9.3

CVSS4.0

CVE-2026-22553 - InSAT MasterSCADA BUK-TS OS Command Injection

All versions of InSAT MasterSCADA BUK-TS are susceptible to OS command injection through a field in its MMadmServ web interface. Malicious users that use the vulnerable endpoint are potentially able to cause remote code execution.

πŸ“… Published: Feb. 24, 2026, 8:56 p.m. πŸ”„ Last Modified: Feb. 27, 2026, 3:15 a.m.

9.3

CVSS4.0

CVE-2026-21410 - InSAT MasterSCADA BUK-TS SQL Injection

InSAT MasterSCADA BUK-TS is susceptible to SQL Injection through its main web interface. Malicious users that use the vulnerable endpoint are potentially able to cause remote code execution.

πŸ“… Published: Feb. 24, 2026, 8:53 p.m. πŸ”„ Last Modified: Feb. 27, 2026, 3:13 a.m.

6.1

CVSS3.1

CVE-2025-46320 -

A cross-site scripting (XSS) vulnerability in a FileMaker WebDirect custom homepage could lead to unauthorized access and remote code execution. This vulnerability has been fully addressed in FileMaker Server 22.0.4 and FileMaker Server 21.1.7.

πŸ“… Published: Feb. 24, 2026, 8:30 p.m. πŸ”„ Last Modified: Feb. 25, 2026, 4:47 p.m.

8.6

CVSS4.0

CVE-2026-24443 - EventSentry < 6.0.1.20 Web Reports Unverified Password Change

EventSentry versions prior to 6.0.1.20Β contain an unverified password change vulnerability in the account management functionality of the Web Reports interface. The password change mechanism does not require validation of the current password before allowing a new password to be set. An attacker wh…

πŸ“… Published: Feb. 24, 2026, 8:14 p.m. πŸ”„ Last Modified: March 5, 2026, 1:30 a.m.

2.7

CVSS3.1

CVE-2026-23859 -

Dell Wyse Management Suite, versions prior to WMS 5.5, contain a Client-Side Enforcement of Server-Side Security vulnerability. A high privileged attacker with remote access could potentially exploit this vulnerability to Protection mechanism bypass.

πŸ“… Published: Feb. 24, 2026, 7:35 p.m. πŸ”„ Last Modified: Feb. 25, 2026, 2:50 p.m.

5.4

CVSS3.1

CVE-2026-23858 -

Dell Wyse Management Suite, versions prior to WMS 5.5, contain an Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability. A low privileged attacker with remote access could potentially exploit this vulnerability, leading to Script Injection.

πŸ“… Published: Feb. 24, 2026, 7:31 p.m. πŸ”„ Last Modified: Feb. 25, 2026, 2:50 p.m.

7.2

CVSS3.1

CVE-2026-22766 - Unrestricted File Upload Allowing Remote Execution in Dell Wyse Management Suite before 5.5

Dell Wyse Management Suite, versions prior to WMS 5.5, contain an Unrestricted Upload of File with Dangerous Type vulnerability. A high privileged attacker with remote access could potentially exploit this vulnerability, leading to Remote execution.

πŸ“… Published: Feb. 24, 2026, 7:28 p.m. πŸ”„ Last Modified: April 16, 2026, 6:15 a.m.

8.8

CVSS3.1

CVE-2026-22765 - Missing Authorization in Dell Wyse Management Suite Allows Remote Elevation of Privileges

Dell Wyse Management Suite, versions prior to WMS 5.5, contain a Missing Authorization vulnerability. A low privileged attacker with remote access could potentially exploit this vulnerability, leading to Elevation of Privileges.

πŸ“… Published: Feb. 24, 2026, 7:24 p.m. πŸ”„ Last Modified: April 16, 2026, 6:15 a.m.

6.5

CVSS3.1

CVE-2026-3131 -

Improper access control in multiple DVLS REST API endpoints in Devolutions Server 2025.3.14.0 and earlier allows an authenticated user with view-only permission to access sensitive connection data.

πŸ“… Published: Feb. 24, 2026, 7:01 p.m. πŸ”„ Last Modified: Feb. 26, 2026, 5:23 p.m.

4.3

CVSS3.1

CVE-2026-1768 -

A permission cache poisoning vulnerability in Devolutions Server allows authenticated users to bypass permissions to access entries.This issue affects Devolutions Server: before 2025.3.15.

πŸ“… Published: Feb. 24, 2026, 7:01 p.m. πŸ”„ Last Modified: Feb. 26, 2026, 5:23 p.m.
Total resulsts: 344911
Page 1032 of 34,492
Β« previous page Β» next page
Filters