| CVE ID | Title | Vendor | Product | Severity | CVSS Score | Published At | AI Analysis |
|---|---|---|---|---|---|---|---|
| CVE-2024-4040 KEV 🧪 💣 | Unauthenticated arbitrary file read and remote code execution in CrushFTP EPSS 1.00 | CrushFTP | CrushFTP | Critical | 9.8 | 2024-04-22 19:21:46 | Deep Dive |
| CVE-2024-27348 KEV 📌 💣 | Apache HugeGraph-Server: Command execution in gremlin EPSS 0.99 | Apache Software Foundation | Apache HugeGraph-Server | 超危 | - | 2024-04-22 14:08:06 | Deep Dive |
| CVE-2024-3400 KEV 📌 💣 | PAN-OS: Arbitrary File Creation Leads to OS Command Injection Vulnerability in GlobalProtect EPSS 1.00 | Palo Alto Networks | PAN-OS | Critical | 10.0 | 2024-04-12 07:20:01 | Deep Dive |
| CVE-2024-29988 KEV 📌 | SmartScreen Prompt Security Feature Bypass Vulnerability EPSS 0.45 | Microsoft | Windows 10 Version 1809 | High | 8.8 | 2024-04-09 17:00:36 | Deep Dive |
| CVE-2024-29745 KEV | Google Pixel 安全漏洞 | Android | 中危 | - | 2024-04-05 20:02:16 | Deep Dive | |
| CVE-2024-29748 KEV | Google Pixel 安全漏洞 | Android | 高危 | - | 2024-04-05 20:02:16 | Deep Dive | |
| CVE-2024-3273 KEV 🧪 💣 | D-Link DNS-320L/DNS-325/DNS-327L/DNS-340L HTTP GET Request nas_sharing.cgi command injection EPSS 1.00 | D-Link | DNS-320L | High | 7.3 | 2024-04-04 01:00:07 | Deep Dive |
| CVE-2024-3272 KEV 🧪 💣 | D-Link DNS-320L/DNS-325/DNS-327L/DNS-340L HTTP GET Request nas_sharing.cgi hard-coded credentials EPSS 0.98 | D-Link | DNS-320L | Critical | 9.8 | 2024-04-04 01:00:06 | Deep Dive |
| CVE-2024-29059 KEV 📌 💣 | .NET Framework Information Disclosure Vulnerability EPSS 0.99 | Microsoft | Microsoft .NET Framework 4.8 | High | 7.5 | 2024-03-22 23:09:06 | Deep Dive |
| CVE-2024-20767 KEV 📌 💣 | ColdFusion | Improper Access Control (CWE-284) EPSS 0.99 | Adobe | ColdFusion | High | 7.4 | 2024-03-18 11:43:28 | Deep Dive |
| CVE-2024-26169 KEV 📌 | Windows Error Reporting Service Elevation of Privilege Vulnerability | Microsoft | Windows 10 Version 1809 | High | 7.8 | 2024-03-12 16:58:09 | Deep Dive |
| CVE-2023-48788 KEV 📌 💣 | Fortinet FortiClientEMS SQL注入漏洞 EPSS 0.98 | Fortinet | FortiClientEMS | Critical | 9.8 | 2024-03-12 15:09:19 | Deep Dive |
| CVE-2024-23296 KEV 📌 | Apple iOS 和 iPadOS 安全漏洞 | Apple | iOS and iPadOS | - | - | 2024-03-05 19:24:14 | Deep Dive |
| CVE-2024-23225 KEV | Apple iOS 和 iPadOS 安全漏洞 | Apple | iOS and iPadOS | - | - | 2024-03-05 19:24:12 | Deep Dive |
| CVE-2024-27199 KEV 📌 💣 | JetBrains TeamCity 安全漏洞 EPSS 1.00 | JetBrains | TeamCity | High | 7.3 | 2024-03-04 17:21:40 | Deep Dive |
| CVE-2024-27198 KEV 📌 💣 | JetBrains TeamCity 安全漏洞 EPSS 1.00 | JetBrains | TeamCity | Critical | 9.8 | 2024-03-04 17:21:39 | Deep Dive |
| CVE-2024-1212 KEV 📌 💣 | LoadMaster Pre-Authenticated OS Command Injection EPSS 0.95 | Progress Software | LoadMaster | Critical | 10.0 | 2024-02-21 17:39:13 | Deep Dive |
| CVE-2024-1709 KEV 📌 💣 | Authentication bypass using an alternate path or channel EPSS 1.00 | ConnectWise | ScreenConnect | Critical | 10.0 | 2024-02-21 15:36:04 | Deep Dive |
| CVE-2024-1708 KEV 📌 💣 | Improper limitation of a pathname to a restricted directory (“path traversal”) EPSS 0.88 | ConnectWise | ScreenConnect | High | 8.4 | 2024-02-21 15:29:10 | Deep Dive |
| CVE-2024-20953 KEV | Oracle Supply Chain Products Suite 安全漏洞 | Oracle Corporation | Agile PLM Framework | High | 8.8 | 2024-02-17 01:50:17 | Deep Dive |