V
Scaner-VS
HomeCatalogSourcesCWECAPECATT&CKMitigationsProductsVendorsDocs
Filters

All vulnerabilities

111 / 111
CWE: CWE-602×Clear all
5.5
CVE-2019-9827CVE
Hawt Hawtio through 2.5.0 is vulnerable to SSRF, allowing a remote attacker to trigger an HTTP …
2019-01-01
EPSS26.8%
pct 97
7.5
CVE-2020-8162DEB
A client side enforcement of server side security vulnerability exists in rails < 5.2.4.2 and r…
2020-01-01Pre-auth
EPSS3.1%
pct 85
8.8
CVE-2024-23666CVE
A client-side enforcement of server-side security in Fortinet FortiAnalyzer-BigData at least …
2024-01-01
EPSS2.7%
pct 84
7.5
CVE-2014-2374CVE
The AXN-NET Ethernet module accessory 3.04 for the Accuenergy Acuvim II allows remote attackers…
2014-01-01
EPSS1.9%
pct 76
7.5
CVE-2014-2373CVE
The web server on the AXN-NET Ethernet module accessory 3.04 for the Accuenergy Acuvim II allow…
2014-01-01
EPSS1.8%
pct 75
9.6
CVE-2022-20658CVE
A vulnerability in the web-based management interface of Cisco Unified Contact Center Managemen…
2022-01-01
EPSS1.4%
pct 68
6.5
CVE-2023-42787CVE
A client-side enforcement of server-side security [CWE-602] vulnerability in Fortinet FortiMana…
2023-01-01
EPSS1.4%
pct 68
4.2
CVE-2017-12161DEB
It was found that keycloak before 3.4.2 final would permit misuse of a client-side /etc/hosts e…
2017-01-01Pre-auth
EPSS1.4%
pct 67
8.3
CVE-2025-40591
A vulnerability has been identified in RUGGEDCOM ROX MX5000 (All versions < V2.16.5), RUGGEDCOM…
2025-01-01
EPSS1.3%
pct 66
5.5
CVE-2019-1547AST
Normally in OpenSSL EC groups always have a co-factor present and this is used in side channel …
2019-01-01
EPSS1.2%
pct 64
9.4
CVE-2025-33025
A vulnerability has been identified in RUGGEDCOM ROX MX5000 (All versions < V2.16.5), RUGGEDCOM…
2025-01-01
EPSS1.2%
pct 63
9.4
CVE-2025-33024
A vulnerability has been identified in RUGGEDCOM ROX MX5000 (All versions < V2.16.5), RUGGEDCOM…
2025-01-01
EPSS1.2%
pct 63
9.4
CVE-2025-32469
A vulnerability has been identified in RUGGEDCOM ROX MX5000 (All versions < V2.16.5), RUGGEDCOM…
2025-01-01
EPSS1.2%
pct 63
8.8
CVE-2024-9844CVE
Insufficient server-side controls in Secure Application Manager of Ivanti Connect Secure before…
2024-01-01
EPSS1.0%
pct 56
5.6
CVE-2017-14013CVE
A Client-Side Enforcement of Server-Side Security issue was discovered in ProMinent MultiFLEX M…
2017-01-01Pre-auth
EPSS0.9%
pct 56
4.9
CVE-2023-39218CVE
Client-side enforcement of server-side security in Zoom clients before 5.14.10 may allow a priv…
2023-01-01
EPSS0.9%
pct 55
2.7
CVE-2021-21544CVE
Dell EMC iDRAC9 versions prior to 4.40.00.00 contain an improper authentication vulnerability. …
2021-01-01
EPSS0.9%
pct 55
2.1
CVE-2025-8792CVE
A vulnerability classified as problematic has been found in LitmusChaos Litmus up to 3.19.0. Af…
2025-01-01
EPSS0.9%
pct 55
9.8
CVE-2025-10640
An unauthenticated attacker with access to TCP port 12306 of the WorkExaminer server can exploi…
2025-01-01Pre-auth
EPSS0.9%
pct 54
6.5
CVE-2023-0704AST
Insufficient policy enforcement in DevTools in Google Chrome prior to 110.0.5481.77 allowed a r…
2023-01-01Pre-auth
EPSS0.9%
pct 54
8.8
CVE-2024-31491CVE
A client-side enforcement of server-side security in Fortinet FortiSandbox version 4.4.0 throug…
2024-01-01
EPSS0.8%
pct 52
5.4
CVE-2020-5345CVE
Dell EMC Unisphere for PowerMax versions prior to 9.1.0.17, Dell EMC Unisphere for PowerMax Vir…
2020-01-01
EPSS0.7%
pct 49
5.3
CVE-2023-0581CVE
The PrivateContent plugin for WordPress is vulnerable to protection mechanism bypass due to the…
2023-01-01Pre-auth
EPSS0.7%
pct 49
9.8
CVE-2025-27681CVE
Vasion Print (formerly PrinterLogic) before Virtual Appliance Host 1.0.735 Application 20.0.133…
2025-01-01Pre-auth
EPSS0.7%
pct 48
7.8
CVE-2021-21531CVE
Dell Unisphere for PowerMax versions prior to 9.2.1.6 contain an Authorization Bypass Vulnerabi…
2021-01-01
EPSS0.7%
pct 48
9.1
CVE-2022-1525CVE
The Cognex 3D-A1000 Dimensioning System in firmware version 1.0.3 (3354) and prior is vulnerabl…
2022-01-01Pre-auth
EPSS0.7%
pct 47
8.1
CVE-2023-23570CVE
Client-Side enforcement of Server-Side security for the Command Centre server could be bypasse…
2023-01-01
EPSS0.7%
pct 46
8.8
CVE-2024-28029ANC
Privileges are not fully verified server-side, which can be abused by a user with limited privi…
2024-01-01
EPSS0.7%
pct 46
7.4
CVE-2022-3308DEB
Insufficient policy enforcement in developer tools in Google Chrome prior to 106.0.5249.62 allo…
2022-01-01Pre-auth
EPSS0.6%
pct 43
8.8
CVE-2026-30783CVE
A vulnerability in rustdesk-client RustDesk Client rustdesk-client on Windows, MacOS, Linux, iO…
2026-01-01Pre-auth
EPSS0.6%
pct 43
5.3
CVE-2024-0701CVE
The UserPro plugin for WordPress is vulnerable to Security Feature Bypass in all versions up to…
2024-01-01Pre-auth
EPSS0.6%
pct 43
6.5
CVE-2020-27268CVE
In SOOIL Developments Co., Ltd Diabecare RS, AnyDana-i and AnyDana-A, a client-side control vul…
2020-01-01
EPSS0.5%
pct 40
9.8
CVE-2024-12603
A logic vulnerability in the the mobile application (com.transsion.applock) can lead to bypassi…
2024-01-01Pre-auth
EPSS0.5%
pct 40
2.0
CVE-2024-52008ANC
Fides is an open-source privacy engineering platform. The user invite acceptance API endpoint l…
2024-01-01
EPSS0.5%
pct 40
6.5
CVE-2023-48789CVE
A client-side enforcement of server-side security in Fortinet FortiPortal version 6.0.0 through…
2023-01-01
EPSS0.5%
pct 37
9.8
CVE-2023-0750CVE
Yellobrik PEC-1864 implements authentication checks via javascript in the frontend interface.  …
2023-01-01Pre-auth
EPSS0.4%
pct 35
6.5
CVE-2022-3310DEB
Insufficient policy enforcement in custom tabs in Google Chrome on Android prior to 106.0.5249.…
2022-01-01Pre-auth
EPSS0.4%
pct 35
6.5
CVE-2022-3047DEB
Insufficient policy enforcement in Extensions API in Google Chrome prior to 105.0.5195.52 allow…
2022-01-01Pre-auth
EPSS0.4%
pct 35
2.9
CVE-2025-4527CVE
A vulnerability has been found in Dígitro NGC Explorer 3.44.15 and classified as problematic. T…
2025-01-01Pre-auth
EPSS0.4%
pct 34
7.5
CVE-2025-6025
The Order Tip for WooCommerce plugin for WordPress is vulnerable to Unauthenticated Improper In…
2025-01-01Pre-auth
EPSS0.4%
pct 33
Select a vulnerability on the left to open the preview.