| CVE ID | Title | Vendor | Product | Severity | CVSS Score | Published At | AI Analysis |
|---|---|---|---|---|---|---|---|
| CVE-2024-9916 🧪 💣 | HuangDou UTCMS cli.php os command injection EPSS 0.73 | HuangDou | UTCMS | High | 7.3 | 2024-10-13 19:00:07 | Deep Dive |
| CVE-2024-9047 📌 💣 | WordPress File Upload <= 4.24.11 - Unauthenticated Path Traversal to Arbitrary File Read and Deletion in wfu_file_downloader.php EPSS 0.93 | nickboss | Iptanus File Upload | Critical | 9.8 | 2024-10-12 06:51:12 | Deep Dive |
| CVE-2024-9465 KEV 📌 💣 | Expedition: SQL Injection Leads to Firewall Admin Credential Disclosure EPSS 1.00 | Palo Alto Networks | Expedition | - | - | 2024-10-09 17:04:02 | Deep Dive |
| CVE-2024-9464 📌 | Expedition: Authenticated OS Command Injection Vulnerability Leads to Firewall Admin Credential Disclosure EPSS 0.83 | Palo Alto Networks | Expedition | - | - | 2024-10-09 17:03:34 | Deep Dive |
| CVE-2024-9463 KEV 📌 💣 | Expedition: Unauthenticated OS Command Injection Vulnerability Leads to Firewall Credential Disclosure EPSS 0.99 | Palo Alto Networks | Expedition | - | - | 2024-10-09 17:03:12 | Deep Dive |
| CVE-2024-45519 KEV 📌 | Zimbra Collaboration Server 安全漏洞 EPSS 1.00 | - | - | Critical | 10.0 | 2024-10-02 00:00:00 | Deep Dive |
| CVE-2024-47076 🧪 💣 | libcupsfilters's cfGetPrinterAttributes5 does not validate IPP attributes returned from an IPP server EPSS 0.78 | OpenPrinting | libcupsfilters | High | 8.6 | 2024-09-26 21:18:22 | Deep Dive |
| CVE-2024-8877 📌 💣 | SQL Injection EPSS 0.77 | Riello | Netman 204 | - | - | 2024-09-24 15:19:32 | Deep Dive |
| CVE-2024-8963 KEV 📌 💣 | Ivanti Cloud Services Appliance 安全漏洞 EPSS 0.99 | Ivanti | CSA (Cloud Services Appliance) | Critical | 9.4 | 2024-09-19 17:14:49 | Deep Dive |
| CVE-2024-8957 KEV | PTZOptics NDI and SDI Cameras Command Injection via NTP Address Configuration EPSS 0.82 | PTZOptics | PT30X-SDI | High | 7.2 | 2024-09-17 20:08:26 | Deep Dive |
| CVE-2024-8190 KEV 📌 | Ivanti Cloud Services Appliance 安全漏洞 EPSS 0.89 | Ivanti | CSA (Cloud Services Appliance) | High | 7.2 | 2024-09-10 20:33:45 | Deep Dive |
| CVE-2024-8504 📌 💣 | VICIdial Authenticated Remote Code Execution EPSS 0.76 | VICIdial | VICIdial | - | - | 2024-09-10 19:23:39 | Deep Dive |
| CVE-2024-8503 📌 💣 | VICIdial Unauthenticated SQL Injection EPSS 0.80 | VICIdial | VICIdial | - | - | 2024-09-10 19:22:40 | Deep Dive |
| CVE-2024-40711 KEV 📌 💣 | Veeam Backup & Replication 安全漏洞 EPSS 0.90 | Veeam | Backup and Recovery | - | - | 2024-09-07 16:11:22 | Deep Dive |
| CVE-2024-8517 📌 💣 | SPIP Bigup Multipart File Upload OS Command Injection EPSS 0.95 | SPIP | SPIP | Critical | 9.8 | 2024-09-06 15:55:35 | Deep Dive |
| CVE-2024-20439 KEV 📌 💣 | Cisco Smart Licensing Utility 安全漏洞 EPSS 0.92 | Cisco | Cisco Smart License Utility | Critical | 9.8 | 2024-09-04 16:28:40 | Deep Dive |
| CVE-2024-45195 KEV 📌 💣 | Apache OFBiz: Confused controller-view authorization logic (forced browsing) EPSS 1.00 | Apache Software Foundation | Apache OFBiz | - | - | 2024-09-04 08:08:59 | Deep Dive |
| CVE-2024-45507 📌 💣 | Apache OFBiz: Prevent use of URLs in files when loading them from Java or Groovy, leading to a RCE EPSS 0.93 | Apache Software Foundation | Apache OFBiz | - | - | 2024-09-04 08:08:34 | Deep Dive |
| CVE-2024-6670 KEV 📌 💣 | WhatsUp Gold HasErrors SQL Injection Authentication Bypass Vulnerability EPSS 0.93 | Progress Software Corporation | WhatsUp Gold | Critical | 9.8 | 2024-08-29 22:04:41 | Deep Dive |
| CVE-2024-7954 📌 💣 | SPIP porte_plume Plugin Arbitrary PHP Execution EPSS 0.90 | SPIP | SPIP | Critical | 9.8 | 2024-08-23 17:43:21 | Deep Dive |