Vulnerability index

Browse CVEs

5,953 matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

Filtering by weakness Improper Access ControlCWE-284 × clear
Unified Contact Center Enterprise CRITICAL 9.1
CVE-2025-20242EPSS 5%

A vulnerability in the Cloud Connect component of Cisco Unified Contact Center Enterprise (CCE) could allow an unauthenticated, remote attacker to re…

Mitigation only
Fix from $2,300 2025-05-21
Jira Data Center HIGH 8.8
CVE-2025-22157

This High severity PrivEsc (Privilege Escalation) vulnerability was introduced in versions: 9.12.0, 10.3.0, 10.4.0, and 10.5.0 of Jira Core Data Cen…

Fix: 5.12.20 / 9.12.20+
Fix from $1,950 2025-05-20
Dgnd3700 Firmware MEDIUM 5.3
CVE-2025-4980

A vulnerability has been found in Netgear DGND3700 1.1.00.15_1.00.15NA and classified as problematic. This vulnerability affects unknown code of the …

No fix yet
Fix from $1,600 2025-05-20
Dgnd3700 Firmware MEDIUM 5.3
CVE-2025-4977

A vulnerability, which was classified as problematic, has been found in Netgear DGND3700 1.1.00.15_1.00.15NA. Affected by this issue is some unknown …

No fix yet
Fix from $1,600 2025-05-20
Enh500 Firmware MEDIUM 6.5
CVE-2025-28371

EnGenius ENH500 AP 2T2R V3.0 FW3.7.22 is vulnerable to Incorrect Access Control via the password change function. The device fails to validate the cu…

No fix yet
Fix from $1,600 2025-05-19
Car Rental Portal HIGH 7.2
CVE-2025-4926

A vulnerability was found in PHPGurukul Car Rental Project 1.0 and classified as critical. Affected by this issue is some unknown functionality of th…

No fix yet
Fix from $1,950 2025-05-19
Client Database Management System HIGH 7.3
CVE-2025-4923

A vulnerability, which was classified as critical, has been found in SourceCodester Client Database Management System 1.0. This issue affects some un…

No fix yet
Fix from $1,950 2025-05-19
Di 7003g Firmware MEDIUM 5.3
CVE-2025-4904

A vulnerability has been found in D-Link DI-7003GV2 24.04.18D1 R(68125) and classified as problematic. This vulnerability affects the function sub_41…

No fix yet
Fix from $1,600 2025-05-19
Di 7003g Firmware HIGH 7.5
CVE-2025-4902EPSS 14%

A vulnerability, which was classified as problematic, has been found in D-Link DI-7003GV2 24.04.18D1 R(68125). Affected by this issue is the function…

No fix yet
Fix from $1,950 2025-05-19
Di 7003g Firmware MEDIUM 6.5
CVE-2025-4901EPSS 77%

A vulnerability classified as problematic was found in D-Link DI-7003GV2 24.04.18D1 R(68125). Affected by this vulnerability is the function sub_41E3…

No fix yet
Fix from $1,600 2025-05-19
Desktop MEDIUM 6.1
CVE-2025-47792

Nextcloud Desktop is the desktop sync client for Nextcloud. In versions of Nextcloud Desktop prior to 3.15, 3rdparty applications already installed o…

Fix: 3.15.0+
Fix from $1,600 2025-05-16
Unclassified MEDIUM 5.9
CVE-2025-2306

An Improper Access Control vulnerability was identified in the file download functionality. This vulnerability allows users to download sensitive doc…

Mitigation only
Fix from $1,600 2025-05-16
Unclassified MEDIUM 6.3
CVE-2025-4768

A vulnerability classified as critical has been found in feng_ha_ha/megagao ssm-erp and production_ssm 1.0. This affects the function uploadPicture o…

Mitigation only
Fix from $1,600 2025-05-16
Di 7003g Firmware MEDIUM 5.3
CVE-2025-4753

A vulnerability was found in D-Link DI-7003GV2 24.04.18D1 R(68125) and classified as problematic. Affected by this issue is some unknown functionalit…

No fix yet
Fix from $1,600 2025-05-16
Di 7003g Firmware MEDIUM 5.3
CVE-2025-4750

A vulnerability, which was classified as problematic, has been found in D-Link DI-7003GV2 24.04.18D1 R(68125). This issue affects some unknown proces…

No fix yet
Fix from $1,600 2025-05-16
Di 7003g Firmware HIGH 7.5
CVE-2025-4751

A vulnerability, which was classified as problematic, was found in D-Link DI-7003GV2 24.04.18D1 R(68125). Affected is an unknown function of the file…

No fix yet
Fix from $1,950 2025-05-16
Di 7003g Firmware MEDIUM 5.3
CVE-2025-4752

A vulnerability has been found in D-Link DI-7003GV2 24.04.18D1 R(68125) and classified as problematic. Affected by this vulnerability is an unknown f…

No fix yet
Fix from $1,600 2025-05-16
Sales And Inventory System HIGH 8.8
CVE-2025-4735

A vulnerability has been found in Campcodes Sales and Inventory System 1.0 and classified as critical. Affected by this vulnerability is an unknown f…

No fix yet
Fix from $1,950 2025-05-16
Defender For Endpoint HIGH 7.8
CVE-2025-47161

Improper access control in Microsoft Defender for Endpoint allows an authorized attacker to elevate privileges locally.

Fix: 101.25022.0002+
Fix from $1,950 2025-05-15
Openid Connect Provider CRITICAL 9.1
CVE-2025-47884

In Jenkins OpenID Connect Provider Plugin 96.vee8ed882ec4d and earlier the generation of build ID Tokens uses potentially overridden values of enviro…

Fix: after 96.vee8ed882ec4d
Fix from $2,300 2025-05-14
Coldfusion CRITICAL 9.1
CVE-2025-43563EPSS 15%

ColdFusion versions 2025.1, 2023.13, 2021.19 and earlier are affected by an Improper Access Control vulnerability that could result in arbitrary file…

Mitigation only
Fix from $2,300 2025-05-13
Unclassified MEDIUM 5.0
CVE-2025-20076

Improper access control for some Edge Orchestrator software for Intel(R) Tiber™ Edge Platform may allow an unauthenticated user to potentially enable…

Mitigation only
Fix from $1,600 2025-05-13
Unclassified HIGH 7.5
CVE-2025-20100

Improper access control in the memory controller configurations for some Intel(R) Xeon(R) 6 processor with E-cores may allow a privileged user to pot…

Mitigation only
Fix from $1,950 2025-05-13
Unclassified HIGH 7.3
CVE-2025-20052

Improper access control for some Intel(R) Graphics software may allow an authenticated user to potentially enable denial of service via local access.

Mitigation only
Fix from $1,950 2025-05-13
Unclassified HIGH 7.3
CVE-2024-45333

Improper access control for some Intel(R) Data Center GPU Flex Series for Windows driver before version 31.0.101.4314 may allow an authenticated user…

Mitigation only
Fix from $1,950 2025-05-13
Unclassified MEDIUM 6.7
CVE-2024-45371

Improper access control for some Intel(R) Arc™ & Iris(R) Xe graphics software before version 32.0.101.6077 may allow an authenticated user to pot…

Mitigation only
Fix from $1,600 2025-05-13
Unclassified MEDIUM 5.9
CVE-2024-39758

Improper access control for some Intel(R) Arc™ & Iris(R) Xe graphics software before version 31.0.101.4032 may allow an authenticated user to pot…

Mitigation only
Fix from $1,600 2025-05-13
Unclassified MEDIUM 5.3
CVE-2024-43101

Improper access control for some Intel(R) Data Center GPU Flex Series for Windows driver software before version 31.0.101.4255 may allow an authentic…

Mitigation only
Fix from $1,600 2025-05-13
Azure File Sync HIGH 7.0
CVE-2025-29973

Improper access control in Azure File Sync allows an authorized attacker to elevate privileges locally.

Mitigation only
Fix from $1,950 2025-05-13
Persistence MEDIUM 6.4
CVE-2024-6364

A vulnerability in Absolute Persistence® versions before 2.8 exists when it is not activated. This may allow a skilled attacker with both physical ac…

Fix: 2.8+
Fix from $1,600 2025-05-13