Vulnerability index

Browse CVEs

5,953 matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

Filtering by weakness Improper Access ControlCWE-284 × clear
HIGH 8.4 CVE-2024-49105 Remote Desktop Client Remote Code Execution Vulnerability Remote Desktop Client 1.2.5716.0 / 2.0.327.0+ Fix from $1,9502024-12-12 HIGH 7.3 CVE-2024-49107 WmsRepair Service Elevation of Privilege Vulnerability Windows 10 1507 10.0.10240.20857 / 10.0.14393.7606+ Fix from $1,9502024-12-12 HIGH 8.2 CVE-2024-49068 Microsoft SharePoint Elevation of Privilege Vulnerability Sharepoint Server Mitigation only Fix from $1,9502024-12-12 HIGH 7.8 CVE-2024-43600 Microsoft Office Elevation of Privilege Vulnerability Office No fix yet Fix from $1,9502024-12-12 HIGH 7.3 CVE-2024-43594 Microsoft System Center Elevation of Privilege Vulnerability System Center 2019 10.19.10050.0 / 10.22.10118.0+ Fix from $1,9502024-12-12 HIGH 8.1 CVE-2024-48912 GLPI is a free asset and IT management software package. Starting in version 10.0.0 and prior to version 10.0.17, an authenticated user can use an ap… Glpi 10.0.17+ Fix from $1,9502024-12-11 HIGH 8.8 CVE-2024-47760 GLPI is a free asset and IT management software package. Starting in version 9.1.0 and prior to version 10.0.17, a technician with an access to the A… Glpi 10.0.17+ Fix from $1,9502024-12-11 HIGH 8.8 CVE-2024-47758 GLPI is a free asset and IT management software package. Starting in version 9.3.0 and prior to version 10.0.17, an authenticated user can use the AP… Glpi 10.0.17+ Fix from $1,9502024-12-11 MEDIUM 5.3 CVE-2024-12294 The Last Viewed Posts by WPBeginner plugin for WordPress is vulnerable to Sensitive Information Exposure in all versions up to, and including, 1.0.1 … Mitigation only Fix from $1,6002024-12-11 MEDIUM 5.3 CVE-2024-11868 The LearnPress – WordPress LMS Plugin plugin for WordPress is vulnerable to Sensitive Information Exposure in all versions up to, and including, 4.2.… Learnpress 4.2.7.4+ Fix from $1,6002024-12-10 HIGH 7.8 CVE-2024-49600 Dell Power Manager (DPM), versions prior to 3.17, contain an improper access control vulnerability. A low privileged attacker with local access could… Power Manager 3.17+ Fix from $1,9502024-12-09 HIGH 8.8 CVE-2024-12235 A vulnerability was found in Shenzhen Dashi Tongzhou Information Technology AgileBPM up to 1.0.0. It has been declared as critical. Affected by this … Agilebpm No fix yet Fix from $1,9502024-12-05 CRITICAL 9.8 CVE-2024-12233 A vulnerability was found in code-projects Online Notice Board up to 1.0 and classified as critical. This issue affects some unknown processing of th… Online Notice Board No fix yet Fix from $2,3002024-12-05 MEDIUM 5.3 CVE-2024-10937 The Related Posts, Inline Related Posts, Contextual Related Posts, Related Content By PickPlugins plugin for WordPress is vulnerable to Sensitive Inf… Mitigation only Fix from $1,6002024-12-05 MEDIUM 5.2 CVE-2024-20397 A vulnerability in the bootloader of Cisco NX-OS Software could allow an unauthenticated attacker with physical access to an affected device, or an a… Mitigation only Fix from $1,6002024-12-04 HIGH 7.5 CVE-2024-11961 A vulnerability was found in Guangzhou Huayi Intelligent Technology Jeewms 3.7. It has been rated as problematic. This issue affects the function pre… Jeewms No fix yet Fix from $1,9502024-11-28 HIGH 7.8 CVE-2016-10408 QSEE will randomly experience a fatal error during execution due to speculative instruction fetches from device memory. Device memory is not valid ex… 9206 Lte Modem Firmware Mitigation only Fix from $1,9502024-11-26 HIGH 8.8 CVE-2024-11674 A vulnerability, which was classified as critical, was found in CodeAstro Hospital Management System 1.0. Affected is an unknown function of the file… Hospital Management System No fix yet Fix from $1,9502024-11-26 CRITICAL 9.8 CVE-2024-11661 A vulnerability was found in Codezips Free Exam Hall Seating Management System 1.0. It has been declared as problematic. This vulnerability affects u… Free Exam Hall Seating Management System No fix yet Fix from $2,3002024-11-25 MEDIUM 5.0 CVE-2024-11483 A vulnerability was found in the Ansible Automation Platform (AAP). This flaw allows attackers to escalate privileges by improperly leveraging read-s… Patch available Fix from $1,6002024-11-25 HIGH 8.8 CVE-2024-8805 BlueZ HID over GATT Profile Improper Access Control Remote Code Execution Vulnerability. This vulnerability allows network-adjacent attackers to exec… Bluez Mitigation only Fix from $1,9502024-11-22 HIGH 7.3 CVE-2023-51644 Allegra SiteConfigAction Improper Access Control Remote Code Execution Vulnerability. This vulnerability allows remote attackers to execute arbitrary… Allegra 7.5.1+ Fix from $1,9502024-11-22 MEDIUM 5.3 CVE-2024-10393 The Tutor LMS plugin for WordPress is vulnerable to bypass to user registration in versions up to, and including, 2.7.6. This is due to a missing che… Tutor Lms after 2.7.6 Fix from $1,6002024-11-21 HIGH 8.8 CVE-2024-11484 A vulnerability classified as critical was found in Code4Berry Decoration Management System 1.0. Affected by this vulnerability is an unknown functio… Decoration Management System Mitigation only Fix from $1,9502024-11-20 HIGH 8.2 CVE-2024-37155 OpenCTI is an open source platform allowing organizations to manage their cyber threat intelligence knowledge and observables. Prior to version 6.1.9… Opencti 6.1.9+ Fix from $1,9502024-11-18 HIGH 8.8 CVE-2024-22067 ZTE NH8091 product has an improper permission control vulnerability. Due to improper permission control of the Web module interface, an authenticated… Nh8091 Firmware Mitigation only Fix from $1,9502024-11-18 MEDIUM 5.7 CVE-2024-52509 Nextcloud Mail is the mail app for Nextcloud, a self-hosted productivity platform. The Nextcloud mail app incorrectly allowed attaching shared files … Mail 2.2.10 / 3.6.2+ Fix from $1,6002024-11-15 HIGH 7.5 CVE-2024-50653 CRMEB <=5.4.0 is vulnerable to Incorrect Access Control. Users can bypass the front-end restriction of only being able to claim coupons once by captu… Crmeb after 5.4.0 Fix from $1,9502024-11-15 MEDIUM 5.3 CVE-2021-34753 A vulnerability in the payload inspection for Ethernet Industrial Protocol (ENIP) traffic for Cisco Firepower Threat Defense (FTD) Software could all… Secure Firewall Threat Defense 6.4.0.13 / 6.6.5.1+ Fix from $1,6002024-11-15 MEDIUM 5.3 CVE-2024-20373 A vulnerability in the implementation of the Simple Network Management Protocol (SNMP) IPv4 access control list (ACL) feature of Cisco IOS Software a… Ios Xe Sd Wan Mitigation only Fix from $1,6002024-11-15