Vulnerability index

Browse CVEs

5,953 matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

Filtering by weakness Improper Access ControlCWE-284 × clear
CRITICAL 9.1 CVE-2025-20242EPSS 5% A vulnerability in the Cloud Connect component of Cisco Unified Contact Center Enterprise (CCE) could allow an unauthenticated, remote attacker to re… Unified Contact Center Enterprise Mitigation only Fix from $2,3002025-05-21 HIGH 8.8 CVE-2025-22157 This High severity PrivEsc (Privilege Escalation) vulnerability was introduced in versions: 9.12.0, 10.3.0, 10.4.0, and 10.5.0 of Jira Core Data Cen… Jira Data Center 5.12.20 / 9.12.20+ Fix from $1,9502025-05-20 MEDIUM 5.3 CVE-2025-4980 A vulnerability has been found in Netgear DGND3700 1.1.00.15_1.00.15NA and classified as problematic. This vulnerability affects unknown code of the … Dgnd3700 Firmware No fix yet Fix from $1,6002025-05-20 MEDIUM 5.3 CVE-2025-4977 A vulnerability, which was classified as problematic, has been found in Netgear DGND3700 1.1.00.15_1.00.15NA. Affected by this issue is some unknown … Dgnd3700 Firmware No fix yet Fix from $1,6002025-05-20 MEDIUM 6.5 CVE-2025-28371 EnGenius ENH500 AP 2T2R V3.0 FW3.7.22 is vulnerable to Incorrect Access Control via the password change function. The device fails to validate the cu… Enh500 Firmware No fix yet Fix from $1,6002025-05-19 HIGH 7.2 CVE-2025-4926 A vulnerability was found in PHPGurukul Car Rental Project 1.0 and classified as critical. Affected by this issue is some unknown functionality of th… Car Rental Portal No fix yet Fix from $1,9502025-05-19 HIGH 7.3 CVE-2025-4923 A vulnerability, which was classified as critical, has been found in SourceCodester Client Database Management System 1.0. This issue affects some un… Client Database Management System No fix yet Fix from $1,9502025-05-19 MEDIUM 5.3 CVE-2025-4904 A vulnerability has been found in D-Link DI-7003GV2 24.04.18D1 R(68125) and classified as problematic. This vulnerability affects the function sub_41… Di 7003g Firmware No fix yet Fix from $1,6002025-05-19 HIGH 7.5 CVE-2025-4902EPSS 14% A vulnerability, which was classified as problematic, has been found in D-Link DI-7003GV2 24.04.18D1 R(68125). Affected by this issue is the function… Di 7003g Firmware No fix yet Fix from $1,9502025-05-19 MEDIUM 6.5 CVE-2025-4901EPSS 77% A vulnerability classified as problematic was found in D-Link DI-7003GV2 24.04.18D1 R(68125). Affected by this vulnerability is the function sub_41E3… Di 7003g Firmware No fix yet Fix from $1,6002025-05-19 MEDIUM 6.1 CVE-2025-47792 Nextcloud Desktop is the desktop sync client for Nextcloud. In versions of Nextcloud Desktop prior to 3.15, 3rdparty applications already installed o… Desktop 3.15.0+ Fix from $1,6002025-05-16 MEDIUM 5.9 CVE-2025-2306 An Improper Access Control vulnerability was identified in the file download functionality. This vulnerability allows users to download sensitive doc… Mitigation only Fix from $1,6002025-05-16 MEDIUM 6.3 CVE-2025-4768 A vulnerability classified as critical has been found in feng_ha_ha/megagao ssm-erp and production_ssm 1.0. This affects the function uploadPicture o… Mitigation only Fix from $1,6002025-05-16 MEDIUM 5.3 CVE-2025-4753 A vulnerability was found in D-Link DI-7003GV2 24.04.18D1 R(68125) and classified as problematic. Affected by this issue is some unknown functionalit… Di 7003g Firmware No fix yet Fix from $1,6002025-05-16 MEDIUM 5.3 CVE-2025-4750 A vulnerability, which was classified as problematic, has been found in D-Link DI-7003GV2 24.04.18D1 R(68125). This issue affects some unknown proces… Di 7003g Firmware No fix yet Fix from $1,6002025-05-16 HIGH 7.5 CVE-2025-4751 A vulnerability, which was classified as problematic, was found in D-Link DI-7003GV2 24.04.18D1 R(68125). Affected is an unknown function of the file… Di 7003g Firmware No fix yet Fix from $1,9502025-05-16 MEDIUM 5.3 CVE-2025-4752 A vulnerability has been found in D-Link DI-7003GV2 24.04.18D1 R(68125) and classified as problematic. Affected by this vulnerability is an unknown f… Di 7003g Firmware No fix yet Fix from $1,6002025-05-16 HIGH 8.8 CVE-2025-4735 A vulnerability has been found in Campcodes Sales and Inventory System 1.0 and classified as critical. Affected by this vulnerability is an unknown f… Sales And Inventory System No fix yet Fix from $1,9502025-05-16 HIGH 7.8 CVE-2025-47161 Improper access control in Microsoft Defender for Endpoint allows an authorized attacker to elevate privileges locally. Defender For Endpoint 101.25022.0002+ Fix from $1,9502025-05-15 CRITICAL 9.1 CVE-2025-47884 In Jenkins OpenID Connect Provider Plugin 96.vee8ed882ec4d and earlier the generation of build ID Tokens uses potentially overridden values of enviro… Openid Connect Provider after 96.vee8ed882ec4d Fix from $2,3002025-05-14 CRITICAL 9.1 CVE-2025-43563EPSS 15% ColdFusion versions 2025.1, 2023.13, 2021.19 and earlier are affected by an Improper Access Control vulnerability that could result in arbitrary file… Coldfusion Mitigation only Fix from $2,3002025-05-13 MEDIUM 5.0 CVE-2025-20076 Improper access control for some Edge Orchestrator software for Intel(R) Tiber™ Edge Platform may allow an unauthenticated user to potentially enable… Mitigation only Fix from $1,6002025-05-13 HIGH 7.5 CVE-2025-20100 Improper access control in the memory controller configurations for some Intel(R) Xeon(R) 6 processor with E-cores may allow a privileged user to pot… Mitigation only Fix from $1,9502025-05-13 HIGH 7.3 CVE-2025-20052 Improper access control for some Intel(R) Graphics software may allow an authenticated user to potentially enable denial of service via local access. Mitigation only Fix from $1,9502025-05-13 HIGH 7.3 CVE-2024-45333 Improper access control for some Intel(R) Data Center GPU Flex Series for Windows driver before version 31.0.101.4314 may allow an authenticated user… Mitigation only Fix from $1,9502025-05-13 MEDIUM 6.7 CVE-2024-45371 Improper access control for some Intel(R) Arc™ & Iris(R) Xe graphics software before version 32.0.101.6077 may allow an authenticated user to pot… Mitigation only Fix from $1,6002025-05-13 MEDIUM 5.9 CVE-2024-39758 Improper access control for some Intel(R) Arc™ & Iris(R) Xe graphics software before version 31.0.101.4032 may allow an authenticated user to pot… Mitigation only Fix from $1,6002025-05-13 MEDIUM 5.3 CVE-2024-43101 Improper access control for some Intel(R) Data Center GPU Flex Series for Windows driver software before version 31.0.101.4255 may allow an authentic… Mitigation only Fix from $1,6002025-05-13 HIGH 7.0 CVE-2025-29973 Improper access control in Azure File Sync allows an authorized attacker to elevate privileges locally. Azure File Sync Mitigation only Fix from $1,9502025-05-13 MEDIUM 6.4 CVE-2024-6364 A vulnerability in Absolute Persistence® versions before 2.8 exists when it is not activated. This may allow a skilled attacker with both physical ac… Persistence 2.8+ Fix from $1,6002025-05-13