Critical
|
17 Feb 2025 |
17 Feb 2025 |
CPAI-2025-0042
|
|
CVE-2025-25064
|
Zimbra Collaboration SQL Injection (CVE-2025-25064)
|
High
|
17 Feb 2025 |
17 Feb 2025 |
CPAI-2025-0041
|
|
CVE-2025-1094
|
PostgreSQL SQL Injection (CVE-2025-1094)
|
Critical
|
17 Feb 2025 |
17 Feb 2025 |
CPAI-2024-1402
|
|
CVE-2024-12356
|
BeyondTrust Multiple Products Command Injection (CVE-2024-12356)
|
High
|
17 Feb 2025 |
17 Feb 2025 |
CPAI-2025-0036
|
|
CVE-2025-24367
|
Cacti Group Cacti CRLF Injection (CVE-2025-24367)
|
High
|
17 Feb 2025 |
17 Feb 2025 |
CPAI-2024-1384
|
|
CVE-2024-23333
|
LDAP Account Manager Remote Code Execution (CVE-2024-23333)
|
High
|
13 Feb 2025 |
16 Feb 2025 |
CPAI-2025-0038
|
|
CVE-2025-0108
|
Palo Alto Networks PAN-OS Authentication Bypass (CVE-2025-0108)
|
High
|
16 Feb 2025 |
16 Feb 2025 |
CPAI-2024-1385
|
|
CVE-2024-48455 CVE-2024-48457
|
Netis Multiple Products Authentication Bypass (CVE-2024-48455; CVE-2024-48457)
|
High
|
16 Feb 2025 |
16 Feb 2025 |
CPAI-2025-0031
|
|
CVE-2025-21385
|
Microsoft Purview Server-Side Request Forgery (CVE-2025-21385)
|
Medium
|
16 Feb 2025 |
16 Feb 2025 |
CPAI-2024-1377
|
|
CVE-2024-54502
|
Apple Multiple Products Use After Free (CVE-2024-54502)
|
Critical
|
2 Feb 2025 |
16 Feb 2025 |
CPAI-2024-1351
|
|
CVE-2024-53704
|
SonicWall SonicOS Authentication Bypass (CVE-2024-53704)
|
Critical
|
16 Feb 2025 |
16 Feb 2025 |
CPAI-2023-1999
|
|
CVE-2023-45249
|
Acronis Cyber Infrastructure Authentication Bypass (CVE-2023-45249)
|
Critical
|
13 Feb 2025 |
13 Feb 2025 |
CPAI-2024-1393
|
|
CVE-2024-9916
|
HuangDou UTCMS Command Injection (CVE-2024-9916)
|
Critical
|
13 Feb 2025 |
13 Feb 2025 |
CPAI-2024-1386
|
|
CVE-2024-39363
|
Wavlink AC3000 Cross-Site Scripting (CVE-2024-39363)
|
Medium
|
13 Feb 2025 |
13 Feb 2025 |
CPAI-2025-0033
|
|
CVE-2025-25181
|
Advantive VeraCore SQL Injection (CVE-2025-25181)
|
High
|
13 Feb 2025 |
13 Feb 2025 |
CPAI-2024-1383
|
|
CVE-2024-45518
|
Zimbra Collaboration Server-Side Request Forgery (CVE-2024-45518)
|
Critical
|
13 Feb 2025 |
13 Feb 2025 |
CPAI-2024-1382
|
|
CVE-2024-57968
|
Advantive VeraCore Arbitrary File Upload (CVE-2024-57968)
|
Medium
|
13 Feb 2025 |
13 Feb 2025 |
CPAI-2024-1367
|
|
CVE-2024-55947
|
Gogs Path Traversal (CVE-2024-55947)
|
High
|
13 Feb 2025 |
13 Feb 2025 |
CPAI-2024-1366
|
|
CVE-2024-47008
|
Ivanti Avalanche Server-Side Request Forgery (CVE-2024-47008)
|
Medium
|
13 Feb 2025 |
13 Feb 2025 |
CPAI-2018-2894
|
|
CVE-2018-11552
|
NCH AXON PBX Cross-Site Scripting (CVE-2018-11552)
|
High
|
30 Jan 2025 |
13 Feb 2025 |
CPAI-2024-1345
|
|
CVE-2024-41710
|
Mitel Multiple Products Command Injection (CVE-2024-41710)
|
Critical
|
12 Feb 2025 |
12 Feb 2025 |
CPAI-2025-0035
|
Microsoft CVE-2025-21376
|
CVE-2025-21376
|
Microsoft Windows LDAP Remote Code Execution (CVE-2025-21376)
|
Critical
|
12 Feb 2025 |
12 Feb 2025 |
CPAI-2023-1998
|
|
CVE-2023-49403 CVE-2023-49999
|
Tenda W30E Command Injection (CVE-2023-49403; CVE-2023-49999)
|
Medium
|
12 Feb 2025 |
12 Feb 2025 |
CPAI-2023-1995
|
|
CVE-2023-6065
|
WordPress Quttera Web Malware Scanner Plugin Information Disclosure (CVE-2023-6065)
|
Medium
|
11 Feb 2025 |
11 Feb 2025 |
CPAI-2025-0032
|
Microsoft CVE-2025-21377
|
CVE-2025-21377
|
Microsoft Windows NTLM Information Disclosure (CVE-2025-21377)
|
High
|
11 Feb 2025 |
11 Feb 2025 |
CPAI-2025-0030
|
Microsoft CVE-2025-21400
|
CVE-2025-21400
|
Microsoft SharePoint Server Remote Code Execution (CVE-2025-21400)
|
High
|
10 Feb 2025 |
10 Feb 2025 |
CPAI-2024-1355
|
|
CVE-2024-55417
|
PHP Voyager Package Arbitrary File Upload (CVE-2024-55417)
|
High
|
10 Feb 2025 |
10 Feb 2025 |
CPAI-2024-1302
|
|
CVE-2024-0778
|
Uniview ISC 2500-S Command Injection (CVE-2024-0778)
|
High
|
9 Feb 2025 |
9 Feb 2025 |
CPAI-2024-1363
|
|
CVE-2024-38653
|
Ivanti Avalanche XML External Entity Injection (CVE-2024-38653)
|
Medium
|
9 Feb 2025 |
9 Feb 2025 |
CPAI-2024-1361
|
|
CVE-2024-45607
|
Secreto31126 Whatsapp-Api-js Improper Access Control (CVE-2024-45607)
|
Medium
|
9 Feb 2025 |
9 Feb 2025 |
CPAI-2024-1360
|
|
CVE-2024-39288
|
Wavlink AC3000 Buffer Overflow (CVE-2024-39288)
|
High
|
9 Feb 2025 |
9 Feb 2025 |
CPAI-2024-1353
|
|
CVE-2024-55416
|
PHP Voyager Package Cross-Site Scripting (CVE-2024-55416)
|
High
|
9 Feb 2025 |
9 Feb 2025 |
CPAI-2024-1352
|
|
CVE-2024-55415
|
PHP Voyager Package Path Traversal (CVE-2024-55415)
|
Critical
|
9 Feb 2025 |
9 Feb 2025 |
CPAI-2024-1335
|
|
CVE-2024-50603
|
Aviatrix Controller Remote Code Execution (CVE-2024-50603)
|
High
|
9 Feb 2025 |
9 Feb 2025 |
CPAI-2021-2287
|
|
CVE-2021-40410
|
Reolink RLC-410W Firmware Command Injection (CVE-2021-40410)
|
High
|
9 Feb 2025 |
9 Feb 2025 |
CPAI-2021-2286
|
|
CVE-2021-40412
|
Reolink RLC-410W Firmware Command Injection (CVE-2021-40412)
|
Critical
|
9 Feb 2025 |
9 Feb 2025 |
CPAI-2024-1334
|
|
CVE-2024-43468
|
Microsoft Configuration Manager Remote Code Execution (CVE-2024-43468)
|
Critical
|
6 Feb 2025 |
6 Feb 2025 |
CPAI-2018-2892
|
|
CVE-2018-19410
|
Paessler PRTG Network Monitor Authentication Bypass (CVE-2018-19410)
|
High
|
6 Feb 2025 |
6 Feb 2025 |
CPAI-2024-1358
|
|
CVE-2024-48766
|
NetAlertX Directory Traversal (CVE-2024-48766)
|
High
|
6 Feb 2025 |
6 Feb 2025 |
CPAI-2024-1327
|
|
CVE-2024-28726
|
D-Link DWR-2000M Command Injection (CVE-2024-28726)
|
Critical
|
6 Feb 2025 |
6 Feb 2025 |
CPAI-2025-0012
|
|
CVE-2025-22904 CVE-2025-22907 CVE-2025-22913 CVE-2025-22916
|
EDIMAX RE11S Stack Overflow (CVE-2025-22904; CVE-2025-22907; CVE-2025-22913; CVE-2025-22916)
|
High
|
6 Feb 2025 |
6 Feb 2025 |
CPAI-2024-1323
|
|
CVE-2024-45802
|
Squid Denial of Service (CVE-2024-45802)
|
Critical
|
6 Feb 2025 |
6 Feb 2025 |
CPAI-2024-1321
|
|
CVE-2024-48914
|
Vendure Asset Server Plugin Directory Traversal (CVE-2024-48914)
|
Medium
|
4 Feb 2025 |
4 Feb 2025 |
CPAI-2025-0015
|
|
|
Nagios Enterprises Nagios XI Command Injection
|
High
|
4 Feb 2025 |
4 Feb 2025 |
CPAI-2021-2292
|
|
CVE-2021-41805
|
HashiCorp Consul Improper Access Control (CVE-2021-41805)
|
Critical
|
3 Feb 2025 |
3 Feb 2025 |
CPAI-2024-1325
|
|
CVE-2024-11972
|
WordPress Hunk Companion Plugin Authentication Bypass (CVE-2024-11972)
|
Critical
|
3 Feb 2025 |
3 Feb 2025 |
CPAI-2024-1293
|
|
CVE-2024-55591
|
Fortinet Multiple Products Authentication Bypass (CVE-2024-55591)
|
Critical
|
2 Feb 2025 |
2 Feb 2025 |
CPAI-2024-1333
|
|
CVE-2024-45507
|
Apache OFBiz Server-Side Request Forgery (CVE-2024-45507)
|
Critical
|
2 Feb 2025 |
2 Feb 2025 |
CPAI-2024-1341
|
|
CVE-2024-36258
|
Wavlink AC3000 Authentication Bypass (CVE-2024-36258)
|
Critical
|
2 Feb 2025 |
2 Feb 2025 |
CPAI-2024-1339
|
|
CVE-2024-34166
|
Wavlink AC3000 Command Injection (CVE-2024-34166)
|
Critical
|
2 Feb 2025 |
2 Feb 2025 |
CPAI-2019-3255
|
|
CVE-2019-16891
|
Liferay Portal Insecure Deserialization (CVE-2019-16891)
|