V
Scaner-VS
HomeCatalogSourcesCWECAPECATT&CKMitigationsProductsVendorsDocs
Filters

All vulnerabilities

120 / 120
Preset: kev×KEV×CAPEC: CAPEC-3×Clear all
10.0
CVE-2024-3400CVE KEV
A command injection as a result of arbitrary file creation vulnerability in the GlobalProtect f…
2024-01-01KEV
EPSS100.0%
pct 100
9.8
CVE-2021-44228DEB KEV
Apache Log4j2 2.0-beta9 through 2.15.0 (excluding security releases 2.12.2, 2.12.3, and 2.3.1) …
2021-01-01KEV
EPSS100.0%
pct 100
9.8
CVE-2017-5638DEB KEV
The Jakarta Multipart parser in Apache Struts 2 2.3.x before 2.3.32 and 2.5.x before 2.5.10.1 h…
2017-01-01KEV
EPSS100.0%
pct 100
9.8
CVE-2013-2251DEB KEV
Apache Struts 2.0.0 through 2.3.15 allows remote attackers to execute arbitrary OGNL expression…
2013-01-01KEV
EPSS100.0%
pct 99
9.8
CVE-2018-7600DEB KEV
Drupal before 7.58, 8.x before 8.3.9, 8.4.x before 8.4.6, and 8.5.x before 8.5.1 allows remote …
2018-01-01KEV
EPSS100.0%
pct 99
9.8
CVE-2018-11776DEB KEV
Apache Struts versions 2.3 to 2.3.34 and 2.5 to 2.5.16 suffer from possible Remote Code Executi…
2018-01-01KEV
EPSS100.0%
pct 99
7.5
CVE-2020-3452CVE KEV
A vulnerability in the web services interface of Cisco Adaptive Security Appliance (ASA) Softwa…
2020-01-01KEV
EPSS100.0%
pct 99
8.1
CVE-2017-12617DEB KEV
When running Apache Tomcat versions 9.0.0.M1 to 9.0.0, 8.5.0 to 8.5.22, 8.0.0.RC1 to 8.0.46 and…
2017-01-01KEV
EPSS100.0%
pct 99
9.8
CVE-2023-22527CVE KEV
A template injection vulnerability on older versions of Confluence Data Center and Server allow…
2023-01-01KEV
EPSS100.0%
pct 99
9.3
CVE-2024-4879CVE KEV
ServiceNow has addressed an input validation vulnerability that was identified in Vancouver and…
2024-01-01KEV
EPSS100.0%
pct 99
9.8
CVE-2019-2725CVE KEV
Vulnerability in the Oracle WebLogic Server component of Oracle Fusion Middleware (subcomponent…
2019-01-01KEV
EPSS100.0%
pct 99
9.1
CVE-2024-38475ANC KEV
Improper escaping of output in mod_rewrite in Apache HTTP Server 2.4.59 and earlier allows an a…
2024-01-01KEV
EPSS100.0%
pct 99
9.8
CVE-2025-24813ANC KEV
Path Equivalence: 'file.Name' (Internal Dot) leading to Remote Code Execution and/or Informatio…
2025-01-01KEV
EPSS99.9%
pct 99
9.8
CVE-2019-0604MSR KEV
A remote code execution vulnerability exists in Microsoft SharePoint when the software fails to…
2019-01-01MicrosoftKEV
EPSS99.9%
pct 99
7.5
CVE-2018-0296CVE KEV
A vulnerability in the web interface of the Cisco Adaptive Security Appliance (ASA) could allow…
2018-01-01KEV
EPSS99.9%
pct 99
9.8
CVE-2022-46169DEB KEV
Cacti is an open source platform which provides a robust and extensible operational monitoring …
2022-01-01KEV
EPSS99.8%
pct 99
8.1
CVE-2022-47966CVE KEV
Multiple Zoho ManageEngine on-premise products, such as ServiceDesk Plus through 14003, allow r…
2022-01-01KEV
EPSS99.8%
pct 99
9.8
CVE-2023-22515CVE KEV
Atlassian has been made aware of an issue reported by a handful of customers where external att…
2023-01-01KEV
EPSS99.7%
pct 99
9.2
CVE-2024-5217CVE KEV
ServiceNow has addressed an input validation vulnerability that was identified in the Washingto…
2024-01-01KEV
EPSS99.6%
pct 99
8.1
CVE-2017-12615DEB KEV
When running Apache Tomcat 7.0.0 to 7.0.79 on Windows with HTTP PUTs enabled (e.g. via setting …
2017-01-01KEV
EPSS99.6%
pct 99
9.8
CVE-2022-35914CVE KEV
/vendor/htmlawed/htmlawed/htmLawedTest.php in the htmlawed module for GLPI through 10.0.2 allow…
2022-01-01KEV
EPSS99.5%
pct 99
9.8
CVE-2018-0171CVE KEV
A vulnerability in the Smart Install feature of Cisco IOS Software and Cisco IOS XE Software co…
2018-01-01KEV
EPSS99.5%
pct 99
8.1
CVE-2019-11043AST KEV
In PHP versions 7.1.x below 7.1.33, 7.2.x below 7.2.24 and 7.3.x below 7.3.11 in certain config…
2019-01-01KEV
EPSS99.5%
pct 99
8.1
CVE-2017-9805DEB KEV
The REST Plugin in Apache Struts 2.1.1 through 2.3.x before 2.3.34 and 2.5.x before 2.5.13 uses…
2017-01-01KEV
EPSS99.5%
pct 99
8.1
CVE-2017-0148MSR KEV
The SMBv1 server in Microsoft Windows Vista SP2; Windows Server 2008 SP2 and R2 SP1; Windows 7 …
2017-01-01MicrosoftKEV
EPSS99.4%
pct 99
9.8
CVE-2022-24086CVE KEV
Adobe Commerce versions 2.4.3-p1 (and earlier) and 2.3.7-p2 (and earlier) are affected by an im…
2022-01-01KEV
EPSS99.2%
pct 99
9.8
CVE-2017-3881CVE KEV
A vulnerability in the Cisco Cluster Management Protocol (CMP) processing code in Cisco IOS and…
2017-01-01KEV
EPSS99.0%
pct 99
8.1
CVE-2017-9791DEB KEV
The Struts 1 plugin in Apache Struts 2.1.x and 2.3.x might allow remote code execution via a ma…
2017-01-01KEV
EPSS98.9%
pct 99
7.5
CVE-2019-17558DEB KEV
Apache Solr 5.0.0 to Apache Solr 8.3.1 are vulnerable to a Remote Code Execution through the Ve…
2019-01-01KEV
EPSS98.6%
pct 99
9.8
CVE-2017-15944CVE KEV
Palo Alto Networks PAN-OS before 6.1.19, 7.0.x before 7.0.19, 7.1.x before 7.1.14, and 8.0.x be…
2017-01-01KEV
EPSS98.3%
pct 99
7.8
CVE-2023-38831CVE KEV
RARLAB WinRAR before 6.23 allows attackers to execute arbitrary code when a user attempts to vi…
2023-01-01KEV
EPSS97.8%
pct 99
7.2
CVE-2022-43769CVE KEV
Hitachi Vantara Pentaho Business Analytics Server prior to versions 9.4.0.1 and 9.3.0.2, includ…
2022-01-01KEV
EPSS97.7%
pct 99
8.4
CVE-2016-3714DEB KEV
The (1) EPHEMERAL, (2) HTTPS, (3) MVG, (4) MSL, (5) TEXT, (6) SHOW, (7) WIN, and (8) PLT coders…
2016-01-01KEV
EPSS97.5%
pct 99
9.8
CVE-2023-23397MSR KEV
Microsoft Outlook Elevation of Privilege Vulnerability
2023-01-01MicrosoftKEV
EPSS97.4%
pct 99
9.1
CVE-2025-54236CVE KEV
Adobe Commerce versions 2.4.9-alpha2, 2.4.8-p2, 2.4.7-p7, 2.4.6-p12, 2.4.5-p14, 2.4.4-p15 and e…
2025-01-01KEV
EPSS96.7%
pct 99
10.0
CVE-2025-20281CVE KEV
A vulnerability in a specific API of Cisco ISE and Cisco ISE-PIC could allow an unauthenticated…
2025-01-01KEV
EPSS96.7%
pct 99
8.8
CVE-2009-0927CVE KEV
Stack-based buffer overflow in Adobe Reader and Adobe Acrobat 9 before 9.1, 8 before 8.1.3 , an…
2009-01-01KEV
EPSS96.6%
pct 99
9.8
CVE-2020-11651DEB KEV
An issue was discovered in SaltStack Salt before 2019.2.4 and 3000 before 3000.2. The salt-mast…
2020-01-01KEV
EPSS96.4%
pct 99
7.2
CVE-2019-1652CVE KEV
A vulnerability in the web-based management interface of Cisco Small Business RV320 and RV325 D…
2019-01-01KEV
EPSS95.9%
pct 99
8.1
CVE-2020-17530DEB KEV
Forced OGNL evaluation, when evaluated on raw user input in tag attributes, may lead to remote …
2020-01-01KEV
EPSS95.9%
pct 99
Select a vulnerability on the left to open the preview.