İçeriğe atla
Noroxi

Sina Kheirkhah (SinSinology)

watchTowr (watchTowrcyber)

37 kredili kayıt · son 12 ayda 7 · 5 tanesi CISA KEV’de

Adlar CNA kayıtlarındaki serbest metindir; aynı kişi farklı yazımlarla ayrı görünebilir. Düzeltme için bize yazın.

Kredili kayıtlar

Araştırmacılar
  • CVE-2026-19590
    29İzleyin

    OpenAI Codex Desktop for Windows and macOS could execute attacker-controlled Git hooks because automated Git operations trusted the reposito

    YüksekCVSS 7,3İstismar yokEPSS %0

    openai · codex desktop1 Eyl 2026

  • CVE-2026-65690
    34İzleyin

    Bold Reports Standalone Report Designer < 14.1.12 Path Traversal RCE via File Upload

    YüksekCVSS 8,7İstismar yokEPSS %1

    syncfusion · standalone report designer23 Tem 2026

  • CVE-2026-65689
    37İzleyin

    Bold Reports Standalone Report Designer < 14.1.12 Arbitrary File Read via Database Download

    KritikCVSS 9,3İstismar yokEPSS %1

    syncfusion · standalone report designer23 Tem 2026

  • CVE-2026-65688
    37İzleyin

    Bold Reports Standalone Report Designer < 14.1.12 Arbitrary File Read via Font Processing

    KritikCVSS 9,3İstismar yokEPSS %1

    syncfusion · standalone report designer23 Tem 2026

  • CVE-2026-65687
    37İzleyin

    Bold Reports Standalone Report Designer < 14.1.12 Arbitrary File Read via SVG Processing

    KritikCVSS 9,3İstismar yokEPSS %1

    syncfusion · standalone report designer23 Tem 2026

  • CVE-2025-14713
    30İzleyin

    An Exposed Dangerous Method or Function vulnerability in Synology C2 Identity Edge Server package in DSM before 1.76.0-0307 allows remote at

    YüksekCVSS 7,5İstismar yokEPSS %0

    synology · c2 identity edge server27 May 2026

  • CVE-2026-0932
    27İzleyin

    Blind server-side request forgery (SSRF) vulnerability in legacy connection methods of document co-authoring features in M-Files Server befo

    OrtaCVSS 6,9İstismar yokEPSS %0

    m-files · m-files server1 Nis 2026

  • CVE-2025-7433
    35İzleyin

    A local privilege escalation vulnerability in Sophos Intercept X for Windows with Central Device Encryption 2025.1 and older allows arbitrar

    YüksekCVSS 8,8İstismar yokEPSS %0

    sophos · sophos intercept x for windows17 Tem 2025

  • CVE-2025-25271
    35İzleyin

    OCPP Backend Configuration via Insecure Defaults

    YüksekCVSS 8,8İstismar yokEPSS %0

    phoenixcontact · charx sec-3000 firmware8 Tem 2025

  • CVE-2025-2777
    61Bu hafta

    SysAid On-Prem <= 23.3.40 lshw Proceessing XML External Entity Injection

    KritikCVSS 9,8Kavram kanıtıEPSS %72

    sysaid · sysaid7 May 2025

  • SysAid On-Prem <= 23.3.40 serverurl Proceessing XML External Entity Injection

    KritikCVSS 9,8KEVSilahlaştırılmışEPSS %64

    sysaid · sysaid7 May 2025

  • CVE-2025-2775
    73Bu hafta

    SysAid On-Prem <= 23.3.40 Checkin Proceessing XML External Entity Injection

    YüksekCVSS 7,5KEVSilahlaştırılmışEPSS %43

    sysaid · sysaid7 May 2025

  • CVE-2024-46908
    36İzleyin

    WhatsUp Gold GetFilterCriteria SQL Injection Privilege Escalation Vulnerability

    YüksekCVSS 8,8İstismar yokEPSS %2

    progress · whatsup gold2 Ara 2024

  • CVE-2024-46907
    36İzleyin

    WhatsUp Gold GetFilterCriteria SQL Injection Privilege Escalation Vulnerability

    YüksekCVSS 8,8İstismar yokEPSS %2

    progress · whatsup gold2 Ara 2024

  • CVE-2024-46906
    47Planlayın

    WhatsUp Gold GetSqlWhereClause SQL Injection Privilege Escalation Vulnerability

    YüksekCVSS 8,8İstismar yokEPSS %40

    progress · whatsup gold2 Ara 2024

  • CVE-2024-46905
    36İzleyin

    WhatsUp Gold GetOrderByClause SQL Injection Privilege Escalation Vulnerability

    YüksekCVSS 8,8İstismar yokEPSS %2

    progress · whatsup gold2 Ara 2024

  • CVE-2024-7763
    30İzleyin

    WhatsUp Gold getReport Missing Authentication Authentication Bypass Vulnerability

    YüksekCVSS 7,5İstismar yokEPSS %1

    progress · whatsup gold24 Eki 2024

  • CVE-2024-8885
    35İzleyin

    A local privilege escalation vulnerability in Sophos Intercept X for Windows with Central Device Encryption 2024.2.0 and older allows writin

    YüksekCVSS 8,8İstismar yokEPSS %0

    sophos · sophos intercept x2 Eki 2024

  • CVE-2024-6672
    35İzleyin

    WhatsUp Gold getMonitorJoin SQL Injection Privilege Escalation Vulnerability

    YüksekCVSS 8,8İstismar yokEPSS %1

    progress · whatsup gold29 Ağu 2024

  • CVE-2024-6671
    45Planlayın

    WhatsUp Gold GetStatisticalMonitorList SQL Injection Authentication Bypass Vulnerability

    KritikCVSS 9,8Kavram kanıtıEPSS %19

    progress · whatsup gold29 Ağu 2024

  • WhatsUp Gold HasErrors SQL Injection Authentication Bypass Vulnerability

    KritikCVSS 9,8KEVSilahlaştırılmışEPSS %93

    progress · whatsup gold29 Ağu 2024

  • CVE-2024-5019
    30İzleyin

    WhatsUp Gold LoadCSSUsingBasePath Directory Traversal Information Disclosure Vulnerability

    YüksekCVSS 7,5İstismar yokEPSS %1

    progress · whatsup gold25 Haz 2024

  • CVE-2024-5016
    35İzleyin

    WhatsUp Gold OnMessage Deserialization of Untrusted Data Remote Code Execution Vulnerability

    YüksekCVSS 7,2İstismar yokEPSS %22

    progress · whatsup gold25 Haz 2024

  • CVE-2024-5015
    35İzleyin

    WhatsUp Gold SessionControler Server-Side Request Forgery Information Disclosure Vulnerability

    YüksekCVSS 8,8İstismar yokEPSS %1

    progress · whatsup gold25 Haz 2024

  • CVE-2024-5013
    30İzleyin

    WhatsUp Gold InstallController Denial-of-Service Vulnerability

    YüksekCVSS 7,5İstismar yokEPSS %1

    progress · whatsup gold25 Haz 2024