快速搜索提示:
按厂商查询(如:microsoft)|
按产品查询(如:microsoft sql_server)
漏洞列表 360566
| CVE ID | 标题 | 严重程度 | CVSS | 发布时间 | 受影响产品 | 数据源 | 操作 |
|---|---|---|---|---|---|---|---|
| CVE-2026-22572 |
An authentication bypass using an alternate path or channel vulnerability in Fortinet FortiAnalyzer
|
HIGH | 7.2 | 2026-03-10 |
fortinet fortianalyzer
fortinet fortimanager
+1个
|
NVD | |
| CVE-2026-21791 |
HCL Sametime for Android is impacted by a sensitive information disclosure. Hostnames information i
|
LOW | 3.3 | 2026-03-10 |
未知
|
NVD | |
| CVE-2026-21262 |
Improper access control in SQL Server allows an authorized attacker to elevate privileges over a net
|
HIGH | 8.8 | 2026-03-10 |
microsoft sql_server_2016
microsoft sql_server_2017
+3个
|
NVD | |
| CVE-2026-20967 |
Improper input validation in System Center Operations Manager allows an authorized attacker to eleva
|
HIGH | 8.8 | 2026-03-10 |
microsoft system_center_operations_manager
microsoft system_center_operations_manager
+1个
|
NVD | |
| CVE-2026-1286 |
CWE-502: Deserialization of untrusted data vulnerability exists that could lead to loss of confident
|
UNKNOWN | N/A | 2026-03-10 |
未知
|
NVD | |
| CVE-2026-1261 |
The MetForm Pro plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the Quiz featu
|
HIGH | 7.2 | 2026-03-10 |
未知
|
NVD | |
| CVE-2025-70025 |
An issue pertaining to CWE-79: Improper Neutralization of Input During Web Page Generation was disco
|
MEDIUM | 6.1 | 2026-03-10 |
未知
|
NVD | |
| CVE-2025-69615 |
Incorrect Access Control via missing 2FA rate-limiting allowing unlimited brute-force retries and fu
|
CRITICAL | 9.1 | 2026-03-10 |
未知
|
NVD | |
| CVE-2025-69614 |
Incorrect Access Control via activation token reuse on the password-reset endpoint allowing unauthor
|
CRITICAL | 9.4 | 2026-03-10 |
未知
|
NVD | |
| CVE-2025-68648 |
A use of externally-controlled format string vulnerability in Fortinet FortiAnalyzer 7.6.0 through 7
|
HIGH | 7.2 | 2026-03-10 |
fortinet fortianalyzer
fortinet fortianalyzer_cloud
+2个
|
NVD | |
| CVE-2025-68482 |
A improper certificate validation vulnerability in Fortinet FortiAnalyzer 7.6.0 through 7.6.4, Forti
|
MEDIUM | 6.9 | 2026-03-10 |
fortinet fortimanager
fortinet fortianalyzer
|
NVD | |
| CVE-2025-66178 |
A improper neutralization of special elements used in an os command ('os command injection') vulnera
|
HIGH | 7.2 | 2026-03-10 |
fortinet fortiweb
|
NVD | |
| CVE-2025-56422 |
A deserialization vulnerability in LimeSurvey before v6.15.0+250623 allows a remote attacker to exec
|
CRITICAL | 9.8 | 2026-03-10 |
未知
|
NVD | |
| CVE-2025-56421 |
SQL Injection vulnerability in LimeSurvey before v.6.15.4+250710 allows a remote attacker to obtain
|
HIGH | 7.5 | 2026-03-10 |
未知
|
NVD | |
| CVE-2025-55717 |
A cleartext storage of sensitive information vulnerability [CWE-312] vulnerability in Fortinet Forti
|
MEDIUM | 4.0 | 2026-03-10 |
fortinet fortivoice
fortinet fortivoice
+2个
|
NVD | |
| CVE-2025-54820 |
A Stack-based Buffer Overflow vulnerability [CWE-121] vulnerability in Fortinet FortiManager 7.4.0 t
|
HIGH | 8.1 | 2026-03-10 |
fortinet fortimanager
|
NVD | |
| CVE-2025-54659 |
An Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal') vulnerability [CWE
|
MEDIUM | 5.8 | 2026-03-10 |
未知
|
NVD | |
| CVE-2025-53706 |
Rejected reason: ** REJECT ** DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: The CNA or
|
UNKNOWN | N/A | 2026-03-10 |
未知
|
NVD | |
| CVE-2025-53608 |
An Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerabilit
|
MEDIUM | 4.8 | 2026-03-10 |
fortinet fortisandbox
|
NVD | |
| CVE-2025-49784 |
An improper neutralization of special elements used in an sql command ('sql injection') vulnerabilit
|
MEDIUM | 6.0 | 2026-03-10 |
fortinet fortianalyzer
fortinet fortianalyzer_big_data
+1个
|
NVD |