Vulnerability index

Browse CVEs

933 matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

Filtering by weakness Incorrect Privilege AssignmentCWE-266 × clear
Huaxia Erp MEDIUM 6.5
CVE-2022-3826

A vulnerability was found in Huaxia ERP. It has been classified as problematic. This affects an unknown part of the file /depotHead/list of the compo…

No fix yet
Fix from $1,600 2022-11-02
Ipados MEDIUM 5.5
CVE-2022-42825

This issue was addressed by removing additional entitlements. This issue is fixed in tvOS 16.1, macOS Ventura 13, watchOS 9.1, iOS 16.1 and iPadOS 16…

Fix: 9.1 / 11.7.1+
Fix from $1,600 2022-11-01
Yunjing Content Management System HIGH 8.8
CVE-2022-3770

A vulnerability classified as critical was found in Yunjing CMS. This vulnerability affects unknown code of the file /index/user/upload_img.html. The…

No fix yet
Fix from $1,950 2022-10-31
Easyiicms CRITICAL 9.8
CVE-2022-3771

A vulnerability, which was classified as critical, has been found in easyii CMS. This issue affects the function file of the file helpers/Upload.php …

Mitigation only
Fix from $2,300 2022-10-31
Ehoney CRITICAL 9.8
CVE-2022-3735

A vulnerability was found in seccome Ehoney. It has been rated as critical. This issue affects some unknown processing of the file /api/public/signup…

No fix yet
Fix from $2,300 2022-10-28
Simple Cold Storage Management System HIGH 7.2
CVE-2022-3549

A vulnerability was found in SourceCodester Simple Cold Storage Management System 1.0. It has been rated as problematic. This issue affects some unkn…

Mitigation only
Fix from $1,950 2022-10-17
Human Resource Management System HIGH 8.8
CVE-2022-3496

A vulnerability was found in SourceCodester Human Resource Management System 1.0 and classified as critical. This issue affects some unknown processi…

Mitigation only
Fix from $1,950 2022-10-14
Human Resource Management System CRITICAL 9.8
CVE-2022-3458

A vulnerability has been found in SourceCodester Human Resource Management System 1.0 and classified as critical. Affected by this vulnerability is a…

Mitigation only
Fix from $2,300 2022-10-12
Web Based Student Clearance System HIGH 7.5
CVE-2022-3436

A vulnerability classified as critical was found in SourceCodester Web-Based Student Clearance System 1.0. Affected by this vulnerability is an unkno…

No fix yet
Fix from $1,950 2022-10-09
Storage Plug In HIGH 8.8
CVE-2022-2637

Incorrect Privilege Assignment vulnerability in Hitachi Hitachi Storage Plug-in for VMware vCenter allows remote authenticated users to cause privile…

Mitigation only
Fix from $1,950 2022-10-06
Ios Xe MEDIUM 6.7
CVE-2022-20855

A vulnerability in the self-healing functionality of Cisco IOS XE Software for Embedded Wireless Controllers on Catalyst Access Points could allow an…

Mitigation only
Fix from $1,600 2022-09-30
Apb HIGH 7.8
CVE-2020-10728

A flaw was found in automationbroker/apb container in versions up to and including 2.0.4-1. This container grants all users sudoer permissions allowi…

Fix: after 2.0.4-1
Fix from $1,950 2022-08-16
Control Panel HIGH 7.2
CVE-2022-2626

Incorrect Privilege Assignment in GitHub repository hestiacp/hestiacp prior to 1.6.6.

Fix: 1.6.6+
Fix from $1,950 2022-08-05
Imagecast X HIGH 7.6
CVE-2022-1746

The authentication mechanism used by poll workers to administer voting using the tested version of Dominion Voting Systems ImageCast X can expose cry…

No fix yet
Fix from $1,950 2022-06-24
Identity Services Engine MEDIUM 6.5
CVE-2022-20819

A vulnerability in the web-based management interface of Cisco Identity Services Engine (ISE) could allow an authenticated, remote attacker to obtain…

Fix: 2.4.0.357 / 2.6.0.156+
Fix from $1,600 2022-06-15
Secure Firewall Threat Defense HIGH 8.8
CVE-2022-20759EPSS 29%

A vulnerability in the web services interface for remote access VPN features of Cisco Adaptive Security Appliance (ASA) Software and Cisco Firepower …

Fix: 6.4.0.15 / 6.6.5.2+
Fix from $1,950 2022-05-03
Ios Xe HIGH 7.8
CVE-2022-20681

A vulnerability in the CLI of Cisco IOS XE Software for Cisco Catalyst 9000 Family Switches and Cisco Catalyst 9000 Family Wireless Controllers could…

Mitigation only
Fix from $1,950 2022-04-15
Identity Services Engine MEDIUM 6.5
CVE-2022-20782

A vulnerability in the web-based management interface of Cisco Identity Services Engine (ISE) could allow an authenticated, remote attacker to obtain…

Mitigation only
Fix from $1,600 2022-04-06
Phpipam MEDIUM 6.5
CVE-2022-1225

Incorrect Privilege Assignment in GitHub repository phpipam/phpipam prior to 1.4.6.

Fix: 1.4.6+
Fix from $1,600 2022-04-04
Anyconnect Secure Mobility Client HIGH 7.8
CVE-2021-40124

A vulnerability in the Network Access Manager (NAM) module of Cisco AnyConnect Secure Mobility Client for Windows could allow an authenticated, local…

Fix: 4.10.03104+
Fix from $1,950 2021-11-04
Identity Services Engine MEDIUM 6.5
CVE-2021-40123

A vulnerability in the web-based management interface of Cisco Identity Services Engine (ISE) could allow an authenticated, remote attacker with admi…

Fix: after 2.6
Fix from $1,600 2021-10-21
Identity Services Engine HIGH 8.1
CVE-2021-1594

A vulnerability in the REST API of Cisco Identity Services Engine (ISE) could allow an unauthenticated, remote attacker to perform a command injectio…

Fix: 2.6.0+
Fix from $1,950 2021-10-06
Openjdk HIGH 7.8
CVE-2021-20264

An insecure modification flaw in the /etc/passwd file was found in the openjdk-1.8 and openjdk-11 containers. This flaw allows an attacker with acces…

Mitigation only
Fix from $1,950 2021-10-06
Confd HIGH 7.8
CVE-2021-1572

A vulnerability in ConfD could allow an authenticated, local attacker to execute arbitrary commands at the level of the account under which ConfD is …

Fix: after 7.5.2
Fix from $1,950 2021-08-04
Openshift Virtualization HIGH 7.0
CVE-2020-1742

An insecure modification vulnerability flaw was found in containers using nmstate/kubernetes-nmstate-handler. An attacker with access to the containe…

Fix: 2.3.0+
Fix from $1,950 2021-06-07
Openshift HIGH 7.0
CVE-2020-35514

An insecure modification flaw in the /etc/kubernetes/kubeconfig file was found in OpenShift. This flaw allows an attacker with access to a running co…

Fix: 4.7.0+
Fix from $1,950 2021-06-02
Single Sign On HIGH 7.8
CVE-2020-10695

An insecure modification flaw in the /etc/passwd file was found in the redhat-sso-7 container. An attacker with access to the container can use this …

Fix: 7.4.4+
Fix from $1,950 2021-05-26
Enterprise Linux MEDIUM 6.1
CVE-2021-20208

A flaw was found in cifs-utils in versions before 6.13. A user when mounting a krb5 CIFS file system from within a container can use Kerberos credent…

Fix: 6.13+
Fix from $1,600 2021-04-19
Openshift Container Platform HIGH 7.0
CVE-2019-19352

An insecure modification vulnerability in the /etc/passwd file was found in the operator-framework/presto as shipped in Red Hat Openshift 4. An attac…

Mitigation only
Fix from $1,950 2021-03-24
Openshift Container Platform HIGH 7.0
CVE-2019-19353

An insecure modification vulnerability in the /etc/passwd file was found in the operator-framework/hive as shipped in Red Hat Openshift 4. An attacke…

No fix yet
Fix from $1,950 2021-03-24