All vulnerabilities
5326 / 5326
Sort
10.0
CVE-2024-3400CVE KEV
A command injection as a result of arbitrary file creation vulnerability in the GlobalProtect f…
2024-01-01KEV
EPSS100.0%
pct 100
5.9
CVE-2021-45105DEB
Apache Log4j2 versions 2.0-alpha1 through 2.16.0 (excluding 2.12.3 and 2.3.1) did not protect f…
2021-01-01Pre-auth
EPSS100.0%
pct 100
9.8
CVE-2021-44228DEB KEV
Apache Log4j2 2.0-beta9 through 2.15.0 (excluding security releases 2.12.2, 2.12.3, and 2.3.1) …
2021-01-01KEV
EPSS100.0%
pct 100
9.8
CVE-2017-5638DEB KEV
The Jakarta Multipart parser in Apache Struts 2 2.3.x before 2.3.32 and 2.5.x before 2.5.10.1 h…
2017-01-01KEV
EPSS100.0%
pct 100
9.8
CVE-2018-7600DEB KEV
Drupal before 7.58, 8.x before 8.3.9, 8.4.x before 8.4.6, and 8.5.x before 8.5.1 allows remote …
2018-01-01KEV
EPSS100.0%
pct 99
9.8
CVE-2018-11776DEB KEV
Apache Struts versions 2.3 to 2.3.34 and 2.5 to 2.5.16 suffer from possible Remote Code Executi…
2018-01-01KEV
EPSS100.0%
pct 99
7.5
CVE-2020-3452CVE KEV
A vulnerability in the web services interface of Cisco Adaptive Security Appliance (ASA) Softwa…
2020-01-01KEV
EPSS100.0%
pct 99
8.1
CVE-2017-12617DEB KEV
When running Apache Tomcat versions 9.0.0.M1 to 9.0.0, 8.5.0 to 8.5.22, 8.0.0.RC1 to 8.0.46 and…
2017-01-01KEV
EPSS100.0%
pct 99
9.3
CVE-2024-4879CVE KEV
ServiceNow has addressed an input validation vulnerability that was identified in Vancouver and…
2024-01-01KEV
EPSS100.0%
pct 99
7.5
CVE-2014-3704DEB
The expandArguments function in the database abstraction API in Drupal core 7.x before 7.32 doe…
2014-01-01
EPSS100.0%
pct 99
7.5
CVE-2015-7297CVE
SQL injection vulnerability in Joomla! 3.2 before 3.4.4 allows remote attackers to execute arbi…
2015-01-01
EPSS100.0%
pct 99
9.1
CVE-2024-38475ANC KEV
Improper escaping of output in mod_rewrite in Apache HTTP Server 2.4.59 and earlier allows an a…
2024-01-01KEV
EPSS100.0%
pct 99
8.8
CVE-2024-29824ANC KEV
An unspecified SQL Injection vulnerability in Core server of Ivanti EPM 2022 SU5 and prior allo…
2024-01-01KEV
EPSS100.0%
pct 99
9.8
CVE-2025-24813ANC KEV
Path Equivalence: 'file.Name' (Internal Dot) leading to Remote Code Execution and/or Informatio…
2025-01-01KEV
EPSS99.9%
pct 99
9.8
CVE-2023-34362CVE KEV
In Progress MOVEit Transfer before 2021.0.6 (13.0.6), 2021.1.4 (13.1.4), 2022.0.4 (14.0.4), 202…
2023-01-01KEV
EPSS99.9%
pct 99
9.8
CVE-2019-0604MSR KEV
A remote code execution vulnerability exists in Microsoft SharePoint when the software fails to…
2019-01-01MicrosoftKEV
EPSS99.9%
pct 99
7.5
CVE-2019-7481CVE KEV
Vulnerability in SonicWall SMA100 allow unauthenticated user to gain read-only access to unauth…
2019-01-01KEV
EPSS99.9%
pct 99
7.5
CVE-2018-0296CVE KEV
A vulnerability in the web interface of the Cisco Adaptive Security Appliance (ASA) could allow…
2018-01-01KEV
EPSS99.9%
pct 99
9.8
CVE-2017-8917CVE
SQL injection vulnerability in Joomla! 3.7.x before 3.7.1 allows attackers to execute arbitrary…
2017-01-01Pre-auth
EPSS99.8%
pct 99
8.1
CVE-2022-47966CVE KEV
Multiple Zoho ManageEngine on-premise products, such as ServiceDesk Plus through 14003, allow r…
2022-01-01KEV
EPSS99.8%
pct 99
9.8
CVE-2023-22515CVE KEV
Atlassian has been made aware of an issue reported by a handful of customers where external att…
2023-01-01KEV
EPSS99.7%
pct 99
9.8
CVE-2020-10220CVE
An issue was discovered in rConfig through 3.9.4. The web interface is prone to a SQL injection…
2020-01-01Pre-auth
EPSS99.7%
pct 99
5.9
CVE-2019-0232DEB
When running on Windows with enableCmdLineArguments enabled, the CGI Servlet in Apache Tomcat 9…
2019-01-01Pre-auth
EPSS99.7%
pct 99
9.8
CVE-2022-1471DEB
SnakeYaml's Constructor() class does not restrict types which can be instantiated during deseri…
2022-01-01Pre-auth
EPSS99.6%
pct 99
8.1
CVE-2017-12615DEB KEV
When running Apache Tomcat 7.0.0 to 7.0.79 on Windows with HTTP PUTs enabled (e.g. via setting …
2017-01-01KEV
EPSS99.6%
pct 99
6.5
CVE-2020-16040AST
Insufficient data validation in V8 in Google Chrome prior to 87.0.4280.88 allowed a remote atta…
2020-01-01Pre-auth
EPSS99.6%
pct 99
9.2
CVE-2024-9465CVE KEV
An SQL injection vulnerability in Palo Alto Networks Expedition allows an unauthenticated attac…
2024-01-01KEV
EPSS99.6%
pct 99
9.8
CVE-2018-0171CVE KEV
A vulnerability in the Smart Install feature of Cisco IOS Software and Cisco IOS XE Software co…
2018-01-01KEV
EPSS99.5%
pct 99
8.1
CVE-2019-11043AST KEV
In PHP versions 7.1.x below 7.1.33, 7.2.x below 7.2.24 and 7.3.x below 7.3.11 in certain config…
2019-01-01KEV
EPSS99.5%
pct 99
8.1
CVE-2017-9805DEB KEV
The REST Plugin in Apache Struts 2.1.1 through 2.3.x before 2.3.34 and 2.5.x before 2.5.13 uses…
2017-01-01KEV
EPSS99.5%
pct 99
7.5
CVE-2013-0156DEB
active_support/core_ext/hash/conversions.rb in Ruby on Rails before 2.3.15, 3.0.x before 3.0.19…
2013-01-01
EPSS99.4%
pct 99
8.1
CVE-2017-0148MSR KEV
The SMBv1 server in Microsoft Windows Vista SP2; Windows Server 2008 SP2 and R2 SP1; Windows 7 …
2017-01-01MicrosoftKEV
EPSS99.4%
pct 99
9.8
CVE-2025-1974ANC
A security issue was discovered in Kubernetes where under certain conditions, an unauthenticate…
2025-01-01Pre-auth
EPSS99.3%
pct 99
9.8
CVE-2022-24086CVE KEV
Adobe Commerce versions 2.4.3-p1 (and earlier) and 2.3.7-p2 (and earlier) are affected by an im…
2022-01-01KEV
EPSS99.2%
pct 99
9.8
CVE-2017-3881CVE KEV
A vulnerability in the Cisco Cluster Management Protocol (CMP) processing code in Cisco IOS and…
2017-01-01KEV
EPSS99.0%
pct 99
9.8
CVE-2021-21978CVE
VMware View Planner 4.x prior to 4.6 Security Patch 1 contains a remote code execution vulnerab…
2021-01-01Pre-auth
EPSS98.9%
pct 99
8.1
CVE-2017-9791DEB KEV
The Struts 1 plugin in Apache Struts 2.1.x and 2.3.x might allow remote code execution via a ma…
2017-01-01KEV
EPSS98.9%
pct 99
7.5
CVE-2019-17558DEB KEV
Apache Solr 5.0.0 to Apache Solr 8.3.1 are vulnerable to a Remote Code Execution through the Ve…
2019-01-01KEV
EPSS98.6%
pct 99
9.8
CVE-2023-48788CVE KEV
A improper neutralization of special elements used in an sql command ('sql injection') in Forti…
2023-01-01KEV
EPSS98.5%
pct 99
9.8
CVE-2017-15944CVE KEV
Palo Alto Networks PAN-OS before 6.1.19, 7.0.x before 7.0.19, 7.1.x before 7.1.14, and 8.0.x be…
2017-01-01KEV
EPSS98.3%
pct 99
Select a vulnerability on the left to open the preview.