Critical
|
28 Aug 2024 |
28 Aug 2024 |
CPAI-2024-0726
|
|
CVE-2024-25830
|
F-logic DataCube3 Information Disclosure (CVE-2024-25830)
|
High
|
27 Aug 2024 |
27 Aug 2024 |
CPAI-2024-0743
|
|
CVE-2024-39123
|
Calibre-Web Cross-Site Scripting (CVE-2024-39123)
|
Critical
|
22 Aug 2024 |
27 Aug 2024 |
CPAI-2024-0728
|
|
CVE-2024-28000
|
WordPress LiteSpeed Cache Plugin Privilege Escalation (CVE-2024-28000)
|
High
|
27 Aug 2024 |
27 Aug 2024 |
CPAI-2020-4196
|
|
CVE-2020-17525
|
Apache Subversion Denial of Service (CVE-2020-17525)
|
High
|
27 Aug 2024 |
27 Aug 2024 |
CPAI-2023-1879
|
|
CVE-2023-50564
|
Pluck CMS Arbitrary File Upload (CVE-2023-50564)
|
Medium
|
27 Aug 2024 |
27 Aug 2024 |
CPAI-2021-2203
|
|
CVE-2021-22784
|
Schneider Electric C-Bus Toolkit Authentication Bypass (CVE-2021-22784)
|
High
|
27 Aug 2024 |
27 Aug 2024 |
CPAI-2024-0598
|
|
CVE-2024-5276
|
Fortra FileCatalyst Workflow SQL Injection (CVE-2024-5276)
|
High
|
27 Aug 2024 |
27 Aug 2024 |
CPAI-2021-1785
|
|
CVE-2021-22824
|
Schneider-Electric Interactive Graphical SCADA System Buffer Overflow (CVE-2021-22824)
|
Critical
|
27 Aug 2024 |
27 Aug 2024 |
CPAI-2022-1574
|
|
CVE-2022-24313
|
Schneider-Electric Interactive Graphical SCADA System Buffer Overflow (CVE-2022-24313)
|
High
|
27 Aug 2024 |
27 Aug 2024 |
CPAI-2022-1564
|
|
CVE-2022-24315
|
Schneider-Electric Interactive Graphical SCADA System Out-of-bounds Read (CVE-2022-24315)
|
High
|
26 Aug 2024 |
26 Aug 2024 |
CPAI-2024-0719
|
|
CVE-2024-29276
|
Seeyon OA Arbitrary File Upload (CVE-2024-29276)
|
Critical
|
26 Aug 2024 |
26 Aug 2024 |
CPAI-2024-0718
|
|
|
Zhiyuan A8 OA Remote Code Execution
|
Critical
|
26 Aug 2024 |
26 Aug 2024 |
CPAI-2023-1878
|
|
CVE-2023-40504
|
LG Simple Editor Command Injection (CVE-2023-40504)
|
High
|
26 Aug 2024 |
26 Aug 2024 |
CPAI-2023-1877
|
|
CVE-2023-49964
|
Hyland Alfresco Server-Side Template Injection (CVE-2023-49964)
|
High
|
26 Aug 2024 |
26 Aug 2024 |
CPAI-2022-2090
|
|
CVE-2022-28685
|
AVEVA Edge Insecure Deserialization (CVE-2022-28685)
|
High
|
26 Aug 2024 |
26 Aug 2024 |
CPAI-2023-0365
|
|
CVE-2023-28400
|
MySCADA MyPRO Command Injection (CVE-2023-28400)
|
High
|
8 Feb 2024 |
22 Aug 2024 |
CPAI-2016-1253
|
|
CVE-2016-8525 CVE-2016-8530
|
HP Intelligent Management Center Denial of Service (CVE-2016-8530; CVE-2016-8525)
|
Medium
|
22 Aug 2024 |
22 Aug 2024 |
CPAI-2021-2204
|
|
CVE-2021-38488
|
Delta DIALink Cross-Site Scripting (CVE-2021-38488)
|
Medium
|
22 Aug 2024 |
22 Aug 2024 |
CPAI-2024-0714
|
|
CVE-2023-4119 CVE-2023-4973 CVE-2024-38959
|
WordPress Academy LMS Plugin Cross-Site Scripting (CVE-2023-4119; CVE-2023-4973; CVE-2024-38959)
|
Medium
|
22 Aug 2024 |
22 Aug 2024 |
CPAI-2021-2202
|
|
CVE-2021-30214
|
Knowage Suite Client-Side Template Injection (CVE-2021-30214)
|
Critical
|
22 Aug 2024 |
22 Aug 2024 |
CPAI-2023-1872
|
|
CVE-2023-0587
|
Trend Micro Apex One Arbitrary File Upload (CVE-2023-0587)
|
High
|
22 Aug 2024 |
22 Aug 2024 |
CPAI-2022-1603
|
|
CVE-2022-36969
|
AVEVA Edge XML External Entity Injection (CVE-2022-36969)
|
High
|
21 Aug 2024 |
21 Aug 2024 |
CPAI-2022-2116
|
|
CVE-2022-45835
|
WordPress PhonePe Plugin Server-Side Request Forgery (CVE-2022-45835)
|
Medium
|
21 Aug 2024 |
21 Aug 2024 |
CPAI-2022-2115
|
|
CVE-2022-45365
|
WordPress Urosevic Stock Ticker Plugin Cross-Site Scripting (CVE-2022-45365)
|
Critical
|
21 Aug 2024 |
21 Aug 2024 |
CPAI-2020-4195
|
|
CVE-2020-23584
|
OptilinkNetwork OP-XT71000n Command Injection (CVE-2020-23584)
|
Critical
|
21 Aug 2024 |
21 Aug 2024 |
CPAI-2022-2114
|
|
CVE-2022-45551
|
ZBT WE1626 Privilege Escalation (CVE-2022-45551)
|
Critical
|
21 Aug 2024 |
21 Aug 2024 |
CPAI-2024-0713
|
|
CVE-2024-41468 CVE-2024-41473
|
Tenda FH1201 Command Injection (CVE-2024-41468; CVE-2024-41473)
|
Critical
|
20 Aug 2024 |
20 Aug 2024 |
CPAI-2024-0710
|
|
CVE-2024-7094
|
WordPress JS Help Desk Plugin Remote Code Execution (CVE-2024-7094)
|
High
|
20 Aug 2024 |
20 Aug 2024 |
CPAI-2018-2788
|
|
CVE-2018-0824
|
Microsoft Windows Remote Code Execution (CVE-2018-0824)
|
High
|
20 Aug 2024 |
20 Aug 2024 |
CPAI-2014-2624
|
|
CVE-2014-0160
|
OpenSSL Information Disclosure (CVE-2014-0160)
|
Medium
|
20 Aug 2024 |
20 Aug 2024 |
CPAI-2024-0699
|
|
CVE-2024-2651
|
GitLab Community and Enterprise Edition Denial Of Service (CVE-2024-2651)
|
Critical
|
20 Aug 2024 |
20 Aug 2024 |
CPAI-2023-1871
|
|
CVE-2023-6016
|
H2O.ai H2O-3 Arbitrary File Upload (CVE-2023-6016)
|
High
|
20 Aug 2024 |
20 Aug 2024 |
CPAI-2024-0667
|
|
CVE-2024-5246
|
Netgear ProSAFE NMS300 Remote Code Execution (CVE-2024-5246)
|
Medium
|
20 Aug 2024 |
20 Aug 2024 |
CPAI-2023-1868
|
|
CVE-2023-0678
|
Phpipam Authentication Bypass (CVE-2023-0678)
|
High
|
19 Aug 2024 |
19 Aug 2024 |
CPAI-2024-0708
|
|
CVE-2024-1222
|
PaperCut NG Authentication Bypass (CVE-2024-1222)
|
Critical
|
19 Aug 2024 |
19 Aug 2024 |
CPAI-2023-1876
|
|
CVE-2023-30145
|
Camaleon CMS Server-Side Template Injection (CVE-2023-30145)
|
High
|
19 Aug 2024 |
19 Aug 2024 |
CPAI-2023-1875
|
|
CVE-2023-32529 CVE-2023-32530
|
Trend Micro Apex Central SQL Injection (CVE-2023-32529; CVE-2023-32530)
|
Medium
|
19 Aug 2024 |
19 Aug 2024 |
CPAI-2024-0683
|
|
CVE-2024-37900
|
XWiki.org XWiki Reflected Cross-Site Scripting (CVE-2024-37900)
|
High
|
19 Aug 2024 |
19 Aug 2024 |
CPAI-2023-1764
|
|
CVE-2023-38171
|
Microsoft Multiple Products Denial of Service (CVE-2023-38171)
|
High
|
19 Aug 2024 |
19 Aug 2024 |
CPAI-2020-3842
|
|
CVE-2020-12497
|
PHOENIX CONTACT PC Worx Buffer Overflow (CVE-2020-12497)
|
Medium
|
15 Aug 2024 |
15 Aug 2024 |
CPAI-2024-0674
|
|
CVE-2024-31204
|
Mailcow Cross-Site Scripting (CVE-2024-31204)
|
Medium
|
15 Aug 2024 |
15 Aug 2024 |
CPAI-2024-0673
|
|
CVE-2024-30270
|
Mailcow Directory Traversal (CVE-2024-30270)
|
High
|
15 Aug 2024 |
15 Aug 2024 |
CPAI-2024-0154
|
|
CVE-2024-2054
|
Artica Web Proxy Insecure Deserialization (CVE-2024-2054)
|
High
|
13 Aug 2024 |
14 Aug 2024 |
CPAI-2024-0680
|
Microsoft CVE-2024-38178
|
CVE-2024-38178
|
Microsoft Scripting Engine Memory Corruption (CVE-2024-38178)
|
Critical
|
14 Aug 2024 |
14 Aug 2024 |
CPAI-2024-0662
|
|
CVE-2024-34144
|
Jenkins Script Security Plugin Sandbox Bypass (CVE-2024-34144)
|
High
|
13 Aug 2024 |
14 Aug 2024 |
CPAI-2024-0647
|
Microsoft CVE-2024-38193
|
CVE-2024-38193
|
Microsoft Windows Ancillary Function Driver for WinSock Elevation of Privilege (CVE-2024-38193)
|
High
|
13 Aug 2024 |
14 Aug 2024 |
CPAI-2024-0640
|
Microsoft CVE-2024-38106
|
CVE-2024-38106
|
Microsoft Windows Kernel Elevation of Privilege (CVE-2024-38106)
|
Medium
|
14 Aug 2024 |
14 Aug 2024 |
CPAI-2024-0639
|
|
CVE-2024-27162
|
Toshiba Multi-Function Printers Cross-Site Scripting (CVE-2024-27162)
|
Critical
|
14 Aug 2024 |
14 Aug 2024 |
CPAI-2024-0687
|
|
CVE-2024-20419
|
Cisco Smart Software Manager On-Prem Authentication Bypass (CVE-2024-20419)
|
High
|
14 Aug 2024 |
14 Aug 2024 |
CPAI-2024-0682
|
|
CVE-2024-6242
|
Rockwell Automation Multiple Products Policy Bypass (CVE-2024-6242)
|