Vulnerability index

Browse CVEs

3,666 matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

Filtering by weakness Command InjectionCWE-77 × clear
Education And Training System CRITICAL 9.8
CVE-2025-1947EPSS 5%

A vulnerability classified as critical has been found in hzmanyun Education and Training System 2.1.3. This affects the function scorm of the file Up…

No fix yet
Fix from $2,300 2025-03-04
Vim HIGH 7.1
CVE-2025-27423EPSS 22%

Vim is an open source, command line text editor. Vim is distributed with the tar.vim plugin, that allows easy editing and viewing of (compressed or u…

Fix: 9.1.1164+
Fix from $1,950 2025-03-03
Dsm CRITICAL 9.8
CVE-2025-1845

A vulnerability has been found in ESAFENET DSM 3.1.2 and classified as critical. Affected by this vulnerability is the function examExportPDF of the …

Mitigation only
Fix from $2,300 2025-03-03
X18 Firmware HIGH 8.8
CVE-2025-1829EPSS 12%

A vulnerability was found in TOTOLINK X18 9.1.0cu.2024_B20220329. It has been declared as critical. This vulnerability affects the function setMtknat…

No fix yet
Fix from $1,950 2025-03-02
Ac7 Firmware CRITICAL 9.8
CVE-2025-1819

A vulnerability, which was classified as critical, was found in Tenda AC7 1200M 15.03.06.44. Affected is the function TendaTelnet of the file /goform…

Mitigation only
Fix from $2,300 2025-03-02
Dar 7000 Firmware HIGH 8.8
CVE-2025-1800EPSS 5%

A vulnerability has been found in D-Link DAR-7000 3.2 and classified as critical. This vulnerability affects the function get_ip_addr_details of the …

No fix yet
Fix from $1,950 2025-03-01
Unclassified HIGH 7.5
CVE-2025-23119

An Improper Neutralization of Escape Sequences vulnerability could allow an Authentication Bypass with a Remote Code Execution (RCE) by a malicious a…

Mitigation only
Fix from $1,950 2025-03-01
Application Policy Infrastructure Controller MEDIUM 6.7
CVE-2025-20117

A vulnerability in the CLI of Cisco APIC could allow an authenticated, local attacker to execute arbitrary commands as root on the underlying op…

Mitigation only
Fix from $1,600 2025-02-26
Seacms MEDIUM 5.1
CVE-2025-25802

SeaCMS v13.3 was discovered to contain a remote code execution (RCE) vulnerability via the component admin_ip.php.

No fix yet
Fix from $1,600 2025-02-26
Seacms MEDIUM 5.1
CVE-2025-25813

SeaCMS v13.3 was discovered to contain a remote code execution (RCE) vulnerability via the component admin_files.php.

No fix yet
Fix from $1,600 2025-02-26
Seacms MEDIUM 5.1
CVE-2025-25793

SeaCMS v13.3 was discovered to contain a remote code execution (RCE) vulnerability via the component admin_notify.php.

No fix yet
Fix from $1,600 2025-02-26
Seacms MEDIUM 5.1
CVE-2025-25794

SeaCMS v13.3 was discovered to contain a remote code execution (RCE) vulnerability via the component admin_ping.php.

No fix yet
Fix from $1,600 2025-02-26
Seacms MEDIUM 5.1
CVE-2025-25796

SeaCMS v13.3 was discovered to contain a remote code execution (RCE) vulnerability via the component admin_template.php.

No fix yet
Fix from $1,600 2025-02-26
Seacms MEDIUM 5.1
CVE-2025-25797

SeaCMS v13.3 was discovered to contain a remote code execution (RCE) vulnerability via the component admin_smtp.php.

No fix yet
Fix from $1,600 2025-02-26
Education And Training System CRITICAL 9.8
CVE-2025-1676

A vulnerability classified as critical was found in hzmanyun Education and Training System 3.1.1. Affected by this vulnerability is the function pdf2…

Mitigation only
Fix from $2,300 2025-02-25
Sparkshop MEDIUM 5.3
CVE-2024-57685

An issue in sparkshop v.1.1.7 and before allows a remote attacker to execute arbitrary code via a crafted phar file.

Fix: after 1.1.7
Fix from $1,600 2025-02-24
Unclassified MEDIUM 6.5
CVE-2024-57608

An issue in Via Browser 6.1.0 allows a a remote attacker to execute arbitrary code via the mark.via.Shell component.

Mitigation only
Fix from $1,600 2025-02-24
An5506 01a Firmware CRITICAL 9.8
CVE-2025-1616EPSS 8%

A vulnerability, which was classified as critical, has been found in FiberHome AN5506-01A ONU GPON RP2511. Affected by this issue is some unknown fun…

Mitigation only
Fix from $2,300 2025-02-24
Ac1900 Firmware CRITICAL 9.8
CVE-2025-1609EPSS 10%

A vulnerability has been found in LB-LINK AC1900 Router 1.0.2 and classified as critical. Affected by this vulnerability is the function websGetVar o…

No fix yet
Fix from $2,300 2025-02-24
Ac1900 Firmware CRITICAL 9.8
CVE-2025-1610EPSS 13%

A vulnerability was found in LB-LINK AC1900 Router 1.0.2 and classified as critical. Affected by this issue is the function websGetVar of the file /g…

No fix yet
Fix from $2,300 2025-02-24
Ac1900 Firmware CRITICAL 9.8
CVE-2025-1608EPSS 10%

A vulnerability, which was classified as critical, was found in LB-LINK AC1900 Router 1.0.2. Affected is the function websGetVar of the file /goform/…

No fix yet
Fix from $2,300 2025-02-24
X5000r Firmware MEDIUM 6.5
CVE-2025-25604

Totolink X5000R V9.1.0u.6369_B20230113 is vulnerable to command injection via the vif_disable function in mtkwifi.lua.

No fix yet
Fix from $1,600 2025-02-21
X5000r Firmware MEDIUM 6.5
CVE-2025-25605

Totolink X5000R V9.1.0u.6369_B20230113 is vulnerable to command injection via the apcli_wps_gen_pincode function in mtkwifi.lua.

No fix yet
Fix from $1,600 2025-02-21
Mrcms MEDIUM 5.4
CVE-2025-25768

MRCMS v3.1.2 was discovered to contain a server-side template injection (SSTI) vulnerability in the component \servlet\DispatcherServlet.java. This v…

No fix yet
Fix from $1,600 2025-02-21
Unclassified HIGH 7.3
CVE-2025-1546

A vulnerability has been found in BDCOM Behavior Management and Auditing System up to 20250210 and classified as critical. Affected by this vulnerabi…

Mitigation only
Fix from $1,950 2025-02-21
Unclassified HIGH 7.3
CVE-2025-1536

A vulnerability was found in Raisecom Multi-Service Intelligent Gateway up to 20250208. It has been declared as critical. This vulnerability affects …

Mitigation only
Fix from $1,950 2025-02-21
Ac10 Firmware CRITICAL 9.8
CVE-2025-25675

Tenda AC10 V1.0 V15.03.06.23 has a command injection vulnerablility located in the formexeCommand function. The str variable receives the cmdinput pa…

Mitigation only
Fix from $2,300 2025-02-20
Unclassified HIGH 7.3
CVE-2025-1448

A vulnerability was found in Synway SMG Gateway Management Software up to 20250204. It has been rated as critical. This issue affects some unknown pr…

Mitigation only
Fix from $1,950 2025-02-19
Escan Anti Virus MEDIUM 5.3
CVE-2025-1370

A vulnerability, which was classified as critical, has been found in MicroWorld eScan Antivirus 7.0.32 on Linux. Affected by this issue is the functi…

No fix yet
Fix from $1,600 2025-02-17
X18 Firmware HIGH 8.8
CVE-2025-1339

A vulnerability was found in TOTOLINK X18 9.1.0cu.2024_B20220329. It has been rated as critical. This issue affects the function setL2tpdConfig of th…

Mitigation only
Fix from $1,950 2025-02-16