Top technology
Linux 13140
Google 12525
Microsoft 12378
Apple 6692
Oracle 6649
Adobe 6383
Ibm 6266
Cisco 5746
Debian 3919
Apache 2864
Mozilla 2857
Redhat 2581
MEDIUM 6.2
CVE-2024-7295
In Progress® Telerik® Report Server versions prior to 2024 Q4 (10.3.24.1112), the encryption of local asset data used an older algorithm which may al…
Telerik Report Server
10.3.24.1112+
HIGH 7.8
CVE-2024-10013
In Progress Telerik UI for WinForms versions prior to 2024 Q4 (2024.4.1113), a code execution attack is possible through an insecure deserialization …
Telerik Ui For Winforms
2024.4.1113+
HIGH 7.5
CVE-2024-7763
In WhatsUp Gold versions released before 2024.0.0,
an Authentication Bypass issue exists which allows an attacker to obtain encrypted user credenti…
Whatsup Gold
24.0+
CRITICAL 9.8
CVE-2024-8755
Improper Input Validation vulnerability of Authenticated User in Progress LoadMaster allows : OS Command Injection.This issue affects:
Product …
Loadmaster
7.2.61.0+
HIGH 7.8
CVE-2024-8048
In Progress Telerik Reporting versions prior to 2024 Q3 (18.2.24.924), a code execution attack is possible using object injection via insecure expres…
Telerik Reporting
18.2.24.924+
HIGH 7.2
CVE-2024-8015
In Progress Telerik Report Server versions prior to 2024 Q3 (10.2.24.924), a remote code execution attack is possible through object injection via an…
Telerik Report Server
10.2.24.924+
HIGH 8.8
CVE-2024-7293
In Progress® Telerik® Report Server versions prior to 2024 Q3 (10.2.24.806), a password brute forcing attack is possible through weak password requir…
Telerik Reporting
10.2.24.806+
HIGH 8.8
CVE-2024-8014
In Progress Telerik Reporting versions prior to 2024 Q3 (18.2.24.924), a code execution attack is possible through object injection via an insecure t…
Telerik Reporting
18.2.24.924+
HIGH 7.8
CVE-2024-7840
In Progress Telerik Reporting versions prior to 2024 Q3 (18.2.24.924), a command injection attack is possible through improper neutralization of hype…
Telerik Reporting
after 18.2.24.924
MEDIUM 6.5
CVE-2024-7294
In Progress® Telerik® Report Server versions prior to 2024 Q3 (10.2.24.806), an HTTP DoS attack is possible on anonymous endpoints without rate limit…
Telerik Reporting
10.2.24.806+
HIGH 8.8
CVE-2024-7292
In Progress® Telerik® Report Server versions prior to 2024 Q3 (10.2.24.806), a credential stuffing attack is possible through improper restriction of…
Telerik Report Server
10.2.24.806+
MEDIUM 6.8
CVE-2024-6658
Improper Input Validation vulnerability of Authenticated User in Progress LoadMaster allows OS Command Injection.This issue affects:
Product
…
Multi Tenant Loadmaster
7.1.35.12 / 7.2.54.12+
MEDIUM 6.1
CVE-2024-7654
An ActiveMQ Discovery service was reachable by default from an OpenEdge Management installation when an OEE/OEM auto-discovery feature was activated.…
Openedge
12.8.3+
CRITICAL 9.6
CVE-2024-7345
Local ABL Client bypass of the required PASOE security checks may allow an attacker to commit unauthorized code injection into Multi-Session Agents o…
Openedge
after 12.2.13
CRITICAL 9.8
CVE-2024-6670 KEVEPSS 95%
In WhatsUp Gold versions released before 2024.0.0, a SQL Injection vulnerability allows an unauthenticated attacker to retrieve the users encrypted p…
Whatsup Gold
24.0+
CRITICAL 9.8
CVE-2024-6671EPSS 15%
In WhatsUp Gold versions released before 2024.0.0, if the application is configured with only a single user, a SQL Injection vulnerability allows an …
Whatsup Gold
24.0+
HIGH 8.8
CVE-2024-6672
In WhatsUp Gold versions released before 2024.0.0, a SQL Injection vulnerability allows an authenticated low-privileged attacker to achieve privilege…
Whatsup Gold
24.0+
HIGH 8.1
CVE-2024-7745
In WS_FTP Server versions before 8.8.8 (2022.0.8), a Missing Critical Step in Multi-Factor Authentication of the Web Transfer Module allows users to …
Ws Ftp Server
8.8.8+
MEDIUM 6.5
CVE-2024-7744
In WS_FTP Server versions before 8.8.8 (2022.0.8), an Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal') vulnerability in…
Ws Ftp Server
8.8.8+
CRITICAL 9.8
CVE-2024-6576
Improper Authentication vulnerability in Progress MOVEit Transfer (SFTP module) can lead to Privilege Escalation.This issue affects MOVEit Transfer: …
Moveit Transfer
2023.0.12 / 2023.1.7+
CRITICAL 9.8
CVE-2024-6096
In Progress® Telerik® Reporting versions prior to 18.1.24.709, a code execution attack is possible through object injection via an insecure type reso…
Telerik Reporting
18.1.24.709+
CRITICAL 9.8
CVE-2024-6327
In Progress® Telerik® Report Server versions prior to 2024 Q2 (10.1.24.709), a remote code execution attack is possible through an insecure deseriali…
Telerik Report Server
10.1.24.709+
HIGH 7.5
CVE-2024-5018
In WhatsUp Gold versions released before 2023.1.3, an unauthenticated Path Traversal vulnerability exists Wug.UI.Areas.Wug.Controllers.SessionControl…
Whatsup Gold
23.1.3+
HIGH 7.5
CVE-2024-5019
In WhatsUp Gold versions released before 2023.1.3,
an unauthenticated Arbitrary File Read issue exists in Wug.UI.Areas.Wug.Controllers.SessionContr…
Whatsup Gold
23.1.3+
HIGH 7.2
CVE-2024-5016EPSS 22%
In WhatsUp Gold versions released before 2023.1.3, Distributed Edition installations can be exploited by using a deserialization tool to achieve a Re…
Whatsup Gold
23.1.0+
MEDIUM 6.5
CVE-2024-5017
In WhatsUp Gold versions released before 2023.1.3, a path traversal vulnerability exists. A specially crafted unauthenticated HTTP request to AppProf…
Whatsup Gold
23.1.3+
HIGH 8.8
CVE-2024-5015
In WhatsUp Gold versions released before 2023.1.3, an authenticated SSRF vulnerability in Wug.UI.Areas.Wug.Controllers.SessionControler.Update allows…
Whatsup Gold
23.1.3+
HIGH 8.6
CVE-2024-5012
In WhatsUp Gold versions released before 2023.1.3, there is a missing authentication vulnerability in WUGDataAccess.Credentials. This vulnerability a…
Whatsup Gold
23.1.3+
HIGH 7.5
CVE-2024-5013
In WhatsUp Gold versions released before 2023.1.3, an unauthenticated Denial of Service
vulnerability was identified. An unauthenticated attacker c…
Whatsup Gold
23.1.3+
MEDIUM 6.5
CVE-2024-5014
In WhatsUp Gold versions released before 2023.1.3, a Server Side Request Forgery vulnerability exists in the GetASPReport feature. This allows any au…
Whatsup Gold
23.1.3+