Skip to main content
Advanced Search
Search Terms
Content Type

Exact Matches
Tag Searches
Date Options
Updated after
Updated before
Created after
Created before

Search Results

491 total results found

Directory Traversal Vulnerability in SolarWinds Serv-U

Security update addresses a vulnerability that could lead to unauthorised access of confidential files

Year
2024
Severity
Medium
Threat type
Insecure software

Critical Vulnerability in PHP

New versions of PHP address a critical vulnerability that could lead to arbitrary PHP code execution

Year
2024
Severity
Medium
Threat type
Insecure software

Critical Security Update Released for IntelliJ-based IDEs and JetBrains GitHub Plugin

Exploitation of the vulnerability could lead to the disclosure of access tokens to third-party sites

Year
2024
Severity
Medium
Threat type
Insecure software

Arm Releases Security Advisory for Exploited Mali GPU Driver Vulnerability

Exploitation could allow a local attacker to gain access to freed memory

Year
2024
Severity
Medium
Threat type
Insecure software

Microsoft Releases June 2024 Security Updates

Scheduled updates for Microsoft products, including security updates for 50 vulnerabilities

Year
2024
Severity
Medium
Threat type
Insecure software

MicroDicom Releases DICOM Viewer Software Update

One vulnerability could allow an attacker retrieve and plant medical image files and another could lead to arbitrary code execution

Year
2024
Severity
Medium
Threat type
Insecure software

Broadcom Releases Critical Security Updates for VMware vCenter Server and Cloud Foundation

Advisory addresses three vulnerabilities that could result in privilege escalation or remote code execution

Year
2024
Severity
Medium
Threat type
Insecure software

Juniper Networks Releases Security Update for Juniper Secure Analytics

The update addresses 225 vulnerabilities in Juniper Secure Analytics, including five rated critical

Year
2024
Severity
Medium
Threat type
Insecure software

Avaya Releases Critical Security Update for IP Office

Two critical vulnerabilities could lead to remote code execution

Year
2024
Severity
Medium
Threat type
Insecure software

Progress Software Releases Critical Security Updates for MOVEit Transfer and MOVEit Gateway

Two improper authentication vulnerabilities can lead to authentication bypass

Year
2024
Severity
Medium
Threat type
Insecure software

Critical Vulnerability in Fortra FileCatalyst Workflow

The security update addresses a critical SQL injection vulnerability that could allow an attacker to modify data and create administrative users

Year
2024
Severity
Medium
Threat type
Insecure software

Juniper Networks Releases Out-of-Cycle Security Bulletin for Session Smart Router (SSR)

Authentication bypass vulnerability CVE-2024-2973 affects Session Smart Router, Conductor, and WAN Assurance Router

Year
2024
Severity
Medium
Threat type
Insecure software

Cisco Releases Advisory for Exploited Vulnerability in NX-OS software

CLI in NX-OS software contains a command injection vulnerability CVE-2024-20399 that is being exploited in the wild

Year
2024
Severity
Medium
Threat type
Insecure software

Apache Releases Multiple Security Updates for HTTP Server

Nine vulnerabilities have been patched, including two that could allow information disclosure and three that could lead to remote code execution

Year
2024
Severity
Medium
Threat type
Insecure software

Citrix Releases Security Critical Updates for NetScaler Console, NetScaler Agent, and NetScaler SVM

Two vulnerabilities could lead to sensitive information disclosure or DoSĀ 

Year
2024
Severity
Medium
Threat type
Insecure software

Fortinet Releases Security Update for FortiOS and FortiProxy XSS Vulnerability

CVE-2024-26006 is a cross-site scripting vulnerability in SSL-VPN web UI

Year
2024
Severity
Medium
Threat type
Insecure software

Microsoft Releases July 2024 Security Updates

Scheduled updates for Microsoft products fix 139 vulnerabilities, including two zero-day vulnerabilities

Year
2024
Severity
Medium
Threat type
Insecure software

Exploited Unauthenticated RCE Vulnerability CVE-2023-6548 in Citrix NetScaler ADC and NetScaler Gateway

New intelligence shows that exploitation of this RCE vulnerability does not require authentication

Year
2024
Severity
High
Threat type
Insecure software

Ivanti Releases Security Update for Vulnerability Affecting Endpoint Manager

A high severity vulnerability could allow an attacker to execute arbitary code via SQL Injection on an affected system

Year
2024
Severity
Medium
Threat type
Insecure software

Cisco Releases Security Advisories for Multiple Products

Cisco SSM On-Prem and Cisco Secure Email Gateway are affected by critical vulnerabilities

Year
2024
Severity
Medium
Threat type
Insecure software