V
Scaner-VS
HomeCatalogSourcesCWECAPECATT&CKMitigationsDocs
Filters

All vulnerabilities

64 / 64
Preset: exploit×Has exploit×ATT&CK: T1550.002×Clear all
9.8
CVE-2020-29583CVE KEV
Firmware version 4.60 of Zyxel USG devices contains an undocumented account (zyfwp) with an unc…
2020-01-01KEV
EPSS94.3%
pct 99
6.5
CVE-2024-9014ANC
pgAdmin versions 8.11 and earlier are vulnerable to a security flaw in OAuth2 authentication. T…
2024-01-01
EPSS92.9%
pct 99
9.8
CVE-2024-44000ANC
Insufficiently Protected Credentials vulnerability in LiteSpeed Technologies LiteSpeed Cache al…
2024-01-01Pre-auth
EPSS92.8%
pct 99
9.8
CVE-2017-9248CVE KEV
Telerik.Web.UI.dll in Progress Telerik UI for ASP.NET AJAX before R2 2017 SP1 and Sitefinity be…
2017-01-01KEV
EPSS89.4%
pct 99
9.8
CVE-2024-32238
H3C ER8300G2-X is vulnerable to Incorrect Access Control. The password for the router's managem…
2024-01-01Pre-auth
EPSS87.8%
pct 99
8.6
CVE-2022-1026CVE
Kyocera multifunction printers running vulnerable versions of Net View unintentionally expose s…
2022-01-01Pre-auth
EPSS85.8%
pct 99
7.5
CVE-2014-6039CVE
ManageEngine EventLog Analyzer version 7 through 9.9 build 9002 has a Credentials Disclosure Vu…
2014-01-01Pre-auth
EPSS83.6%
pct 99
7.5
CVE-2023-6421CVE
The Download Manager WordPress plugin before 3.2.83 does not protect file download's passwords,…
2023-01-01Pre-auth
EPSS82.4%
pct 99
9.8
CVE-2018-9160CVE
SickRage before v2018.03.09-1 includes cleartext credentials in HTTP responses.
2018-01-01Pre-auth
EPSS74.2%
pct 98
9.8
CVE-2022-35411CVE
rpc.py through 0.6.0 allows Remote Code Execution because an unpickle occurs when the "serializ…
2022-01-01Pre-auth
EPSS71.3%
pct 98
9.8
CVE-2017-8225CVE
On Wireless IP Camera (P2P) WIFICAM devices, access to .ini files (containing credentials) is n…
2017-01-01Pre-auth
EPSS58.5%
pct 98
9.8
CVE-2013-7055CVE
D-Link DIR-100 4.03B07 has PPTP and poe information disclosure
2013-01-01Pre-auth
EPSS56.7%
pct 98
9.8
CVE-2021-30116CVE KEV
Kaseya VSA before 9.5.7 allows credential disclosure, as exploited in the wild in July 2021. By…
2021-01-01KEV
EPSS54.1%
pct 98
9.8
CVE-2013-7052CVE
D-Link DIR-100 4.03B07: security bypass via an error in the cliget.cgi script
2013-01-01Pre-auth
EPSS50.4%
pct 97
9.8
CVE-2014-5381CVE
Grand MA 300 allows a brute-force attack on the PIN.
2014-01-01Pre-auth
EPSS46.4%
pct 97
7.5
CVE-2020-5260AST
Affected versions of Git have a vulnerability whereby Git can be tricked into sending private c…
2020-01-01Pre-auth
EPSS37.3%
pct 97
9.8
CVE-2018-11742CVE
NEC Univerge Sv9100 WebPro 6.00.00 devices have Cleartext Password Storage in the Web UI.
2018-01-01Pre-auth
EPSS36.4%
pct 97
9.0
CVE-2024-3596AST
RADIUS Protocol under RFC 2865 is susceptible to forgery attacks by a local attacker who can mo…
2024-01-01MicrosoftPre-auth
EPSS22.2%
pct 95
9.8
CVE-2021-22681CVE KEV
Rockwell Automation Studio 5000 Logix Designer Versions 21 and later, and RSLogix 5000 Versions…
2021-01-01KEV
EPSS18.2%
pct 95
7.5
CVE-2024-23733
The /WmAdmin/,/invoke/vm.server/login login page in the Integration Server in Software AG webMe…
2024-01-01Pre-auth
EPSS18.1%
pct 95
9.8
CVE-2014-5093CVE
Status2k does not remove the install directory allowing credential reset.
2014-01-01Pre-auth
EPSS12.2%
pct 93
9.8
CVE-2017-8837CVE
Cleartext password storage exists on Peplink Balance 305, 380, 580, 710, 1350, and 2500 devices…
2017-01-01Pre-auth
EPSS11.0%
pct 93
4.6
CVE-2024-44815CVE
Vulnerability in Hathway Skyworth Router CM5100 v.4.1.1.24 allows a physically proximate attack…
2024-01-01
EPSS10.8%
pct 93
9.8
CVE-2000-0944CVE
CGI Script Center News Update 1.1 does not properly validate the original news administration p…
2000-01-01Pre-auth
EPSS10.7%
pct 93
8.8
CVE-2022-29457CVE
Zoho ManageEngine ADSelfService Plus before 6121, ADAuditPlus 7060, Exchange Reporter Plus 5701…
2022-01-01
EPSS8.3%
pct 92
5.9
CVE-2022-29593CVE
relay_cgi.cgi on Dingtian DT-R002 2CH relay devices with firmware 3.1.276A allows an attacker t…
2022-01-01Pre-auth
EPSS8.2%
pct 92
8.8
CVE-2019-11369CVE
An issue was discovered in Carel pCOWeb prior to B1.2.4. In /config/pw_changeusers.html the dev…
2019-01-01
EPSS7.7%
pct 92
9.8
CVE-2007-0681CVE
profile.php in ExtCalendar 2 and earlier allows remote attackers to change the passwords of arb…
2007-01-01Pre-auth
EPSS7.5%
pct 91
8.0
CVE-2018-5708CVE
An issue was discovered on D-Link DIR-601 B1 2.02NA devices. Being on the same local network as…
2018-01-01
EPSS7.4%
pct 91
7.5
CVE-2017-8222CVE
Wireless IP Camera (P2P) WIFICAM devices have an "Apple Production IOS Push Services" private R…
2017-01-01Pre-auth
EPSS7.3%
pct 91
8.1
CVE-2017-6528CVE
An issue was discovered in dnaTools dnaLIMS 4-2015s13. dnaLIMS is affected by plaintext passwor…
2017-01-01Pre-auth
EPSS7.2%
pct 91
9.8
CVE-2022-37109CVE
patrickfuller camp up to and including commit bbd53a256ed70e79bd8758080936afbf6d738767 is vulne…
2022-01-01Pre-auth
EPSS7.0%
pct 91
8.8
CVE-2017-6823CVE
Fiyo CMS 2.0.6.1 allows remote authenticated users to gain privileges via a modified level para…
2017-01-01
EPSS6.8%
pct 91
7.5
CVE-2024-37051ANC
GitHub access token could be exposed to third-party sites in JetBrains IDEs after version 2023.…
2024-01-01Pre-auth
EPSS6.3%
pct 91
7.5
CVE-2020-27688CVE
RVToolsPasswordEncryption.exe in RVTools 4.0.6 allows users to encrypt passwords to be used in …
2020-01-01Pre-auth
EPSS6.3%
pct 91
4.6
CVE-2017-2751CVE
A BIOS password extraction vulnerability has been reported on certain consumer notebooks with f…
2017-01-01
EPSS4.4%
pct 89
8.8
CVE-2018-10286CVE
The Ericsson-LG iPECS NMS A.1Ac web application discloses sensitive information such as the NMS…
2018-01-01
EPSS4.3%
pct 89
7.8
CVE-2019-0881MSR
An elevation of privilege vulnerability exists when the Windows Kernel improperly handles key e…
2019-01-01Microsoft
EPSS4.3%
pct 89
5.3
CVE-2022-47880CVE
An Information disclosure vulnerability in /be/rpc.php in Jedox GmbH Jedox 2020.2.5 allow remot…
2022-01-01
EPSS4.2%
pct 88
2.6
CVE-2012-5627DEB
Oracle MySQL and MariaDB 5.5.x before 5.5.29, 5.3.x before 5.3.12, and 5.2.x before 5.2.14 does…
2012-01-01
EPSS3.9%
pct 88
Select a vulnerability on the left to open the preview.