Vulnerabilities
Aggregated CVE / GHSA / KEV / OSV — filter by tag and category.
| ID | Title | |
|---|---|---|
| CVE-2021-46999 |
|
Use-After-Free in linux (CVE-2021-46999)
vulnerability in linux (CVE-2021-46999). Successful exploitation can lead to full system takeover.
|
| CVE-2021-47013 |
|
Use-After-Free in linux (CVE-2021-47013)
vulnerability in linux (CVE-2021-47013). Successful exploitation can lead to full system takeover.
|
| CVE-2021-46911 |
|
Vulnerability in linux (CVE-2021-46911)
vulnerability in linux (CVE-2021-46911). Successful exploitation can lead to full system takeover.
|
| CVE-2019-25160 |
|
Out-of-Bounds Read in linux (CVE-2019-25160)
vulnerability in linux (CVE-2019-25160). Confidential information can be exposed externally.
|
| CVE-2024-26594 |
|
Out-of-Bounds Read in linux (CVE-2024-26594)
vulnerability in linux (CVE-2024-26594). Confidential information can be exposed externally.
|
| CVE-2024-26592 |
|
Use-After-Free in linux (CVE-2024-26592)
vulnerability in linux (CVE-2024-26592). Successful exploitation can lead to full system takeover.
|
| CVE-2024-26582 |
|
Use-After-Free in linux (CVE-2024-26582)
vulnerability in linux (CVE-2024-26582). Successful exploitation can lead to full system takeover.
|
| CVE-2024-26583 |
|
Vulnerability in linux (CVE-2024-26583)
vulnerability in linux (CVE-2024-26583). Successful exploitation can lead to full system takeover.
|
| CVE-2024-26584 |
|
Vulnerability in linux (CVE-2024-26584)
vulnerability in linux (CVE-2024-26584). Successful exploitation can lead to full system takeover.
|
| CVE-2024-26585 |
|
Vulnerability in linux (CVE-2024-26585)
vulnerability in linux (CVE-2024-26585). Successful exploitation can lead to full system takeover.
|
| CVE-2023-52440 |
|
Buffer Overflow in linux (CVE-2023-52440)
vulnerability in linux (CVE-2023-52440). Successful exploitation can lead to full system takeover.
|
| CVE-2023-52441 |
|
Buffer Overflow in linux (CVE-2023-52441)
vulnerability in linux (CVE-2023-52441). Confidential information can be exposed externally.
|
| CVE-2023-52442 |
|
Vulnerability in linux (CVE-2023-52442)
vulnerability in linux (CVE-2023-52442). Confidential information can be exposed externally. Exploitable via ``SMB2_TREE_CONNECT_HE``.
|
| CVE-2023-5155 |
|
SQL Injection in sqli (CVE-2023-5155)
SQL injection in sqli (CVE-2023-5155). Successful exploitation can lead to full system takeover.
|
| CVE-2023-7081 |
|
SQL Injection in sqli (CVE-2023-7081)
SQL injection in sqli (CVE-2023-7081). Successful exploitation can lead to full system takeover.
|
| CVE-2024-21401 |
|
Microsoft Entra Jira Single-Sign-On Plugin Elevation of Privilege Vulnerability
Microsoft Entra Jira Single-Sign-On Plugin Elevation of Privilege Vulnerability
|
| CVE-2024-21403 |
|
Microsoft Azure Kubernetes Service Confidential Container Elevation of Privilege Vulnerability
Microsoft Azure Kubernetes Service Confidential Container Elevation of Privilege Vulnerability
|
| CVE-2024-21376 |
|
Microsoft Azure Kubernetes Service Confidential Container Remote Code Execution Vulnerability
Microsoft Azure Kubernetes Service Confidential Container Remote Code Execution Vulnerability
|
| CVE-2024-21364 |
|
Microsoft Azure Site Recovery Elevation of Privilege Vulnerability
Microsoft Azure Site Recovery Elevation of Privilege Vulnerability
|
| CVE-2023-6677 |
|
SQL Injection in sqli (CVE-2023-6677)
SQL injection in sqli (CVE-2023-6677). Successful exploitation can lead to full system takeover.
|
| CVE-2024-25674 |
|
Unrestricted File Upload in misp-project (CVE-2024-25674)
vulnerability in misp-project (CVE-2024-25674). Successful exploitation can lead to full system takeover.
|
| CVE-2024-25675 |
|
Vulnerability in misp-project (CVE-2024-25675)
vulnerability in misp-project (CVE-2024-25675). Successful exploitation can lead to full system takeover.
|
| CVE-2024-21762 KEV |
|
[KEV] Out-of-Bounds Write in Fortinet fortios (CVE-2024-21762)
out-of-bounds write in Fortinet fortios (CVE-2024-21762). Successful exploitation can lead to full system takeover. Listed in CISA KEV — actively exploited.
|
| CVE-2024-24321 |
|
Command Injection in dlink (CVE-2024-24321)
command injection in dlink (CVE-2024-24321). Successful exploitation can lead to full system takeover.
|
| CVE-2023-46359 |
|
OS Command Injection in hardy-barth (CVE-2023-46359)
OS command injection in hardy-barth (CVE-2023-46359). Successful exploitation can lead to full system takeover.
|
| CVE-2024-24398 |
|
Path Traversal in path-traversal (CVE-2024-24398)
path traversal in path-traversal (CVE-2024-24398). Successful exploitation can lead to full system takeover.
|
| CVE-2024-23054 |
|
Vulnerability in plone (CVE-2024-23054)
vulnerability in plone (CVE-2024-23054). Successful exploitation can lead to full system takeover.
|
| CVE-2023-6675 |
|
Unrestricted File Upload in nationalkeep (CVE-2023-6675)
vulnerability in nationalkeep (CVE-2023-6675). Successful exploitation can lead to full system takeover.
|
| CVE-2024-22901 |
|
Vinchin Backup & Recovery v7.2 was discovered to use default MYSQL credentials.
Vinchin Backup & Recovery v7.2 was discovered to use default MYSQL credentials.
|
| CVE-2024-22902 |
|
Vinchin Backup & Recovery v7.2 was discovered to be configured with default root credentials.
Vinchin Backup & Recovery v7.2 was discovered to be configured with default root credentials.
|
| CVE-2024-1015 |
|
Code Injection in se-elektronic (CVE-2024-1015)
code injection in se-elektronic (CVE-2024-1015). Successful exploitation can lead to full system takeover.
|
| CVE-2024-22922 |
|
Privilege Escalation in projectworlds (CVE-2024-22922)
vulnerability in projectworlds (CVE-2024-22922). Successful exploitation can lead to full system takeover.
|
| CVE-2023-36177 |
|
Code Injection in badaix (CVE-2023-36177)
code injection in badaix (CVE-2023-36177). Successful exploitation can lead to full system takeover.
|
| CVE-2023-51906 |
|
Vulnerability in yonyou (CVE-2023-51906)
vulnerability in yonyou (CVE-2023-51906). Successful exploitation can lead to full system takeover.
|
| CVE-2023-51924 |
|
Unrestricted File Upload in yonyou (CVE-2023-51924)
vulnerability in yonyou (CVE-2023-51924). Successful exploitation can lead to full system takeover.
|
| CVE-2023-51925 |
|
Unrestricted File Upload in yonyou (CVE-2023-51925)
vulnerability in yonyou (CVE-2023-51925). Successful exploitation can lead to full system takeover.
|
| CVE-2023-51928 |
|
Unrestricted File Upload in yonyou (CVE-2023-51928)
vulnerability in yonyou (CVE-2023-51928). Successful exploitation can lead to full system takeover.
|
| CVE-2023-51892 |
|
Vulnerability in weaver (CVE-2023-51892)
vulnerability in weaver (CVE-2023-51892). Successful exploitation can lead to full system takeover.
|
| CVE-2023-51927 |
|
SQL Injection in sqli (CVE-2023-51927)
SQL injection in sqli (CVE-2023-51927). Successful exploitation can lead to full system takeover.
|
| CVE-2024-23687 |
|
Vulnerability in openlibraryfoundation (CVE-2024-23687)
vulnerability in openlibraryfoundation (CVE-2024-23687). Confidential information can be exposed externally.
|
| CVE-2024-23679 |
|
Vulnerability in enonic (CVE-2024-23679)
vulnerability in enonic (CVE-2024-23679). Successful exploitation can lead to full system takeover.
|
| CVE-2023-51947 |
|
Vulnerability in actidata (CVE-2023-51947)
vulnerability in actidata (CVE-2023-51947). Confidential information can be exposed externally.
|
| CVE-2023-5806 |
|
SQL Injection in sqli (CVE-2023-5806)
SQL injection in sqli (CVE-2023-5806). Successful exploitation can lead to full system takeover.
|
| CVE-2024-21887 KEV |
|
[KEV] Command Injection in Ivanti connect-secure-and-policy-secure (CVE-2024-21887)
command injection in Ivanti connect-secure-and-policy-secure (CVE-2024-21887). Successful exploitation can lead to full system takeover. Listed in CISA KEV — actively exploited.
|
| CVE-2023-26999 |
|
XXE (XML External Entity) in dos (CVE-2023-26999)
vulnerability in dos (CVE-2023-26999). Successful exploitation can lead to full system takeover.
|
| CVE-2023-50643 |
|
Vulnerability in evernote (CVE-2023-50643)
vulnerability in evernote (CVE-2023-50643). Successful exploitation can lead to full system takeover.
|
| CVE-2023-47458 |
|
Vulnerability in bladex (CVE-2023-47458)
vulnerability in bladex (CVE-2023-47458). Successful exploitation can lead to full system takeover.
|
| CVE-2023-6436 |
|
SQL Injection in sqli (CVE-2023-6436)
SQL injection in sqli (CVE-2023-6436). Successful exploitation can lead to full system takeover.
|
| CVE-2023-50651 |
|
OS Command Injection in totolink (CVE-2023-50651)
OS command injection in totolink (CVE-2023-50651). Successful exploitation can lead to full system takeover.
|
| CVE-2023-4675 |
|
SQL Injection in sqli (CVE-2023-4675)
SQL injection in sqli (CVE-2023-4675). Successful exploitation can lead to full system takeover.
|