🛡️ CVE Vulnerability Database
CVE vulnerabilities with bilingual AI analysis tailored for Saudi Arabia
| CVE ID | Title / Description | Severity | CVSS | Status | Published |
|---|---|---|---|---|---|
| CVE-2024-9463 |
Palo Alto Networks Expedition OS Command Injection - Unauthentica…
Palo Alto Networks Expedition OS Command Injection Vulnerability — Palo Alto Networks Expedition con…
|
CRITICAL |
9.0
|
⚡ ✅ KEV AI | Nov 14, 2024 |
| CVE-2024-9465 |
Palo Alto Networks Expedition SQL Injection - Unauthenticated Dat…
Palo Alto Networks Expedition SQL Injection Vulnerability — Palo Alto Networks Expedition contains a…
|
CRITICAL |
9.0
|
⚡ ✅ KEV AI | Nov 14, 2024 |
| CVE-2024-43451 |
Microsoft Windows NTLMv2 Hash Disclosure Spoofing Vulnerability —…
Microsoft Windows NTLMv2 Hash Disclosure Spoofing Vulnerability — Microsoft Windows contains an NTLM…
|
CRITICAL |
9.0
|
⚡ ✅ KEV AI | Nov 12, 2024 |
| CVE-2024-49039 |
Microsoft Windows Task Scheduler Privilege Escalation Vulnerabili…
Microsoft Windows Task Scheduler Privilege Escalation Vulnerability — Microsoft Windows Task Schedul…
|
CRITICAL |
9.0
|
⚡ ✅ KEV AI | Nov 12, 2024 |
| CVE-2021-26086 |
Atlassian Jira Server and Data Center Path Traversal Vulnerabilit…
Atlassian Jira Server and Data Center Path Traversal Vulnerability — Atlassian Jira Server and Data …
|
CRITICAL |
9.0
|
⚡ ✅ KEV AI | Nov 12, 2024 |
| CVE-2021-41277 |
Metabase GeoJSON API Local File Inclusion Vulnerability — Metabas…
Metabase GeoJSON API Local File Inclusion Vulnerability — Metabase contains a local file inclusion v…
|
CRITICAL |
9.0
|
⚡ ✅ KEV AI | Nov 12, 2024 |
| CVE-2014-2120 |
Cisco ASA WebVPN XSS Vulnerability Enables Session Hijacking
Cisco Adaptive Security Appliance (ASA) Cross-Site Scripting (XSS) Vulnerability — Cisco Adaptive Se…
|
CRITICAL |
9.0
|
⚡ ✅ KEV AI | Nov 12, 2024 |
| CVE-2019-16278 |
Nostromo nhttpd Directory Traversal Vulnerability — Nostromo nhtt…
Nostromo nhttpd Directory Traversal Vulnerability — Nostromo nhttpd contains a directory traversal v…
|
CRITICAL |
9.0
|
⚡ ✅ KEV AI | Nov 7, 2024 |
| CVE-2024-43093 |
Android Framework Privilege Escalation Vulnerability — Android Fr…
Android Framework Privilege Escalation Vulnerability — Android Framework contains an unspecified vul…
|
CRITICAL |
9.0
|
⚡ ✅ KEV AI | Nov 7, 2024 |
| CVE-2024-51567 |
CyberPanel Incorrect Default Permissions Vulnerability — CyberPan…
CyberPanel Incorrect Default Permissions Vulnerability — CyberPanel contains an incorrect default pe…
|
CRITICAL |
9.0
|
⚡ ✅ KEV AI | Nov 7, 2024 |
| CVE-2024-5910 |
Palo Alto Networks Expedition Missing Authentication Vulnerabilit…
Palo Alto Networks Expedition Missing Authentication Vulnerability — Palo Alto Networks Expedition c…
|
CRITICAL |
9.0
|
⚡ ✅ KEV AI | Nov 7, 2024 |
| CVE-2024-8956 |
PTZOptics PT30X-SDI/NDI Cameras Authentication Bypass Vulnerabili…
PTZOptics PT30X-SDI/NDI Cameras Authentication Bypass Vulnerability — PTZOptics PT30X-SDI/NDI camera…
|
CRITICAL |
9.0
|
⚡ ✅ KEV AI | Nov 4, 2024 |
| CVE-2024-8957 |
PTZOptics PT30X-SDI/NDI OS Command Injection Vulnerability (CVE-2…
PTZOptics PT30X-SDI/NDI Cameras OS Command Injection Vulnerability — PTZOptics PT30X-SDI/NDI cameras…
|
CRITICAL |
9.0
|
⚡ ✅ KEV AI | Nov 4, 2024 |
| CVE-2024-20481 |
Cisco ASA and FTD Denial-of-Service Vulnerability — Cisco Adaptiv…
Cisco ASA and FTD Denial-of-Service Vulnerability — Cisco Adaptive Security Appliance (ASA) and Fire…
|
CRITICAL |
9.0
|
⚡ ✅ KEV AI | Oct 24, 2024 |
| CVE-2024-37383 |
RoundCube Webmail Cross-Site Scripting (XSS) Vulnerability — Roun…
RoundCube Webmail Cross-Site Scripting (XSS) Vulnerability — RoundCube Webmail contains a cross-site…
|
CRITICAL |
9.0
|
⚡ ✅ KEV AI | Oct 24, 2024 |
| CVE-2024-47575 |
Fortinet FortiManager Missing Authentication Vulnerability — Fort…
Fortinet FortiManager Missing Authentication Vulnerability — Fortinet FortiManager contains a missin…
|
CRITICAL |
9.0
|
⚡ ✅ KEV AI | Oct 23, 2024 |
| CVE-2024-38094 |
Microsoft SharePoint Deserialization Vulnerability — Microsoft Sh…
Microsoft SharePoint Deserialization Vulnerability — Microsoft SharePoint contains a deserialization…
|
CRITICAL |
9.0
|
⚡ ✅ KEV AI | Oct 22, 2024 |
| CVE-2024-9537 |
ScienceLogic SL1 Critical Unspecified Vulnerability in Third-Part…
ScienceLogic SL1 Unspecified Vulnerability — ScienceLogic SL1 (formerly EM7) is affected by an unspe…
|
CRITICAL |
9.0
|
⚡ ✅ KEV AI | Oct 21, 2024 |
| CVE-2024-40711 |
Veeam Backup and Replication Deserialization Vulnerability — Veea…
Veeam Backup and Replication Deserialization Vulnerability — Veeam Backup and Replication contains a…
|
CRITICAL |
9.0
|
⚡ ✅ KEV AI | Oct 17, 2024 |
| CVE-2024-28987 |
SolarWinds Web Help Desk Hardcoded Credential Vulnerability — Sol…
SolarWinds Web Help Desk Hardcoded Credential Vulnerability — SolarWinds Web Help Desk contains a ha…
|
CRITICAL |
9.0
|
⚡ ✅ KEV AI | Oct 15, 2024 |
| CVE-2024-30088 |
Microsoft Windows Kernel TOCTOU Race Condition Vulnerability — Mi…
Microsoft Windows Kernel TOCTOU Race Condition Vulnerability — Microsoft Windows Kernel contains a t…
|
CRITICAL |
9.0
|
⚡ ✅ KEV AI | Oct 15, 2024 |
| CVE-2024-9680 |
Mozilla Firefox Use-After-Free in Animation Timelines (CVE-2024-9…
Mozilla Firefox Use-After-Free Vulnerability — Mozilla Firefox and Firefox ESR contain a use-after-f…
|
CRITICAL |
9.0
|
⚡ ✅ KEV AI | Oct 15, 2024 |
| CVE-2024-23113 |
Fortinet Multiple Products Format String Vulnerability — Fortinet…
Fortinet Multiple Products Format String Vulnerability — Fortinet FortiOS, FortiPAM, FortiProxy, and…
|
CRITICAL |
9.0
|
⚡ ✅ KEV AI | Oct 9, 2024 |
| CVE-2024-9379 |
Ivanti Cloud Services Appliance SQL Injection in Admin Console
Ivanti Cloud Services Appliance (CSA) SQL Injection Vulnerability — Ivanti Cloud Services Appliance …
|
CRITICAL |
9.0
|
⚡ ✅ KEV AI | Oct 9, 2024 |
| CVE-2024-9380 |
Ivanti Cloud Services Appliance OS Command Injection Vulnerabilit…
Ivanti Cloud Services Appliance (CSA) OS Command Injection Vulnerability — Ivanti Cloud Services App…
|
CRITICAL |
9.0
|
⚡ ✅ KEV AI | Oct 9, 2024 |