CVE-2021-44709 | HIGH | 7.8 | 0.29951 | 41.68 | No | No | 2022-01-14 | 2024-09-16 | euvd | Acrobat Reader DC version 21.007.20099 (and earlier), 20.004.30017 (and earlier) and 17.011.30204 (and earlier) are affected by a heap overf…Acrobat Reader DC version 21.007.20099 (and earlier), 20.004.30017 (and earlier) and 17.011.30204 (and earlier) are affected by a heap overflow vulnerability due to insecure handling of a crafted file, potentially resulting in arbitrary code execution in the context of the current user. Exploitation of this issue requires user interaction in that a victim must open a malicious file. |
CVE-2024-34219 | HIGH | 8.6 | 0.2076 | 41.67 | No | No | 2024-05-09 | 2025-02-13 | euvd | TOTOLINK CP450 V4.1.0cu.747_B20191224 was discovered to contain a vulnerability in the SetTelnetCfg function, which allows attackers to log …TOTOLINK CP450 V4.1.0cu.747_B20191224 was discovered to contain a vulnerability in the SetTelnetCfg function, which allows attackers to log in through telnet. |
CVE-2015-6490 | CRITICAL | 9.8 | 0.07022 | 41.66 | No | No | 2015-10-28 | 2026-06-03 | euvd | Stack-based buffer overflow on Allen-Bradley MicroLogix 1100 devices before B FRN 15.000 and 1400 devices through B FRN 15.003 allows remote…Stack-based buffer overflow on Allen-Bradley MicroLogix 1100 devices before B FRN 15.000 and 1400 devices through B FRN 15.003 allows remote attackers to execute arbitrary code via unspecified vectors. |
CVE-2026-6516 | CRITICAL | 10.0 | 0.04729 | 41.66 | No | No | 2026-07-23 | 2026-07-24 | euvd, nvd | Zohocorp ManageEngine ADAudit Plus versions before 8606 are affected by Unauthenticated Remote code execution due to the vulnerable agent AP…Zohocorp ManageEngine ADAudit Plus versions before 8606 are affected by Unauthenticated Remote code execution due to the vulnerable agent API. |
CVE-2020-26829 | CRITICAL | 10.0 | 0.04708 | 41.65 | No | No | 2020-12-09 | 2024-08-04 | euvd | SAP NetWeaver AS JAVA (P2P Cluster Communication), versions - 7.11, 7.20, 7.30, 7.31, 7.40, 7.50, allows arbitrary connections from processe…SAP NetWeaver AS JAVA (P2P Cluster Communication), versions - 7.11, 7.20, 7.30, 7.31, 7.40, 7.50, allows arbitrary connections from processes because of missing authentication check, that are outside the cluster and even outside the network segment dedicated for the internal cluster communication. As result, an unauthenticated attacker can invoke certain functions that would otherwise be restricted to system administrators only, including access to system administration functions or shutting down the system completely. |
CVE-2026-33497 | HIGH | 8.7 | 0.19584 | 41.65 | No | No | 2026-03-24 | 2026-03-24 | euvd | Langflow is a tool for building and deploying AI-powered agents and workflows. Prior to version 1.7.1, in the download_profile_picture funct…Langflow is a tool for building and deploying AI-powered agents and workflows. Prior to version 1.7.1, in the download_profile_picture function of the /profile_pictures/{folder_name}/{file_name} endpoint, the folder_name and file_name parameters are not strictly filtered, which allows the secret_key to be read across directories. Version 1.7.1 contains a patch. |
CVE-2021-4073 | CRITICAL | 9.8 | 0.07 | 41.65 | No | No | 2021-12-14 | 2025-02-14 | euvd | The RegistrationMagic WordPress plugin made it possible for unauthenticated users to log in as any site user, including administrators, if t…The RegistrationMagic WordPress plugin made it possible for unauthenticated users to log in as any site user, including administrators, if they knew a valid username on the site due to missing identity validation in the social login function social_login_using_email() of the plugin. This affects versions equal to, and less than, 5.0.1.7. |
CVE-2025-63207 | CRITICAL | 9.8 | 0.0697 | 41.64 | No | No | 2025-11-19 | 2025-11-20 | euvd | The R.V.R Elettronica TEX product (firmware TEXL-000400, Web GUI TLAN-000400) is vulnerable to broken access control due to improper authent…The R.V.R Elettronica TEX product (firmware TEXL-000400, Web GUI TLAN-000400) is vulnerable to broken access control due to improper authentication checks on the /_Passwd.html endpoint. An attacker can send an unauthenticated POST request to change the Admin, Operator, and User passwords, resulting in complete system compromise. |
CVE-2025-55190 | CRITICAL | 10.0 | 0.04683 | 41.64 | No | Yes | 2025-09-04 | 2025-09-05 | euvd, packetstorm | Argo CD is a declarative, GitOps continuous delivery tool for Kubernetes. In versions 2.13.0 through 2.13.8, 2.14.0 through 2.14.15, 3.0.0 t…Argo CD is a declarative, GitOps continuous delivery tool for Kubernetes. In versions 2.13.0 through 2.13.8, 2.14.0 through 2.14.15, 3.0.0 through 3.0.12 and 3.1.0-rc1 through 3.1.1, API tokens with project-level permissions are able to retrieve sensitive repository credentials (usernames, passwords) through the project details API endpoint, even when the token only has standard application management permissions and no explicit access to secrets. This vulnerability does not only affect project-level permissions. Any token with project get permissions is also vulnerable, including global permissions such as: `p, role/user, projects, get, *, allow`. This issue is fixed in versions 2.13.9, 2.14.16, 3.0.14 and 3.1.2. |
CVE-2019-4087 | CRITICAL | 9.8 | 0.06959 | 41.64 | No | No | 2019-07-02 | 2024-09-16 | euvd | IBM Spectrum Protect Servers 7.1 and 8.1 and Storage Agents are vulnerable to a stack-based buffer overflow, caused by improper bounds check…IBM Spectrum Protect Servers 7.1 and 8.1 and Storage Agents are vulnerable to a stack-based buffer overflow, caused by improper bounds checking by servers and storage agents in response to specifically crafted communication exchanges. By sending an overly long request, a remote attacker could overflow a buffer and execute arbitrary code on the system with instance id privileges or cause the server or storage agent to crash. IBM X-Force ID: 157510. |
CVE-2023-48792 | CRITICAL | 9.8 | 0.06951 | 41.63 | No | No | 2024-02-02 | 2025-06-11 | euvd | Zoho ManageEngine ADAudit Plus through 7250 is vulnerable to SQL Injection in the report export option.Zoho ManageEngine ADAudit Plus through 7250 is vulnerable to SQL Injection in the report export option. |
CVE-2020-3280 | CRITICAL | 9.8 | 0.06945 | 41.63 | No | No | 2020-05-22 | 2024-11-15 | euvd | A vulnerability in the Java Remote Management Interface of Cisco Unified Contact Center Express (Unified CCX) could allow an unauthenticated…A vulnerability in the Java Remote Management Interface of Cisco Unified Contact Center Express (Unified CCX) could allow an unauthenticated, remote attacker to execute arbitrary code on an affected device. The vulnerability is due to insecure deserialization of user-supplied content by the affected software. An attacker could exploit this vulnerability by sending a malicious serialized Java object to a specific listener on an affected system. A successful exploit could allow the attacker to execute arbitrary code as the root user on an affected device. |
CVE-2023-48793 | CRITICAL | 9.8 | 0.06951 | 41.63 | No | No | 2024-02-02 | 2025-06-11 | euvd | Zoho ManageEngine ADAudit Plus through 7250 allows SQL Injection in the aggregate report feature.Zoho ManageEngine ADAudit Plus through 7250 allows SQL Injection in the aggregate report feature. |
CVE-2025-13390 | CRITICAL | 10.0 | 0.04661 | 41.63 | No | No | 2025-12-03 | 2025-12-08 | euvd | The WP Directory Kit plugin for WordPress is vulnerable to authentication bypass in all versions up to, and including, 1.4.4 due to incorrec…The WP Directory Kit plugin for WordPress is vulnerable to authentication bypass in all versions up to, and including, 1.4.4 due to incorrect implementation of the authentication algorithm in the "wdk_generate_auto_login_link" function. This is due to the feature using a cryptographically weak token generation mechanism. This makes it possible for unauthenticated attackers to gain administrative access and achieve full site takeover via the auto-login endpoint with a predictable token. |
CVE-2020-36705 | CRITICAL | 9.8 | 0.06944 | 41.63 | No | No | 2023-06-07 | 2026-04-08 | euvd | The Adning Advertising plugin for WordPress is vulnerable to arbitrary file uploads due to missing file type validation in the _ning_upload_…The Adning Advertising plugin for WordPress is vulnerable to arbitrary file uploads due to missing file type validation in the _ning_upload_image function in versions up to, and including, 1.5.5. This makes it possible for unauthenticated attackers to upload arbitrary files on the affected sites server which may make remote code execution possible. |
CVE-2025-3605 | CRITICAL | 9.8 | 0.06937 | 41.63 | No | No | 2025-05-09 | 2026-04-08 | euvd | The Frontend Login and Registration Blocks plugin for WordPress is vulnerable to privilege escalation via account takeover in all versions u…The Frontend Login and Registration Blocks plugin for WordPress is vulnerable to privilege escalation via account takeover in all versions up to, and including, 1.1.1. This is due to the plugin not properly validating a user's identity prior to updating their details like email via the flr_blocks_user_settings_handle_ajax_callback() function. This makes it possible for unauthenticated attackers to change arbitrary user's email addresses, including administrators, and leverage that to reset the user's password and gain access to their account. |
CVE-2021-40113 | CRITICAL | 10.0 | 0.04631 | 41.62 | No | No | 2021-11-04 | 2024-11-07 | euvd | Multiple vulnerabilities in the web-based management interface of the Cisco Catalyst Passive Optical Network (PON) Series Switches Optical N…Multiple vulnerabilities in the web-based management interface of the Cisco Catalyst Passive Optical Network (PON) Series Switches Optical Network Terminal (ONT) could allow an unauthenticated, remote attacker to perform the following actions: Log in with a default credential if the Telnet protocol is enabled Perform command injection Modify the configuration For more information about these vulnerabilities, see the Details section of this advisory. |
CVE-2024-43160 | CRITICAL | 10.0 | 0.04624 | 41.62 | No | No | 2024-08-13 | 2026-04-28 | euvd | Unrestricted Upload of File with Dangerous Type vulnerability in BerqWP allows Code Injection.This issue affects BerqWP: from n/a through 1.…Unrestricted Upload of File with Dangerous Type vulnerability in BerqWP allows Code Injection.This issue affects BerqWP: from n/a through 1.7.6. |
CVE-2020-26282 | CRITICAL | 10.0 | 0.04629 | 41.62 | No | No | 2020-12-24 | 2024-08-04 | euvd | BrowserUp Proxy allows you to manipulate HTTP requests and responses, capture HTTP content, and export performance data as a HAR file. Brows…BrowserUp Proxy allows you to manipulate HTTP requests and responses, capture HTTP content, and export performance data as a HAR file. BrowserUp Proxy works well as a standalone proxy server, but it is especially useful when embedded in Selenium tests. A Server-Side Template Injection was identified in BrowserUp Proxy enabling attackers to inject arbitrary Java EL expressions, leading to unauthenticated Remote Code Execution (RCE) vulnerability. This has been patched in version 2.1.2. |
CVE-2025-45985 | CRITICAL | 9.8 | 0.0692 | 41.62 | No | No | 2025-06-13 | 2025-06-13 | euvd | Blink routers BL-WR9000 V2.4.9 , BL-AC2100_AZ3 V1.0.4, BL-X10_AC8 v1.0.5 , BL-LTE300 v1.2.3, BL-F1200_AT1 v1.0.0, BL-X26_AC8 v1.2.8, BLAC450…Blink routers BL-WR9000 V2.4.9 , BL-AC2100_AZ3 V1.0.4, BL-X10_AC8 v1.0.5 , BL-LTE300 v1.2.3, BL-F1200_AT1 v1.0.0, BL-X26_AC8 v1.2.8, BLAC450M_AE4 v4.0.0 and BL-X26_DA3 v1.2.7 were discovered to contain a command injection vulnerability via the bs_SetSSIDHide function. |
CVE-2025-1025 | HIGH | 8.7 | 0.19493 | 41.62 | No | No | 2025-02-05 | 2026-08-03 | euvd | Versions of the package cockpit-hq/cockpit before 2.4.1 are vulnerable to Arbitrary File Upload where an attacker can use different extensio…Versions of the package cockpit-hq/cockpit before 2.4.1 are vulnerable to Arbitrary File Upload where an attacker can use different extension to bypass the upload filter. |
CVE-2025-49712 | HIGH | 8.8 | 0.1831 | 41.61 | No | No | 2025-08-12 | 2026-02-13 | euvd | Deserialization of untrusted data in Microsoft Office SharePoint allows an authorized attacker to execute code over a network.Deserialization of untrusted data in Microsoft Office SharePoint allows an authorized attacker to execute code over a network. |
CVE-2024-27115 | CRITICAL | 10.0 | 0.0459 | 41.61 | No | No | 2024-09-11 | 2025-03-11 | euvd | A unauthenticated Remote Code Execution (RCE) vulnerability is found in the SO Planning online planning tool. With this vulnerability, an at…A unauthenticated Remote Code Execution (RCE) vulnerability is found in the SO Planning online planning tool. With this vulnerability, an attacker can upload executable files that are moved to a publicly accessible folder before verifying any requirements. This leads to the possibility of execution of code on the underlying system when the file is triggered. The vulnerability has been remediated in version 1.52.02. |
CVE-2022-20702 | CRITICAL | 10.0 | 0.04598 | 41.61 | No | No | 2022-02-10 | 2024-11-06 | euvd | Multiple vulnerabilities in Cisco Small Business RV160, RV260, RV340, and RV345 Series Routers could allow an attacker to do any of the foll…Multiple vulnerabilities in Cisco Small Business RV160, RV260, RV340, and RV345 Series Routers could allow an attacker to do any of the following: Execute arbitrary code Elevate privileges Execute arbitrary commands Bypass authentication and authorization protections Fetch and run unsigned software Cause denial of service (DoS) For more information about these vulnerabilities, see the Details section of this advisory. |
CVE-2023-3452 | CRITICAL | 9.8 | 0.06899 | 41.61 | No | No | 2023-08-12 | 2026-04-08 | euvd | The Canto plugin for WordPress is vulnerable to Remote File Inclusion in versions up to, and including, 3.0.4 via the 'wp_abspath' parameter…The Canto plugin for WordPress is vulnerable to Remote File Inclusion in versions up to, and including, 3.0.4 via the 'wp_abspath' parameter. This allows unauthenticated attackers to include and execute arbitrary remote code on the server, provided that allow_url_include is enabled. Local File Inclusion is also possible, albeit less useful because it requires that the attacker be able to upload a malicious php file via FTP or some other means into a directory readable by the web server. |
CVE-2024-3566 | CRITICAL | 9.8 | 0.06883 | 41.61 | No | No | 2024-04-10 | 2025-11-18 | euvd | A command inject vulnerability allows an attacker to perform command injection on Windows applications that indirectly depend on the CreateP…A command inject vulnerability allows an attacker to perform command injection on Windows applications that indirectly depend on the CreateProcess function when the specific conditions are satisfied. |
CVE-2023-5204 | CRITICAL | 9.8 | 0.06888 | 41.61 | No | No | 2023-10-19 | 2026-04-08 | euvd | The ChatBot plugin for WordPress is vulnerable to SQL Injection via the $strid parameter in versions up to, and including, 4.8.9 due to insu…The ChatBot plugin for WordPress is vulnerable to SQL Injection via the $strid parameter in versions up to, and including, 4.8.9 due to insufficient escaping on the user supplied parameter and lack of sufficient preparation on the existing SQL query. This makes it possible for unauthenticated attackers to append additional SQL queries into already existing queries that can be used to extract sensitive information from the database. |
CVE-2022-29472 | CRITICAL | 10.0 | 0.04579 | 41.6 | No | No | 2022-10-25 | 2025-04-15 | euvd | An OS command injection vulnerability exists in the web interface util_set_serial_mac functionality of Abode Systems, Inc. iota All-In-One S…An OS command injection vulnerability exists in the web interface util_set_serial_mac functionality of Abode Systems, Inc. iota All-In-One Security Kit 6.9X and 6.9Z. A specially-crafted HTTP request can lead to arbitrary command execution. An attacker can send an HTTP request to trigger this vulnerability. |
CVE-2024-32937 | HIGH | 8.1 | 0.26288 | 41.6 | No | No | 2024-07-03 | 2025-11-04 | euvd | An os command injection vulnerability exists in the CWMP SelfDefinedTimeZone functionality of Grandstream GXP2135 1.0.9.129, 1.0.11.74 and 1…An os command injection vulnerability exists in the CWMP SelfDefinedTimeZone functionality of Grandstream GXP2135 1.0.9.129, 1.0.11.74 and 1.0.11.79. A specially crafted network packet can lead to arbitrary command execution. An attacker can send a sequence of malicious packets to trigger this vulnerability. |
CVE-2022-32207 | CRITICAL | 9.8 | 0.06869 | 41.6 | No | No | 2022-07-07 | 2025-04-23 | euvd | When curl < 7.84.0 saves cookies, alt-svc and hsts data to local files, it makes the operation atomic by finalizing the operation with a ren…When curl < 7.84.0 saves cookies, alt-svc and hsts data to local files, it makes the operation atomic by finalizing the operation with a rename from a temporary name to the final target file name.In that rename operation, it might accidentally *widen* the permissions for the target file, leaving the updated file accessible to more users than intended. |
CVE-2024-2625 | HIGH | 8.8 | 0.18277 | 41.6 | No | No | 2024-03-20 | 2025-03-13 | euvd | Object lifecycle issue in V8 in Google Chrome prior to 123.0.6312.58 allowed a remote attacker to potentially exploit object corruption via …Object lifecycle issue in V8 in Google Chrome prior to 123.0.6312.58 allowed a remote attacker to potentially exploit object corruption via a crafted HTML page. (Chromium security severity: High) |
CVE-2020-15049 | CRITICAL | 9.9 | 0.05706 | 41.6 | No | No | 2020-06-30 | 2024-08-04 | euvd | An issue was discovered in http/ContentLengthInterpreter.cc in Squid before 4.12 and 5.x before 5.0.3. A Request Smuggling and Poisoning att…An issue was discovered in http/ContentLengthInterpreter.cc in Squid before 4.12 and 5.x before 5.0.3. A Request Smuggling and Poisoning attack can succeed against the HTTP cache. The client sends an HTTP request with a Content-Length header containing "+\ "-" or an uncommon shell whitespace character prefix to the length field-value. |
CVE-2021-30120 | CRITICAL | 9.9 | 0.05701 | 41.6 | No | No | 2021-07-09 | 2024-08-03 | euvd | Kaseya VSA before 9.5.7 allows attackers to bypass the 2FA requirement. The need to use 2FA for authentication in enforce client-side instea…Kaseya VSA before 9.5.7 allows attackers to bypass the 2FA requirement. The need to use 2FA for authentication in enforce client-side instead of server-side and can be bypassed using a local proxy. Thus rendering 2FA useless. Detailed description --- During the login process, after the user authenticates with username and password, the server sends a response to the client with the booleans MFARequired and MFAEnroled. If the attacker has obtained a password of a user and used an intercepting proxy (e.g. Burp Suite) to change the value of MFARequered from True to False, there is no prompt for the second factor, but the user is still logged in. |
CVE-2016-9051 | CRITICAL | 9.8 | 0.06862 | 41.6 | No | No | 2017-02-21 | 2024-08-06 | euvd | An exploitable out-of-bounds write vulnerability exists in the batch transaction field parsing functionality of Aerospike Database Server 3.…An exploitable out-of-bounds write vulnerability exists in the batch transaction field parsing functionality of Aerospike Database Server 3.10.0.3. A specially crafted packet can cause an out-of-bounds write resulting in memory corruption which can lead to remote code execution. An attacker can simply connect to the port to trigger this vulnerability. |
CVE-2022-32845 | CRITICAL | 10.0 | 0.0456 | 41.6 | No | No | 2022-09-23 | 2025-05-22 | euvd | This issue was addressed with improved checks. This issue is fixed in watchOS 8.7, iOS 15.6 and iPadOS 15.6, macOS Monterey 12.5. An app may…This issue was addressed with improved checks. This issue is fixed in watchOS 8.7, iOS 15.6 and iPadOS 15.6, macOS Monterey 12.5. An app may be able to break out of its sandbox. |
CVE-2022-39323 | HIGH | 7.4 | 0.34251 | 41.59 | No | No | 2022-11-03 | 2025-04-23 | euvd | GLPI stands for Gestionnaire Libre de Parc Informatique. GLPI is a Free Asset and IT Management Software package that provides ITIL Service …GLPI stands for Gestionnaire Libre de Parc Informatique. GLPI is a Free Asset and IT Management Software package that provides ITIL Service Desk features, licenses tracking and software auditing. Time based attack using a SQL injection in api REST user_token. This issue has been patched, please upgrade to version 10.0.4. As a workaround, disable login with user_token on API Rest. |
CVE-2020-17407 | CRITICAL | 9.8 | 0.06812 | 41.58 | No | No | 2020-10-13 | 2024-08-04 | euvd | This vulnerability allows remote attackers to execute arbitrary code on affected installations of Microhard Bullet-LTE prior to v1.2.0-r1112…This vulnerability allows remote attackers to execute arbitrary code on affected installations of Microhard Bullet-LTE prior to v1.2.0-r1112. Authentication is not required to exploit this vulnerability. The specific flaw exists within the handling of authentication headers. The issue results from the lack of proper validation of the length of user-supplied data prior to copying it to a fixed-length stack-based buffer. An attacker can leverage this vulnerability to execute code in the context of root. Was ZDI-CAN-10596. |
CVE-2023-37266 | CRITICAL | 9.8 | 0.06789 | 41.58 | No | No | 2023-07-17 | 2024-12-12 | euvd | CasaOS is an open-source Personal Cloud system. Unauthenticated attackers can craft arbitrary JWTs and access features that usually require …CasaOS is an open-source Personal Cloud system. Unauthenticated attackers can craft arbitrary JWTs and access features that usually require authentication and execute arbitrary commands as `root` on CasaOS instances. This problem was addressed by improving the validation of JWTs in commit `705bf1f`. This patch is part of CasaOS 0.4.4. Users should upgrade to CasaOS 0.4.4. If they can't, they should temporarily restrict access to CasaOS to untrusted users, for instance by not exposing it publicly. |
CVE-2024-39911 | CRITICAL | 10.0 | 0.04528 | 41.58 | No | No | 2024-07-18 | 2025-02-13 | euvd | 1Panel is a web-based linux server management control panel. 1Panel contains an unspecified sql injection via User-Agent handling. This issu…1Panel is a web-based linux server management control panel. 1Panel contains an unspecified sql injection via User-Agent handling. This issue has been addressed in version 1.10.12-lts. Users are advised to upgrade. There are no known workarounds for this vulnerability. |
CVE-2023-2437 | CRITICAL | 9.8 | 0.06801 | 41.58 | No | No | 2023-11-22 | 2026-04-08 | euvd | The UserPro plugin for WordPress is vulnerable to authentication bypass in versions up to, and including, 5.1.1. This is due to insufficient…The UserPro plugin for WordPress is vulnerable to authentication bypass in versions up to, and including, 5.1.1. This is due to insufficient verification on the user being supplied during a Facebook login through the plugin. This makes it possible for unauthenticated attackers to log in as any existing user on the site, such as an administrator, if they have access to the email. An attacker can leverage CVE-2023-2448 and CVE-2023-2446 to get the user's email address to successfully exploit this vulnerability. |
CVE-2023-35180 | HIGH | 8.0 | 0.27367 | 41.58 | No | No | 2023-10-19 | 2024-09-12 | euvd | The SolarWinds Access Rights Manager was susceptible to Remote Code Execution Vulnerability. This vulnerability allows authenticated users t…The SolarWinds Access Rights Manager was susceptible to Remote Code Execution Vulnerability. This vulnerability allows authenticated users to abuse SolarWinds ARM API. |
CVE-2023-46224 | CRITICAL | 9.8 | 0.06782 | 41.57 | No | No | 2023-12-19 | 2024-09-16 | euvd | An attacker sending specially crafted data packets to the Mobile Device Server can cause memory corruption which could result to a Denial of…An attacker sending specially crafted data packets to the Mobile Device Server can cause memory corruption which could result to a Denial of Service (DoS) or code execution. |
CVE-2019-12624 | HIGH | 8.8 | 0.18186 | 41.57 | No | No | 2019-08-21 | 2024-11-20 | euvd | A vulnerability in the web-based management interface of Cisco IOS XE New Generation Wireless Controller (NGWC) could allow an unauthenticat…A vulnerability in the web-based management interface of Cisco IOS XE New Generation Wireless Controller (NGWC) could allow an unauthenticated, remote attacker to conduct a cross-site request forgery (CSRF) attack and perform arbitrary actions on an affected device. The vulnerability is due to insufficient CSRF protections for the web-based management interface of the affected software. An attacker could exploit this vulnerability by persuading a user of the interface to follow a crafted link. A successful exploit could allow the attacker to perform arbitrary actions on an affected device by using a web browser and with the privileges of the user. |
CVE-2021-26894 | CRITICAL | 9.8 | 0.06769 | 41.57 | No | No | 2021-03-11 | 2024-08-03 | euvd | Windows DNS Server Remote Code Execution VulnerabilityWindows DNS Server Remote Code Execution Vulnerability |
CVE-2021-26895 | CRITICAL | 9.8 | 0.06769 | 41.57 | No | No | 2021-03-11 | 2024-08-03 | euvd | Windows DNS Server Remote Code Execution VulnerabilityWindows DNS Server Remote Code Execution Vulnerability |
CVE-2023-46222 | CRITICAL | 9.8 | 0.06782 | 41.57 | No | No | 2023-12-19 | 2024-08-02 | euvd | An attacker sending specially crafted data packets to the Mobile Device Server can cause memory corruption which could result to a Denial of…An attacker sending specially crafted data packets to the Mobile Device Server can cause memory corruption which could result to a Denial of Service (DoS) or code execution. |
CVE-2023-46258 | CRITICAL | 9.8 | 0.06782 | 41.57 | No | No | 2023-12-19 | 2024-08-02 | euvd | An attacker sending specially crafted data packets to the Mobile Device Server can cause memory corruption which could result to a Denial of…An attacker sending specially crafted data packets to the Mobile Device Server can cause memory corruption which could result to a Denial of Service (DoS) or code execution. |
CVE-2023-46223 | CRITICAL | 9.8 | 0.06782 | 41.57 | No | No | 2023-12-19 | 2024-08-02 | euvd | An attacker sending specially crafted data packets to the Mobile Device Server can cause memory corruption which could result to a Denial of…An attacker sending specially crafted data packets to the Mobile Device Server can cause memory corruption which could result to a Denial of Service (DoS) or code execution. |
CVE-2023-50252 | HIGH | 8.3 | 0.23903 | 41.57 | No | No | 2023-12-12 | 2024-08-02 | euvd | php-svg-lib is an SVG file parsing / rendering library. Prior to version 0.5.1, when handling `<use>` tag that references an `<image>` tag, …php-svg-lib is an SVG file parsing / rendering library. Prior to version 0.5.1, when handling `<use>` tag that references an `<image>` tag, it merges the attributes from the `<use>` tag to the `<image>` tag. The problem pops up especially when the `href` attribute from the `<use>` tag has not been sanitized. This can lead to an unsafe file read that can cause PHAR Deserialization vulnerability in PHP prior to version 8. Version 0.5.1 contains a patch for this issue. |
CVE-2023-46221 | CRITICAL | 9.8 | 0.06782 | 41.57 | No | No | 2023-12-19 | 2024-08-02 | euvd | An attacker sending specially crafted data packets to the Mobile Device Server can cause memory corruption which could result to a Denial of…An attacker sending specially crafted data packets to the Mobile Device Server can cause memory corruption which could result to a Denial of Service (DoS) or code execution. |