Export limit exceeded: 372353 CVEs match your query. Please refine your search to export 10,000 CVEs or fewer.

Export limit exceeded: 372353 CVEs match your query. Please refine your search to export 10,000 CVEs or fewer.

Search

Search Results (372353 CVEs found)

CVE Vendors Products Updated CVSS v3.1
CVE-2024-55088 1 Getsimple-ce 1 Getsimple Cms 2025-04-17 8.8 High
GetSimple CMS CE 3.3.19 is vulnerable to Server-Side Request Forgery (SSRF) in the backend plugin module.
CVE-2024-55505 1 Codeastro 1 Complaint Management System 2025-04-17 8.8 High
An issue in CodeAstro Complaint Management System v.1.0 allows a remote attacker to escalate privileges via the mess-view.php component.
CVE-2024-10706 1 W3eden 1 Download Manager 2025-04-17 4.8 Medium
The Download Manager WordPress plugin before 3.3.03 does not sanitise and escape some of its settings, which could allow high privilege users such as admin to perform Stored Cross-Site Scripting attacks even when the unfiltered_html capability is disallowed (for example in multisite setup).
CVE-2024-56087 1 Logpoint 1 Siem 2025-04-17 5.9 Medium
An issue was discovered in Logpoint before 7.5.0. Authenticated users can inject payloads while querying Search Template Dashboard. These are executed, leading to Server-Side Template Injection.
CVE-2024-56086 1 Logpoint 1 Siem 2025-04-17 7.1 High
An issue was discovered in Logpoint before 7.5.0. Authenticated users can inject payloads in Report Templates. These are executed when the backup process is initiated, leading to Remote Code Execution.
CVE-2024-56085 1 Logpoint 1 Siem 2025-04-17 5.9 Medium
An issue was discovered in Logpoint before 7.5.0. Authenticated users can inject payloads while creating Search Template Dashboard. These are executed, leading to Server-Side Template Injection.
CVE-2024-40583 1 Pentaminds 1 Curovms 2025-04-17 9.1 Critical
Pentaminds CuroVMS v2.0.1 was discovered to contain exposed credentials.
CVE-2024-40582 1 Pentaminds 1 Curovms 2025-04-17 7.5 High
Pentaminds CuroVMS v2.0.1 was discovered to contain exposed sensitive information.
CVE-2024-52676 2 Emiloimagtolis, Online Discussion Forum Project 2 Online Discussion Forum, Online Discussion Forum 2025-04-17 5.4 Medium
Itsourcecode Online Discussion Forum Project v.1.0.0 is vulnerable to Cross Site Scripting (XSS) via /bcc_forum/members/home.php.
CVE-2025-2400 2025-04-16 N/A
This CVE ID has been rejected or withdrawn by its CVE Numbering Authority.
CVE-2024-0692 1 Solarwinds 1 Security Event Manager 2025-04-16 8.8 High
The SolarWinds Security Event Manager was susceptible to Remote Code Execution Vulnerability. This vulnerability allows an unauthenticated user to abuse SolarWinds’ service, resulting in remote code execution.
CVE-2024-2076 1 Codeastro 1 House Rental Management System 2025-04-16 5.3 Medium
A vulnerability was found in CodeAstro House Rental Management System 1.0. It has been rated as problematic. Affected by this issue is some unknown functionality of the file booking.php/owner.php/tenant.php. The manipulation leads to missing authentication. The attack may be launched remotely. The exploit has been disclosed to the public and may be used. The identifier of this vulnerability is VDB-255392.
CVE-2022-46536 1 Tenda 2 F1203, F1203 Firmware 2025-04-16 7.5 High
Tenda F1203 V2.0.1.6 was discovered to contain a buffer overflow via the limitSpeedUp parameter at /goform/SetClientState.
CVE-2022-35751 1 Microsoft 22 Windows 10 1507, Windows 10 1607, Windows 10 1809 and 19 more 2025-04-16 7.8 High
Windows Hyper-V Elevation of Privilege Vulnerability
CVE-2019-11851 1 Sierrawireless 13 Aleos, Es440, Es450 and 10 more 2025-04-16 9.8 Critical
The ACENet service in Sierra Wireless ALEOS before 4.4.9, 4.5.x through 4.9.x before 4.9.5, and 4.10.x through 4.13.x before 4.14.0 allows remote attackers to execute arbitrary code via a buffer overflow.
CVE-2024-46644 1 Enms 1 Enms 2025-04-16 6.5 Medium
eNMS 4.4.0 to 4.7.1 is vulnerable to Directory Traversal via edit_file.
CVE-2024-46645 1 Enms 1 Enms 2025-04-16 7.5 High
eNMS 4.0.0 is vulnerable to Directory Traversal via get_tree_files.
CVE-2024-46646 1 Enms 1 Enms 2025-04-16 6.5 Medium
eNMS up to 4.7.1 is vulnerable to Directory Traversal via /download/file.
CVE-2024-46647 1 Enms 1 Enms 2025-04-16 6.5 Medium
eNMS 4.4.0 to 4.7.1 is vulnerable to Directory Traversal via upload_files.
CVE-2024-46648 1 Enms 1 Enms 2025-04-16 7.5 High
eNMS 4.4.0 to 4.7.1 is vulnerable to Directory Traversal via scan_folder.