NA - CVE-2022-27600 - An uncontrolled resource consumption...
An uncontrolled resource consumption vulnerability has been reported to affect several QNAP operating system versions. If exploited, the vulnerability could allow remote attackers to launch a...
NA - CVE-2023-23354 - A cross-site scripting (XSS) vulnerability has...
A cross-site scripting (XSS) vulnerability has been reported to affect several QNAP operating system versions. If exploited, the vulnerability could allow remote attackers who have gained user...
NA - CVE-2023-23356 - A command injection vulnerability has been...
A command injection vulnerability has been reported to affect several QNAP operating system versions. If exploited, the vulnerability could allow remote attackers who have gained administrator...
NA - CVE-2023-23357 - A cross-site scripting (XSS) vulnerability has...
A cross-site scripting (XSS) vulnerability has been reported to affect several QNAP operating system versions. If exploited, the vulnerability could allow remote attackers who have gained...
Medium - CVE-2023-30443 - IBM Db2 for Linux, UNIX and Windows (includes...
IBM Db2 for Linux, UNIX and Windows (includes Db2 Connect Server) 10.5, 11.1, and 11.5 is vulnerable to denial of service with a specially crafted query.
Medium - CVE-2024-10548 - The WP Project Manager plugin for WordPress is...
The WP Project Manager plugin for WordPress is vulnerable to Sensitive Information Exposure in all versions up to, and including, 2.6.15 via the Project Task List...
Medium - CVE-2024-12121 - The Broken Link Checker | Finder plugin for...
The Broken Link Checker | Finder plugin for WordPress is vulnerable to Blind Server-Side Request Forgery in all versions up to, and including, 2.5.0 via the 'moblc_check_link' function....
High - CVE-2024-35141 - IBM Security Verify Access Docker 10.0.0...
IBM Security Verify Access Docker 10.0.0 through 10.0.6 could allow a local user to escalate their privileges due to execution of unnecessary privileges.
NA - CVE-2024-51532 - Dell PowerStore contains an Improper...
Dell PowerStore contains an Improper Neutralization of Argument Delimiters in a Command ('Argument Injection') vulnerability. A low privileged attacker with local access could potentially...
NA - CVE-2024-11984 - A unrestricted upload of file with dangerous...
A unrestricted upload of file with dangerous type vulnerability in epaper draft function in Corporate Training Management System before 10.13 allows remote authenticated users to bypass file upload...