2024 Advisories Archive

Severity Date Published Date Updated Check Point Reference Source Industry Reference Description
Critical 26 Mar 2024 16 Apr 2024 CPAI-2024-0075 CVE-2013-4316
Object-Graph Navigation Language Injection (CVE-2013-4316)
High 16 Apr 2024 16 Apr 2024 CPAI-2023-1646 CVE-2023-25437
vTech VCS754 Information Disclosure (CVE-2023-25437)
Critical 14 Apr 2024 16 Apr 2024 CPAI-2024-0196 CVE-2024-3400
Palo Alto Networks GlobalProtect Command Injection (CVE-2024-3400)
High 15 Apr 2024 15 Apr 2024 CPAI-2023-1652 CVE-2023-47565
QNAP QVR Command Injection (CVE-2023-47565)
High 14 Apr 2024 14 Apr 2024 CPAI-2024-0187 CVE-2024-20767
Adobe ColdFusion Information Disclosure (CVE-2024-20767)
Critical 14 Apr 2024 14 Apr 2024 CPAI-2022-2049 CVE-2022-24838
Nextcloud Calendar SMTP Command Injection (CVE-2022-24838)
Critical 14 Apr 2024 14 Apr 2024 CPAI-2023-1642 CVE-2023-34747
UJCMS Arbitrary File Upload (CVE-2023-34747)
High 14 Apr 2024 14 Apr 2024 CPAI-2024-0163 CVE-2024-1538
WordPress File Manager Plugin Cross-Site Scripting (CVE-2024-1538)
High 14 Apr 2024 14 Apr 2024 CPAI-2023-1632 CVE-2023-2833
WordPress ReviewX Plugin Privilege Escalation (CVE-2023-2833)
Medium 14 Apr 2024 14 Apr 2024 CPAI-2021-2147 CVE-2021-21816
D-Link DIR-3040 Information Disclosure (CVE-2021-21816)
Medium 14 Apr 2024 14 Apr 2024 CPAI-2023-0730 CVE-2023-4347
LibreNMS Cross-Site Scripting (CVE-2023-4347)
Medium 14 Apr 2024 14 Apr 2024 CPAI-2023-0461 CVE-2023-34225
JetBrains TeamCity Cross-Site Scripting (CVE-2023-34225)
High 10 Apr 2024 14 Apr 2024 CPAI-2024-0179 CVE-2024-3273
D-Link DNS Command Injection (CVE-2024-3273)
High 14 Apr 2024 14 Apr 2024 CPAI-2018-2731 CVE-2018-15517
D-Link Central WiFiManager Server-Side Request Forgery (CVE-2018-15517)
High 11 Apr 2024 11 Apr 2024 CPAI-2023-1643 CVE-2023-34096
Thruk Path Traversal (CVE-2023-34096)
Critical 11 Apr 2024 11 Apr 2024 CPAI-2023-1641 CVE-2023-3643
Boss Mini Information Disclosure (CVE-2023-3643)
High 11 Apr 2024 11 Apr 2024 CPAI-2023-1616 CVE-2023-48725
Netgear RAX30 Buffer Overflow (CVE-2023-48725)
Medium 10 Apr 2024 10 Apr 2024 CPAI-2023-1634 CVE-2023-2745
WordPress Directory Traversal (CVE-2023-2745)
Critical 10 Apr 2024 10 Apr 2024 CPAI-2024-0119 CVE-2020-9296
Expression Language Server Side Template Injection (CVE-2020-9296)
High 9 Apr 2024 9 Apr 2024 CPAI-2024-0183 Microsoft CVE-2024-26234 CVE-2024-26234
Microsoft Proxy Driver Spoofing (CVE-2024-26234)
High 9 Apr 2024 9 Apr 2024 CPAI-2024-0180 Microsoft CVE-2024-26212 CVE-2024-26212
Microsoft DHCP Server Service Denial of Service (CVE-2024-26212)
High 9 Apr 2024 9 Apr 2024 CPAI-2024-0174 Microsoft CVE-2024-26211 CVE-2024-26211
Microsoft Windows Remote Access Connection Manager Elevation of Privilege (CVE-2024-26211)
High 9 Apr 2024 9 Apr 2024 CPAI-2024-0172 Microsoft CVE-2024-26158 CVE-2024-26158
Microsoft Install Service Elevation of Privilege (CVE-2024-26158)
High 9 Apr 2024 9 Apr 2024 CPAI-2024-0171 Microsoft CVE-2024-26256 CVE-2024-26256
Microsoft libarchive Remote Code Execution (CVE-2024-26256)
High 9 Apr 2024 9 Apr 2024 CPAI-2024-0170 Microsoft CVE-2024-26230 CVE-2024-26230
Microsoft Windows Telephony Server Elevation of Privilege (CVE-2024-26230)
High 9 Apr 2024 9 Apr 2024 CPAI-2024-0169 Microsoft CVE-2024-26209 CVE-2024-26209
Microsoft Local Security Authority Subsystem Service Information Disclosure (CVE-2024-26209)
High 9 Apr 2024 9 Apr 2024 CPAI-2024-0168 Microsoft CVE-2024-26218 CVE-2024-26218
Microsoft Windows Kernel Elevation of Privilege (CVE-2024-26218)
High 8 Apr 2024 8 Apr 2024 CPAI-2022-2050 CVE-2022-28955
D-Link DIR-816L Authentication Bypass (CVE-2022-28955)
Critical 8 Apr 2024 8 Apr 2024 CPAI-2021-2153 CVE-2021-41266
Minio Console Authentication Bypass (CVE-2021-41266)
Critical 8 Apr 2024 8 Apr 2024 CPAI-2021-2152 CVE-2021-44427
RosarioSIS SQL Injection (CVE-2021-44427)
Medium 8 Apr 2024 8 Apr 2024 CPAI-2021-2151 CVE-2021-36450
Verint Workforce Optimization Cross-Site Scripting (CVE-2021-36450)
High 8 Apr 2024 8 Apr 2024 CPAI-2022-2046 CVE-2022-46443
Bangresto Project SQL Injection (CVE-2022-46443)
High 8 Apr 2024 8 Apr 2024 CPAI-2023-1625 CVE-2023-38944
Multilaser Routers Authentication Bypass (CVE-2023-38944)
Medium 8 Apr 2024 8 Apr 2024 CPAI-2022-1912 CVE-2022-48428
JetBrains TeamCity Cross-Site Scripting (CVE-2022-48428)
Medium 7 Apr 2024 7 Apr 2024 CPAI-2023-1640 CVE-2023-5914
Citrix StoreFront Cross-Site Scripting (CVE-2023-5914)
High 7 Apr 2024 7 Apr 2024 CPAI-2023-1639 CVE-2023-6184
Citrix Session Recording Remote Code Execution (CVE-2023-6184)
Critical 7 Apr 2024 7 Apr 2024 CPAI-2024-0173 CVE-2024-24497
CVE-2024-24499
Employee Management System SQL Injection (CVE-2024-24497; CVE-2024-24499)
Critical 7 Apr 2024 7 Apr 2024 CPAI-2024-0167 CVE-2024-24496
Daily Habit Tracker Authentication Bypass (CVE-2024-24496)
Critical 7 Apr 2024 7 Apr 2024 CPAI-2024-0164 CVE-2024-22836
Akaunting Command Injection (CVE-2024-22836)
Medium 7 Apr 2024 7 Apr 2024 CPAI-2023-1633 CVE-2023-0157
WordPress All-in-One Security Plugin Privilege Escalation (CVE-2023-0157)
High 7 Apr 2024 7 Apr 2024 CPAI-2024-0160 CVE-2024-24724
Gibbon Server-Side Template Injection (CVE-2024-24724)
Medium 7 Apr 2024 7 Apr 2024 CPAI-2023-1631 CVE-2023-0156
WordPress All-in-One Security Plugin Path Traversal (CVE-2023-0156)
High 7 Apr 2024 7 Apr 2024 CPAI-2024-0147 CVE-2024-23898
Jenkins Cross-Site Request Forgery (CVE-2024-23898)
Medium 7 Apr 2024 7 Apr 2024 CPAI-2023-1622 CVE-2023-40028
Ghost Arbitrary File Upload (CVE-2023-40028)
Critical 7 Apr 2024 7 Apr 2024 CPAI-2021-2141 CVE-2021-27651
Pega Infinity Authentication Bypass (CVE-2021-27651)
Critical 11 Mar 2024 7 Apr 2024 CPAI-2022-2035 CVE-2022-0788
CVE-2022-0948
WordPress Multiple Plugins SQL Injection (CVE-2022-0788; CVE-2022-0948)
High 4 Apr 2024 4 Apr 2024 CPAI-2023-1630 CVE-2023-37474
Copyparty Project Path Traversal (CVE-2023-37474)
High 4 Apr 2024 4 Apr 2024 CPAI-2021-2143 CVE-2021-40149
CVE-2021-40150
Reolink E1 Zoom Information Disclosure (CVE-2021-40149; CVE-2021-40150)
Critical 17 Mar 2024 4 Apr 2024 CPAI-2023-1592 CVE-2023-46979
CVE-2023-48799
CVE-2023-48802
CVE-2023-48803
CVE-2023-48804
CVE-2023-48805
CVE-2023-48806
CVE-2023-48807
CVE-2023-48808
CVE-2023-48810
CVE-2023-48811
CVE-2023-48812
TOTOLINK X6000R Command Injection (CVE-2023-46979; CVE-2023-48799; CVE-2023-48802; CVE-2023-48803; CVE-2023-48804; CVE-2023-48805; CVE-2023-48806; CVE-2023-48807; CVE-2023-48808; CVE-2023-48810; CVE-2023-48811; CVE-2023-48812)
Critical 23 Feb 2024 4 Apr 2024 CPAI-2024-0070 CVE-2024-25600
WordPress Brick Builder Theme Remote Code Execution (CVE-2024-25600)
×
  Feedback
This website uses cookies for its functionality and for analytics and marketing purposes. By continuing to use this website, you agree to the use of cookies. For more information, please read our Cookies Notice.
OK