CVE Database

122339+ vulnerabilities with CVSS scores, EPSS exploit predictions, and CISA KEV status. Updated daily.

Filter: All CRITICAL HIGH MEDIUM LOW CISA KEV
Sort: Newest CVSS EPSS
CVE-2023-4001
6.8 MEDIUM

An authentication bypass flaw was found in GRUB due to the way that GRUB uses the UUID of a device to search for the configuration …

Jan 15, 2024
CVE-2023-46226
9.8 CRITICAL

Remote Code Execution vulnerability in Apache IoTDB.This issue affects Apache IoTDB: from 1.0.0 through 1.2.2. Users are recommended to upgrade to version 1.3.0, which fixes …

Jan 15, 2024
CVE-2023-6915
6.2 MEDIUM

A Null pointer dereference problem was found in ida_free in lib/idr.c in the Linux Kernel. This issue may allow an attacker using this library to …

Jan 15, 2024
CVE-2023-50290
6.5 MEDIUM

Exposure of Sensitive Information to an Unauthorized Actor vulnerability in Apache Solr. The Solr Metrics API publishes all unprotected environment variables available to each Apache …

Jan 15, 2024
CVE-2023-46749
6.5 MEDIUM

Apache Shiro before 1.13.0 or 2.0.0-alpha-4, may be susceptible to a path traversal attack that results in an authentication bypass when used together with path …

Jan 15, 2024
CVE-2024-22028
4.6 MEDIUM

Insufficient technical documentation issue exists in thermal camera TMC series all firmware versions. The user of the affected product is not aware of the internally …

Jan 15, 2024
CVE-2024-0548
5.3 MEDIUM

A vulnerability was found in FreeFloat FTP Server 1.0 and classified as problematic. Affected by this issue is some unknown functionality of the component SIZE …

Jan 15, 2024
CVE-2024-0547
5.3 MEDIUM

A vulnerability has been found in Ability FTP Server 2.34 and classified as problematic. Affected by this vulnerability is an unknown functionality of the component …

Jan 15, 2024
CVE-2020-36770
9.8 CRITICAL

pkg_postinst in the Gentoo ebuild for Slurm through 22.05.3 unnecessarily calls chown to assign root's ownership on files in the live root filesystem. This could …

Jan 15, 2024
CVE-2024-0546
5.3 MEDIUM

A vulnerability, which was classified as problematic, has been found in EasyFTP 1.7.0. This issue affects some unknown processing of the component LIST Command Handler. …

Jan 15, 2024
CVE-2024-0545
5.3 MEDIUM

A vulnerability classified as problematic was found in CodeCanyon RISE Ultimate Project Manager 3.5.3. This vulnerability affects unknown code of the file /index.php/signin. The manipulation …

Jan 15, 2024
CVE-2024-0543
6.3 MEDIUM

A vulnerability classified as critical has been found in CodeAstro Real Estate Management System up to 1.0. This affects an unknown part of the file …

Jan 15, 2024
CVE-2024-0542
8.8 HIGH

A vulnerability was found in Tenda W9 1.0.0.7(4456). It has been rated as critical. Affected by this issue is the function formWifiMacFilterGet of the component …

Jan 15, 2024
CVE-2024-0541
8.8 HIGH

A vulnerability was found in Tenda W9 1.0.0.7(4456). It has been declared as critical. Affected by this vulnerability is the function formAddSysLogRule of the component …

Jan 15, 2024
CVE-2024-0540
6.3 MEDIUM

A vulnerability was found in Tenda W9 1.0.0.7(4456). It has been classified as critical. Affected is the function formOfflineSet of the component httpd. The manipulation …

Jan 15, 2024
CVE-2024-0539
8.8 HIGH

A vulnerability was found in Tenda W9 1.0.0.7(4456) and classified as critical. This issue affects the function formQosManage_user of the component httpd. The manipulation of …

Jan 15, 2024
CVE-2024-0552
9.8 CRITICAL

Intumit inc. SmartRobot's web framwork has a remote code execution vulnerability. An unauthorized remote attacker can exploit this vulnerability to execute arbitrary commands on the …

Jan 15, 2024
CVE-2024-0538
8.8 HIGH

A vulnerability has been found in Tenda W9 1.0.0.7(4456) and classified as critical. This vulnerability affects the function formQosManage_auto of the component httpd. The manipulation …

Jan 15, 2024
CVE-2024-0537
8.8 HIGH

A vulnerability, which was classified as critical, was found in Tenda W9 1.0.0.7(4456). This affects the function setWrlBasicInfo of the component httpd. The manipulation of …

Jan 15, 2024
CVE-2024-0536
8.8 HIGH

A vulnerability, which was classified as critical, has been found in Tenda W9 1.0.0.7(4456). Affected by this issue is the function setWrlAccessList of the component …

Jan 15, 2024
CVE-2024-0535
8.8 HIGH

A vulnerability classified as critical was found in Tenda PA6 1.0.1.21. Affected by this vulnerability is the function cgiPortMapAdd of the file /portmap of the …

Jan 15, 2024
CVE-2024-0534
7.2 HIGH

A vulnerability classified as critical has been found in Tenda A15 15.13.07.13. Affected is an unknown function of the file /goform/SetOnlineDevName of the component Web-based …

Jan 15, 2024
CVE-2024-0533
7.2 HIGH

A vulnerability was found in Tenda A15 15.13.07.13. It has been rated as critical. This issue affects some unknown processing of the file /goform/SetOnlineDevName of …

Jan 15, 2024
CVE-2023-48383
7.5 HIGH

NetVision Information airPASS has a path traversal vulnerability within its parameter in a specific URL. An unauthenticated remote attacker can exploit this vulnerability to bypass …

Jan 15, 2024
CVE-2024-0532
7.2 HIGH

A vulnerability was found in Tenda A15 15.13.07.13. It has been declared as critical. This vulnerability affects the function set_repeat5 of the file /goform/WifiExtraSet of …

Jan 15, 2024
CVE-2024-0531
7.2 HIGH

A vulnerability was found in Tenda A15 15.13.07.13. It has been classified as critical. This affects an unknown part of the file /goform/setBlackRule of the …

Jan 15, 2024
CVE-2024-0530
5.5 MEDIUM

A vulnerability was found in CXBSoft Post-Office up to 1.0 and classified as critical. Affected by this issue is some unknown functionality of the file …

Jan 15, 2024
CVE-2024-0529
5.5 MEDIUM

A vulnerability has been found in CXBSoft Post-Office up to 1.0 and classified as critical. Affected by this vulnerability is an unknown functionality of the …

Jan 15, 2024
CVE-2024-0528
5.5 MEDIUM

A vulnerability, which was classified as critical, was found in CXBSoft Post-Office 1.0. Affected is an unknown function of the file /admin/pages/update_go.php of the component …

Jan 15, 2024
CVE-2024-0527
6.3 MEDIUM

A vulnerability, which was classified as critical, has been found in CXBSoft Url-shorting up to 1.3.1. This issue affects some unknown processing of the file …

Jan 15, 2024
CVE-2024-0526
5.5 MEDIUM

A vulnerability classified as critical was found in CXBSoft Url-shorting up to 1.3.1. This vulnerability affects unknown code of the file /pages/short_to_long.php of the component …

Jan 15, 2024
CVE-2024-0525
5.5 MEDIUM

A vulnerability classified as critical has been found in CXBSoft Url-shorting up to 1.3.1. This affects an unknown part of the file /pages/long_s_short.php of the …

Jan 15, 2024
CVE-2024-0524
5.5 MEDIUM

A vulnerability was found in CXBSoft Url-shorting up to 1.3.1. It has been rated as critical. Affected by this issue is some unknown functionality of …

Jan 15, 2024
CVE-2024-0523
6.3 MEDIUM

A vulnerability was found in CmsEasy up to 7.7.7. It has been declared as critical. Affected by this vulnerability is the function getslide_child_action in the …

Jan 14, 2024
CVE-2024-0522
4.3 MEDIUM

A vulnerability was found in Allegro RomPager 4.01. It has been classified as problematic. Affected is an unknown function of the file usertable.htm?action=delete of the …

Jan 14, 2024
CVE-2024-0510
7.3 HIGH

A vulnerability, which was classified as critical, has been found in HaoKeKeJi YiQiNiu up to 3.1. Affected by this issue is the function http_post of …

Jan 13, 2024
CVE-2024-0505
5.5 MEDIUM

A vulnerability was found in ZhongFuCheng3y Austin 1.0 and classified as critical. This issue affects the function getFile of the file com/java3y/austin/web/controller/MaterialController.java of the component …

Jan 13, 2024
CVE-2024-0504
3.5 LOW

A vulnerability has been found in code-projects Simple Online Hotel Reservation System 1.0 and classified as problematic. This vulnerability affects unknown code of the file …

Jan 13, 2024
CVE-2024-0503
3.5 LOW

A vulnerability was found in code-projects Online FIR System 1.0. It has been classified as problematic. This affects an unknown part of the file registercomplaint.php. …

Jan 13, 2024
CVE-2024-0502
4.7 MEDIUM

A vulnerability was found in SourceCodester House Rental Management System 1.0 and classified as critical. Affected by this issue is some unknown functionality of the …

Jan 13, 2024
CVE-2024-0501
2.4 LOW

A vulnerability has been found in SourceCodester House Rental Management System 1.0 and classified as problematic. Affected by this vulnerability is an unknown functionality of …

Jan 13, 2024
CVE-2024-0500
2.4 LOW

A vulnerability, which was classified as problematic, was found in SourceCodester House Rental Management System 1.0. Affected is an unknown function of the component Manage …

Jan 13, 2024
CVE-2024-0499
2.4 LOW

A vulnerability, which was classified as problematic, has been found in SourceCodester House Rental Management System 1.0. This issue affects some unknown processing of the …

Jan 13, 2024
CVE-2024-0498
6.3 MEDIUM

A vulnerability was found in Project Worlds Lawyer Management System 1.0. It has been declared as critical. Affected by this vulnerability is an unknown functionality …

Jan 13, 2024
CVE-2024-0497
6.3 MEDIUM

A vulnerability was found in Campcodes Student Information System 1.0. It has been classified as critical. Affected is an unknown function of the file /classes/Users.php?f=save. …

Jan 13, 2024
CVE-2024-0496
6.3 MEDIUM

A vulnerability was found in Kashipara Billing Software 1.0 and classified as critical. This issue affects some unknown processing of the file item_list_edit.php of the …

Jan 13, 2024
CVE-2024-0495
6.3 MEDIUM

A vulnerability has been found in Kashipara Billing Software 1.0 and classified as critical. This vulnerability affects unknown code of the file party_submit.php of the …

Jan 13, 2024
CVE-2024-0494
6.3 MEDIUM

A vulnerability, which was classified as critical, was found in Kashipara Billing Software 1.0. This affects an unknown part of the file material_bill.php of the …

Jan 13, 2024
CVE-2024-0493
6.3 MEDIUM

A vulnerability, which was classified as critical, has been found in Kashipara Billing Software 1.0. Affected by this issue is some unknown functionality of the …

Jan 13, 2024
CVE-2024-0492
6.3 MEDIUM

A vulnerability classified as critical was found in Kashipara Billing Software 1.0. Affected by this vulnerability is an unknown functionality of the file buyer_detail_submit.php of …

Jan 13, 2024

Scan your infrastructure for known CVEs

Free website and port scanning — find vulnerabilities before attackers do.