Vulnerability index

Browse CVEs

5,953 matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

Filtering by weakness Improper Access ControlCWE-284 × clear
404 To 301 MEDIUM 5.4
CVE-2021-4338

The 404 to 301 plugin for WordPress is vulnerable to authorization bypass due to missing capability checks on the open_redirect & save_redirect funct…

Fix: after 3.0.7
Fix from $1,600 2023-06-07
Page Builder Kingcomposer HIGH 8.8
CVE-2020-36700

The Page Builder: KingComposer plugin for WordPress is vulnerable to authorization bypass in versions up to, and including, 2.9.3. This is due to a s…

Fix: after 2.9.3
Fix from $1,950 2023-06-07
Grafana MEDIUM 6.4
CVE-2023-2183

Grafana is an open-source platform for monitoring and observability. The option to send a test alert is not available from the user panel UI for us…

Fix: 8.5.26 / 9.2.19+
Fix from $1,600 2023-06-06
315 5g Iot Modem Firmware HIGH 7.8
CVE-2023-21670

Memory Corruption in GPU Subsystem due to arbitrary command execution from GPU in privileged mode.

Patch available
Fix from $1,950 2023-06-06
Aqt1000 Firmware HIGH 7.8
CVE-2022-40529

Memory corruption due to improper access control in kernel while processing a mapping request from root process.

Mitigation only
Fix from $1,950 2023-06-06
Youker Assistant HIGH 7.1
CVE-2023-3099

A vulnerability classified as critical was found in KylinSoft youker-assistant on KylinOS. Affected by this vulnerability is the function delete_file…

Fix: 3.0.2-0kylin6k70-23+
Fix from $1,950 2023-06-05
Kylin Software Properties HIGH 7.8
CVE-2023-3096

A vulnerability was found in KylinSoft kylin-software-properties on KylinOS. It has been declared as critical. This vulnerability affects the functio…

Fix: 0.0.1-130+
Fix from $1,950 2023-06-05
Teampass MEDIUM 6.5
CVE-2023-3095

Improper Access Control in GitHub repository nilsteampassnet/teampass prior to 3.0.9.

Fix: 3.0.9+
Fix from $1,600 2023-06-04
Os Recovery Tool HIGH 7.8
CVE-2023-28066

Dell OS Recovery Tool, versions 2.2.4013 and 2.3.7012.0, contain an Improper Access Control Vulnerability. A local authenticated non-administrator us…

Mitigation only
Fix from $1,950 2023-06-01
Lost And Found Information System HIGH 8.8
CVE-2023-3018

A vulnerability was found in SourceCodester Lost and Found Information System 1.0. It has been declared as critical. This vulnerability affects unkno…

No fix yet
Fix from $1,950 2023-05-31
Chrome MEDIUM 6.5
CVE-2023-2940

Inappropriate implementation in Downloads in Google Chrome prior to 114.0.5735.90 allowed an attacker who convinced a user to install a malicious ext…

Fix: 114.0.5735.90+
Fix from $1,600 2023-05-30
Pydio Cells HIGH 8.8
CVE-2023-2979

A vulnerability classified as critical has been found in Abstrium Pydio Cells 4.2.0. This affects an unknown part of the component User Creation Hand…

No fix yet
Fix from $1,950 2023-05-30
Kyverno HIGH 8.8
CVE-2023-33191

Kyverno is a policy engine designed for Kubernetes. Kyverno seccomp control can be circumvented. Users of the podSecurity `validate.podSecurity` subr…

Fix: 1.9.4+
Fix from $1,950 2023-05-30
Openemr HIGH 8.1
CVE-2023-2946

Improper Access Control in GitHub repository openemr/openemr prior to 7.0.1.

Fix: 7.0.1+
Fix from $1,950 2023-05-27
Openemr MEDIUM 5.4
CVE-2023-2944

Improper Access Control in GitHub repository openemr/openemr prior to 7.0.1.

Fix: 7.0.1+
Fix from $1,600 2023-05-27
Nfine Rapid Development Platform MEDIUM 6.5
CVE-2023-2903

A vulnerability classified as problematic has been found in NFine Rapid Development Platform 20230511. This affects an unknown part of the file /Syst…

No fix yet
Fix from $1,600 2023-05-25
Nfine Rapid Development Platform MEDIUM 6.5
CVE-2023-2901

A vulnerability was found in NFine Rapid Development Platform 20230511. It has been declared as problematic. Affected by this vulnerability is an unk…

No fix yet
Fix from $1,600 2023-05-25
Nfine Rapid Development Platform MEDIUM 6.5
CVE-2023-2902

A vulnerability was found in NFine Rapid Development Platform 20230511. It has been rated as problematic. Affected by this issue is some unknown func…

No fix yet
Fix from $1,600 2023-05-25
Kubernetes HIGH 7.8
CVE-2021-25749

Windows workloads can run as ContainerAdministrator even when those workloads set the runAsNonRoot option to true.

Fix: 1.22.14 / 1.23.11+
Fix from $1,950 2023-05-24
Cloudexplorer Lite HIGH 8.1
CVE-2023-2845

Improper Access Control in GitHub repository cloudexplorer-dev/cloudexplorer-lite prior to v1.1.0.

Fix: 1.1.0+
Fix from $1,950 2023-05-23
Ftmg Esd20axx Firmware HIGH 7.5
CVE-2023-23445

Improper Access Control in SICK FTMg AIR FLOW SENSOR with Partnumbers 1100214, 1100215, 1100216, 1120114, 1120116, 1122524, 1122526 allows an unprivi…

Fix: 2.0+
Fix from $1,950 2023-05-15
Ftmg Esd20axx Firmware HIGH 7.5
CVE-2023-23446

Improper Access Control in SICK FTMg AIR FLOW SENSOR with Partnumbers 1100214, 1100215, 1100216, 1120114, 1120116, 1122524, 1122526 allows an unprivi…

Fix: 2.0+
Fix from $1,950 2023-05-15
Oneapi Ai Analytics Toolkit HIGH 7.8
CVE-2023-29242

Improper access control for Intel(R) oneAPI Toolkits before version 2021.1 Beta 10 may allow an authenticated user to potentially enable escalation o…

Fix: after 2021.1
Fix from $1,950 2023-05-12
Server Board S1200v3rpl Firmware MEDIUM 6.7
CVE-2023-30768

Improper access control in the Intel(R) Server Board S2600WTT belonging to the Intel(R) Server Board S2600WT Family with the BIOS version 0016 may al…

Fix: 0005 / 0006+
Fix from $1,600 2023-05-12
Solid State Drive Toolbox MEDIUM 6.7
CVE-2023-31199

Improper access control in the Intel(R) Solid State Drive Toolbox(TM) before version 3.4.5 may allow a privileged user to potentially enable escalati…

Fix: 3.4.5+
Fix from $1,600 2023-05-12
Lost And Found Information System HIGH 8.8
CVE-2023-2670

A vulnerability was found in SourceCodester Lost and Found Information System 1.0. It has been declared as critical. This vulnerability affects unkno…

No fix yet
Fix from $1,950 2023-05-12
Kinetix 5500 Firmware CRITICAL 9.1
CVE-2023-1834

Rockwell Automation was made aware that Kinetix 5500 drives, manufactured between May 2022 and January 2023, and are running v7.13 may have the telne…

Mitigation only
Fix from $2,300 2023-05-11
Mf642cdw Firmware MEDIUM 5.3
CVE-2023-0858

Improper Authentication of RemoteUI of Office / Small Office Multifunction Printers and Laser Printers(*) which may allow an attacker on the network …

Fix: after 11.04
Fix from $1,600 2023-05-11
Nuc 8 Compute Element Cm8i3cb4n Firmware MEDIUM 5.5
CVE-2023-25771

Improper access control for some Intel(R) NUC BIOS firmware may allow a privileged user to potentially enable denial of service via local access.

Patch available
Fix from $1,600 2023-05-10
Nuc 11 Performance Kit Nuc11pahi70z Firmware HIGH 7.8
CVE-2023-22312

Improper access control for some Intel(R) NUC BIOS firmware may allow a privileged user to potentially enable escalation of privilege via local acces…

Patch available
Fix from $1,950 2023-05-10