Critical
|
25 Jul 2024 |
5 Aug 2024 |
CPAI-2024-0614
|
|
CVE-2024-41110
|
Docker Engine Authentication Bypass (CVE-2024-41110)
|
High
|
5 Aug 2024 |
5 Aug 2024 |
CPAI-2024-0611
|
|
CVE-2024-3833
|
Google Chrome Type Confusion (CVE-2024-3833)
|
High
|
19 Jun 2024 |
5 Aug 2024 |
CPAI-2023-1778
|
|
CVE-2023-36884
|
Microsoft Multiple Products Remote Code Execution (CVE-2023-36884)
|
High
|
5 Aug 2024 |
5 Aug 2024 |
CPAI-2022-2081
|
|
CVE-2022-38111
|
SolarWinds Orion Platform Insecure Deserialization (CVE-2022-38111)
|
Critical
|
1 Aug 2024 |
1 Aug 2024 |
CPAI-2023-1857
|
|
CVE-2023-30194
|
Prestashop Posthemes SQL Injection (CVE-2023-30194)
|
Medium
|
1 Aug 2024 |
1 Aug 2024 |
CPAI-2024-0618
|
|
CVE-2024-2454
|
GitLab Community Edition (CE) and Enterprise Edition Denial of Service (CVE-2024-2454)
|
High
|
1 Aug 2024 |
1 Aug 2024 |
CPAI-2023-1854
|
|
CVE-2023-4827
|
WordPress File Manager Pro Plugin Remote Code Execution (CVE-2023-4827)
|
Critical
|
4 Jul 2024 |
1 Aug 2024 |
CPAI-2023-1811
|
|
CVE-2023-27394 CVE-2023-28712
|
Osprey Pump Controller Command Injection (CVE-2023-27394; CVE-2023-28712)
|
High
|
31 Jul 2024 |
31 Jul 2024 |
CPAI-2024-0624
|
|
CVE-2024-7171 CVE-2024-7174 CVE-2024-7175 CVE-2024-7177 CVE-2024-7181 CVE-2024-7182 CVE-2024-7183 CVE-2024-7185
|
TOTOLINK A3600R Command Injection (CVE-2024-7171; CVE-2024-7174; CVE-2024-7175; CVE-2024-7177; CVE-2024-7181; CVE-2024-7182; CVE-2024-7183; CVE-2024-7185)
|
High
|
31 Jul 2024 |
31 Jul 2024 |
CPAI-2024-0590
|
|
CVE-2024-39149
|
NETGEAR X6 R8000 Command Injection (CVE-2024-39149)
|
High
|
16 Jul 2024 |
31 Jul 2024 |
CPAI-2023-1839
|
|
CVE-2023-3545 CVE-2023-4220 CVE-2023-4223 CVE-2023-4224 CVE-2023-4225 CVE-2023-4226
|
Chamilo Arbitrary File Upload (CVE-2023-3545; CVE-2023-4220; CVE-2023-4223; CVE-2023-4224; CVE-2023-4225; CVE-2023-4226)
|
Critical
|
31 Jul 2024 |
31 Jul 2024 |
CPAI-2023-1832
|
|
CVE-2023-43795
|
Osgeo GeoServer Server Side Request Forgery (CVE-2023-43795)
|
Medium
|
16 Jun 2024 |
31 Jul 2024 |
CPAI-2018-2743
|
|
CVE-2018-14392
|
MyBB New Threads Cross-Site Scripting (CVE-2018-14392)
|
Critical
|
30 Jul 2024 |
30 Jul 2024 |
CPAI-2023-1850
|
|
CVE-2023-27076
|
Tenda G103 Command Injection (CVE-2023-27076)
|
Critical
|
21 Jul 2024 |
30 Jul 2024 |
CPAI-2024-0589
|
|
CVE-2024-4879 CVE-2024-5178 CVE-2024-5217
|
ServiceNow Server-Side Template Injection (CVE-2024-4879; CVE-2024-5178; CVE-2024-5217)
|
High
|
24 Jun 2024 |
30 Jul 2024 |
CPAI-2022-2085
|
|
CVE-2022-2463
|
Rockwell Automation ISaGRAF Workbench Directory Traversal (CVE-2022-2463)
|
Medium
|
29 Jul 2024 |
29 Jul 2024 |
CPAI-2024-0609
|
|
CVE-2024-31444
|
Cacti Group Cacti Stored Cross-Site Scripting (CVE-2024-31444)
|
Critical
|
29 Jul 2024 |
29 Jul 2024 |
CPAI-2018-2779
|
|
CVE-2018-1000517
|
BusyBox Buffer Overflow (CVE-2018-1000517)
|
Medium
|
29 Jul 2024 |
29 Jul 2024 |
CPAI-2024-0588
|
|
CVE-2024-31458
|
Cacti Group Cacti SQL Injection (CVE-2024-31458)
|
Critical
|
29 Jul 2024 |
29 Jul 2024 |
CPAI-2024-0578
|
|
CVE-2024-27144 CVE-2024-27145 CVE-2024-27146 CVE-2024-27147 CVE-2024-27148 CVE-2024-27149 CVE-2024-27150 CVE-2024-27151 CVE-2024-27171
|
Toshiba Multi-Function Printers Unrestricted File Upload (CVE-2024-27144; CVE-2024-27145; CVE-2024-27146; CVE-2024-27147; CVE-2024-27148; CVE-2024-27149; CVE-2024-27150; CVE-2024-27151; CVE-2024-27171)
|
Critical
|
28 Jul 2024 |
28 Jul 2024 |
CPAI-2023-1852
|
|
CVE-2023-34600
|
Adiscon LogAnalyzer SQL Injection (CVE-2023-34600)
|
Critical
|
28 Jul 2024 |
28 Jul 2024 |
CPAI-2023-1851
|
|
CVE-2023-1698
|
WAGO Command Injection (CVE-2023-1698)
|
High
|
28 Jul 2024 |
28 Jul 2024 |
CPAI-2023-1849
|
|
CVE-2023-36212
|
Total CMS Arbitrary File Upload (CVE-2023-36212)
|
Critical
|
28 Jul 2024 |
28 Jul 2024 |
CPAI-2024-0606
|
|
CVE-2024-1651
|
Torrentpier Insecure Deserialization (CVE-2024-1651)
|
Critical
|
28 Jul 2024 |
28 Jul 2024 |
CPAI-2023-1848
|
|
CVE-2023-37145 CVE-2023-37148
|
TOTOLINK LR350 Command Injection (CVE-2023-37145; CVE-2023-37148)
|
High
|
28 Jul 2024 |
28 Jul 2024 |
CPAI-2024-0595
|
|
CVE-2024-39943
|
Rejetto HTTP File Server Remote Code Execution (CVE-2024-39943)
|
High
|
28 Jul 2024 |
28 Jul 2024 |
CPAI-2007-0657
|
|
CVE-2007-6506
|
HP Software Update Arbitrary File Overwrite (CVE-2007-6506)
|
Critical
|
2 Apr 2024 |
28 Jul 2024 |
CPAI-2023-1623
|
|
CVE-2022-32039 CVE-2022-32040 CVE-2022-32043 CVE-2023-37710 CVE-2023-37714 CVE-2023-37715 CVE-2023-37716 CVE-2023-37717 CVE-2023-37718 CVE-2023-37719 CVE-2023-37721 CVE-2023-37722 CVE-2023-37723 CVE-2023-51093
|
Tenda Multiple Products Stack Overflow (CVE-2022-32039; CVE-2022-32040; CVE-2022-32043; CVE-2023-37710; CVE-2023-37714; CVE-2023-37715; CVE-2023-37716; CVE-2023-37717; CVE-2023-37718; CVE-2023-37719; CVE-2023-37721; CVE-2023-37722; CVE-2023-37723; CVE-2023-51093)
|
Critical
|
3 Mar 2024 |
25 Jul 2024 |
CPAI-2024-0034
|
|
CVE-2020-9437
|
Client-Side Template Injection (CVE-2020-9437)
|
Critical
|
24 Jul 2024 |
24 Jul 2024 |
CPAI-2024-0587
|
|
CVE-2024-27172
|
Toshiba Multi-Function Printers Command Injection (CVE-2024-27172)
|
Medium
|
24 Jul 2024 |
24 Jul 2024 |
CPAI-2016-1333
|
|
CVE-2016-0489
|
Oracle Application Testing Suite Directory Traversal (CVE-2016-0489)
|
High
|
28 Feb 2024 |
24 Jul 2024 |
CPAI-2023-1545
|
|
CVE-2023-52251
|
Provectus ui Remote Code Execution (CVE-2023-52251)
|
Critical
|
23 Jul 2024 |
23 Jul 2024 |
CPAI-2024-0602
|
|
CVE-2024-0986
|
Issabel PBX Command Injection (CVE-2024-0986)
|
High
|
23 Jul 2024 |
23 Jul 2024 |
CPAI-2023-1843
|
|
CVE-2023-0234
|
WordPress SiteGround Security Plugin SQL Injection (CVE-2023-0234)
|
High
|
23 Jul 2024 |
23 Jul 2024 |
CPAI-2023-1841
|
|
CVE-2023-45363
|
MediaWiki Denial Of Service (CVE-2023-45363)
|
Critical
|
24 Jun 2024 |
23 Jul 2024 |
CPAI-2022-2084
|
|
CVE-2022-29805
|
Fishbowl Insecure Deserialization (CVE-2022-29805)
|
High
|
22 Jul 2024 |
22 Jul 2024 |
CPAI-2024-0597
|
|
CVE-2024-4884
|
Progress Software WhatsUp Gold Unrestricted File Upload (CVE-2024-4884)
|
High
|
22 Jul 2024 |
22 Jul 2024 |
CPAI-2024-0586
|
|
CVE-2024-38023 CVE-2024-38024 CVE-2024-38094
|
Microsoft SharePoint Server Remote Code Execution (CVE-2024-38023; CVE-2024-38024; CVE-2024-38094)
|
High
|
21 Jul 2024 |
21 Jul 2024 |
CPAI-2024-0599
|
|
CVE-2024-38457
|
XenForo Cross-Site Request Forgery (CVE-2024-38457)
|
Medium
|
21 Jul 2024 |
21 Jul 2024 |
CPAI-2024-0592
|
|
CVE-2024-37389
|
Apache NiFi Cross-Site Scripting (CVE-2024-37389)
|
Critical
|
21 Jul 2024 |
21 Jul 2024 |
CPAI-2023-1845
|
|
CVE-2023-1715 CVE-2023-1716 CVE-2023-1717
|
Bitrix24 Cross-Site Scripting (CVE-2023-1715; CVE-2023-1716; CVE-2023-1717)
|
High
|
21 Jul 2024 |
21 Jul 2024 |
CPAI-2023-1844
|
|
CVE-2023-0259 CVE-2023-0260 CVE-2023-0261 CVE-2023-0262 CVE-2023-0263
|
WordPress Review Slider Plugins SQL Injection (CVE-2023-0259; CVE-2023-0260; CVE-2023-0261; CVE-2023-0262; CVE-2023-0263)
|
Medium
|
21 Jul 2024 |
21 Jul 2024 |
CPAI-2024-0583
|
|
CVE-2024-29510
|
Artifex Ghostscript Memory Corruption (CVE-2024-29510)
|
High
|
21 Jul 2024 |
21 Jul 2024 |
CPAI-2024-0561
|
|
CVE-2024-38526
|
JavaScript Supply Chain Attack (CVE-2024-38526)
|
Critical
|
21 Jul 2024 |
21 Jul 2024 |
CPAI-2024-0411
|
|
CVE-2024-29855
|
Veeam Recovery Orchestrator Authentication Bypass (CVE-2024-29855)
|
High
|
18 Jul 2024 |
18 Jul 2024 |
CPAI-2023-1842
|
|
CVE-2023-1713 CVE-2023-1714
|
Bitrix24 Remote Code Execution (CVE-2023-1713; CVE-2023-1714)
|
High
|
18 Jul 2024 |
18 Jul 2024 |
CPAI-2024-0580
|
|
CVE-2024-39309
|
Parse Server SQL Injection (CVE-2024-39309)
|
High
|
18 Jul 2024 |
18 Jul 2024 |
CPAI-2024-0579
|
|
CVE-2024-32030
|
Provectus UI for Apache Kafka Insecure Deserialization (CVE-2024-32030)
|
Critical
|
18 Jul 2024 |
18 Jul 2024 |
CPAI-2023-1829
|
|
CVE-2023-51011 CVE-2023-51012 CVE-2023-51013 CVE-2023-51014 CVE-2023-51015 CVE-2023-51017 CVE-2023-51018 CVE-2023-51019 CVE-2023-51020 CVE-2023-51021 CVE-2023-51022
|
TOTOLINK EX1800T Command Injection (CVE-2023-51011; CVE-2023-51012; CVE-2023-51013; CVE-2023-51014; CVE-2023-51015; CVE-2023-51017; CVE-2023-51018; CVE-2023-51019; CVE-2023-51020; CVE-2023-51021; CVE-2023-51022)
|
Critical
|
18 Jul 2024 |
18 Jul 2024 |
CPAI-2023-1827
|
|
CVE-2023-3306
|
Ruijie RG-EW1200G Command Injection (CVE-2023-3306)
|