| CVE | Vendor / Product | Sev | Risk | CVSS | EPSS | KEV | Published | Description |
|---|---|---|---|---|---|---|---|---|
| CVE-2024-26228 | Hig | 0.51 | 7.8 | 0.00 | Apr 9, 2024 | Windows Cryptographic Services Security Feature Bypass Vulnerability | ||
| CVE-2024-26227 | Hig | 0.47 | 7.2 | 0.02 | Apr 9, 2024 | Windows DNS Server Remote Code Execution Vulnerability | ||
| CVE-2024-26224 | Hig | 0.47 | 7.2 | 0.02 | Apr 9, 2024 | Windows DNS Server Remote Code Execution Vulnerability | ||
| CVE-2024-26223 | Hig | 0.47 | 7.2 | 0.02 | Apr 9, 2024 | Windows DNS Server Remote Code Execution Vulnerability | ||
| CVE-2024-26222 | Hig | 0.47 | 7.2 | 0.02 | Apr 9, 2024 | Windows DNS Server Remote Code Execution Vulnerability | ||
| CVE-2024-26221 | Hig | 0.47 | 7.2 | 0.02 | Apr 9, 2024 | Windows DNS Server Remote Code Execution Vulnerability | ||
| CVE-2024-26219 | Hig | 0.49 | 7.5 | 0.03 | Apr 9, 2024 | HTTP.sys Denial of Service Vulnerability | ||
| CVE-2024-26218 | Hig | 0.52 | 7.8 | 0.13 | Apr 9, 2024 | Windows Kernel Elevation of Privilege Vulnerability | ||
| CVE-2024-26216 | Hig | 0.48 | 7.3 | 0.01 | Apr 9, 2024 | Windows File Server Resource Management Service Elevation of Privilege Vulnerability | ||
| CVE-2024-26215 | Hig | 0.49 | 7.5 | 0.03 | Apr 9, 2024 | DHCP Server Service Denial of Service Vulnerability | ||
| CVE-2024-26214 | Hig | 0.57 | 8.8 | 0.02 | Apr 9, 2024 | Microsoft WDAC SQL Server ODBC Driver Remote Code Execution Vulnerability | ||
| CVE-2024-26213 | Hig | 0.46 | 7.0 | 0.01 | Apr 9, 2024 | Microsoft Brokering File System Elevation of Privilege Vulnerability | ||
| CVE-2024-26212 | Hig | 0.54 | 7.5 | 0.63 | Apr 9, 2024 | DHCP Server Service Denial of Service Vulnerability | ||
| CVE-2024-26211 | Hig | 0.51 | 7.8 | 0.04 | Apr 9, 2024 | Windows Remote Access Connection Manager Elevation of Privilege Vulnerability | ||
| CVE-2024-26210 | Hig | 0.57 | 8.8 | 0.02 | Apr 9, 2024 | Microsoft WDAC OLE DB provider for SQL Server Remote Code Execution Vulnerability | ||
| CVE-2024-26208 | Hig | 0.47 | 7.2 | 0.02 | Apr 9, 2024 | Microsoft Message Queuing (MSMQ) Remote Code Execution Vulnerability | ||
| CVE-2024-26205 | Hig | 0.57 | 8.8 | 0.02 | Apr 9, 2024 | Windows Routing and Remote Access Service (RRAS) Remote Code Execution Vulnerability | ||
| CVE-2024-26202 | Hig | 0.47 | 7.2 | 0.02 | Apr 9, 2024 | DHCP Server Service Remote Code Execution Vulnerability | ||
| CVE-2024-26200 | Hig | 0.57 | 8.8 | 0.02 | Apr 9, 2024 | Windows Routing and Remote Access Service (RRAS) Remote Code Execution Vulnerability | ||
| CVE-2024-26195 | Hig | 0.47 | 7.2 | 0.02 | Apr 9, 2024 | DHCP Server Service Remote Code Execution Vulnerability | ||
| CVE-2024-26194 | Hig | 0.48 | 7.4 | 0.00 | Apr 9, 2024 | Secure Boot Security Feature Bypass Vulnerability | ||
| CVE-2024-26189 | Hig | 0.52 | 8.0 | 0.01 | Apr 9, 2024 | Secure Boot Security Feature Bypass Vulnerability | ||
| CVE-2024-26180 | Hig | 0.52 | 8.0 | 0.01 | Apr 9, 2024 | Secure Boot Security Feature Bypass Vulnerability | ||
| CVE-2024-26179 | Hig | 0.57 | 8.8 | 0.02 | Apr 9, 2024 | Windows Routing and Remote Access Service (RRAS) Remote Code Execution Vulnerability | ||
| CVE-2024-26175 | Hig | 0.51 | 7.8 | 0.01 | Apr 9, 2024 | Secure Boot Security Feature Bypass Vulnerability | ||
| CVE-2024-26158 | Hig | 0.52 | 7.8 | 0.12 | Apr 9, 2024 | Microsoft Install Service Elevation of Privilege Vulnerability | ||
| CVE-2024-21447 | Hig | 0.51 | 7.8 | 0.01 | Apr 9, 2024 | Windows Authentication Elevation of Privilege Vulnerability | ||
| CVE-2024-21409 | Hig | 0.48 | 7.3 | 0.03 | Apr 9, 2024 | .NET, .NET Framework, and Visual Studio Remote Code Execution Vulnerability | ||
| CVE-2024-21324 | Hig | 0.47 | 7.2 | 0.02 | Apr 9, 2024 | Microsoft Defender for IoT Elevation of Privilege Vulnerability | ||
| CVE-2024-21323 | Hig | 0.57 | 8.8 | 0.03 | Apr 9, 2024 | Microsoft Defender for IoT Remote Code Execution Vulnerability | ||
| CVE-2024-21322 | Hig | 0.47 | 7.2 | 0.03 | Apr 9, 2024 | Microsoft Defender for IoT Remote Code Execution Vulnerability | ||
| CVE-2024-20693 | Hig | 0.51 | 7.8 | 0.01 | Apr 9, 2024 | Windows Kernel Elevation of Privilege Vulnerability | ||
| CVE-2024-20689 | Hig | 0.46 | 7.1 | 0.01 | Apr 9, 2024 | Secure Boot Security Feature Bypass Vulnerability | ||
| CVE-2024-20688 | Hig | 0.46 | 7.1 | 0.01 | Apr 9, 2024 | Secure Boot Security Feature Bypass Vulnerability | ||
| CVE-2024-20678 | Hig | 0.57 | 8.8 | 0.03 | Apr 9, 2024 | Remote Procedure Call Runtime Remote Code Execution Vulnerability | ||
| CVE-2024-20670 | Hig | 0.53 | 8.1 | 0.02 | Apr 9, 2024 | Outlook for Windows Spoofing Vulnerability | ||
| CVE-2024-3281 | Hig | 0.57 | 8.8 | 0.01 | Apr 9, 2024 | A vulnerability was discovered in the firmware builds after 8.0.2.3267 and prior to 8.1.3.1301 in CCX devices. A flaw in the firmware build process did not properly restrict access to a resource from an unauthorized actor. | ||
| CVE-2024-28235 | Hig | 0.47 | 8.3 | 0.01 | Apr 9, 2024 | Contao is an open source content management system. Starting in version 4.9.0 and prior to versions 4.13.40 and 5.3.4, when checking for broken links on protected pages, Contao sends the cookie header to external urls as well, the passed options for the http client are used for… | ||
| CVE-2024-23671 | Hig | 0.53 | 8.1 | 0.01 | Apr 9, 2024 | A improper limitation of a pathname to a restricted directory ('path traversal') vulnerability in Fortinet FortiSandbox 4.4.0 through 4.4.3, FortiSandbox 4.2.1 through 4.2.6, FortiSandbox 4.0.0 through 4.0.4 allows attacker to execute unauthorized code or commands via crafted… | ||
| CVE-2024-21756 | Hig | 0.57 | 8.8 | 0.02 | Apr 9, 2024 | A improper neutralization of special elements used in an os command ('os command injection') vulnerability in Fortinet FortiSandbox 4.4.0 through 4.4.3, FortiSandbox 4.2.1 through 4.2.6, FortiSandbox 4.0.0 through 4.0.4 allows attacker to execute unauthorized code or commands… | ||
| CVE-2024-21755 | Hig | 0.57 | 8.8 | 0.02 | Apr 9, 2024 | A improper neutralization of special elements used in an os command ('os command injection') vulnerability in Fortinet FortiSandbox 4.4.0 through 4.4.3, FortiSandbox 4.2.1 through 4.2.6, FortiSandbox 4.0.0 through 4.0.4 allows attacker to execute unauthorized code or commands… | ||
| CVE-2023-49913 | Hig | 0.47 | 7.2 | 0.02 | Apr 9, 2024 | A stack-based buffer overflow vulnerability exists in the web interface Radio Scheduling functionality of Tp-Link AC1350 Wireless MU-MIMO Gigabit Access Point (EAP225 V3) v5.1.0 Build 20220926. A specially crafted series of HTTP requests can lead to remote code execution. An… | ||
| CVE-2023-49912 | Hig | 0.47 | 7.2 | 0.02 | Apr 9, 2024 | A stack-based buffer overflow vulnerability exists in the web interface Radio Scheduling functionality of Tp-Link AC1350 Wireless MU-MIMO Gigabit Access Point (EAP225 V3) v5.1.0 Build 20220926. A specially crafted series of HTTP requests can lead to remote code execution. An… | ||
| CVE-2023-49911 | Hig | 0.47 | 7.2 | 0.02 | Apr 9, 2024 | A stack-based buffer overflow vulnerability exists in the web interface Radio Scheduling functionality of Tp-Link AC1350 Wireless MU-MIMO Gigabit Access Point (EAP225 V3) v5.1.0 Build 20220926. A specially crafted series of HTTP requests can lead to remote code execution. An… | ||
| CVE-2023-49910 | Hig | 0.47 | 7.2 | 0.02 | Apr 9, 2024 | A stack-based buffer overflow vulnerability exists in the web interface Radio Scheduling functionality of Tp-Link AC1350 Wireless MU-MIMO Gigabit Access Point (EAP225 V3) v5.1.0 Build 20220926. A specially crafted series of HTTP requests can lead to remote code execution. An… | ||
| CVE-2023-49909 | Hig | 0.47 | 7.2 | 0.02 | Apr 9, 2024 | A stack-based buffer overflow vulnerability exists in the web interface Radio Scheduling functionality of Tp-Link AC1350 Wireless MU-MIMO Gigabit Access Point (EAP225 V3) v5.1.0 Build 20220926. A specially crafted series of HTTP requests can lead to remote code execution. An… | ||
| CVE-2023-49908 | Hig | 0.47 | 7.2 | 0.02 | Apr 9, 2024 | A stack-based buffer overflow vulnerability exists in the web interface Radio Scheduling functionality of Tp-Link AC1350 Wireless MU-MIMO Gigabit Access Point (EAP225 V3) v5.1.0 Build 20220926. A specially crafted series of HTTP requests can lead to remote code execution. An… | ||
| CVE-2023-49907 | Hig | 0.47 | 7.2 | 0.02 | Apr 9, 2024 | A stack-based buffer overflow vulnerability exists in the web interface Radio Scheduling functionality of Tp-Link AC1350 Wireless MU-MIMO Gigabit Access Point (EAP225 V3) v5.1.0 Build 20220926. A specially crafted series of HTTP requests can lead to remote code execution. An… | ||
| CVE-2023-49906 | Hig | 0.47 | 7.2 | 0.02 | Apr 9, 2024 | A stack-based buffer overflow vulnerability exists in the web interface Radio Scheduling functionality of Tp-Link AC1350 Wireless MU-MIMO Gigabit Access Point (EAP225 V3) v5.1.0 Build 20220926. A specially crafted series of HTTP requests can lead to remote code execution. An… | ||
| CVE-2023-49134 | Hig | 0.53 | 8.1 | 0.02 | Apr 9, 2024 | A command execution vulnerability exists in the tddpd enable_test_mode functionality of Tp-Link AC1350 Wireless MU-MIMO Gigabit Access Point (EAP225 V3) v5.1.0 Build 20220926 and Tp-Link N300 Wireless Access Point (EAP115 V4) v5.0.4 Build 20220216. A specially crafted series of… |
- risk 0.51cvss 7.8epss 0.00
Windows Cryptographic Services Security Feature Bypass Vulnerability
- risk 0.47cvss 7.2epss 0.02
Windows DNS Server Remote Code Execution Vulnerability
- risk 0.47cvss 7.2epss 0.02
Windows DNS Server Remote Code Execution Vulnerability
- risk 0.47cvss 7.2epss 0.02
Windows DNS Server Remote Code Execution Vulnerability
- risk 0.47cvss 7.2epss 0.02
Windows DNS Server Remote Code Execution Vulnerability
- risk 0.47cvss 7.2epss 0.02
Windows DNS Server Remote Code Execution Vulnerability
- risk 0.49cvss 7.5epss 0.03
HTTP.sys Denial of Service Vulnerability
- risk 0.52cvss 7.8epss 0.13
Windows Kernel Elevation of Privilege Vulnerability
- risk 0.48cvss 7.3epss 0.01
Windows File Server Resource Management Service Elevation of Privilege Vulnerability
- risk 0.49cvss 7.5epss 0.03
DHCP Server Service Denial of Service Vulnerability
- risk 0.57cvss 8.8epss 0.02
Microsoft WDAC SQL Server ODBC Driver Remote Code Execution Vulnerability
- risk 0.46cvss 7.0epss 0.01
Microsoft Brokering File System Elevation of Privilege Vulnerability
- risk 0.54cvss 7.5epss 0.63
DHCP Server Service Denial of Service Vulnerability
- risk 0.51cvss 7.8epss 0.04
Windows Remote Access Connection Manager Elevation of Privilege Vulnerability
- risk 0.57cvss 8.8epss 0.02
Microsoft WDAC OLE DB provider for SQL Server Remote Code Execution Vulnerability
- risk 0.47cvss 7.2epss 0.02
Microsoft Message Queuing (MSMQ) Remote Code Execution Vulnerability
- risk 0.57cvss 8.8epss 0.02
Windows Routing and Remote Access Service (RRAS) Remote Code Execution Vulnerability
- risk 0.47cvss 7.2epss 0.02
DHCP Server Service Remote Code Execution Vulnerability
- risk 0.57cvss 8.8epss 0.02
Windows Routing and Remote Access Service (RRAS) Remote Code Execution Vulnerability
- risk 0.47cvss 7.2epss 0.02
DHCP Server Service Remote Code Execution Vulnerability
- risk 0.48cvss 7.4epss 0.00
Secure Boot Security Feature Bypass Vulnerability
- risk 0.52cvss 8.0epss 0.01
Secure Boot Security Feature Bypass Vulnerability
- risk 0.52cvss 8.0epss 0.01
Secure Boot Security Feature Bypass Vulnerability
- risk 0.57cvss 8.8epss 0.02
Windows Routing and Remote Access Service (RRAS) Remote Code Execution Vulnerability
- risk 0.51cvss 7.8epss 0.01
Secure Boot Security Feature Bypass Vulnerability
- risk 0.52cvss 7.8epss 0.12
Microsoft Install Service Elevation of Privilege Vulnerability
- risk 0.51cvss 7.8epss 0.01
Windows Authentication Elevation of Privilege Vulnerability
- risk 0.48cvss 7.3epss 0.03
.NET, .NET Framework, and Visual Studio Remote Code Execution Vulnerability
- risk 0.47cvss 7.2epss 0.02
Microsoft Defender for IoT Elevation of Privilege Vulnerability
- risk 0.57cvss 8.8epss 0.03
Microsoft Defender for IoT Remote Code Execution Vulnerability
- risk 0.47cvss 7.2epss 0.03
Microsoft Defender for IoT Remote Code Execution Vulnerability
- risk 0.51cvss 7.8epss 0.01
Windows Kernel Elevation of Privilege Vulnerability
- risk 0.46cvss 7.1epss 0.01
Secure Boot Security Feature Bypass Vulnerability
- risk 0.46cvss 7.1epss 0.01
Secure Boot Security Feature Bypass Vulnerability
- risk 0.57cvss 8.8epss 0.03
Remote Procedure Call Runtime Remote Code Execution Vulnerability
- risk 0.53cvss 8.1epss 0.02
Outlook for Windows Spoofing Vulnerability
- risk 0.57cvss 8.8epss 0.01
A vulnerability was discovered in the firmware builds after 8.0.2.3267 and prior to 8.1.3.1301 in CCX devices. A flaw in the firmware build process did not properly restrict access to a resource from an unauthorized actor.
- risk 0.47cvss 8.3epss 0.01
Contao is an open source content management system. Starting in version 4.9.0 and prior to versions 4.13.40 and 5.3.4, when checking for broken links on protected pages, Contao sends the cookie header to external urls as well, the passed options for the http client are used for…
- risk 0.53cvss 8.1epss 0.01
A improper limitation of a pathname to a restricted directory ('path traversal') vulnerability in Fortinet FortiSandbox 4.4.0 through 4.4.3, FortiSandbox 4.2.1 through 4.2.6, FortiSandbox 4.0.0 through 4.0.4 allows attacker to execute unauthorized code or commands via crafted…
- risk 0.57cvss 8.8epss 0.02
A improper neutralization of special elements used in an os command ('os command injection') vulnerability in Fortinet FortiSandbox 4.4.0 through 4.4.3, FortiSandbox 4.2.1 through 4.2.6, FortiSandbox 4.0.0 through 4.0.4 allows attacker to execute unauthorized code or commands…
- risk 0.57cvss 8.8epss 0.02
A improper neutralization of special elements used in an os command ('os command injection') vulnerability in Fortinet FortiSandbox 4.4.0 through 4.4.3, FortiSandbox 4.2.1 through 4.2.6, FortiSandbox 4.0.0 through 4.0.4 allows attacker to execute unauthorized code or commands…
- risk 0.47cvss 7.2epss 0.02
A stack-based buffer overflow vulnerability exists in the web interface Radio Scheduling functionality of Tp-Link AC1350 Wireless MU-MIMO Gigabit Access Point (EAP225 V3) v5.1.0 Build 20220926. A specially crafted series of HTTP requests can lead to remote code execution. An…
- risk 0.47cvss 7.2epss 0.02
A stack-based buffer overflow vulnerability exists in the web interface Radio Scheduling functionality of Tp-Link AC1350 Wireless MU-MIMO Gigabit Access Point (EAP225 V3) v5.1.0 Build 20220926. A specially crafted series of HTTP requests can lead to remote code execution. An…
- risk 0.47cvss 7.2epss 0.02
A stack-based buffer overflow vulnerability exists in the web interface Radio Scheduling functionality of Tp-Link AC1350 Wireless MU-MIMO Gigabit Access Point (EAP225 V3) v5.1.0 Build 20220926. A specially crafted series of HTTP requests can lead to remote code execution. An…
- risk 0.47cvss 7.2epss 0.02
A stack-based buffer overflow vulnerability exists in the web interface Radio Scheduling functionality of Tp-Link AC1350 Wireless MU-MIMO Gigabit Access Point (EAP225 V3) v5.1.0 Build 20220926. A specially crafted series of HTTP requests can lead to remote code execution. An…
- risk 0.47cvss 7.2epss 0.02
A stack-based buffer overflow vulnerability exists in the web interface Radio Scheduling functionality of Tp-Link AC1350 Wireless MU-MIMO Gigabit Access Point (EAP225 V3) v5.1.0 Build 20220926. A specially crafted series of HTTP requests can lead to remote code execution. An…
- risk 0.47cvss 7.2epss 0.02
A stack-based buffer overflow vulnerability exists in the web interface Radio Scheduling functionality of Tp-Link AC1350 Wireless MU-MIMO Gigabit Access Point (EAP225 V3) v5.1.0 Build 20220926. A specially crafted series of HTTP requests can lead to remote code execution. An…
- risk 0.47cvss 7.2epss 0.02
A stack-based buffer overflow vulnerability exists in the web interface Radio Scheduling functionality of Tp-Link AC1350 Wireless MU-MIMO Gigabit Access Point (EAP225 V3) v5.1.0 Build 20220926. A specially crafted series of HTTP requests can lead to remote code execution. An…
- risk 0.47cvss 7.2epss 0.02
A stack-based buffer overflow vulnerability exists in the web interface Radio Scheduling functionality of Tp-Link AC1350 Wireless MU-MIMO Gigabit Access Point (EAP225 V3) v5.1.0 Build 20220926. A specially crafted series of HTTP requests can lead to remote code execution. An…
- risk 0.53cvss 8.1epss 0.02
A command execution vulnerability exists in the tddpd enable_test_mode functionality of Tp-Link AC1350 Wireless MU-MIMO Gigabit Access Point (EAP225 V3) v5.1.0 Build 20220926 and Tp-Link N300 Wireless Access Point (EAP115 V4) v5.0.4 Build 20220216. A specially crafted series of…