Browse vulnerabilities

379,235 results

CVEPriorityEPSSCVSSKEVWhat
CVE-2024-21352 Medium 1.6% 8.8 Microsoft WDAC OLE DB provider for SQL Server Remote Code Execution Vulnerability
CVE-2024-21391 Medium 1.6% 8.8 Microsoft WDAC OLE DB provider for SQL Server Remote Code Execution Vulnerability
CVE-2026-50748 Medium 1.6% 9.9 A malicious actor with access to the network and low privileges could exploit an Improper …
CVE-2026-33186 Medium 1.6% 9.1 gRPC-Go is the Go language implementation of gRPC. Versions prior to 1.79.3 have an author…
CVE-2024-26186 Medium 1.6% 8.8 Microsoft SQL Server Native Scoring Remote Code Execution Vulnerability
CVE-2024-26191 Medium 1.6% 8.8 Microsoft SQL Server Native Scoring Remote Code Execution Vulnerability
CVE-2024-37335 Medium 1.6% 8.8 Microsoft SQL Server Native Scoring Remote Code Execution Vulnerability
CVE-2024-37338 Medium 1.6% 8.8 Microsoft SQL Server Native Scoring Remote Code Execution Vulnerability
CVE-2024-37339 Medium 1.6% 8.8 Microsoft SQL Server Native Scoring Remote Code Execution Vulnerability
CVE-2024-37340 Medium 1.6% 8.8 Microsoft SQL Server Native Scoring Remote Code Execution Vulnerability
CVE-2024-38260 Medium 1.6% 8.8 Windows Remote Desktop Licensing Service Remote Code Execution Vulnerability
CVE-2011-4088 Medium 1.6% 7.5 ABRT might allow attackers to obtain sensitive information from crash reports.
CVE-2023-36903 Medium 1.6% 7.8 Windows System Assessment Tool Elevation of Privilege Vulnerability
CVE-2026-11556 Medium 1.6% 8.8 A security flaw has been discovered in Tenda F451 1.0.0.7/1.0.0.9. Impacted is the functio…
CVE-2000-0810 Medium 1.6% 7.5 Auction Weaver 1.0 through 1.04 does not properly validate the names of form fields, which…
CVE-2000-1001 Medium 1.6% 7.5 add_2_basket.asp in Element InstantShop allows remote attackers to modify price informatio…
CVE-2021-38650 Medium 1.6% 7.6 Microsoft Office Spoofing Vulnerability
CVE-2000-1242 Medium 1.6% 9.0 The HTTP service in American Power Conversion (APC) PowerChute uses a default username and…
CVE-2026-45298 Medium 1.6% 8.6 Dozzle is a realtime log viewer for docker containers. Prior to 10.5.2, in a default dozzl…
CVE-2026-48165 Medium 1.6% 8.0 MariaDB server is a community developed fork of MySQL server. From versions 10.6.1 to befo…
CVE-2021-34783 Medium 1.6% 8.6 A vulnerability in the software-based SSL/TLS message handler of Cisco Adaptive Security A…
CVE-2026-1519 Medium 1.6% 7.5 If a BIND resolver is performing DNSSEC validation and encounters a maliciously crafted zo…
CVE-2026-8365 Medium 1.6% 8.8 The Blocksy theme for WordPress is vulnerable to PHP Object Injection leading to Remote Co…
CVE-2022-20760 Medium 1.6% 8.6 A vulnerability in the DNS inspection handler of Cisco Adaptive Security Appliance (ASA) S…
CVE-2026-19679 Medium 1.6% 8.8 An input validation vulnerability exists in Security Center's file upload handling, where …
CVE-2024-43469 Medium 1.6% 8.8 Azure CycleCloud Remote Code Execution Vulnerability
CVE-2026-18125 Medium 1.6% 7.5 An out-of-bounds read in the Agent of Ivanti Endpoint Manager before version 2024 SU7 allo…
CVE-2000-0990 Medium 1.6% 7.5 cmd5checkpw 0.21 and earlier allows remote attackers to cause a denial of service via an "…
CVE-2026-73678 Medium 1.6% 10.0 MindsDB Minds Platform version 26.1.0 and earlier contains an unauthenticated remote code …
CVE-2026-48385 Medium 1.6% 7.7 ColdFusion is affected by an Improper Neutralization of Special Elements used in an OS Com…
CVE-2026-59680 Medium 1.6% 8.0 An OS command injection vulnerability was found in yast2-users. When displaying the "Passw…
CVE-2026-47827 Medium 1.6% 7.5 Command Injection in BOSH CLI tool on windows in Cloud Foundry allows a remote attacker to…
CVE-2026-5073 Medium 1.6% 7.5 The ARMember Premium plugin for WordPress is vulnerable to SQL Injection via the 'order' p…
CVE-2026-80155 Medium 1.6% 10.0 Lantronix SLC8000 before firmware v9.7.0.5, EMG8500/EMG7500 before firmware v9.7.0.1, and …
CVE-2026-45416 Medium 1.6% 7.5 Netty is a network application framework for development of protocol servers and clients. …
CVE-2026-16327 Medium 1.6% 7.3 A vulnerability was determined in D-Link DNS-320 1.0.2. This issue affects some unknown pr…
CVE-2026-16330 Medium 1.6% 7.3 A weakness has been identified in D-Link DNS-320 1.0.2. The impacted element is an unknown…
CVE-2026-16331 Medium 1.6% 7.3 A security vulnerability has been detected in D-Link DNS-320 1.0.2. This affects an unknow…
CVE-2026-16447 Medium 1.6% 7.3 A vulnerability has been found in D-Link DNS-320 1.0.2. Impacted is an unknown function of…
CVE-2026-69084 Medium 1.6% 10.0 SiYuan versions <= v3.7.2 expose the /api/search/searchEmbedBlock endpoint, which passes a…
CVE-2026-11450 Medium 1.6% 7.3 A vulnerability was detected in GL.iNet GL-MT3000 4.4.5. This affects the function dlopen …
CVE-2022-41047 Medium 1.6% 8.8 Microsoft ODBC Driver Remote Code Execution Vulnerability
CVE-2022-41048 Medium 1.6% 8.8 Microsoft ODBC Driver Remote Code Execution Vulnerability
CVE-2026-72573 Medium 1.6% 8.8 An OS command injection vulnerability in 4xmen/pm2panel (all versions) allows an authentic…
CVE-2026-20875 Medium 1.6% 7.5 Null pointer dereference in Windows Local Security Authority Subsystem Service (LSASS) all…
CVE-2026-3326 Medium 1.6% 8.6 The Xstore WordPress theme before 9.7.3 does not properly sanitise and escape a parameter …
CVE-2026-45662 Medium 1.6% 8.8 Dokploy is a free, self-hostable Platform as a Service (PaaS). In 0.29.0 and earlier, the …
CVE-2026-45663 Medium 1.6% 9.9 Dokploy is a free, self-hostable Platform as a Service (PaaS). In 0.29.1 and earlier, a co…
CVE-2020-25576 Medium 1.6% 9.8 An issue was discovered in the rand_core crate before 0.4.2 for Rust. Casting of byte slic…
CVE-2025-49796 Medium 1.6% 9.1 A vulnerability was found in libxml2. Processing certain sch:name elements from the input …
← Prev Page 379 of 7,585 Next →