🛡️ قاعدة بيانات الثغرات الأمنية
ثغرات CVE مع تحليل AI ثنائي اللغة خاص بالمملكة العربية السعودية
| المعرّف | العنوان / الوصف | الخطورة | CVSS | الحالة | النشر |
|---|---|---|---|---|---|
| CVE-2020-37073 |
Victor CMS 1.0 contains an authenticated file upload vulnerabilit…
Victor CMS 1.0 contains an authenticated file upload vulnerability that allows administrators to upl…
|
HIGH |
8.8
|
⚡ ✅ AI | فبراير 3, 2026 |
| CVE-2020-37076 |
Victor CMS version 1.0 contains a SQL injection vulnerability in …
Victor CMS version 1.0 contains a SQL injection vulnerability in the 'post' parameter on post.php th…
|
HIGH |
8.2
|
⚡ ✅ | فبراير 3, 2026 |
| CVE-2020-37084 |
School ERP Pro 1.0 contains a remote code execution vulnerability…
School ERP Pro 1.0 contains a remote code execution vulnerability that allows authenticated admin us…
|
HIGH |
7.2
|
⚡ ✅ | فبراير 3, 2026 |
| CVE-2020-37088 |
School ERP Pro 1.0 contains a file disclosure vulnerability that …
School ERP Pro 1.0 contains a file disclosure vulnerability that allows unauthenticated attackers to…
|
HIGH |
7.5
|
⚡ ✅ | فبراير 3, 2026 |
| CVE-2020-37097 |
Edimax EW-7438RPn 1.13 contains an information disclosure vulnera…
Edimax EW-7438RPn 1.13 contains an information disclosure vulnerability that exposes WiFi network co…
|
HIGH |
7.5
|
⚡ ✅ | فبراير 3, 2026 |
| CVE-2020-37100 |
Sync Breeze Enterprise 12.4.18 contains an unquoted service path …
Sync Breeze Enterprise 12.4.18 contains an unquoted service path vulnerability that allows local att…
|
HIGH |
7.8
|
⚡ ✅ | فبراير 3, 2026 |
| CVE-2020-37113 |
GUnet OpenEclass 1.7.3 allows authenticated users to bypass file …
GUnet OpenEclass 1.7.3 allows authenticated users to bypass file extension restrictions when uploadi…
|
HIGH |
8.8
|
⚡ ✅ | فبراير 3, 2026 |
| CVE-2020-37116 |
GUnet OpenEclass 1.7.3 includes phpMyAdmin 2.10.0.2 by default, w…
GUnet OpenEclass 1.7.3 includes phpMyAdmin 2.10.0.2 by default, which allows remote logins. Attacker…
|
HIGH |
8.8
|
⚡ ✅ | فبراير 3, 2026 |
| CVE-2025-15556 |
Notepad++ versions prior to 8.8.9, when using the WinGUp updater,…
Notepad++ versions prior to 8.8.9, when using the WinGUp updater, contain an update integrity verifi…
|
HIGH |
7.5
|
⚡ ✅ KEV | فبراير 3, 2026 |
| CVE-2026-25502 |
iccDEV provides a set of libraries and tools that allow for the i…
iccDEV provides a set of libraries and tools that allow for the interaction, manipulation, and appli…
|
HIGH |
7.8
|
⚡ ✅ | فبراير 3, 2026 |
| CVE-2024-5386 |
In lunary-ai/lunary version 1.2.2, an account hijacking vulnerabi…
In lunary-ai/lunary version 1.2.2, an account hijacking vulnerability exists due to a password reset…
|
HIGH |
8.8
|
⚡ ✅ | فبراير 2, 2026 |
| CVE-2026-25134 |
Group-Office is an enterprise customer relationship management an…
Group-Office is an enterprise customer relationship management and groupware tool. Prior to 6.8.150,…
|
HIGH |
8.8
|
⚡ ✅ | فبراير 2, 2026 |
| CVE-2026-25221 |
PolarLearn is a free and open-source learning program. In 0-PRERE…
PolarLearn is a free and open-source learning program. In 0-PRERELEASE-15 and earlier, the OAuth 2.0…
|
HIGH |
8.1
|
⚡ ✅ | فبراير 2, 2026 |
| CVE-2026-25222 |
PolarLearn is a free and open-source learning program. In 0-PRERE…
PolarLearn is a free and open-source learning program. In 0-PRERELEASE-15 and earlier, a timing atta…
|
HIGH |
7.5
|
⚡ ✅ | فبراير 2, 2026 |
| CVE-2021-47915 |
PHP Melody version 3.0 contains a remote SQL injection vulnerabil…
PHP Melody version 3.0 contains a remote SQL injection vulnerability in the video edit module that a…
|
HIGH |
8.1
|
⚡ ✅ | فبراير 1, 2026 |
| CVE-2021-47918 |
Simple CMS 2.1 contains a remote SQL injection vulnerability that…
Simple CMS 2.1 contains a remote SQL injection vulnerability that allows privileged attackers to inj…
|
HIGH |
8.1
|
⚡ ✅ | فبراير 1, 2026 |
| CVE-2020-37032 |
Wing FTP Server 6.3.8 contains a remote code execution vulnerabil…
Wing FTP Server 6.3.8 contains a remote code execution vulnerability in its Lua-based web console th…
|
HIGH |
8.8
|
⚡ ✅ | يناير 30, 2026 |
| CVE-2020-37041 |
OpenCTI 3.3.1 is vulnerable to a directory traversal attack via t…
OpenCTI 3.3.1 is vulnerable to a directory traversal attack via the static/css endpoint. An unauthen…
|
HIGH |
7.5
|
⚡ ✅ | يناير 30, 2026 |
| CVE-2026-24780 |
AutoGPT is a platform that allows users to create, deploy, and ma…
AutoGPT is a platform that allows users to create, deploy, and manage continuous artificial intellig…
|
HIGH |
8.8
|
⚡ ✅ | يناير 29, 2026 |
| CVE-2026-25047 |
deepHas provides a test for the existence of a nested object key …
deepHas provides a test for the existence of a nested object key and optionally returns that key. A …
|
HIGH |
8.8
|
⚡ ✅ | يناير 29, 2026 |
| CVE-2026-25061 |
tcpflow is a TCP/IP packet demultiplexer. In versions up to and i…
tcpflow is a TCP/IP packet demultiplexer. In versions up to and including 1.61, wifipcap parses 802.…
|
HIGH |
7.5
|
⚡ ✅ | يناير 29, 2026 |
| CVE-2026-25116 |
Runtipi is a personal homeserver orchestrator. Starting in versio…
Runtipi is a personal homeserver orchestrator. Starting in version 4.5.0 and prior to version 4.7.2,…
|
HIGH |
7.6
|
⚡ ✅ | يناير 29, 2026 |
| CVE-2020-36972 |
SmartBlog 2.0.1 contains a blind SQL injection vulnerability in t…
SmartBlog 2.0.1 contains a blind SQL injection vulnerability in the 'id_post' parameter of the detai…
|
HIGH |
8.2
|
⚡ ✅ | يناير 28, 2026 |
| CVE-2026-1505 |
A vulnerability was found in D-Link DIR-615 4.10. This issue affe…
A vulnerability was found in D-Link DIR-615 4.10. This issue affects some unknown processing of the …
|
HIGH |
7.2
|
⚡ ✅ | يناير 28, 2026 |
| CVE-2026-1506 |
A vulnerability was determined in D-Link DIR-615 4.10. Impacted i…
A vulnerability was determined in D-Link DIR-615 4.10. Impacted is an unknown function of the file /…
|
HIGH |
7.2
|
⚡ ✅ | يناير 28, 2026 |
🤖 تحليل AI متاح
يتضمن تحليل الذكاء الاصطناعي: الوصف العربي، التأثير السعودي، خطوات المعالجة، خريطة الامتثال (NCA، SAMA، ISO 27001) وتقنيات MITRE ATT&CK.
🔴 الثغرات الحرجة الأخيرة
CVE-2026-20133
أبريل 20, 2026
CVE-2026-20128
أبريل 20, 2026
CVE-2026-20122
أبريل 20, 2026
CVE-2025-48700
أبريل 20, 2026
CVE-2025-32975
أبريل 20, 2026
💡 نصائح البحث
CVE-2024-12345
بحث بمعرّف محدد
apache
بحث بالمنتج
remote code execution
بحث بنوع الثغرة
log4j
بحث بالاسم المشهور
📡 مصادر البيانات
NVD (NIST) · CIRCL
CISA KEV · ThreatFox
Feodo Tracker · AlienVault OTX
يتم التحديث تلقائياً يومياً