| CVE ID | Title | Vendor | Product | Severity | CVSS Score | Published At | AI Analysis |
|---|---|---|---|---|---|---|---|
| CVE-2023-22320 | OpenAM 路径遍历漏洞 | OpenAM consortium | OpenAM Web Policy Agent (OpenAM Consortium Edition) | 高危 | - | 2023-01-10 00:00:00 | Deep Dive |
| CVE-2023-0125 | Control iD Gerencia Web Web Interface cross site scripting | Control iD | Gerencia Web | Low | 2.4 | 2023-01-09 20:51:06 | Deep Dive |
| CVE-2007-10002 | web-cyradm auth.inc.php sql injection | - | web-cyradm | High | 7.3 | 2023-01-08 09:18:55 | Deep Dive |
| CVE-2007-10001 | web-cyradm search.php sql injection | - | web-cyradm | Low | 3.5 | 2023-01-05 11:26:20 | Deep Dive |
| CVE-2022-4372 | Web Invoice <= 2.1.3 - Authenticated SQLi | Unknown | Web Invoice | 高危 | - | 2023-01-02 21:49:40 | Deep Dive |
| CVE-2022-4371 | Web Invoice <= 2.1.3 - Authenticated SQLi | Unknown | Web Invoice | 高危 | - | 2023-01-02 21:49:07 | Deep Dive |
| CVE-2021-4236 | Panic or authentication bypass in github.com/ecnepsnai/web | github.com/ecnepsnai/web | github.com/ecnepsnai/web | 超危 | - | 2022-12-27 21:13:46 | Deep Dive |
| CVE-2019-25088 | ytti Oxidized Web conf_search.haml cross site scripting | ytti | Oxidized Web | Low | 3.5 | 2022-12-27 09:41:31 | Deep Dive |
| CVE-2022-4728 | Graphite Web Cookie cross site scripting | Graphite | Web | Low | 3.5 | 2022-12-24 00:00:00 | Deep Dive |
| CVE-2022-4729 | Graphite Web Template Name cross site scripting | Graphite | Web | Low | 3.5 | 2022-12-24 00:00:00 | Deep Dive |
| CVE-2022-4730 | Graphite Web Absolute Time Range cross site scripting | Graphite | Web | Low | 3.5 | 2022-12-24 00:00:00 | Deep Dive |
| CVE-2022-46768 | File name information disclosure vulnerability in Zabbix Web Service Report Generation | Zabbix | Web Service Report Generation | Medium | 5.9 | 2022-12-19 10:00:14 | Deep Dive |
| CVE-2022-4607 | 3D City Database OGC Web Feature Service xml external entity reference | 3D City Database | OGC Web Feature Service | Medium | 5.5 | 2022-12-18 00:00:00 | Deep Dive |
| CVE-2022-38756 | CVE-2022-38756 vulnerability in GW Web prior to 18.4.2 | Micro Focus | Micro Focus GroupWise Web | Medium | 4.3 | 2022-12-16 00:00:00 | Deep Dive |
| CVE-2022-3073 | Quaonos Schema ST4 example templates prone to XSS | Quanos | Schema ST4 example web templates | Medium | 6.1 | 2022-12-14 08:17:09 | Deep Dive |
| CVE-2022-41263 | SAP Business Objects Business Intelligence Platform 跨站请求伪造漏洞 | SAP | Business Objects Business Intelligence Platform (Web intelligence) | Medium | 4.3 | 2022-12-12 21:48:12 | Deep Dive |
| CVE-2022-4264 | Incorrect privilege assignment in M-Files Web Server | M-Files | M-Files Web | Medium | 6.5 | 2022-12-09 14:08:41 | Deep Dive |
| CVE-2022-4270 | Incorrect privilege assignment in M-Files Web Server | M-Files | M-Files Web | Low | 2.0 | 2022-12-02 12:20:59 | Deep Dive |
| CVE-2022-4257 | C-DATA Web Management System GET Parameter jumpto.php argument injection | C-DATA | Web Management System | Medium | 6.3 | 2022-12-01 00:00:00 | Deep Dive |
| CVE-2022-38075 | WordPress Mantenimiento web plugin <= 0.13 - Cross-Site Request Forgery (CSRF) vulnerability leading to Stored Cross-Site Scripting (XSS) | Carlos Doral | Mantenimiento web (WordPress plugin) | Medium | 6.1 | 2022-11-18 18:57:07 | Deep Dive |