Total
396587 CVE
| CVE | Vendors | Products | Updated | CVSS v2 | CVSS v3 |
|---|---|---|---|---|---|
| CVE-2026-67395 | 2026-09-09 | N/A | 5.9 MEDIUM | ||
| A path traversal vulnerability exists in Sage Employee Self Service’s custom logo functionality due to improper validation of file path parameters. By leveraging directory traversal sequences and their encoded variants, an attacker may bypass directory restrictions and access files outside the application's intended file system scope. Successful exploitation would require knowledge of valid file names and paths. Depending on the privileges of the affected component, exploitation could result in the disclosure of sensitive information, including configuration files, environment settings, application assets, and log data. The vulnerability has been remediated through enhanced path validation and secure path resolution controls that prevent access to unauthorised locations. | |||||
| CVE-2026-56845 | 2026-09-09 | N/A | 7.5 HIGH | ||
| An unauthenticated path traversal (LFI) vulnerability exists under /custom-sounds/ when CustomSounds storage is configured to FileSystem. By including ../ sequences in the request path, an attacker can read arbitrary files outside the base directory. | |||||
| CVE-2026-79989 | 2026-09-09 | N/A | N/A | ||
| The vulnerability allows any authenticated user to change their own password without providing the current password or having an active elevated session. It also allows the attacker to change other users’ passwords if the attacker’s account has Edit users permission (which doesn’t allow changing others’ passwords) and lacks Administrate users permission (which is required to change others’ passwords). | |||||
| CVE-2026-67402 | 2026-09-09 | N/A | N/A | ||
| An insecure Apache configuration in ConfigServer Security & Firewall maps /usr/bin as CGI programs through the Messenger v3 HTTPS virtual host. A remote unauthenticated attacker whose address is blocked can request a mapped executable and run arbitrary commands as the Apache user. The vulnerability affects installations where CSF Messenger v3 and its HTTPS mode are enabled. WebPros addressed the vulnerability in version 16.31. | |||||
| CVE-2026-79721 | 2026-09-09 | N/A | N/A | ||
| Code execution can occur in versions of the MLflow platform running version 0.0.1 or newer, enabling a maliciously crafted model artifact to execute arbitrary code on an end user's system when loaded by the project. | |||||
| CVE-2026-65641 | 2026-09-09 | N/A | N/A | ||
| A vulnerability allowing an unauthenticated network attacker to coerce SMB authentication from the service account. | |||||
| CVE-2026-18755 | 2026-09-09 | N/A | 7.3 HIGH | ||
| A DLL hijacking vulnerability in GeoVision GV-ASManager allows a local attacker with write access to an unsafe search directory to execute arbitrary code. By placing a crafted dynamic-link library (DLL) file into the application search path prior to the legitimate library, the malicious code is loaded and executed under the security privileges of the GV-ASManager process. | |||||
| CVE-2026-18753 | 2026-09-09 | N/A | 9.1 CRITICAL | ||
| The product firmware contains an embedded, static RSA private key utilized by the Lighttpd web server for TLS termination. Exposure of this private key allows malicious actors to breach the confidentiality and integrity of HTTPS communications, enabling traffic decryption and server spoofing. | |||||
| CVE-2026-18754 | 2026-09-09 | N/A | 9.1 CRITICAL | ||
| The product firmware contains an embedded, static RSA private key utilized by the Lighttpd web server for TLS termination. Exposure of this private key allows malicious actors to breach the confidentiality and integrity of HTTPS communications, enabling traffic decryption and server spoofing. | |||||
| CVE-2026-12858 | 2026-09-09 | N/A | N/A | ||
| Improper Privilege Management vulnerability in ESET AV Remover (standalone) allows Privilege Escalation via especially crafted RPC. | |||||
| CVE-2026-69637 | 1 Microsoft | 7 Windows 10 1607, Windows 10 1809, Windows Server 2012 and 4 more | 2026-09-09 | N/A | 5.7 MEDIUM |
| Out-of-bounds read in Windows DHCP Server allows an authorized attacker to deny service over an adjacent network. | |||||
| CVE-2026-19733 | 2026-09-09 | N/A | 5.3 MEDIUM | ||
| Server-Side request forgery (SSRF) vulnerability in Yordam Informatics Technology Consulting, Training, and Electronic Systems Industry and Trade Inc. Library Information and Document Automation Program allows Server Side Request Forgery. This issue affects Library Information and Document Automation Program: before v22.2. | |||||
| CVE-2026-11838 | 2026-09-09 | N/A | 4.3 MEDIUM | ||
| Missing authentication for critical function vulnerability in Yordam Informatics Technology Consulting, Training, and Electronic Systems Industry and Trade Inc. Library Reservation System allows Input Data Manipulation. This issue affects Library Reservation System: before v22.2. | |||||
| CVE-2026-87827 | 2026-09-09 | N/A | N/A | ||
| Certain KGUARD DVR devices running vulnerable firmware expose a system command execution service on all network interfaces without requiring authentication. A remote unauthenticated attacker with network access to the affected service can execute arbitrary system commands on the device, potentially resulting in complete compromise of the DVR. The vulnerability is known to have been exploited in the wild by the Mirai_ptea (Rimasuta) and Mirai_aurora botnets for malware propagation and subsequent DDoS activity. The vulnerability was reported to affect firmware dating from 2016, while firmware released after 2017 appears to mitigate the issue by restricting the affected service to the localhost interface (127.0.0.1) instead of exposing it on all interfaces (0.0.0.0). The affected-device list reported by Netlab includes many D1004NR, D1008NR, D1016NR, D1104, D1104NR, D1108NR, D1116NR, D1132NR, D2116NR, D97xx, D98xx, and D99xx variants and several associated hardware revisions The exploit is included in some version of rapperbot and exploited in 2026. This assignment has been made to document the active exploitation and lack of documentation from the vendor. | |||||
| CVE-2026-78377 | 2026-09-09 | N/A | 6.1 MEDIUM | ||
| URL redirection to untrusted site ('open redirect') vulnerability in Yordam Informatics Technology Consulting, Training, and Electronic Systems Industry and Trade Inc. Library Information and Document Automation Program allows Phishing. This issue affects Library Information and Document Automation Program: from v22.1 before v22.2. | |||||
| CVE-2026-69679 | 1 Microsoft | 7 Windows 10 1607, Windows 10 1809, Windows Server 2012 and 4 more | 2026-09-09 | N/A | 5.7 MEDIUM |
| Out-of-bounds read in Windows DHCP Server allows an authorized attacker to deny service over an adjacent network. | |||||
| CVE-2026-69266 | 1 Microsoft | 7 Windows 10 1607, Windows 10 1809, Windows Server 2012 and 4 more | 2026-09-09 | N/A | 8.8 HIGH |
| Integer overflow or wraparound in Windows DHCP Server allows an unauthorized attacker to execute code over a network. | |||||
| CVE-2026-69342 | 1 Microsoft | 7 Windows 10 1607, Windows 10 1809, Windows Server 2012 and 4 more | 2026-09-09 | N/A | 7.5 HIGH |
| Out-of-bounds read in Windows DHCP Server allows an unauthorized attacker to deny service over a network. | |||||
| CVE-2026-69297 | 1 Microsoft | 7 Windows 10 1607, Windows 10 1809, Windows Server 2012 and 4 more | 2026-09-09 | N/A | 6.5 MEDIUM |
| Storing passwords in a recoverable format in Windows DHCP Server allows an authorized attacker to disclose information over a network. | |||||
| CVE-2026-69405 | 1 Microsoft | 7 Windows 10 1607, Windows 10 1809, Windows Server 2012 and 4 more | 2026-09-09 | N/A | 5.7 MEDIUM |
| Missing release of memory after effective lifetime in Windows DHCP Server allows an authorized attacker to deny service over an adjacent network. | |||||
