Vulnerability index

Browse CVEs

3,666 matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

Filtering by weakness Command InjectionCWE-77 × clear
Dcs 932l Firmware CRITICAL 9.8
CVE-2025-5573EPSS 12%

A vulnerability was found in D-Link DCS-932L 2.18.01. It has been rated as critical. Affected by this issue is the function setSystemWizard/setSystem…

No fix yet
Fix from $2,300 2025-06-04
Trojan HIGH 8.1
CVE-2025-5525

A vulnerability was found in Jrohy trojan up to 2.15.3. It has been declared as critical. This vulnerability affects the function LogChan of the file…

Fix: after 2.15.3
Fix from $1,950 2025-06-03
X2000r Firmware MEDIUM 6.3
CVE-2025-5515

A vulnerability, which was classified as critical, has been found in TOTOLINK X2000R 1.0.0-B20230726.1108. Affected by this issue is some unknown fun…

No fix yet
Fix from $1,600 2025-06-03
X2000r Firmware MEDIUM 6.3
CVE-2025-5504EPSS 15%

A vulnerability has been found in TOTOLINK X2000R 1.0.0-B20230726.1108 and classified as critical. This vulnerability affects unknown code of the fil…

No fix yet
Fix from $1,600 2025-06-03
X15 Firmware CRITICAL 9.8
CVE-2025-5502EPSS 9%

A vulnerability, which was classified as critical, has been found in TOTOLINK X15 1.0.0-B20230714.1105. Affected by this issue is the function formMa…

Mitigation only
Fix from $2,300 2025-06-03
Di 500wf Wt Firmware HIGH 8.8
CVE-2025-5492

A vulnerability has been found in D-Link DI-500WF-WT up to 20250511 and classified as critical. Affected by this vulnerability is the function sub_45…

Fix: after 20250511
Fix from $1,950 2025-06-03
Android HIGH 8.4
CVE-2025-31710

In engineermode service, there is a possible command injection due to improper input validation. This could lead to local escalation of privilege wit…

Mitigation only
Fix from $1,950 2025-06-03
Clinical Collaboration Platform MEDIUM 6.5
CVE-2025-27954

An issue in Clinical Collaboration Platform 12.2.1.5 allows a remote attacker to obtain sensitive information and execute arbitrary code via the user…

Mitigation only
Fix from $1,600 2025-06-02
Clinical Collaboration Platform MEDIUM 6.5
CVE-2025-27953

An issue in Clinical Collaboration Platform 12.2.1.5 allows a remote attacker to obtain sensitive information and execute arbitrary code via the sess…

Mitigation only
Fix from $1,600 2025-06-02
Storeonce System CRITICAL 9.8
CVE-2025-37096

A command injection remote code execution vulnerability exists in HPE StoreOnce Software.

Fix: 4.3.11+
Fix from $2,300 2025-06-02
Re9000 Firmware CRITICAL 9.8
CVE-2025-5447EPSS 33%

A vulnerability was found in Linksys RE6500, RE6250, RE6300, RE6350, RE7000 and RE9000 1.0.013.001/1.0.04.001/1.0.04.002/1.1.05.003/1.2.07.001. It ha…

Mitigation only
Fix from $2,300 2025-06-02
Storeonce System CRITICAL 9.8
CVE-2025-37091

A command injection remote code execution vulnerability exists in HPE StoreOnce Software.

Fix: 4.3.11+
Fix from $2,300 2025-06-02
Storeonce System CRITICAL 9.8
CVE-2025-37092

A command injection remote code execution vulnerability exists in HPE StoreOnce Software.

Fix: 4.3.11+
Fix from $2,300 2025-06-02
Storeonce System CRITICAL 9.8
CVE-2025-37089

A command injection remote code execution vulnerability exists in HPE StoreOnce Software.

Fix: 4.3.11+
Fix from $2,300 2025-06-02
Re9000 Firmware CRITICAL 9.8
CVE-2025-5446EPSS 21%

A vulnerability was found in Linksys RE6500, RE6250, RE6300, RE6350, RE7000 and RE9000 1.0.013.001/1.0.04.001/1.0.04.002/1.1.05.003/1.2.07.001. It ha…

No fix yet
Fix from $2,300 2025-06-02
Re9000 Firmware CRITICAL 9.8
CVE-2025-5445EPSS 21%

A vulnerability was found in Linksys RE6500, RE6250, RE6300, RE6350, RE7000 and RE9000 1.0.013.001/1.0.04.001/1.0.04.002/1.1.05.003/1.2.07.001 and cl…

Mitigation only
Fix from $2,300 2025-06-02
Re9000 Firmware CRITICAL 9.8
CVE-2025-5443EPSS 21%

A vulnerability, which was classified as critical, was found in Linksys RE6500, RE6250, RE6300, RE6350, RE7000 and RE9000 1.0.013.001/1.0.04.001/1.0.…

No fix yet
Fix from $2,300 2025-06-02
Re9000 Firmware CRITICAL 9.8
CVE-2025-5444EPSS 18%

A vulnerability has been found in Linksys RE6500, RE6250, RE6300, RE6350, RE7000 and RE9000 1.0.013.001/1.0.04.001/1.0.04.002/1.1.05.003/1.2.07.001 a…

Mitigation only
Fix from $2,300 2025-06-02
Re9000 Firmware CRITICAL 9.8
CVE-2025-5441EPSS 21%

A vulnerability classified as critical was found in Linksys RE6500, RE6250, RE6300, RE6350, RE7000 and RE9000 1.0.013.001/1.0.04.001/1.0.04.002/1.1.0…

No fix yet
Fix from $2,300 2025-06-02
Re9000 Firmware CRITICAL 9.8
CVE-2025-5442EPSS 21%

A vulnerability, which was classified as critical, has been found in Linksys RE6500, RE6250, RE6300, RE6350, RE7000 and RE9000 1.0.013.001/1.0.04.001…

Mitigation only
Fix from $2,300 2025-06-02
Re9000 Firmware HIGH 8.8
CVE-2025-5440EPSS 7%

A vulnerability classified as critical has been found in Linksys RE6500, RE6250, RE6300, RE6350, RE7000 and RE9000 1.0.013.001/1.0.04.001/1.0.04.002/…

No fix yet
Fix from $1,950 2025-06-02
Re9000 Firmware HIGH 8.8
CVE-2025-5439EPSS 7%

A vulnerability was found in Linksys RE6500, RE6250, RE6300, RE6350, RE7000 and RE9000 1.0.013.001/1.0.04.001/1.0.04.002/1.1.05.003/1.2.07.001. It ha…

No fix yet
Fix from $1,950 2025-06-02
Re9000 Firmware HIGH 8.8
CVE-2025-5438EPSS 27%

A vulnerability was found in Linksys RE6500, RE6250, RE6300, RE6350, RE7000 and RE9000 1.0.013.001/1.0.04.001/1.0.04.002/1.1.05.003/1.2.07.001. It ha…

No fix yet
Fix from $1,950 2025-06-02
Unclassified HIGH 8.6
CVE-2025-5113EPSS 8%

The Diviotec professional series exposes a web interface. One endpoint is vulnerable to arbitrary command injection and hardcoded passwords are used.

Mitigation only
Fix from $1,950 2025-06-02
Unclassified HIGH 8.6
CVE-2025-4010

The Netcom NTC 6200 and NWL 222 series expose a web interface to be configured and set up by operators. Multiple endpoints of the web interface are v…

Mitigation only
Fix from $1,950 2025-06-02
Zitadel HIGH 8.8
CVE-2025-48936

Zitadel is open-source identity infrastructure software. Prior to versions 2.70.12, 2.71.10, and 3.2.2, a potential vulnerability exists in the passw…

Fix: 2.70.12 / 2.71.11+
Fix from $1,950 2025-05-30
Getsimple Cms HIGH 8.8
CVE-2025-48492

GetSimple CMS is a content management system. In versions starting from 3.3.16 to 3.3.21, an authenticated user with access to the Edit component can…

Fix: 3.3.22+
Fix from $1,950 2025-05-30
Unclassified MEDIUM 6.5
CVE-2024-57337

An arbitrary file upload vulnerability in the opcode 500 functionality of M2Soft CROWNIX Report & ERS v5.x to v5.5.14.1070, v7.x to v7.4.3.960, and v…

Mitigation only
Fix from $1,600 2025-05-28
Unclassified MEDIUM 6.5
CVE-2024-57338

An arbitrary file upload vulnerability in M2Soft CROWNIX Report & ERS v5.x to v5.5.14.1070, v7.x to v7.4.3.960, and v8.x to v8.2.0.345 allows attacke…

Mitigation only
Fix from $1,600 2025-05-28
Unclassified CRITICAL 9.3
CVE-2025-4009EPSS 75%

The Evertz SDVN 3080ipx-10G is a High Bandwidth Ethernet Switching Fabric for Video Application. This device exposes a web management interface on po…

Mitigation only
Fix from $2,300 2025-05-28