Browse vulnerabilities
379,235 results
| CVE | Priority | EPSS | CVSS | KEV | What |
|---|---|---|---|---|---|
| CVE-2000-1056 | Medium | 1.7% | 7.5 | CiscoSecure ACS Server 2.4(2) and earlier allows remote attackers to bypass LDAP authentic… | |
| CVE-2026-49261 | Medium | 1.7% | 10.0 | MariaDB server is a community developed fork of MySQL server. Versions 10.6.1 through 10.6… | |
| CVE-2026-50746 | Medium | 1.7% | 10.0 | A malicious actor with access to the network could exploit an Improper Access Control vuln… | |
| CVE-2021-26443 | Medium | 1.7% | 9.0 | Microsoft Virtual Machine Bus (VMBus) Remote Code Execution Vulnerability | |
| CVE-2026-11452 | Medium | 1.7% | 7.3 | A vulnerability has been found in GL.iNet GL-MT3000 up to 4.4.5. Affected is the function … | |
| CVE-2020-1191 | Medium | 1.7% | 7.8 | An elevation of privilege vulnerability exists when the Windows State Repository Service i… | |
| CVE-2026-53932 | Medium | 1.7% | 8.0 | laravel-backup-restore restores database backups made with spatie/laravel-backup. Prior to… | |
| CVE-2026-59686 | Medium | 1.7% | 8.4 | An OS Command Injection vulnerability in Progress Software LoadMaster, ECS Connection Mana… | |
| CVE-2026-59687 | Medium | 1.7% | 8.4 | An OS Command Injection vulnerability in Progress Software LoadMaster, ECS Connection Mana… | |
| CVE-2026-59688 | Medium | 1.7% | 8.4 | An OS Command Injection vulnerability in Progress Software LoadMaster, ECS Connection Mana… | |
| CVE-2026-53975 | Medium | 1.7% | 9.8 | OpenChamber 1.11.7 contains an unauthenticated remote code execution vulnerability that al… | |
| CVE-2024-43455 | Medium | 1.7% | 8.8 | Windows Remote Desktop Licensing Service Spoofing Vulnerability | |
| CVE-2026-0286 | Medium | 1.7% | 7.2 | A command injection vulnerability in the management plane of Palo Alto Networks PAN-OS® so… | |
| CVE-2026-16468 | Medium | 1.7% | 8.8 | IBM DataStage on Cloud Pak for Data 5.4.0.0 could allow a remote authenticated attacker to… | |
| CVE-2000-0993 | Medium | 1.7% | 7.2 | Format string vulnerability in pw_error function in BSD libutil library allows local users… | |
| CVE-2022-20767 | Medium | 1.7% | 8.6 | A vulnerability in the Snort rule evaluation function of Cisco Firepower Threat Defense (F… | |
| CVE-2026-40519 | Medium | 1.7% | 7.5 | Nginx Proxy Manager versions 2.9.14 through 2.15.1, fixed in commit a5db5ed, contain an au… | |
| CVE-2026-44098 | Medium | 1.7% | 8.6 | This vulnerability allows an unauthenticated remote attacker with control over the OCPP ba… | |
| CVE-2026-73767 | Medium | 1.7% | 7.2 | Authenticated command injection vulnerabilities exist in the command line interface of AOS… | |
| CVE-2024-37337 | Medium | 1.7% | 7.1 | Microsoft SQL Server Native Scoring Information Disclosure Vulnerability | |
| CVE-2024-37342 | Medium | 1.7% | 7.1 | Microsoft SQL Server Native Scoring Information Disclosure Vulnerability | |
| CVE-2026-48695 | Medium | 1.7% | 8.1 | FastNetMon Community Edition through 1.2.9 contains an OS command injection vulnerability … | |
| CVE-2020-5411 | Medium | 1.7% | 8.1 | When configured to enable default typing, Jackson contained a deserialization vulnerabilit… | |
| CVE-2021-1445 | Medium | 1.7% | 8.6 | Multiple vulnerabilities in Cisco Adaptive Security Appliance (ASA) Software and Firepower… | |
| CVE-2021-1504 | Medium | 1.7% | 8.6 | Multiple vulnerabilities in Cisco Adaptive Security Appliance (ASA) Software and Firepower… | |
| CVE-2026-72580 | Medium | 1.7% | 9.8 | An OS command injection vulnerability in duhow/xiaoai-patch through commit fb07049 allows … | |
| CVE-2023-21700 | Medium | 1.7% | 7.5 | Windows iSCSI Discovery Service Denial of Service Vulnerability | |
| CVE-2023-21701 | Medium | 1.7% | 7.5 | Microsoft Protected Extensible Authentication Protocol (PEAP) Denial of Service Vulnerabil… | |
| CVE-2023-21702 | Medium | 1.7% | 7.5 | Windows iSCSI Service Denial of Service Vulnerability | |
| CVE-2023-21811 | Medium | 1.7% | 7.5 | Windows iSCSI Service Denial of Service Vulnerability | |
| CVE-2023-21813 | Medium | 1.7% | 7.5 | Windows Secure Channel Denial of Service Vulnerability | |
| CVE-2024-21375 | Medium | 1.7% | 8.8 | Microsoft WDAC OLE DB provider for SQL Server Remote Code Execution Vulnerability | |
| CVE-2024-22373 | Medium | 1.7% | 8.1 | An out-of-bounds write vulnerability exists in the JPEG2000Codec::DecodeByStreamsCommon fu… | |
| CVE-2026-18482 | Medium | 1.7% | 9.8 | Neo.mjs contains a command injection vulnerability within the FileSystemService.mjs compon… | |
| CVE-2026-10144 | Medium | 1.6% | 7.8 | Rsbuild before 2.0.9 contains a command injection vulnerability that allows attackers to e… | |
| CVE-2026-27830 | Medium | 1.6% | 8.0 | c3p0, a JDBC Connection pooling library, is vulnerable to attack via maliciously crafted J… | |
| CVE-2024-21349 | Medium | 1.6% | 8.8 | Microsoft ActiveX Data Objects Remote Code Execution Vulnerability | |
| CVE-2024-21359 | Medium | 1.6% | 8.8 | Microsoft WDAC OLE DB provider for SQL Server Remote Code Execution Vulnerability | |
| CVE-2024-21361 | Medium | 1.6% | 8.8 | Microsoft WDAC OLE DB provider for SQL Server Remote Code Execution Vulnerability | |
| CVE-2024-21367 | Medium | 1.6% | 8.8 | Microsoft WDAC OLE DB provider for SQL Server Remote Code Execution Vulnerability | |
| CVE-2024-21368 | Medium | 1.6% | 8.8 | Microsoft WDAC OLE DB provider for SQL Server Remote Code Execution Vulnerability | |
| CVE-2021-29024 | Medium | 1.6% | 7.5 | In InvoicePlane 1.5.11 a misconfigured web server allows unauthenticated directory listing… | |
| CVE-2026-11801 | Medium | 1.6% | 7.5 | The WPAdverts – Classifieds Plugin plugin for WordPress is vulnerable to authorization byp… | |
| CVE-2022-41062 | Medium | 1.6% | 8.8 | Microsoft SharePoint Server Remote Code Execution Vulnerability | |
| CVE-2024-27053 | Medium | 1.6% | 8.8 | In the Linux kernel, the following vulnerability has been resolved: wifi: wilc1000: fix R… | |
| CVE-2026-77537 | Medium | 1.6% | 10.0 | A malicious actor with access to the network could exploit an Improper Input Validation vu… | |
| CVE-2026-77552 | Medium | 1.6% | 9.8 | A malicious actor with access to the network could exploit an Improper Input Validation vu… | |
| CVE-2026-77554 | Medium | 1.6% | 10.0 | A malicious actor with access to the network could exploit an Improper Input Validation vu… | |
| CVE-2025-13836 | Medium | 1.6% | 7.5 | When reading an HTTP response from a server, if no read amount is specified, the default b… | |
| CVE-2026-28780 | Medium | 1.6% | 9.8 | Heap-based Buffer Overflow vulnerability in mod_proxy_ajp of Apache HTTP Server. If mod_pr… |