Vulnerabilities
Vulnerable Software
Security Vulnerabilities
IBM Db2 Mirror for i 7.4, 7.5, and 7.6 could allow a remote authenticated attacker to obtain sensitive information due to improper input validation.
CVSS Score
7.5
EPSS Score
0.006
Published
2026-08-14
Heap-based buffer overflow in Microsoft Edge (Chromium-based) allows an unauthorized attacker to execute code over a network.
CVSS Score
8.3
EPSS Score
0.005
Published
2026-08-14
An improper access control vulnerability exists where an authenticated non-administrative application user could potentially view settings outside of their assigned scope.
CVSS Score
5.3
EPSS Score
0.002
Published
2026-08-14
An input validation vulnerability exists in Security Center's file upload handling, where insufficient sanitization of uploaded filenames could contribute to a downstream command injection issue.
CVSS Score
8.7
EPSS Score
0.011
Published
2026-08-14
A SQL injection vulnerability exists in Security Center that could allow an attacker to access unauthorized data from the application's database.
CVSS Score
7.1
EPSS Score
0.002
Published
2026-08-14
An authenticated command injection vulnerability exists in Security Center related to file upload processing. An attacker could exploit this issue by uploading a specially crafted file, potentially resulting in arbitrary command execution on the underlying operating system.
CVSS Score
9.4
EPSS Score
0.078
Published
2026-08-14
A command injection vulnerability exists in Security Center where a remote, unauthenticated attacker could exploit this issue to execute arbitrary commands on the underlying operating system with the privileges of the service account.
CVSS Score
9.4
EPSS Score
0.028
Published
2026-08-14
A privilege escalation vulnerability exists in Tenable Security Center that allows a user with "Security Manager" role and "manage user" permission on a single group to modify users belonging to other groups. This bypasses the intended access control restrictions and enables unauthorized cross-group user management.
CVSS Score
8.6
EPSS Score
0.002
Published
2026-08-14
A SQL injection vulnerability exists in Security Center that could allow an authenticated administrator to execute arbitrary SQL queries, potentially resulting in unauthorized access to sensitive data, including credentials.
CVSS Score
6.9
EPSS Score
0.002
Published
2026-08-14
A local privilege escalation vulnerability exists in Security Center. An attacker with write access to a specific configuration file could achieve arbitrary code execution with elevated privileges, without requiring further user or victim interaction.
CVSS Score
8.5
EPSS Score
0.001
Published
2026-08-14


Contact Us

Shodan ® - All rights reserved