V
Scaner-VS
HomeCatalogSourcesCWECAPECATT&CKMitigationsDocs
Filters

All vulnerabilities

1378 / 1378
Preset: exploit×Has exploit×ATT&CK: T1539×Clear all
9.8
CVE-2018-7600DEB KEV
Drupal before 7.58, 8.x before 8.3.9, 8.4.x before 8.4.6, and 8.5.x before 8.5.1 allows remote …
2018-01-01KEV
EPSS94.5%
pct 99
7.5
CVE-2019-17558DEB KEV
Apache Solr 5.0.0 to Apache Solr 8.3.1 are vulnerable to a Remote Code Execution through the Ve…
2019-01-01KEV
EPSS94.5%
pct 99
9.8
CVE-2022-24112CVE KEV
An attacker can abuse the batch-requests plugin to send requests to bypass the IP restriction o…
2022-01-01KEV
EPSS94.4%
pct 99
9.8
CVE-2018-11776DEB KEV
Apache Struts versions 2.3 to 2.3.34 and 2.5 to 2.5.16 suffer from possible Remote Code Executi…
2018-01-01KEV
EPSS94.4%
pct 99
7.5
CVE-2019-7609DEB KEV
Kibana versions before 5.6.15 and 6.6.1 contain an arbitrary code execution flaw in the Timelio…
2019-01-01KEV
EPSS94.4%
pct 99
7.5
CVE-2020-3452CVE KEV
A vulnerability in the web services interface of Cisco Adaptive Security Appliance (ASA) Softwa…
2020-01-01KEV
EPSS94.4%
pct 99
9.8
CVE-2019-0604MSR KEV
A remote code execution vulnerability exists in Microsoft SharePoint when the software fails to…
2019-01-01MicrosoftKEV
EPSS94.4%
pct 99
7.5
CVE-2018-0296CVE KEV
A vulnerability in the web interface of the Cisco Adaptive Security Appliance (ASA) could allow…
2018-01-01KEV
EPSS94.4%
pct 99
8.1
CVE-2017-12617DEB KEV
When running Apache Tomcat versions 9.0.0.M1 to 9.0.0, 8.5.0 to 8.5.22, 8.0.0.RC1 to 8.0.46 and…
2017-01-01KEV
EPSS94.4%
pct 99
8.1
CVE-2022-47966CVE KEV
Multiple Zoho ManageEngine on-premise products, such as ServiceDesk Plus through 14003, allow r…
2022-01-01KEV
EPSS94.4%
pct 99
8.1
CVE-2020-17530DEB KEV
Forced OGNL evaluation, when evaluated on raw user input in tag attributes, may lead to remote …
2020-01-01KEV
EPSS94.4%
pct 99
9.8
CVE-2021-44228DEB KEV
Apache Log4j2 2.0-beta9 through 2.15.0 (excluding security releases 2.12.2, 2.12.3, and 2.3.1) …
2021-01-01KEV
EPSS94.4%
pct 99
9.8
CVE-2023-36845CVE KEV
A PHP External Variable Modification vulnerability in J-Web of Juniper Networks Junos OS on EX …
2023-01-01KEV
EPSS94.4%
pct 99
9.3
CVE-2024-4879CVE KEV
ServiceNow has addressed an input validation vulnerability that was identified in Vancouver and…
2024-01-01KEV
EPSS94.3%
pct 99
9.8
CVE-2024-4358CVE KEV
In Progress Telerik Report Server, version 2024 Q1 (10.0.24.305) or earlier, on IIS, an unauthe…
2024-01-01KEV
EPSS94.3%
pct 99
9.8
CVE-2023-22515CVE KEV
Atlassian has been made aware of an issue reported by a handful of customers where external att…
2023-01-01KEV
EPSS94.3%
pct 99
8.1
CVE-2017-9805DEB KEV
The REST Plugin in Apache Struts 2.1.1 through 2.3.x before 2.3.34 and 2.5.x before 2.5.13 uses…
2017-01-01KEV
EPSS94.3%
pct 99
10.0
CVE-2024-3400CVE KEV
A command injection as a result of arbitrary file creation vulnerability in the GlobalProtect f…
2024-01-01KEV
EPSS94.3%
pct 99
9.8
CVE-2020-13942CVE
It is possible to inject malicious OGNL or MVEL scripts into the /context.json public endpoint.…
2020-01-01Pre-auth
EPSS94.3%
pct 99
9.8
CVE-2017-3881CVE KEV
A vulnerability in the Cisco Cluster Management Protocol (CMP) processing code in Cisco IOS and…
2017-01-01KEV
EPSS94.3%
pct 99
9.8
CVE-2017-5638DEB KEV
The Jakarta Multipart parser in Apache Struts 2 2.3.x before 2.3.32 and 2.5.x before 2.5.10.1 h…
2017-01-01KEV
EPSS94.3%
pct 99
9.8
CVE-2020-11651DEB KEV
An issue was discovered in SaltStack Salt before 2019.2.4 and 3000 before 3000.2. The salt-mast…
2020-01-01KEV
EPSS94.2%
pct 99
8.1
CVE-2017-12615DEB KEV
When running Apache Tomcat 7.0.0 to 7.0.79 on Windows with HTTP PUTs enabled (e.g. via setting …
2017-01-01KEV
EPSS94.2%
pct 99
8.1
CVE-2017-12611DEB
In Apache Struts 2.0.0 through 2.3.33 and 2.5 through 2.5.10.1, using an unintentional expressi…
2017-01-01Pre-auth
EPSS94.2%
pct 99
5.3
CVE-2023-36844CVE KEV
A PHP External Variable Modification vulnerability in J-Web of Juniper Networks Junos OS on EX …
2023-01-01KEV
EPSS94.2%
pct 99
5.9
CVE-2019-0232DEB
When running on Windows with enableCmdLineArguments enabled, the CGI Servlet in Apache Tomcat 9…
2019-01-01Pre-auth
EPSS94.2%
pct 99
9.8
CVE-2025-24813ANC KEV
Path Equivalence: 'file.Name' (Internal Dot) leading to Remote Code Execution and/or Informatio…
2025-01-01KEV
EPSS94.1%
pct 99
8.1
CVE-2017-9791DEB KEV
The Struts 1 plugin in Apache Struts 2.1.x and 2.3.x might allow remote code execution via a ma…
2017-01-01KEV
EPSS94.1%
pct 99
9.8
CVE-2023-35885CVE
CloudPanel 2 before 2.3.1 has insecure file-manager cookie authentication.
2023-01-01Pre-auth
EPSS94.1%
pct 99
8.1
CVE-2017-0148MSR KEV
The SMBv1 server in Microsoft Windows Vista SP2; Windows Server 2008 SP2 and R2 SP1; Windows 7 …
2017-01-01MicrosoftKEV
EPSS94.1%
pct 99
8.1
CVE-2019-11043AST KEV
In PHP versions 7.1.x below 7.1.33, 7.2.x below 7.2.24 and 7.3.x below 7.3.11 in certain config…
2019-01-01KEV
EPSS94.1%
pct 99
9.8
CVE-2022-23131DEB KEV
In the case of instances where the SAML SSO authentication is enabled (non-default), session da…
2022-01-01KEV
EPSS94.0%
pct 99
9.8
CVE-2019-1821CVE
A vulnerability in the web-based management interface of Cisco Prime Infrastructure (PI) and Ci…
2019-01-01Pre-auth
EPSS94.0%
pct 99
9.8
CVE-2017-15944CVE KEV
Palo Alto Networks PAN-OS before 6.1.19, 7.0.x before 7.0.19, 7.1.x before 7.1.14, and 8.0.x be…
2017-01-01KEV
EPSS94.0%
pct 99
10.0
CVE-2017-8046CVE
Malicious PATCH requests submitted to servers using Spring Data REST versions prior to 2.6.9 (I…
2017-01-01Pre-auth
EPSS94.0%
pct 99
9.8
CVE-2021-29441CVE
Nacos is a platform designed for dynamic service discovery and configuration and service manage…
2021-01-01Pre-auth
EPSS93.9%
pct 99
7.8
CVE-2023-38831CVE KEV
RARLAB WinRAR before 6.23 allows attackers to execute arbitrary code when a user attempts to vi…
2023-01-01KEV
EPSS93.9%
pct 99
9.1
CVE-2024-38475ANC KEV
Improper escaping of output in mod_rewrite in Apache HTTP Server 2.4.59 and earlier allows an a…
2024-01-01KEV
EPSS93.9%
pct 99
9.8
CVE-2022-1471DEB
SnakeYaml's Constructor() class does not restrict types which can be instantiated during deseri…
2022-01-01Pre-auth
EPSS93.8%
pct 99
8.1
CVE-2019-0230DEB
Apache Struts 2.0.0 to 2.5.20 forced double OGNL evaluation, when evaluated on raw user input i…
2019-01-01Pre-auth
EPSS93.8%
pct 99
Select a vulnerability on the left to open the preview.