V
Scaner-VS
HomeCatalogSourcesCWECAPECATT&CKMitigationsProductsVendorsDocs
Filters

All vulnerabilities

67 / 67
Preset: exploit×Has exploit×CWE: CWE-276×Clear all
9.8
CVE-2013-0632CVE KEV
administrator.cfc in Adobe ColdFusion 9.0, 9.0.1, 9.0.2, and 10 allows remote attackers to bypa…
2013-01-01KEV
EPSS93.7%
pct 99
7.0
CVE-2017-11610DEB
The XML-RPC server in supervisor before 3.0.1, 3.1.x before 3.1.4, 3.2.x before 3.2.4, and 3.3.…
2017-01-01
EPSS87.5%
pct 99
9.1
CVE-2023-29919CVE
SolarView Compact <= 6.0 is vulnerable to Insecure Permissions. Any file on the server can be r…
2023-01-01Pre-auth
EPSS60.2%
pct 99
9.8
CVE-2019-17124CVE
Kramer VIAware 2.5.0719.1034 has Incorrect Access Control.
2019-01-01Pre-auth
EPSS23.1%
pct 97
7.8
CVE-2020-12608CVE
An issue was discovered in SolarWinds MSP PME (Patch Management Engine) Cache Service before 1.…
2020-01-01
EPSS22.4%
pct 97
8.8
CVE-2017-8625MSR
Internet Explorer in Windows 10 Gold, 1511, 1607, 1703, and Windows Server 2016 allows an attac…
2017-01-01MicrosoftPre-auth
EPSS15.3%
pct 96
6.5
CVE-2022-22948CVE KEV
The vCenter Server contains an information disclosure vulnerability due to improper permission …
2022-01-01KEV
EPSS13.9%
pct 96
8.8
CVE-2024-39924ANC
An issue was discovered in Vaultwarden (formerly Bitwarden_RS) 1.30.3. A vulnerability has been…
2024-01-01
EPSS13.1%
pct 95
9.8
CVE-1999-0426CVE
The default permissions of /dev/kmem in Linux versions before 2.0.36 allows IP spoofing.
1999-01-01Pre-auth
EPSS10.6%
pct 95
5.3
CVE-2023-29923CVE
PowerJob V4.3.1 is vulnerable to Insecure Permissions. via the list job interface.
2023-01-01Pre-auth
EPSS9.5%
pct 94
8.8
CVE-2020-11444CVE
Sonatype Nexus Repository Manager 3.x up to and including 3.21.2 has Incorrect Access Control.
2020-01-01
EPSS8.5%
pct 94
8.1
CVE-2013-4859CVE
INSTEON Hub 2242-222 lacks Web and API authentication
2013-01-01Pre-auth
EPSS7.0%
pct 93
9.8
CVE-2023-26918CVE
Diasoft File Replication Pro 7.5.0 allows attackers to escalate privileges by replacing a legit…
2023-01-01Pre-auth
EPSS6.1%
pct 92
7.8
CVE-2023-20178CVE
A vulnerability in the client update process of Cisco AnyConnect Secure Mobility Client Softwar…
2023-01-01
EPSS5.9%
pct 92
8.8
CVE-2021-3394CVE
Millennium Millewin (also known as "Cartella clinica") 13.39.028, 13.39.28.3342, and 13.39.146.…
2021-01-01
EPSS5.8%
pct 92
8.8
CVE-2017-12763CVE
An unspecified server utility in NoMachine before 5.3.10 on Mac OS X and Linux allows authentic…
2017-01-01
EPSS3.9%
pct 88
8.8
CVE-2006-5014CVE
Unspecified vulnerability in cPanel before 10.9.0 12 Tree allows remote authenticated users to …
2006-01-01
EPSS3.8%
pct 88
7.0
CVE-2016-5425DEB
The Tomcat package on Red Hat Enterprise Linux (RHEL) 7, Fedora, CentOS, Oracle Linux, and poss…
2016-01-01
EPSS3.8%
pct 88
8.8
CVE-2021-40904DEB
The web management console of CheckMK Raw Edition (versions 1.5.0 to 1.6.0) allows a misconfigu…
2021-01-01Pre-auth
EPSS3.8%
pct 88
9.8
CVE-2023-31067CVE
An issue was discovered in TSplus Remote Access through 16.0.2.14. There are Full Control permi…
2023-01-01Pre-auth
EPSS2.9%
pct 85
9.8
CVE-2023-31068CVE
An issue was discovered in TSplus Remote Access through 16.0.2.14. There are Full Control permi…
2023-01-01Pre-auth
EPSS2.8%
pct 84
8.8
CVE-2021-39273CVE
In XeroSecurity Sn1per 9.0 (free version), insecure permissions (0777) are set upon application…
2021-01-01
EPSS2.7%
pct 83
8.8
CVE-2023-25355CVE
CoreDial sipXcom up to and including 21.04 is vulnerable to Insecure Permissions. A user who ha…
2023-01-01
EPSS2.5%
pct 82
4.3
CVE-2020-27358CVE
An issue was discovered in REDCap 8.11.6 through 9.x before 10. The messenger's CSV feature (th…
2020-01-01
EPSS2.0%
pct 78
7.5
CVE-2023-27035CVE
An issue discovered in Obsidian Canvas 1.1.9 allows remote attackers to send desktop notificati…
2023-01-01Pre-auth
EPSS1.8%
pct 76
7.1
CVE-2021-1056DEB
NVIDIA GPU Display Driver for Linux, all versions, contains a vulnerability in the kernel mode …
2021-01-01
EPSS1.8%
pct 75
7.8
CVE-2019-14737CVE
Ubisoft Uplay 92.0.0.6280 has Insecure Permissions.
2019-01-01
EPSS1.7%
pct 73
7.8
CVE-2019-14326CVE
An issue was discovered in AndyOS Andy versions up to 46.11.113. By default, it starts telnet a…
2019-01-01
EPSS1.3%
pct 66
7.8
CVE-2021-43326CVE
Automox Agent before 32 on Windows incorrectly sets permissions on a temporary directory.
2021-01-01
EPSS1.2%
pct 65
7.8
CVE-2016-3943CVE
Panda Endpoint Administration Agent before 7.50.00, as used in Panda Security for Business prod…
2016-01-01
EPSS1.2%
pct 63
7.8
CVE-2016-6914CVE
Ubiquiti UniFi Video before 3.8.0 for Windows uses weak permissions for the installation direct…
2016-01-01
EPSS1.2%
pct 62
7.8
CVE-2021-35312CVE
A vulnerability was found in CIR 2000 / Gestionale Amica Prodigy v1.7. The Amica Prodigy's exec…
2021-01-01
EPSS1.1%
pct 62
8.8
CVE-2017-11741CVE
HashiCorp Vagrant VMware Fusion plugin (aka vagrant-vmware-fusion) before 4.0.24 uses weak perm…
2017-01-01
EPSS1.1%
pct 61
7.8
CVE-2018-19592CVE
The "CLink4Service" service is installed with Corsair Link 4.9.7.35 with insecure permissions b…
2018-01-01
EPSS1.1%
pct 60
5.3
CVE-2022-22296CVE
Sourcecodester Hospital's Patient Records Management System 1.0 is vulnerable to Insecure Permi…
2022-01-01Pre-auth
EPSS1.0%
pct 57
5.5
CVE-2025-6264CVE
Velociraptor allows collection of VQL queries packaged into Artifacts from endpoints. These art…
2025-01-01
EPSS1.0%
pct 56
8.7
CVE-2025-4660CVE
A remote code execution vulnerability exists in the Windows agent component of SecureConnector …
2025-01-01
EPSS1.0%
pct 56
7.8
CVE-2020-3766CVE
Adobe Genuine Integrity Service versions Version 6.4 and earlier have an insecure file permissi…
2020-01-01
EPSS0.9%
pct 56
7.2
CVE-2015-7985DEB
Valve Steam 2.10.91.91 uses weak permissions (Users: read and write) for the Install folder, wh…
2015-01-01
EPSS0.9%
pct 56
5.5
CVE-2023-32407CVE
A logic issue was addressed with improved state management. This issue is fixed in watchOS 9.5,…
2023-01-01
EPSS0.9%
pct 55
Select a vulnerability on the left to open the preview.