VYPR

CVEs

117,533 total · page 484 of 2,351

  • CVE-2021-47833HigJan 16, 2026
    risk 0.51cvss 7.8epss 0.00

    WifiHotSpot 1.0.0.0 contains an unquoted service path vulnerability in its WifiHotSpotService.exe that allows local attackers to execute code with elevated privileges. Attackers can exploit the unquoted path during system startup or reboot to inject and run malicious executables…

  • CVE-2021-47831HigJan 16, 2026
    risk 0.49cvss 7.5epss 0.00

    Sandboxie 5.49.7 contains a denial of service vulnerability that allows attackers to crash the application by overflowing the container folder input field. Attackers can paste a large buffer of repeated characters into the Sandbox container folder setting to trigger an…

  • CVE-2021-47829HigJan 16, 2026
    risk 0.51cvss 7.8epss 0.00

    DHCP Broadband 4.1.0.1503 contains an unquoted service path vulnerability in its service configuration that allows local attackers to execute code with elevated privileges. Attackers can exploit the unquoted path in 'C:\Program Files\DHCP Broadband 4\dhcpt.exe' to inject…

  • CVE-2021-47828HigJan 16, 2026
    risk 0.51cvss 7.8epss 0.00

    BOOTP Turbo 2.0.0.1253 contains an unquoted service path vulnerability in its Windows service configuration. Attackers can exploit the unquoted path to execute arbitrary code with elevated LocalSystem privileges during system startup or reboot.

  • CVE-2021-47827HigJan 16, 2026
    risk 0.49cvss 7.5epss 0.00

    WebSSH for iOS 14.16.10 contains a denial of service vulnerability in the mashREPL tool that allows attackers to crash the application by pasting malformed input. Attackers can trigger the vulnerability by copying a 300-character buffer of repeated 'A' characters into the…

  • CVE-2021-47826HigJan 16, 2026
    risk 0.51cvss 7.8epss 0.00

    Acer Backup Manager 3.0.0.99 contains an unquoted service path vulnerability in the NTI IScheduleSvc service that allows local users to potentially execute arbitrary code. Attackers can exploit the unquoted path in C:\Program Files (x86)\NTI\Acer Backup Manager\ to inject…

  • CVE-2021-47825HigJan 16, 2026
    risk 0.51cvss 7.8epss 0.00

    Acer Updater Service 1.2.3500.0 contains an unquoted service path vulnerability that allows local users to execute code with elevated system privileges. Attackers can exploit the unquoted path in C:\Program Files\Acer\Acer Updater\ to inject malicious executables that will run…

  • CVE-2021-47824HigJan 16, 2026
    risk 0.49cvss 7.5epss 0.00

    iDailyDiary 4.30 contains a denial of service vulnerability that allows attackers to crash the application by overflowing the preferences tab name field. Attackers can paste a 2,000,000 character buffer into the default diary tab name to trigger an application crash.

  • CVE-2021-47823HigJan 16, 2026
    risk 0.51cvss 7.8epss 0.00

    Acer ePowerSvc 6.0.3008.0 contains an unquoted service path vulnerability that allows local users to potentially execute code with elevated system privileges. Attackers can exploit the unquoted path in the service configuration to inject malicious code that would execute with…

  • CVE-2021-47822HigJan 16, 2026
    risk 0.51cvss 7.8epss 0.00

    DiskBoss Service 12.2.18 contains an unquoted service path vulnerability in its binary path configuration that allows local attackers to execute code with elevated privileges. Attackers can exploit the unquoted path by placing malicious executables in potential path locations to…

  • CVE-2021-47821HigJan 16, 2026
    risk 0.49cvss 7.5epss 0.00

    RarmaRadio 2.72.8 contains a denial of service vulnerability that allows attackers to crash the application by overflowing network configuration fields with large character buffers. Attackers can generate a 100,000 character buffer and paste it into multiple network settings…

  • CVE-2021-47818HigJan 16, 2026
    risk 0.49cvss 7.5epss 0.00

    DupTerminator 1.4.5639.37199 contains a denial of service vulnerability that allows attackers to crash the application by inputting a long character string in the Excluded text box. Attackers can generate a payload of 8000 repeated characters to trigger the application to stop…

  • CVE-2021-47816HigJan 16, 2026
    risk 0.57cvss 8.8epss 0.02

    Thecus N4800Eco NAS Server Control Panel contains a command injection vulnerability that allows authenticated attackers to execute arbitrary system commands through user management endpoints. Attackers can inject commands via username and batch user creation parameters to…

  • CVE-2026-0629HigJan 16, 2026
    risk 0.57cvss epss 0.00

    Authentication bypass in the password recovery feature of the local web interface across multiple VIGI camera models allows an attacker on the LAN to reset the admin password without verification by manipulating client-side state. Attackers can gain full administrative access to…

  • CVE-2025-31510HigJan 16, 2026
    risk 0.40cvss 7.2epss 0.00

    In the portal in LemonLDAP::NG before 2.21.0, cross-site scripting (XSS) allows remote attackers to inject arbitrary web script or HTML (into the login page) via the tab parameter, for Choice authentication.

  • CVE-2025-24528HigJan 16, 2026
    risk 0.39cvss 7.1epss 0.01

    In MIT Kerberos 5 (aka krb5) before 1.22 (with incremental propagation), there is an integer overflow for a large update size to resize() in kdb_log.c. An authenticated attacker can cause an out-of-bounds write and kadmind daemon crash.

  • CVE-2024-44238HigJan 16, 2026
    risk 0.51cvss 7.8epss 0.00

    The issue was addressed with improved bounds checks. This issue is fixed in iOS 18.1 and iPadOS 18.1, macOS Sequoia 15.1. An app may be able to corrupt coprocessor memory.

  • CVE-2026-23529HigJan 16, 2026
    risk 0.50cvss 7.7epss 0.00

    Kafka Connect BigQuery Connector is an implementation of a sink connector from Apache Kafka to Google BigQuery. Prior to 2.11.0, there is an arbitrary file read in Google BigQuery Sink connector. Aiven's Google BigQuery Kafka Connect Sink connector requires Google Cloud…

  • CVE-2026-22782HigJan 16, 2026
    risk 0.42cvss 7.5epss 0.01

    RustFS is a distributed object storage system built in Rust. From >= 1.0.0-alpha.1 to 1.0.0-alpha.79, invalid RPC signatures cause the server to log the shared HMAC secret (and expected signature), which exposes the secret to log readers and enables forged RPC calls. In…

  • CVE-2025-71020HigJan 16, 2026
    risk 0.49cvss 7.5epss 0.00

    Tenda AX-1806 v1.0.0.1 was discovered to contain a stack overflow in the security parameter of the sub_4C408 function. This vulnerability allows attackers to cause a Denial of Service (DoS) via a crafted request.

  • CVE-2025-70746HigJan 16, 2026
    risk 0.49cvss 7.5epss 0.00

    Tenda AX-1806 v1.0.0.1 was discovered to contain a stack overflow in the timeZone parameter of the fromSetSysTime function. This vulnerability allows attackers to cause a Denial of Service (DoS) via a crafted request.

  • CVE-2026-21625HigJan 16, 2026
    risk 0.57cvss 8.8epss 0.00

    User provided uploads to the Easy Discuss component for Joomla aren't properly validated. Uploads are purely checked by file extensions, no mime type checks are happening.

  • CVE-2025-68921HigJan 16, 2026
    risk 0.51cvss 7.8epss 0.00

    SteelSeries Nahimic 3 1.10.7 allows Directory traversal.

  • CVE-2026-0695HigJan 16, 2026
    risk 0.57cvss 8.7epss 0.00

    In ConnectWise PSA versions older than 2026.1, Time Entry notes stored in the Time Entry Audit Trail may be rendered without applying output encoding to certain content. Under specific conditions, this may allow stored script code to execute in the context of a user’s browser…

  • CVE-2026-0616HigJan 16, 2026
    risk 0.49cvss 7.5epss 0.00

    TheLibrarians web_fetch tool can be used to retrieve the Adminer interface content, which can then be used to log into the internal TheLibrarian backend system. The vendor has fixed the vulnerability in all affected versions.

  • CVE-2026-0615HigJan 16, 2026
    risk 0.47cvss 7.3epss 0.00

    The Librarian `supervisord` status page can be retrieved by the `web_fetch` tool, which can be used to retrieve running processes within TheLibrarian backend. The vendor has fixed the vulnerability in all affected versions.

  • CVE-2026-0613HigJan 16, 2026
    risk 0.49cvss 7.5epss 0.00

    The Librarian contains an internal port scanning vulnerability, facilitated by the `web_fetch` tool, which can be used with SSRF-style behavior to perform GET requests to internal IP addresses and services, enabling scanning of the Hertzner cloud environment that TheLibrarian…

  • CVE-2026-0612HigJan 16, 2026
    risk 0.49cvss 7.5epss 0.00

    The Librarian contains a information leakage vulnerability through the `web_fetch` tool, which can be used to retrieve arbitrary external content provided by an attacker, which can be used to proxy requests through The Librarian infrastructure. The vendor has fixed the…

  • CVE-2025-14510HigJan 16, 2026
    risk 0.53cvss 8.1epss 0.00

    Incorrect Implementation of Authentication Algorithm vulnerability in ABB ABB Ability OPTIMAX.This issue affects ABB Ability OPTIMAX: 6.1, 6.2, from 6.3.0 before 6.3.1-251120, from 6.4.0 before 6.4.1-251120.

  • CVE-2025-68675HigJan 16, 2026
    risk 0.42cvss 7.5epss 0.02

    In Apache Airflow versions before 3.1.6, and 2.11.1 the proxies and proxy fields within a Connection may include proxy URLs containing embedded authentication information. These fields were not treated as sensitive by default and therefore were not automatically masked in log…

  • CVE-2025-68438HigJan 16, 2026
    risk 0.42cvss 7.5epss 0.01

    In Apache Airflow versions before 3.1.6, when rendered template fields in a Dag exceed [core] max_templated_field_length, sensitive values could be exposed in cleartext in the Rendered Templates UI. This occurred because serialization of those fields used a secrets masker…

  • CVE-2025-59870HigJan 16, 2026
    risk 0.48cvss 7.4epss 0.00

    HCL MyXalytics  is affected by improper management of a static JWT signing secret in the web application, where the secret lacks rotation , introducing a security risk

  • CVE-2025-14844HigJan 16, 2026
    risk 0.46cvss 8.2epss 0.00

    The Membership Plugin – Restrict Content plugin for WordPress is vulnerable to Missing Authentication in all versions up to, and including, 3.2.16 via the 'rcp_stripe_create_setup_intent_for_saved_card' function due to missing capability check. Additionally, the plugin does…

  • CVE-2026-20759HigJan 16, 2026
    risk 0.57cvss 8.8epss 0.01

    OS Command Injection vulnerability exists in multiple Network Cameras TRIFORA 3 series provided by TOA Corporation, which may allow a logged-in user with the low("monitoring user") or higher privilege to execute an arbitrary OS command.

  • CVE-2025-12007HigJan 16, 2026
    risk 0.55cvss 8.4epss 0.00

    There is a vulnerability in the Supermicro BMC firmware validation logic at Supermicro MBD-X13SEM-F . An attacker can update the system firmware with a specially crafted image.

  • CVE-2025-12006HigJan 16, 2026
    risk 0.47cvss 7.2epss 0.00

    There is a vulnerability in the Supermicro BMC firmware validation logic at Supermicro MBD-X12STW-F . An attacker can update the system firmware with a specially crafted image.

  • CVE-2026-0975HigJan 16, 2026
    risk 0.51cvss 7.8epss 0.01

    Delta Electronics DIAView has Command Injection vulnerability.

  • CVE-2025-12957HigJan 16, 2026
    risk 0.50cvss 8.8epss 0.01

    The All-in-One Video Gallery plugin for WordPress is vulnerable to arbitrary file upload in all versions up to, and including, 4.5.7. This is due to insufficient file type validation detecting VTT files, allowing double extension files to bypass sanitization while being accepted…

  • CVE-2026-1023HigJan 16, 2026
    risk 0.49cvss 7.5epss 0.01

    Statistics Database System developed by Gotac has a Missing Authentication vulnerability, allowing unauthenticated remote attackers to directly exploit a specific functionality to query database contents.

  • CVE-2026-1022HigJan 16, 2026
    risk 0.49cvss 7.5epss 0.01

    Statistics Database System developed by Gotac has an Arbitrary File Read vulnerability, allowing unauthenticated remote attackers to exploit Relative Path Traversal to download arbitrary system files.

  • CVE-2025-65118HigJan 16, 2026
    risk 0.57cvss 8.8epss 0.00

    The vulnerability, if exploited, could allow an authenticated miscreant (OS Standard User) to trick Process Optimization services into loading arbitrary code and escalate privileges to OS System, potentially resulting in complete compromise of the Model Application Server.

  • CVE-2025-65117HigJan 16, 2026
    risk 0.48cvss 7.4epss 0.00

    The vulnerability, if exploited, could allow an authenticated miscreant (Process Optimization Designer User) to embed OLE objects into graphics, and escalate their privileges to the identity of a victim user who subsequently interacts with the graphical elements.

  • CVE-2025-64769HigJan 16, 2026
    risk 0.46cvss 7.1epss 0.00

    The Process Optimization application suite leverages connection channels/protocols that by-default are not encrypted and could become subject to hijacking or data leakage in certain man-in-the-middle or passive inspection scenarios.

  • CVE-2025-64729HigJan 16, 2026
    risk 0.53cvss 8.1epss 0.00

    The vulnerability, if exploited, could allow an authenticated miscreant (OS Standard User) to tamper with Process Optimization project files, embed code, and escalate their privileges to the identity of a victim user who subsequently interacts with the project files.

  • CVE-2025-64691HigJan 16, 2026
    risk 0.57cvss 8.8epss 0.00

    The vulnerability, if exploited, could allow an authenticated miscreant (OS standard user) to tamper with TCL Macro scripts and escalate privileges to OS system, potentially resulting in complete compromise of the model application server.

  • CVE-2025-61943HigJan 16, 2026
    risk 0.55cvss 8.4epss 0.00

    The vulnerability, if exploited, could allow an authenticated miscreant (Process Optimization Standard User) to tamper with queries in Captive Historian and achieve code execution under SQL Server administrative privileges, potentially resulting in complete compromise of the…

  • CVE-2021-47815HigJan 16, 2026
    risk 0.49cvss 7.5epss 0.00

    Nsauditor 3.2.3 contains a denial of service vulnerability in the registration code input field that allows attackers to crash the application. Attackers can paste a large buffer of 256 repeated characters into the 'Key' field to trigger an application crash.

  • CVE-2021-47814HigJan 16, 2026
    risk 0.49cvss 7.5epss 0.00

    NBMonitor 1.6.8 contains a denial of service vulnerability that allows attackers to crash the application by overflowing the registration code input field. Attackers can paste a 256-character buffer into the registration key field to trigger an application crash and potential…

  • CVE-2021-47813HigJan 16, 2026
    risk 0.49cvss 7.5epss 0.00

    Backup Key Recovery 2.2.7 contains a denial of service vulnerability that allows attackers to crash the application by overflowing the registration code input field. Attackers can paste a large buffer of 256 repeated characters into the registration key field to trigger…

  • CVE-2021-47810HigJan 16, 2026
    risk 0.51cvss 7.8epss 0.00

    WibuKey Runtime 6.51 contains an unquoted service path vulnerability in the WkSvW32.exe service that allows local attackers to potentially execute arbitrary code. Attackers can exploit the unquoted path in 'C:\PROGRAM FILES (X86)\WIBUKEY\SERVER\WkSvW32.exe' to inject malicious…