Vulnerability index

Browse CVEs

5,953 matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

Filtering by weakness Improper Access ControlCWE-284 × clear
Remote Desktop Client HIGH 8.4
CVE-2024-49105

Remote Desktop Client Remote Code Execution Vulnerability

Fix: 1.2.5716.0 / 2.0.327.0+
Fix from $1,950 2024-12-12
Windows 10 1507 HIGH 7.3
CVE-2024-49107

WmsRepair Service Elevation of Privilege Vulnerability

Fix: 10.0.10240.20857 / 10.0.14393.7606+
Fix from $1,950 2024-12-12
Sharepoint Server HIGH 8.2
CVE-2024-49068

Microsoft SharePoint Elevation of Privilege Vulnerability

Mitigation only
Fix from $1,950 2024-12-12
Office HIGH 7.8
CVE-2024-43600

Microsoft Office Elevation of Privilege Vulnerability

No fix yet
Fix from $1,950 2024-12-12
System Center 2019 HIGH 7.3
CVE-2024-43594

Microsoft System Center Elevation of Privilege Vulnerability

Fix: 10.19.10050.0 / 10.22.10118.0+
Fix from $1,950 2024-12-12
Glpi HIGH 8.1
CVE-2024-48912

GLPI is a free asset and IT management software package. Starting in version 10.0.0 and prior to version 10.0.17, an authenticated user can use an ap…

Fix: 10.0.17+
Fix from $1,950 2024-12-11
Glpi HIGH 8.8
CVE-2024-47760

GLPI is a free asset and IT management software package. Starting in version 9.1.0 and prior to version 10.0.17, a technician with an access to the A…

Fix: 10.0.17+
Fix from $1,950 2024-12-11
Glpi HIGH 8.8
CVE-2024-47758

GLPI is a free asset and IT management software package. Starting in version 9.3.0 and prior to version 10.0.17, an authenticated user can use the AP…

Fix: 10.0.17+
Fix from $1,950 2024-12-11
Unclassified MEDIUM 5.3
CVE-2024-12294

The Last Viewed Posts by WPBeginner plugin for WordPress is vulnerable to Sensitive Information Exposure in all versions up to, and including, 1.0.1 …

Mitigation only
Fix from $1,600 2024-12-11
Learnpress MEDIUM 5.3
CVE-2024-11868

The LearnPress – WordPress LMS Plugin plugin for WordPress is vulnerable to Sensitive Information Exposure in all versions up to, and including, 4.2.…

Fix: 4.2.7.4+
Fix from $1,600 2024-12-10
Power Manager HIGH 7.8
CVE-2024-49600

Dell Power Manager (DPM), versions prior to 3.17, contain an improper access control vulnerability. A low privileged attacker with local access could…

Fix: 3.17+
Fix from $1,950 2024-12-09
Agilebpm HIGH 8.8
CVE-2024-12235

A vulnerability was found in Shenzhen Dashi Tongzhou Information Technology AgileBPM up to 1.0.0. It has been declared as critical. Affected by this …

No fix yet
Fix from $1,950 2024-12-05
Online Notice Board CRITICAL 9.8
CVE-2024-12233

A vulnerability was found in code-projects Online Notice Board up to 1.0 and classified as critical. This issue affects some unknown processing of th…

No fix yet
Fix from $2,300 2024-12-05
Unclassified MEDIUM 5.3
CVE-2024-10937

The Related Posts, Inline Related Posts, Contextual Related Posts, Related Content By PickPlugins plugin for WordPress is vulnerable to Sensitive Inf…

Mitigation only
Fix from $1,600 2024-12-05
Unclassified MEDIUM 5.2
CVE-2024-20397

A vulnerability in the bootloader of Cisco NX-OS Software could allow an unauthenticated attacker with physical access to an affected device, or an a…

Mitigation only
Fix from $1,600 2024-12-04
Jeewms HIGH 7.5
CVE-2024-11961

A vulnerability was found in Guangzhou Huayi Intelligent Technology Jeewms 3.7. It has been rated as problematic. This issue affects the function pre…

No fix yet
Fix from $1,950 2024-11-28
9206 Lte Modem Firmware HIGH 7.8
CVE-2016-10408

QSEE will randomly experience a fatal error during execution due to speculative instruction fetches from device memory. Device memory is not valid ex…

Mitigation only
Fix from $1,950 2024-11-26
Hospital Management System HIGH 8.8
CVE-2024-11674

A vulnerability, which was classified as critical, was found in CodeAstro Hospital Management System 1.0. Affected is an unknown function of the file…

No fix yet
Fix from $1,950 2024-11-26
Free Exam Hall Seating Management System CRITICAL 9.8
CVE-2024-11661

A vulnerability was found in Codezips Free Exam Hall Seating Management System 1.0. It has been declared as problematic. This vulnerability affects u…

No fix yet
Fix from $2,300 2024-11-25
Unclassified MEDIUM 5.0
CVE-2024-11483

A vulnerability was found in the Ansible Automation Platform (AAP). This flaw allows attackers to escalate privileges by improperly leveraging read-s…

Patch available
Fix from $1,600 2024-11-25
Bluez HIGH 8.8
CVE-2024-8805

BlueZ HID over GATT Profile Improper Access Control Remote Code Execution Vulnerability. This vulnerability allows network-adjacent attackers to exec…

Mitigation only
Fix from $1,950 2024-11-22
Allegra HIGH 7.3
CVE-2023-51644

Allegra SiteConfigAction Improper Access Control Remote Code Execution Vulnerability. This vulnerability allows remote attackers to execute arbitrary…

Fix: 7.5.1+
Fix from $1,950 2024-11-22
Tutor Lms MEDIUM 5.3
CVE-2024-10393

The Tutor LMS plugin for WordPress is vulnerable to bypass to user registration in versions up to, and including, 2.7.6. This is due to a missing che…

Fix: after 2.7.6
Fix from $1,600 2024-11-21
Decoration Management System HIGH 8.8
CVE-2024-11484

A vulnerability classified as critical was found in Code4Berry Decoration Management System 1.0. Affected by this vulnerability is an unknown functio…

Mitigation only
Fix from $1,950 2024-11-20
Opencti HIGH 8.2
CVE-2024-37155

OpenCTI is an open source platform allowing organizations to manage their cyber threat intelligence knowledge and observables. Prior to version 6.1.9…

Fix: 6.1.9+
Fix from $1,950 2024-11-18
Nh8091 Firmware HIGH 8.8
CVE-2024-22067

ZTE NH8091 product has an improper permission control vulnerability. Due to improper permission control of the Web module interface, an authenticated…

Mitigation only
Fix from $1,950 2024-11-18
Mail MEDIUM 5.7
CVE-2024-52509

Nextcloud Mail is the mail app for Nextcloud, a self-hosted productivity platform. The Nextcloud mail app incorrectly allowed attaching shared files …

Fix: 2.2.10 / 3.6.2+
Fix from $1,600 2024-11-15
Crmeb HIGH 7.5
CVE-2024-50653

CRMEB <=5.4.0 is vulnerable to Incorrect Access Control. Users can bypass the front-end restriction of only being able to claim coupons once by captu…

Fix: after 5.4.0
Fix from $1,950 2024-11-15
Secure Firewall Threat Defense MEDIUM 5.3
CVE-2021-34753

A vulnerability in the payload inspection for Ethernet Industrial Protocol (ENIP) traffic for Cisco Firepower Threat Defense (FTD) Software could all…

Fix: 6.4.0.13 / 6.6.5.1+
Fix from $1,600 2024-11-15
Ios Xe Sd Wan MEDIUM 5.3
CVE-2024-20373

A vulnerability in the implementation of the Simple Network Management Protocol (SNMP) IPv4 access control list (ACL) feature of Cisco IOS Software a…

Mitigation only
Fix from $1,600 2024-11-15