171
|
7.2 |
HIGH
Network
|
dlink
|
dsl6740c_firmware
|
The D-Link DSL6740C modem has an OS Command Injection vulnerability, allowing remote attackers with administrator privileges to inject and execute arbitrary system commands through the specific web p…
Update
|
CWE-78
OS Command
|
CVE-2024-11066
|
2024-11-16 03:22 |
2024-11-11 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
172
|
7.2 |
HIGH
Network
|
dlink
|
dsl6740c_firmware
|
The D-Link DSL6740C modem has an OS Command Injection vulnerability, allowing remote attackers with administrator privileges to inject and execute arbitrary system commands through a specific functio…
Update
|
CWE-78
OS Command
|
CVE-2024-11065
|
2024-11-16 03:22 |
2024-11-11 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
173
|
7.2 |
HIGH
Network
|
dlink
|
dsl6740c_firmware
|
The D-Link DSL6740C modem has an OS Command Injection vulnerability, allowing remote attackers with administrator privileges to inject and execute arbitrary system commands through a specific functio…
Update
|
CWE-78
OS Command
|
CVE-2024-11064
|
2024-11-16 03:22 |
2024-11-11 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
174
|
7.2 |
HIGH
Network
|
dlink
|
dsl6740c_firmware
|
The D-Link DSL6740C modem has an OS Command Injection vulnerability, allowing remote attackers with administrator privileges to inject and execute arbitrary system commands through a specific functio…
Update
|
CWE-78
OS Command
|
CVE-2024-11063
|
2024-11-16 03:21 |
2024-11-11 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
175
|
7.2 |
HIGH
Network
|
dlink
|
dsl6740c_firmware
|
The D-Link DSL6740C modem has an OS Command Injection vulnerability, allowing remote attackers with administrator privileges to inject and execute arbitrary system commands through a specific functio…
Update
|
CWE-78
OS Command
|
CVE-2024-11062
|
2024-11-16 03:21 |
2024-11-11 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
176
|
- |
|
-
|
-
|
Rclone is a command-line program to sync files and directories to and from different cloud storage providers. Insecure handling of symlinks with --links and --metadata in rclone while copying to loca…
New
|
CWE-59 CWE-281 CWE-61
Link Following Improper Preservation of Permissions UNIX Symbolic Link (Symlink) Following
|
CVE-2024-52522
|
2024-11-16 03:15 |
2024-11-16 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
177
|
- |
|
-
|
-
|
Nextcloud Server is a self hosted personal cloud system. After a user received a share with some files inside being blocked by the files access control, the user would still be able to copy the inter…
New
|
CWE-284
Improper Access Control
|
CVE-2024-52514
|
2024-11-16 03:15 |
2024-11-16 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
178
|
- |
|
-
|
-
|
Nextcloud Server is a self hosted personal cloud system. After receiving a "Files drop" or "Password protected" share link a malicious user was able to download attachments that are referenced in Tex…
New
|
CWE-200
Information Exposure
|
CVE-2024-52513
|
2024-11-16 03:15 |
2024-11-16 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
179
|
- |
|
-
|
-
|
user_oidc app is an OpenID Connect user backend for Nextcloud. A malicious user could send a malformed login link that would redirect the user to a provided URL after successfully authenticating. It …
New
|
-
|
CVE-2024-52512
|
2024-11-16 03:15 |
2024-11-16 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
180
|
- |
|
-
|
-
|
Nextcloud Tables allows users to to create tables with individual columns. By directly specifying the ID of a table or view, a malicious user could blindly insert new rows into tables they have no ac…
New
|
CWE-639
Authorization Bypass Through User-Controlled Key
|
CVE-2024-52511
|
2024-11-16 03:15 |
2024-11-16 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|