2024-0200)
|
Critical
|
5 Nov 2024 |
19 Dec 2024 |
CPAI-2024-1036
|
|
CVE-2024-51567 CVE-2024-51568
|
CyberPanel Command Injection (CVE-2024-51567; CVE-2024-51568)
|