Critical
|
29 Aug 2024 |
13 Oct 2024 |
CPAI-2021-2207
|
|
CVE-2021-33045
|
Dahua Security Multiple Products Authentication Bypass (CVE-2021-33045)
|
High
|
10 Oct 2024 |
10 Oct 2024 |
CPAI-2024-0952
|
|
CVE-2024-9466
|
Palo Alto Networks Expedition Information Disclosure (CVE-2024-9466)
|
High
|
10 Oct 2024 |
10 Oct 2024 |
CPAI-2024-0947
|
|
CVE-2024-9464
|
Palo Alto Networks Expedition Command Injection (CVE-2024-9464)
|
High
|
10 Oct 2024 |
10 Oct 2024 |
CPAI-2024-0927
|
|
CVE-2024-36728
|
TRENDnet TEW-827DRU Buffer Overflow (CVE-2024-36728)
|
Medium
|
10 Oct 2024 |
10 Oct 2024 |
CPAI-2023-1914
|
|
CVE-2023-52085
|
Winter CMS Local File Inclusion (CVE-2023-52085)
|
Critical
|
8 Oct 2024 |
10 Oct 2024 |
CPAI-2024-0918
|
|
CVE-2024-45519
|
Zimbra Collaboration Remote Command Execution (CVE-2024-45519)
|
High
|
10 Oct 2024 |
10 Oct 2024 |
CPAI-2016-1387
|
|
CVE-2016-0742
|
F5 Nginx Denial of Service (CVE-2016-0742)
|
Critical
|
27 Jun 2024 |
10 Oct 2024 |
CPAI-2023-1809
|
|
CVE-2023-4873 CVE-2023-5684 CVE-2023-6575 CVE-2023-7039
|
Byzoro Multiple Products SQL Injection (CVE-2023-4873; CVE-2023-5684; CVE-2023-6575; CVE-2023-7039)
|
Critical
|
7 Mar 2024 |
10 Oct 2024 |
CPAI-2022-2028
|
|
CVE-2020-10973 CVE-2020-12127 CVE-2022-31847 CVE-2022-34045 CVE-2022-34046 CVE-2022-34047 CVE-2022-34049 CVE-2022-34576 CVE-2022-48165
|
Wavlink Routers Authentication Bypass (CVE-2020-10973; CVE-2020-12127; CVE-2022-31847; CVE-2022-34045; CVE-2022-34046; CVE-2022-34047; CVE-2022-34049; CVE-2022-34576; CVE-2022-48165)
|
Medium
|
8 Oct 2024 |
9 Oct 2024 |
CPAI-2024-0920
|
Microsoft CVE-2024-43573
|
CVE-2024-43573
|
Microsoft Windows MSHTML Platform Spoofing (CVE-2024-43573)
|
High
|
8 Oct 2024 |
8 Oct 2024 |
CPAI-2024-0905
|
|
CVE-2024-7856
|
WordPress Sonaar MP3 Audio Player Plugin Arbitrary File Deletion (CVE-2024-7856)
|
High
|
7 Oct 2024 |
7 Oct 2024 |
CPAI-2016-1391
|
|
CVE-2016-8740
|
Apache HTTP Server Denial-of-Service (CVE-2016-8740)
|
High
|
7 Oct 2024 |
7 Oct 2024 |
CPAI-2024-0916
|
|
|
Aruba 501 Command Injection
|
Critical
|
7 Oct 2024 |
7 Oct 2024 |
CPAI-2024-0890
|
|
CVE-2024-46628
|
Tenda G3 Command Injection (CVE-2024-46628)
|
Critical
|
7 Oct 2024 |
7 Oct 2024 |
CPAI-2024-0877
|
|
CVE-2024-46048
|
Tenda FH451 Command Injection (CVE-2024-46048)
|
Critical
|
7 Oct 2024 |
7 Oct 2024 |
CPAI-2024-0820
|
|
CVE-2024-42009
|
Roundcube Webmail Cross-Site Scripting (CVE-2024-42009)
|
High
|
9 Sep 2024 |
7 Oct 2024 |
CPAI-2024-0739
|
|
CVE-2024-22263
|
VMware Spring Cloud Data Flow Directory Traversal (CVE-2024-22263)
|
Critical
|
5 Aug 2024 |
7 Oct 2024 |
CPAI-2023-1859
|
|
CVE-2023-6612 CVE-2024-42737 CVE-2024-42738 CVE-2024-42739
|
TOTOLINK X5000R Command Injection (CVE-2023-6612; CVE-2024-42737; CVE-2024-42738; CVE-2024-42739)
|
High
|
7 Oct 2024 |
7 Oct 2024 |
CPAI-2015-1608
|
|
CVE-2015-0203 CVE-2015-0224
|
Apache Qpid Denial of Service (CVE-2015-0203; CVE-2015-0224)
|
Critical
|
7 Mar 2024 |
7 Oct 2024 |
CPAI-2023-1556
|
|
CVE-2023-24150 CVE-2023-24151 CVE-2023-24152 CVE-2023-24153 CVE-2023-24156 CVE-2023-24157 CVE-2024-8574
|
TOTOLINK T8 Command Injection (CVE-2023-24150; CVE-2023-24151; CVE-2023-24152; CVE-2023-24153; CVE-2023-24156; CVE-2023-24157; CVE-2024-8574)
|
Medium
|
6 Oct 2024 |
6 Oct 2024 |
CPAI-2024-0904
|
|
CVE-2024-21645
|
PyLoad Log Injection (CVE-2024-21645)
|
High
|
6 Oct 2024 |
6 Oct 2024 |
CPAI-2024-0899
|
|
CVE-2024-41107
|
Apache CloudStack Authentication Bypass (CVE-2024-41107)
|
Medium
|
6 Oct 2024 |
6 Oct 2024 |
CPAI-2020-4201
|
|
CVE-2020-11547
|
Paessler PRTG Network Monitor Information Disclosure (CVE-2020-11547)
|
Critical
|
6 Oct 2024 |
6 Oct 2024 |
CPAI-2024-0894
|
|
CVE-2024-24809 CVE-2024-31214
|
Traccar Arbitrary File Upload (CVE-2024-24809; CVE-2024-31214)
|
High
|
6 Oct 2024 |
6 Oct 2024 |
CPAI-2021-2214
|
|
CVE-2021-33004
|
Advantech WebAccess HMI Designer Memory Corruption (CVE-2021-33004)
|
High
|
6 Oct 2024 |
6 Oct 2024 |
CPAI-2024-0893
|
|
|
Kia Privilege Escalation
|
High
|
6 Oct 2024 |
6 Oct 2024 |
CPAI-2024-0883
|
|
CVE-2024-8752
|
Smart-Hmi WebIQ Directory Traversal (CVE-2024-8752)
|
Critical
|
6 Oct 2024 |
6 Oct 2024 |
CPAI-2024-0862
|
|
CVE-2024-42813
|
TRENDnet TEW-752DRU Buffer Overflow (CVE-2024-42813)
|
Critical
|
6 Oct 2024 |
6 Oct 2024 |
CPAI-2024-0860
|
|
CVE-2024-7333 CVE-2024-7462
|
TOTOLINK N350RT Buffer Overflow (CVE-2024-7333; CVE-2024-7462)
|
Critical
|
27 Aug 2024 |
6 Oct 2024 |
CPAI-2024-0725
|
|
CVE-2024-5932 CVE-2024-8353
|
WordPress GiveWP Plugin PHP Object Injection (CVE-2024-5932; CVE-2024-8353)
|
Critical
|
26 Mar 2024 |
6 Oct 2024 |
CPAI-2024-0095
|
|
|
Python Functions Remote Code Execution
|
High
|
1 Oct 2024 |
1 Oct 2024 |
CPAI-2021-2213
|
|
CVE-2021-41987
|
MikroTik RouterOS Buffer Overflow (CVE-2021-41987)
|
High
|
1 Oct 2024 |
1 Oct 2024 |
CPAI-2024-0854
|
|
|
Dockwatch Command Injection
|
High
|
1 Oct 2024 |
1 Oct 2024 |
CPAI-2024-0850
|
|
CVE-2024-6646
|
Netgear WN604 Information Disclosure (CVE-2024-6646)
|
Medium
|
1 Oct 2024 |
1 Oct 2024 |
CPAI-2023-1905
|
|
CVE-2023-23074
|
Zoho ManageEngine ServiceDesk Plus Cross-Site Scripting (CVE-2023-23074)
|
High
|
17 Sep 2024 |
1 Oct 2024 |
CPAI-2024-0817
|
|
|
Yonyou U8 SQL Injection
|
Critical
|
1 Oct 2024 |
1 Oct 2024 |
CPAI-2016-1255
|
|
CVE-2016-0857
|
Advantech WebAccess Buffer Overflow (CVE-2016-0857)
|
High
|
30 Sep 2024 |
30 Sep 2024 |
CPAI-2023-1902
|
|
CVE-2023-6112
|
Google Chrome Use After Free (CVE-2023-6112)
|
Critical
|
26 Sep 2024 |
30 Sep 2024 |
CPAI-2024-0852
|
|
CVE-2024-20439
|
Cisco Smart Licensing Utility Use of Hard-coded Credentials (CVE-2024-20439)
|
High
|
29 Sep 2024 |
29 Sep 2024 |
CPAI-2024-0859
|
|
CVE-2024-7965
|
Google Chrome V8 Heap Corruption (CVE-2024-7965)
|
Critical
|
29 Sep 2024 |
29 Sep 2024 |
CPAI-2024-0841
|
|
CVE-2024-46986
|
Camaleon CMS Directory Traversal (CVE-2024-46986)
|
High
|
29 Sep 2024 |
29 Sep 2024 |
CPAI-2024-0809
|
|
|
Offensity Security Scanner
|
Medium
|
29 Sep 2024 |
29 Sep 2024 |
CPAI-2021-2179
|
|
CVE-2021-2389 CVE-2021-2390
|
Oracle MySQL Server Integer Underflow (CVE-2021-2389; CVE-2021-2390)
|
Critical
|
21 Apr 2024 |
29 Sep 2024 |
CPAI-2023-1660
|
|
CVE-2020-36666 CVE-2023-3460 CVE-2024-8253
|
WordPress Privilege Escalation (CVE-2020-36666; CVE-2023-3460; CVE-2024-8253)
|
Medium
|
29 Sep 2024 |
29 Sep 2024 |
CPAI-2021-1779
|
|
CVE-2021-35592 CVE-2021-35594 CVE-2021-35598
|
Oracle MySQL Cluster Remote Code Execution (CVE-2021-35592; CVE-2021-35594; CVE-2021-35598)
|
High
|
19 Sep 2024 |
29 Sep 2024 |
CPAI-2022-1600
|
|
CVE-2022-21489
|
Oracle MySQL Buffer Overflow (CVE-2022-21489)
|
High
|
19 Sep 2024 |
29 Sep 2024 |
CPAI-2022-1583
|
|
CVE-2022-21550
|
Oracle MySQL Cluster Integer Underflow (CVE-2022-21550)
|
Critical
|
26 Sep 2024 |
26 Sep 2024 |
CPAI-2024-0858
|
|
CVE-2024-9004
|
D-Link DAR-7000 Command Injection (CVE-2024-9004)
|
Medium
|
26 Sep 2024 |
26 Sep 2024 |
CPAI-2024-0857
|
|
CVE-2024-4901
|
GitLab Cross-Site Scripting (CVE-2024-4901)
|
Critical
|
26 Sep 2024 |
26 Sep 2024 |
CPAI-2020-4199
|
|
CVE-2020-10619
|
Advantech WebAccess/NMS Directory Traversal (CVE-2020-10619)
|