All vulnerabilities
43323 / 43323
Sort
10.0
CVE-2024-3400CVE KEV
A command injection as a result of arbitrary file creation vulnerability in the GlobalProtect f…
2024-01-01KEV
EPSS100.0%
pct 100
9.8
CVE-2024-23897DEB KEV
Jenkins 2.441 and earlier, LTS 2.426.2 and earlier does not disable a feature of its CLI comman…
2024-01-01KEV
EPSS100.0%
pct 100
8.2
CVE-2024-21893CVE KEV
A server-side request forgery vulnerability in the SAML component of Ivanti Connect Secure (9.x…
2024-01-01KEV
EPSS100.0%
pct 100
9.1
CVE-2024-21887CVE KEV
A command injection vulnerability in web components of Ivanti Connect Secure (9.x, 22.x) and Iv…
2024-01-01KEV
EPSS100.0%
pct 100
7.5
CVE-2023-4966CVE KEV
Sensitive information disclosure in NetScaler ADC and NetScaler Gateway when configured as a Ga…
2023-01-01KEV
EPSS100.0%
pct 100
7.5
CVE-2023-44487ANC KEV
The HTTP/2 protocol allows a denial of service (server resource consumption) because request ca…
2023-01-01MicrosoftKEV
EPSS100.0%
pct 100
9.8
CVE-2023-35082CVE KEV
An authentication bypass vulnerability in Ivanti EPMM 11.10 and older, allows unauthorized user…
2023-01-01KEV
EPSS100.0%
pct 100
9.8
CVE-2023-35078CVE KEV
An authentication bypass vulnerability in Ivanti EPMM allows unauthorized users to access restr…
2023-01-01KEV
EPSS100.0%
pct 100
9.8
CVE-2023-27350CVE KEV
This vulnerability allows remote attackers to bypass authentication on affected installations o…
2023-01-01KEV
EPSS100.0%
pct 100
9.8
CVE-2023-22518CVE KEV
All versions of Confluence Data Center and Server are affected by this unexploited vulnerabilit…
2023-01-01KEV
EPSS100.0%
pct 100
9.8
CVE-2023-1671CVE KEV
A pre-auth command injection vulnerability in the warn-proceed handler of Sophos Web Appliance …
2023-01-01KEV
EPSS100.0%
pct 100
8.8
CVE-2023-1389CVE KEV
TP-Link Archer AX21 (AX1800) firmware versions before 1.1.4 Build 20230219 contained a command …
2023-01-01KEV
EPSS100.0%
pct 100
7.2
CVE-2023-0669CVE KEV
Fortra (formerly, HelpSystems) GoAnywhere MFT suffers from a pre-authentication command injecti…
2023-01-01KEV
EPSS100.0%
pct 100
9.8
CVE-2022-29464CVE KEV
Certain WSO2 products allow unrestricted file upload with resultant remote code execution. The …
2022-01-01KEV
EPSS100.0%
pct 100
9.8
CVE-2022-26134CVE KEV
In affected versions of Confluence Server and Data Center, an OGNL injection vulnerability exis…
2022-01-01KEV
EPSS100.0%
pct 100
5.9
CVE-2021-45105DEB
Apache Log4j2 versions 2.0-alpha1 through 2.16.0 (excluding 2.12.3 and 2.3.1) did not protect f…
2021-01-01Pre-auth
EPSS100.0%
pct 100
9.8
CVE-2021-44228DEB KEV
Apache Log4j2 2.0-beta9 through 2.15.0 (excluding security releases 2.12.2, 2.12.3, and 2.3.1) …
2021-01-01KEV
EPSS100.0%
pct 100
9.0
CVE-2021-40438AST KEV
A crafted request uri-path can cause mod_proxy to forward the request to an origin server choos…
2021-01-01KEV
EPSS100.0%
pct 100
9.8
CVE-2021-35464CVE KEV
ForgeRock AM server before 7.0 has a Java deserialization vulnerability in the jato.pageSession…
2021-01-01KEV
EPSS100.0%
pct 100
9.8
CVE-2021-34473MSR KEV
Microsoft Exchange Server Remote Code Execution Vulnerability
2021-01-01MicrosoftKEV
EPSS100.0%
pct 100
9.8
CVE-2021-26855MSR KEV
Microsoft Exchange Server Remote Code Execution Vulnerability
2021-01-01MicrosoftKEV
EPSS100.0%
pct 100
5.3
CVE-2021-26086CVE KEV
Affected versions of Atlassian Jira Server and Data Center allow remote attackers to read parti…
2021-01-01KEV
EPSS100.0%
pct 100
9.8
CVE-2021-26084CVE KEV
In affected versions of Confluence Server and Data Center, an OGNL injection vulnerability exis…
2021-01-01KEV
EPSS100.0%
pct 100
9.8
CVE-2021-22005CVE KEV
The vCenter Server contains an arbitrary file upload vulnerability in the Analytics service. A …
2021-01-01KEV
EPSS100.0%
pct 100
9.8
CVE-2021-21985CVE KEV
The vSphere Client (HTML5) contains a remote code execution vulnerability due to lack of input …
2021-01-01KEV
EPSS100.0%
pct 100
9.8
CVE-2021-1498CVE KEV
Multiple vulnerabilities in the web-based management interface of Cisco HyperFlex HX could allo…
2021-01-01KEV
EPSS100.0%
pct 100
9.8
CVE-2020-5902CVE KEV
In BIG-IP versions 15.0.0-15.1.0.3, 14.1.0-14.1.2.5, 13.1.0-13.1.3.3, 12.1.0-12.1.5.1, and 11.6…
2020-01-01KEV
EPSS100.0%
pct 100
9.8
CVE-2019-19781CVE KEV
An issue was discovered in Citrix Application Delivery Controller (ADC) and Gateway 10.5, 11.1,…
2019-01-01KEV
EPSS100.0%
pct 100
10.0
CVE-2019-11510CVE KEV
In Pulse Secure Pulse Connect Secure (PCS) 8.2 before 8.2R12.1, 8.3 before 8.3R7.1, and 9.0 bef…
2019-01-01KEV
EPSS100.0%
pct 100
9.8
CVE-2019-0708MSR KEV
A remote code execution vulnerability exists in Remote Desktop Services formerly known as Termi…
2019-01-01MicrosoftKEV
EPSS100.0%
pct 100
9.8
CVE-2018-13379CVE KEV
An Improper Limitation of a Pathname to a Restricted Directory ("Path Traversal") in Fortinet F…
2018-01-01KEV
EPSS100.0%
pct 100
9.8
CVE-2017-9841DEB KEV
Util/PHP/eval-stdin.php in PHPUnit before 4.8.28 and 5.x before 5.6.3 allows remote attackers t…
2017-01-01KEV
EPSS100.0%
pct 100
9.8
CVE-2017-5638DEB KEV
The Jakarta Multipart parser in Apache Struts 2 2.3.x before 2.3.32 and 2.5.x before 2.5.10.1 h…
2017-01-01KEV
EPSS100.0%
pct 100
9.8
CVE-2015-1635CVE KEV
HTTP.sys in Microsoft Windows 7 SP1, Windows Server 2008 R2 SP1, Windows 8, Windows 8.1, and Wi…
2015-01-01KEV
EPSS100.0%
pct 100
9.8
CVE-2014-6271DEB KEV
GNU Bash through 4.3 processes trailing strings after function definitions in the values of env…
2014-01-01KEV
EPSS100.0%
pct 100
3.4
CVE-2014-3566DEB
The SSL protocol 3.0, as used in OpenSSL through 1.0.1i and other products, uses nondeterminist…
2014-01-01Pre-auth
EPSS100.0%
pct 100
7.5
CVE-2014-0160DEB KEV
The (1) TLS and (2) DTLS implementations in OpenSSL 1.0.1 before 1.0.1g do not properly handle …
2014-01-01KEV
EPSS100.0%
pct 100
7.5
CVE-2023-32315CVE KEV
Openfire is an XMPP server licensed under the Open Source Apache License. Openfire's administra…
2023-01-01KEV
EPSS100.0%
pct 99
9.8
CVE-2017-7921CVE KEV
An Improper Authentication issue was discovered in Hikvision DS-2CD2xx2F-I Series V5.2.0 build …
2017-01-01KEV
EPSS100.0%
pct 99
9.8
CVE-2013-2251DEB KEV
Apache Struts 2.0.0 through 2.3.15 allows remote attackers to execute arbitrary OGNL expression…
2013-01-01KEV
EPSS100.0%
pct 99
Select a vulnerability on the left to open the preview.