| CVE ID | Title | Vendor | Product | Severity | CVSS Score | Published At | AI Analysis |
|---|---|---|---|---|---|---|---|
| CVE-2024-37345 | Cross-site scripting vulnerability in the Absolute Secure Access administrative console prior to 13.06 | Absolute Software | Secure Access | Medium | 5.3 | 2024-06-20 16:45:52 | Deep Dive |
| CVE-2024-37344 | Cross-site scripting vulnerability in the Absolute Secure Access administrative console prior to 13.06 | Absolute Software | Secure Access | Medium | 4.5 | 2024-06-20 16:38:26 | Deep Dive |
| CVE-2024-37343 | Cross-site scripting vulnerability in the Absolute Secure Access administrative console prior to 13.06 | Absolute Software | Secure Access | Medium | 4.8 | 2024-06-20 16:30:21 | Deep Dive |
| CVE-2020-11843 | Potential information leakage in administrator enabled debug mode | OpenText | NetIQ Access Manager | Medium | 6.5 | 2024-06-11 07:23:39 | Deep Dive |
| CVE-2023-48753 | WordPress Restricted Site Access plugin <= 7.4.1 - IP Restriction Bypass vulnerability | 10up | Restricted Site Access | Medium | 5.3 | 2024-06-04 11:02:21 | Deep Dive |
| CVE-2023-38042 | Ivanti Secure Access Client 安全漏洞 | Ivanti | Secure Access Client | 中危 | - | 2024-05-31 17:38:31 | Deep Dive |
| CVE-2023-46810 | Ivanti Secure Access Client 安全漏洞 | Ivanti | Secure Access Linux | 中危 | - | 2024-05-31 17:38:31 | Deep Dive |
| CVE-2024-35142 | IBM Security Verify Access privilege escalation | IBM | Security Verify Access Docker | High | 8.4 | 2024-05-31 16:57:37 | Deep Dive |
| CVE-2024-35140 | IBM Security Verify Access privilege escalation | IBM | Security Verify Access Docker | High | 7.7 | 2024-05-31 16:53:09 | Deep Dive |
| CVE-2024-22338 | IBM Security Verify Access OIDC Provider information disclosure | IBM | Security Verify Access OIDC Provider | Medium | 4.0 | 2024-05-31 10:36:53 | Deep Dive |
| CVE-2024-3640 | Rockwell Automation FactoryTalk® Remote Access™ has Unquoted Executables | Rockwell Automation | FactoryTalk® Remote Access™ | - | - | 2024-05-16 15:25:29 | Deep Dive |
| CVE-2024-23473 | SolarWinds Access Rights Manager (ARM) Hard-Coded Credentials Authentication Bypass Vulnerability | SolarWinds | Access Rights Manager | High | 8.6 | 2024-05-09 12:43:51 | Deep Dive |
| CVE-2024-28075 | SolarWinds ARM Deserialization of Untrusted Data Remote Code Execution | SolarWinds | Access Rights Manager | Critical | 9.0 | 2024-05-09 12:42:45 | Deep Dive |
| CVE-2024-29206 | Ubiquiti UniFi Connect EV Station 安全漏洞 | Ubiquiti Inc | UniFi Connect EV Station | - | - | 2024-05-07 16:40:03 | Deep Dive |
| CVE-2024-32535 | WordPress Access Category Password plugin <= 1.5.1 - Reflected Cross Site Scripting (XSS) vulnerability | Jojaba | Access Category Password | High | 7.1 | 2024-04-17 08:43:05 | Deep Dive |
| CVE-2024-3400 | PAN-OS: Arbitrary File Creation Leads to OS Command Injection Vulnerability in GlobalProtect | Palo Alto Networks | PAN-OS | Critical | 10.0 | 2024-04-12 07:20:01 | Deep Dive |
| CVE-2024-31944 | WordPress WooCommerce UPS Shipping plugin <= 2.2.4 - Cross Site Request Forgery (CSRF) vulnerability | Octolize | WooCommerce UPS Shipping – Live Rates and Access Points | Medium | 4.3 | 2024-04-10 17:39:55 | Deep Dive |
| CVE-2024-3388 | PAN-OS: User Impersonation in GlobalProtect SSL VPN | Palo Alto Networks | PAN-OS | Medium | 4.1 | 2024-04-10 17:06:41 | Deep Dive |
| CVE-2024-3387 | PAN-OS: Weak Certificate Strength in Panorama Software Leads to Sensitive Information Disclosure | Palo Alto Networks | PAN-OS | Medium | 5.3 | 2024-04-10 17:06:37 | Deep Dive |
| CVE-2024-3386 | PAN-OS: Predefined Decryption Exclusions Does Not Work as Intended | Palo Alto Networks | PAN-OS | Medium | 5.3 | 2024-04-10 17:06:33 | Deep Dive |