Top technology
Linux 13140
Google 12536
Microsoft 12379
Oracle 6843
Apple 6692
Adobe 6387
Ibm 6336
Cisco 5759
Debian 3919
Mozilla 2895
Apache 2864
Redhat 2592
CRITICAL 9.1
CVE-2023-20017
Multiple vulnerabilities in Cisco Intersight Private Virtual Appliance could allow an authenticated, remote attacker to execute arbitrary commands us…
Intersight Private Virtual Appliance
Mitigation only
CRITICAL 9.1
CVE-2023-20013
Multiple vulnerabilities in Cisco Intersight Private Virtual Appliance could allow an authenticated, remote attacker to execute arbitrary commands us…
Intersight Private Virtual Appliance
Mitigation only
HIGH 8.8
CVE-2023-33013
A post-authentication command injection vulnerability in the NTP feature of Zyxel NBG6604 firmware version V1.01(ABIR.1)C0 could allow an authenticat…
Nbg6604 Firmware
Patch available
HIGH 8.8
CVE-2023-3267
When adding a remote backup location, an authenticated user can pass arbitrary OS commands through the username field. The username is passed without…
Powerpanel Server
2.6.9+
HIGH 8.8
CVE-2023-3260
The Dataprobe iBoot PDU running firmware version 1.43.03312023 or earlier is vulnerable to command injection via the `user-name` URL parameter. An au…
Powerpanel Server
1.44.0804202 / 2.6.9+
HIGH 7.2
CVE-2023-3261
The Dataprobe iBoot PDU running firmware version 1.43.03312023 or earlier contains a buffer overflow vulnerability in the librta.so.0.0.0 library.Suc…
Powerpanel Server
1.44.0804202 / 2.6.9+
CRITICAL 9.8
CVE-2023-40253
Improper Authentication vulnerability in Genians Genian NAC V4.0, Genians Genian NAC V5.0, Genians Genian NAC Suite V5.0, Genians Genian ZTNA allows …
Genian Nac
4.0.156 / 5.0.55+
HIGH 8.8
CVE-2023-31209
Improper neutralization of active check command arguments in Checkmk < 2.1.0p32, < 2.0.0p38, < 2.2.0p4 leads to arbitrary command execution for authe…
Checkmk
2.0.0+
HIGH 8.8
CVE-2022-48601
A SQL injection vulnerability exists in the “network print report” feature of the ScienceLogic SL1 that takes unsanitized user‐controlled input and p…
Sl1
after 11.1.2
HIGH 8.8
CVE-2022-48602
A SQL injection vulnerability exists in the “message viewer print” feature of the ScienceLogic SL1 that takes unsanitized user‐controlled input and p…
Sl1
after 11.1.2
HIGH 8.8
CVE-2022-48603
A SQL injection vulnerability exists in the “message viewer iframe” feature of the ScienceLogic SL1 that takes unsanitized user‐controlled input and …
Sl1
after 11.1.2
HIGH 8.8
CVE-2022-48604
A SQL injection vulnerability exists in the “logging export” feature of the ScienceLogic SL1 that takes unsanitized user‐controlled input and passes …
Sl1
after 11.1.2
HIGH 8.8
CVE-2022-48592
A SQL injection vulnerability exists in the vendor_country parameter of the “vendor print report” feature of the ScienceLogic SL1 that takes unsaniti…
Sl1
after 11.1.2
HIGH 8.8
CVE-2022-48593
A SQL injection vulnerability exists in the “topology data service” feature of the ScienceLogic SL1 that takes unsanitized user‐controlled input and …
Sl1
after 11.1.2
HIGH 8.8
CVE-2022-48594
A SQL injection vulnerability exists in the “ticket watchers email” feature of the ScienceLogic SL1 that takes unsanitized user‐controlled input and …
Sl1
after 11.1.2
HIGH 8.8
CVE-2022-48595
A SQL injection vulnerability exists in the “ticket template watchers” feature of the ScienceLogic SL1 that takes unsanitized user‐controlled input a…
Sl1
after 11.1.2
HIGH 8.8
CVE-2022-48596
A SQL injection vulnerability exists in the “ticket queue watchers” feature of the ScienceLogic SL1 that takes unsanitized user‐controlled input and …
Sl1
after 11.1.2
HIGH 8.8
CVE-2022-48597
A SQL injection vulnerability exists in the “ticket event report” feature of the ScienceLogic SL1 that takes unsanitized user‐controlled input and pa…
Sl1
after 11.1.2
HIGH 8.8
CVE-2022-48598
A SQL injection vulnerability exists in the “reporter events type date” feature of the ScienceLogic SL1 that takes unsanitized user‐controlled input …
Sl1
after 11.1.2
HIGH 8.8
CVE-2022-48599
A SQL injection vulnerability exists in the “reporter events type” feature of the ScienceLogic SL1 that takes unsanitized user‐controlled input and p…
Sl1
after 11.1.2
HIGH 8.8
CVE-2022-48600
A SQL injection vulnerability exists in the “notes view” feature of the ScienceLogic SL1 that takes unsanitized user‐controlled input and passes it d…
Sl1
after 11.1.2
HIGH 8.8
CVE-2022-48591
A SQL injection vulnerability exists in the vendor_state parameter of the “vendor print report” feature of the ScienceLogic SL1 that takes unsanitize…
Sl1
after 11.1.2
HIGH 8.8
CVE-2022-48587
A SQL injection vulnerability exists in the “schedule editor” feature of the ScienceLogic SL1 that takes unsanitized user‐controlled input and passes…
Sl1
after 11.1.2
HIGH 8.8
CVE-2022-48588
A SQL injection vulnerability exists in the “schedule editor decoupled” feature of the ScienceLogic SL1 that takes unsanitized user‐controlled input …
Sl1
after 11.1.2
HIGH 8.8
CVE-2022-48589
A SQL injection vulnerability exists in the “reporting job editor” feature of the ScienceLogic SL1 that takes unsanitized user‐controlled input and p…
Sl1
after 11.1.2
HIGH 8.8
CVE-2022-48590
A SQL injection vulnerability exists in the “admin dynamic app mib errors” feature of the ScienceLogic SL1 that takes unsanitized user‐controlled inp…
Sl1
after 11.1.2
HIGH 8.8
CVE-2022-48582
A command injection vulnerability exists in the ticket report generate feature of the ScienceLogic SL1 that takes unsanitized user controlled input a…
Sl1
after 11.1.2
HIGH 8.8
CVE-2022-48583
A command injection vulnerability exists in the dashboard scheduler feature of the ScienceLogic SL1 that takes unsanitized user‐controlled input and …
Sl1
after 11.1.2
HIGH 8.8
CVE-2022-48584
A command injection vulnerability exists in the download and convert report feature of the ScienceLogic SL1 that takes unsanitized user‐controlled in…
Sl1
after 11.1.2
HIGH 8.8
CVE-2022-48585
A SQL injection vulnerability exists in the “admin brand portal” feature of the ScienceLogic SL1 that takes unsanitized user‐controlled input and pas…
Sl1
after 11.1.2