Перейти к содержимому
Noroxi

Anonymous

Trend Micro Zero Day Initiative

160 записей с упоминанием · 7 за 12 месяцев · 1 в CISA KEV

Имена — свободный текст из записей CNA; один человек может встречаться в разных написаниях. Напишите нам для исправления.

Записи с упоминанием

Исследователи
  • CVE-2024-27123
    20Наблюдать

    A cross-site scripting (XSS) vulnerability has been reported to affect QcalAgent.

    СредняяCVSS 5,2Эксплойта нетEPSS 0 %

    qnap systems inc. · qcalagent18 сент. 2026 г.

  • CVE-2026-49297
    32Наблюдать

    Apache Airflow Google provider: Path traversal via GCS object names → local/SFTP filesystem (GCSToSFTPOperator + GCSTimeSpanFileTransformOperator)

    ВысокаяCVSS 8,1Эксплойта нетEPSS 1 %

    apache · apache-airflow-providers-google6 июл. 2026 г.

  • CVE-2026-42252
    36Наблюдать

    Apache Airflow: BashOperator Jinja2 injection via dag_run.conf — low-privilege user pattern

    КритическаяCVSS 9,1Эксплойта нетEPSS 1 %

    apache · airflow1 июн. 2026 г.

  • CVE-2026-45361
    32Наблюдать

    Apache Airflow Google provider: SSH host key verification disabled in ComputeEngineSSHHook (paramiko AutoAddPolicy default)

    ВысокаяCVSS 8,1Эксплойта нетEPSS 1 %

    apache · apache-airflow-providers-google25 мая 2026 г.

  • CVE-2025-15024
    35Наблюдать

    RCE in Yordam Informatics' Library Automation System

    ВысокаяCVSS 8,8Эксплойта нетEPSS 0 %

    yordam information technology consulting, training and electronic systems industry and trade inc. · library automation system14 мая 2026 г.

  • CVE-2025-15023
    35Наблюдать

    Improper Access Control in Yordam Informatics' Library Automation System

    ВысокаяCVSS 8,8Эксплойта нетEPSS 0 %

    yordam information technology consulting, training and electronic systems industry and trade inc. · library automation system14 мая 2026 г.

  • CVE-2026-41446
    36Наблюдать

    WattBox 800 & 820 Series < 2.10.0.0 RCE via Diagnostic Endpoints

    КритическаяCVSS 9,2Эксплойта нетEPSS 1 %

    snap one, llc · wattbox 80028 апр. 2026 г.

  • CVE-2025-29887
    28Наблюдать

    A command injection vulnerability has been reported to affect QuRouter 2.5.1.

    ВысокаяCVSS 7,1Эксплойта нетEPSS 1 %

    qnap · qurouter29 авг. 2025 г.

  • CVE-2025-49223
    39Наблюдать

    billboard.js before 3.15.1 was discovered to contain a prototype pollution via the function generate, which could allow attackers to execute

    КритическаяCVSS 9,8Proof of conceptEPSS 1 %

    naver · billboard.js3 июн. 2025 г.

  • CVE-2025-0065
    31Наблюдать

    Improper Neutralization of Argument Delimiters in TeamViewer Clients

    ВысокаяCVSS 7,8Эксплойта нетEPSS 1 %

    teamviewer · remote full client28 янв. 2025 г.

  • CVE-2024-38642
    4Наблюдать

    An improper certificate validation vulnerability has been reported to affect QuMagie.

    НизкаяCVSS 1,0Эксплойта нетEPSS 0 %

    qnap · qumagie6 сент. 2024 г.

  • CVE-2024-21904
    26Наблюдать

    A path traversal vulnerability has been reported to affect several QNAP operating system versions.

    СредняяCVSS 6,5Эксплойта нетEPSS 0 %

    qnap · qts6 сент. 2024 г.

  • CVE-2023-3703
    39Наблюдать

    Proscend Advice ICR Series routers fw version 1.76

    КритическаяCVSS 9,8Эксплойта нетEPSS 1 %

    proscend · m357-5g firmware3 сент. 2023 г.

  • CVE-2023-27350
    99Срочно

    This vulnerability allows remote attackers to bypass authentication on affected installations of PaperCut NG 22.0.5 (Build 63914).

    КритическаяCVSS 9,8KEVГотовый эксплойтEPSS 100 %

    papercut · papercut mf20 апр. 2023 г.

  • CVE-2022-43649
    31Наблюдать

    This vulnerability allows remote attackers to execute arbitrary code on affected installations of Foxit PDF Reader 12.0.2.12465.

    ВысокаяCVSS 7,8Эксплойта нетEPSS 1 %

    foxit · pdf editor29 мар. 2023 г.

  • CVE-2022-43633
    27Наблюдать

    This vulnerability allows network-adjacent attackers to execute arbitrary code on affected installations of D-Link DIR-1935 1.03 routers.

    СредняяCVSS 6,8Эксплойта нетEPSS 1 %

    dlink · dir-1935 firmware29 мар. 2023 г.

  • CVE-2022-43632
    27Наблюдать

    This vulnerability allows network-adjacent attackers to execute arbitrary code on affected installations of D-Link DIR-1935 1.03 routers.

    СредняяCVSS 6,8Эксплойта нетEPSS 1 %

    dlink · dir-1935 firmware29 мар. 2023 г.

  • CVE-2022-43631
    27Наблюдать

    This vulnerability allows network-adjacent attackers to execute arbitrary code on affected installations of D-Link DIR-1935 1.03 routers.

    СредняяCVSS 6,8Эксплойта нетEPSS 1 %

    dlink · dir-1935 firmware29 мар. 2023 г.

  • CVE-2022-43630
    35Наблюдать

    This vulnerability allows network-adjacent attackers to execute arbitrary code on affected installations of D-Link DIR-1935 1.03 routers.

    ВысокаяCVSS 8,8Эксплойта нетEPSS 1 %

    dlink · dir-1935 firmware29 мар. 2023 г.

  • CVE-2022-43629
    27Наблюдать

    This vulnerability allows network-adjacent attackers to execute arbitrary code on affected installations of D-Link DIR-1935 1.03 routers.

    СредняяCVSS 6,8Эксплойта нетEPSS 1 %

    dlink · dir-1935 firmware29 мар. 2023 г.

  • CVE-2022-43628
    27Наблюдать

    This vulnerability allows network-adjacent attackers to execute arbitrary code on affected installations of D-Link DIR-1935 1.03 routers.

    СредняяCVSS 6,8Эксплойта нетEPSS 1 %

    dlink · dir-1935 firmware29 мар. 2023 г.

  • CVE-2022-43627
    27Наблюдать

    This vulnerability allows network-adjacent attackers to execute arbitrary code on affected installations of D-Link DIR-1935 1.03 routers.

    СредняяCVSS 6,8Эксплойта нетEPSS 1 %

    dlink · dir-1935 firmware29 мар. 2023 г.

  • CVE-2022-43626
    27Наблюдать

    This vulnerability allows network-adjacent attackers to execute arbitrary code on affected installations of D-Link DIR-1935 1.03 routers.

    СредняяCVSS 6,8Эксплойта нетEPSS 1 %

    dlink · dir-1935 firmware29 мар. 2023 г.

  • CVE-2022-43625
    27Наблюдать

    This vulnerability allows network-adjacent attackers to execute arbitrary code on affected installations of D-Link DIR-1935 1.03 routers.

    СредняяCVSS 6,8Эксплойта нетEPSS 1 %

    dlink · dir-1935 firmware29 мар. 2023 г.

  • CVE-2022-43624
    27Наблюдать

    This vulnerability allows network-adjacent attackers to execute arbitrary code on affected installations of D-Link DIR-1935 1.03 routers.

    СредняяCVSS 6,8Эксплойта нетEPSS 1 %

    dlink · dir-1935 firmware29 мар. 2023 г.