All vulnerabilities
76 / 76
Sort
5.3
CVE-2024-51977
An unauthenticated attacker who can access either the HTTP service (TCP port 80), the HTTPS ser…
2024-01-01Pre-auth
EPSS76.6%
pct 99
7.5
CVE-2019-6851CVE
A CWE-538: File and Directory Information Exposure vulnerability exists in Modicon M580, Modico…
2019-01-01Pre-auth
EPSS29.9%
pct 97
5.3
CVE-2017-9947CVE
A vulnerability has been identified in Siemens APOGEE PXC and TALON TC BACnet Automation Contro…
2017-01-01Pre-auth
EPSS7.3%
pct 93
7.5
CVE-2018-11798DEB
The Apache Thrift Node.js static web server in versions 0.9.2 through 0.11.0 have been determin…
2018-01-01Pre-auth
EPSS4.9%
pct 90
6.5
CVE-2017-16770CVE
File and directory information exposure vulnerability in SYNO.SurveillanceStation.PersonalSetti…
2017-01-01
EPSS1.9%
pct 76
6.5
CVE-2019-7618CVE
A local file disclosure flaw was found in Elastic Code versions 7.3.0, 7.3.1, and 7.3.2. If a m…
2019-01-01
EPSS1.5%
pct 69
5.0
CVE-2014-0772CVE
The BWOCXRUN.BwocxrunCtrl.1 control contains a method named
OpenUrlToBufferTimeout. This metho…
2014-01-01
EPSS1.4%
pct 69
5.0
CVE-2014-0771CVE
The BWOCXRUN.BwocxrunCtrl.1 control contains a method named
“OpenUrlToBuffer.” This method tak…
2014-01-01
EPSS1.4%
pct 69
7.5
CVE-2016-10399CVE
Sendio versions before 8.2.1 were affected by a Local File Inclusion vulnerability that allowed…
2016-01-01Pre-auth
EPSS1.4%
pct 69
4.3
CVE-2019-12623CVE
A vulnerability in the web server functionality of Cisco Enterprise Network Functions Virtualiz…
2019-01-01
EPSS1.2%
pct 64
5.3
CVE-2021-32822CVE
The npm hbs package is an Express view engine wrapper for Handlebars. Depending on usage, users…
2021-01-01Pre-auth
EPSS1.2%
pct 63
6.9
CVE-2025-27017ANC
Apache NiFi 1.13.0 through 2.2.0 includes the username and password used to authenticate with M…
2025-01-01
EPSS1.1%
pct 62
4.9
CVE-2021-1406CVE
A vulnerability in Cisco Unified Communications Manager (Unified CM) and Cisco Unified Communic…
2021-01-01
EPSS1.1%
pct 60
6.5
CVE-2019-10320CVE
Jenkins Credentials Plugin 2.1.18 and earlier allowed users with permission to create or update…
2019-01-01
EPSS1.0%
pct 56
6.5
CVE-2021-21250CVE
OneDev is an all-in-one devops platform. In OneDev before version 4.0.3, there is a critical vu…
2021-01-01
EPSS0.9%
pct 55
5.3
CVE-2024-0191CVE
A vulnerability was found in RRJ Nueva Ecija Engineer Online Portal 1.0. It has been classified…
2024-01-01Pre-auth
EPSS0.8%
pct 51
9.3
CVE-2016-20024
ZKTeco ZKTime.Net 3.0.1.6 contains an insecure file permissions vulnerability that allows unpri…
2016-01-01Pre-auth
EPSS0.7%
pct 49
6.5
CVE-2025-57734CVE
In JetBrains TeamCity before 2025.07.1 aWS credentials were exposed in Docker script files
2025-01-01
EPSS0.7%
pct 49
4.3
CVE-2018-16970CVE
Wisetail Learning Ecosystem (LE) through v4.11.6 allows insecure direct object reference (IDOR)…
2018-01-01
EPSS0.7%
pct 49
8.8
CVE-2023-7062ANC
The Advanced File Manager Shortcodes plugin for WordPress is vulnerable to Directory Traversal …
2023-01-01
EPSS0.7%
pct 49
6.5
CVE-2023-4595CVE
An information exposure vulnerability has been found, the exploitation of which could allow a r…
2023-01-01
EPSS0.7%
pct 48
2.7
CVE-2018-20932CVE
cPanel before 70.0.23 exposes Apache HTTP Server logs after creation of certain domains (SEC-40…
2018-01-01
EPSS0.7%
pct 48
8.8
CVE-2019-15793DEB
In shiftfs, a non-upstream patch to the Linux kernel included in the Ubuntu 5.0 and 5.3 kernel …
2019-01-01
EPSS0.7%
pct 47
9.8
CVE-2024-22433CVE
Dell Data Protection Search 19.2.0 and above contain an exposed password opportunity in plain …
2024-01-01Pre-auth
EPSS0.6%
pct 45
8.7
CVE-2021-4471
TG8 Firewall exposes a directory such as /data/ over HTTP without authentication. This director…
2021-01-01Pre-auth
EPSS0.6%
pct 42
5.5
CVE-2023-4480CVE
Due to an out-of-date dependency in the “Fusion File Manager” component accessible through the…
2023-01-01
EPSS0.6%
pct 42
8.7
CVE-2016-15056
Ubee EVW3226 cable modem/routers firmware versions up to and including 1.0.20 store configurati…
2016-01-01Pre-auth
EPSS0.6%
pct 42
8.7
CVE-2020-37104CVE
ASTPP 4.0.1 contains an information disclosure vulnerability that allows unauthenticated attack…
2020-01-01Pre-auth
EPSS0.6%
pct 42
8.7
CVE-2019-25706
Across DR-810 contains an unauthenticated file disclosure vulnerability that allows remote atta…
2019-01-01Pre-auth
EPSS0.5%
pct 40
7.5
CVE-2022-44623CVE
In JetBrains TeamCity version before 2022.10, Project Viewer could see scrambled secure values …
2022-01-01Pre-auth
EPSS0.5%
pct 40
6.8
CVE-2024-47579
An attacker authenticated as an administrator can use an exposed webservice to upload or downlo…
2024-01-01
EPSS0.5%
pct 40
6.8
CVE-2024-47580
An attacker authenticated as an administrator can use an exposed webservice to create a PDF wit…
2024-01-01
EPSS0.5%
pct 39
8.8
CVE-2026-49298ANC
A bug in Apache Airflow's KubernetesExecutor caused JWT tokens used by worker pods to authentic…
2026-01-01
EPSS0.5%
pct 38
6.9
CVE-2024-6880
During MegaBIP installation process, a user is encouraged to change a default path to administr…
2024-01-01Pre-auth
EPSS0.5%
pct 37
6.5
CVE-2025-0194ANC
An issue was discovered in GitLab CE/EE affecting all versions starting from 17.4 prior to 17.5…
2025-01-01
EPSS0.5%
pct 36
5.3
CVE-2022-26329CVE
File existence disclosure vulnerability in NetIQ Identity Manager plugin prior to version 4.8.5…
2022-01-01Pre-auth
EPSS0.5%
pct 36
5.5
CVE-2021-3709CVE
Function check_attachment_for_errors() in file data/general-hooks/ubuntu.py could be tricked in…
2021-01-01
EPSS0.4%
pct 35
6.5
CVE-2024-22045ANC
A vulnerability has been identified in SINEMA Remote Connect Client (All versions < V3.1 SP1). …
2024-01-01
EPSS0.4%
pct 34
3.3
CVE-2017-5387DEB
The existence of a specifically requested local file can be found due to the double firing of t…
2017-01-01
EPSS0.4%
pct 31
8.7
CVE-2026-23838
Tandoor Recipes is a recipe manager than can be installed with the Nix package manager. Startin…
2026-01-01Pre-auth
EPSS0.4%
pct 31
Select a vulnerability on the left to open the preview.