Search

Published: All 7d 30d 90d 12m
Severity: All Critical High Medium Low

15,635 CVEs · Low severity

CVEs (15,635, showing first 500)

Only the first 500 CVEs (by current sort) are shown when searching without a keyword. Add a search term above to narrow the results.

Showing 401–425 of 15,635 (capped at 500)

CVE ID Severity Patch CVSS Published Description
CVE-2024-3076 LOW Patched 3.8 2024-04-26 The MM-email2image WordPress plugin through 0.2.5 does not have CSRF check in some places, and is missing sanitisation as well as escaping, which could allow attackers to m…
CVE-2024-2972 LOW Patched 3.8 2024-04-24 The Floating Chat Widget: Contact Chat Icons, WhatsApp, Telegram Chat, Line Messenger, WeChat, Email, SMS, Call Button WordPress plugin before 3.1.9 does not sanitise and …
CVE-2024-32314 LOW 3.8 2024-04-17 Tenda AC500 V2.0.1.9(1307) firmware contains a command injection vulnerablility in the formexeCommand function via the cmdinput parameter.
CVE-2024-21000 LOW Patched 3.8 2024-04-16 Vulnerability in the MySQL Server product of Oracle MySQL (component: Server: Security: Privileges). Supported versions that are affected are 8.0.36 and prior and 8.3.0 a…
CVE-2024-3270 LOW Patched 3.8 2024-04-03 A vulnerability classified as problematic was found in ThingsBoard up to 3.6.2. This vulnerability affects unknown code of the component AdvancedFeature. The manipulation l…
CVE-2024-29948 LOW 3.8 2024-04-02 There is an out-of-bounds read vulnerability in some Hikvision NVRs. An authenticated attacker could exploit this vulnerability by sending specially crafted messages to a v…
CVE-2024-29196 LOW Patched 3.8 2024-03-26 phpMyFAQ is an open source FAQ web application for PHP 8.1+ and MySQL, PostgreSQL and other databases. There is a Path Traversal vulnerability in Attachments that allows at…
CVE-2024-1742 LOW Patched 3.8 2024-03-22 Invocation of the sqlplus command with sensitive information in the command line in the mk_oracle Checkmk agent plugin before Checkmk 2.3.0b4 (beta), 2.2.0p24, 2.1.0p41 and…
CVE-2024-0173 LOW Patched 3.8 2024-03-13 Dell PowerEdge Server BIOS and Dell Precision Rack BIOS contain an improper parameter initialization vulnerability. A local low privileged attacker could potentially exploi…
CVE-2024-0154 LOW Patched 3.8 2024-03-13 Dell PowerEdge Server BIOS and Dell Precision Rack BIOS contain an improper parameter initialization vulnerability. A local low privileged attacker could potentially exploi…
CVE-2024-2317 LOW Patched 3.8 2024-03-08 A vulnerability was found in Bdtask Hospital AutoManager up to 20240227 and classified as problematic. This issue affects some unknown processing of the file /prescription/…
CVE-2023-52584 LOW Patched 3.8 2024-03-06 In the Linux kernel, the following vulnerability has been resolved: spmi: mediatek: Fix UAF on device remove The pmif driver data that contains the clocks is allocated al…
CVE-2023-42419 LOW Patched 3.8 2024-03-05 Maintenance Server, in Cybellum's QCOW air-gapped distribution (China Edition), versions 2.15.5 through 2.27, was compiled with a hard-coded private cryptographic key. An…
CVE-2024-25351 LOW 3.8 2024-02-28 SQL Injection vulnerability in /zms/admin/changeimage.php in PHPGurukul Zoo Management System 1.0 allows attackers to run arbitrary SQL commands via the editid parameter.
CVE-2024-23603 LOW Patched 3.8 2024-02-14 An SQL injection vulnerability exists in an undisclosed page of the BIG-IP Configuration utility. Note: Software versions which have reached End of Technical Support …
CVE-2023-42776 LOW Patched 3.8 2024-02-14 Improper input validation in some Intel(R) SGX DCAP software for Windows before version 1.19.100.3 may allow an authenticateed user to potentially enable information disclo…
CVE-2023-27303 LOW Patched 3.8 2024-02-14 Improper access control in some Intel(R) Thunderbolt(TM) DCH drivers for Windows before version 88 may allow an authenticated user to potentially enable information disclos…
CVE-2023-27307 LOW Patched 3.8 2024-02-14 Improper buffer restrictions in some Intel(R) Thunderbolt(TM) DCH drivers for Windows before version 88 may allow an authenticated user to potentially enable information di…
CVE-2023-26592 LOW Patched 3.8 2024-02-14 Deserialization of untrusted data in some Intel(R) Thunderbolt(TM) DCH drivers for Windows before version 88 may allow an authenticated user to potentially enable a denial …
CVE-2023-27300 LOW Patched 3.8 2024-02-14 Improper buffer restrictions in some Intel(R) Thunderbolt(TM) DCH drivers for Windows before version 88 may allow an authenticated user to potentially enable information di…
CVE-2024-0628 LOW Patched 3.8 2024-02-07 The WP RSS Aggregator plugin for WordPress is vulnerable to Server-Side Request Forgery in all versions up to, and including, 4.23.5 via the RSS feed source in admin settin…
CVE-2023-45036 LOW 3.8 2024-02-02 A buffer copy without checking size of input vulnerability has been reported to affect several QNAP operating system versions. If exploited, the vulnerability could allow a…
CVE-2023-45037 LOW 3.8 2024-02-02 A buffer copy without checking size of input vulnerability has been reported to affect several QNAP operating system versions. If exploited, the vulnerability could allow a…
CVE-2023-45035 LOW 3.8 2024-02-02 A buffer copy without checking size of input vulnerability has been reported to affect several QNAP operating system versions. If exploited, the vulnerability could allow a…
CVE-2023-41292 LOW 3.8 2024-02-02 A buffer copy without checking size of input vulnerability has been reported to affect several QNAP operating system versions. If exploited, the vulnerability could allow a…