V
Scaner-VS
HomeCatalogSourcesCWECAPECATT&CKMitigationsProductsVendorsDocs
Filters

All vulnerabilities

63 / 63
CWE: CWE-648×Clear all
7.3
CVE-2019-14813AST
A flaw was found in ghostscript, versions 9.x before 9.50, in the setsystemparams procedure whe…
2019-01-01Pre-auth
EPSS11.4%
pct 95
5.3
CVE-2024-8785CVE
In WhatsUp Gold versions released before 2024.0.1, a remote unauthenticated attacker could leve…
2024-01-01Pre-auth
EPSS9.5%
pct 94
5.3
CVE-2025-54766CVE
An API endpoint that should be limited to web application administrators is hidden from, but ac…
2025-01-01Pre-auth
EPSS6.5%
pct 92
5.3
CVE-2025-54765CVE
An API endpoint that should be limited to web application administrators is hidden from, but ac…
2025-01-01Pre-auth
EPSS6.5%
pct 92
5.4
CVE-2026-20122CVE KEV
A vulnerability in the API of Cisco Catalyst SD-WAN Manager could allow an authenticated, remot…
2026-01-01KEV
EPSS6.1%
pct 92
6.5
CVE-2025-54767CVE
An authenticated, read-only user can kill any processes running on the Xormon Original virtual …
2025-01-01
EPSS5.0%
pct 91
9.8
CVE-2019-1010178CVE
Fred MODX Revolution < 1.0.0-beta5 is affected by: Incorrect Access Control - CWE-648. The impa…
2019-01-01Pre-auth
EPSS4.6%
pct 90
7.3
CVE-2019-14811AST
A flaw was found in, ghostscript versions prior to 9.50, in the .pdf_hook_DSC_Creator procedure…
2019-01-01Pre-auth
EPSS3.8%
pct 88
5.3
CVE-2025-54768CVE
An API endpoint that should be limited to web application administrators is hidden from, but ac…
2025-01-01Pre-auth
EPSS3.7%
pct 88
7.3
CVE-2019-14869AST
A flaw was found in all versions of ghostscript 9.x before 9.50, where the `.charkeys` procedur…
2019-01-01Pre-auth
EPSS3.4%
pct 87
9.8
CVE-2022-2023CVE
Incorrect Use of Privileged APIs in GitHub repository polonel/trudesk prior to 1.2.4.
2022-01-01Pre-auth
EPSS3.0%
pct 85
3.7
CVE-2018-11039DEB
Spring Framework (versions 5.0.x prior to 5.0.7, versions 4.3.x prior to 4.3.18, and older unsu…
2018-01-01Pre-auth
EPSS2.8%
pct 84
7.3
CVE-2019-3838AST
It was found that the forceput operator could be extracted from the DefineResource method in gh…
2019-01-01Pre-auth
EPSS2.6%
pct 83
7.3
CVE-2019-3835AST
It was found that the superexec operator was available in the internal dictionary in ghostscrip…
2019-01-01Pre-auth
EPSS2.6%
pct 83
7.3
CVE-2019-14812AST
A flaw was found in all ghostscript versions 9.x before 9.50, in the .setuserparams2 procedure …
2019-01-01Pre-auth
EPSS2.5%
pct 82
7.3
CVE-2019-10216AST
In ghostscript before version 9.50, the .buildfont1 procedure did not properly secure its privi…
2019-01-01Pre-auth
EPSS2.3%
pct 80
7.5
CVE-2016-10746DEB
libvirt-domain.c in libvirt before 1.3.1 supports virDomainGetTime API calls by guest agents wi…
2016-01-01Pre-auth
EPSS2.1%
pct 78
7.3
CVE-2019-14817AST
A flaw was found in, ghostscript versions prior to 9.50, in the .pdfexectoken and other procedu…
2019-01-01Pre-auth
EPSS2.0%
pct 78
7.3
CVE-2019-3839AST
It was found that in ghostscript some privileged operators remained accessible from various pla…
2019-01-01Pre-auth
EPSS1.8%
pct 75
6.5
CVE-2020-15664AST
By holding a reference to the eval() function from an about:blank window, a malicious webpage c…
2020-01-01Pre-auth
EPSS1.4%
pct 68
8.8
CVE-2022-20956CVE
A vulnerability in the web-based management interface of Cisco Identity Services Engine (ISE) c…
2022-01-01
EPSS1.3%
pct 67
9.8
CVE-2024-11068CVE
The D-Link DSL6740C modem has an Incorrect Use of Privileged APIs vulnerability, allowing unaut…
2024-01-01Pre-auth
EPSS1.2%
pct 63
6.5
CVE-2020-7927CVE
Specially crafted API calls may allow an authenticated user who holds Organization Owner privil…
2020-01-01
EPSS1.0%
pct 59
7.2
CVE-2020-5291AST
Bubblewrap (bwrap) before version 0.4.1, if installed in setuid mode and the kernel supports un…
2020-01-01
EPSS0.9%
pct 55
7.2
CVE-2023-29507CVE
XWiki Commons are technical libraries common to several other top level XWiki projects. The Doc…
2023-01-01
EPSS0.9%
pct 54
8.1
CVE-2022-24821CVE
XWiki Platform is a generic wiki platform offering runtime services for applications built on t…
2022-01-01
EPSS0.8%
pct 50
8.8
CVE-2023-28062CVE
Dell PPDM versions 19.12, 19.11 and 19.10, contain an improper access control vulnerability. A…
2023-01-01
EPSS0.8%
pct 50
8.1
CVE-2022-4796CVE
Incorrect Use of Privileged APIs in GitHub repository usememos/memos prior to 0.9.1.
2022-01-01
EPSS0.8%
pct 50
4.3
CVE-2022-24071CVE
A Built-in extension in Whale browser before 3.12.129.46 allows attackers to compromise the ren…
2022-01-01Pre-auth
EPSS0.7%
pct 46
8.1
CVE-2022-4687CVE
Incorrect Use of Privileged APIs in GitHub repository usememos/memos prior to 0.9.0.
2022-01-01
EPSS0.6%
pct 45
7.2
CVE-2023-4009CVE
In MongoDB Ops Manager v5.0 prior to 5.0.22 and v6.0 prior to 6.0.17 it is possible for an auth…
2023-01-01
EPSS0.6%
pct 44
5.4
CVE-2022-20965CVE
A vulnerability in the web-based management interface of Cisco Identity Services Engine could a…
2022-01-01
EPSS0.6%
pct 44
7.5
CVE-2023-6151CVE
Incorrect Use of Privileged APIs vulnerability in ESKOM Computer e-municipality module allows C…
2023-01-01Pre-auth
EPSS0.6%
pct 43
7.5
CVE-2023-6150CVE
Incorrect Use of Privileged APIs vulnerability in ESKOM Computer e-municipality module allows C…
2023-01-01Pre-auth
EPSS0.6%
pct 43
9.8
CVE-2023-4972CVE
Incorrect Use of Privileged APIs vulnerability in Yepas Digital Yepas allows Collect Data as Pr…
2023-01-01Pre-auth
EPSS0.6%
pct 42
4.2
CVE-2016-10730DEB
An issue was discovered in Amanda 3.3.1. A user with backup privileges can trivially compromise…
2016-01-01
EPSS0.6%
pct 41
7.1
CVE-2022-24073CVE
The Web Request API in Whale browser before 3.12.129.18 allowed to deny access to the extension…
2022-01-01Pre-auth
EPSS0.6%
pct 41
6.5
CVE-2023-20136CVE
A vulnerability in the OpenAPI of Cisco Secure Workload could allow an authenticated, remote at…
2023-01-01
EPSS0.5%
pct 39
4.3
CVE-2022-4805CVE
Incorrect Use of Privileged APIs in GitHub repository usememos/memos prior to 0.9.1.
2022-01-01
EPSS0.5%
pct 39
6.5
CVE-2024-46978ANC
XWiki Platform is a generic wiki platform offering runtime services for applications built on t…
2024-01-01
EPSS0.5%
pct 39
Select a vulnerability on the left to open the preview.