1161
|
- |
|
-
|
-
|
Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in NotFound Simple Locator allows Reflected XSS. This issue affects Simple Locator: from n/a through…
|
CWE-79
Cross-site Scripting
|
CVE-2025-22513
|
2025-01-27 23:15 |
2025-01-27 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
1162
|
- |
|
-
|
-
|
Eura7 CMSmanager in version 4.6 and below is vulnerable to Reflected XSS attacks through manipulation of return GET request parameter sent to a specific endpoint.
The vulnerability has been fixed by …
|
-
|
CVE-2024-11348
|
2025-01-27 23:15 |
2025-01-27 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
1163
|
8.9 |
HIGH
Network
|
-
|
-
|
A flaw was found in the Red Hat Advanced Cluster Security (RHACS) portal. When rendering a table view in the portal, for example, on any of the /main/configmanagement/* endpoints, the front-end gener…
|
CWE-79
Cross-site Scripting
|
CVE-2022-4975
|
2025-01-27 23:15 |
2025-01-27 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
1164
|
- |
|
-
|
-
|
A NULL Pointer Dereference vulnerability in Cesanta Frozen versions less than 1.7 allows an attacker to induce a crash of the component embedding the library by supplying a maliciously crafted JSON a…
|
CWE-476
NULL Pointer Dereference
|
CVE-2025-0696
|
2025-01-27 20:15 |
2025-01-27 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
1165
|
- |
|
-
|
-
|
An Allocation of Resources Without Limits or Throttling vulnerability in Cesanta Frozen versions less than 1.7 allows an attacker to induce a crash of the component embedding the library by supplying…
|
CWE-770
Allocation of Resources Without Limits or Throttling
|
CVE-2025-0695
|
2025-01-27 20:15 |
2025-01-27 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
1166
|
4.4 |
MEDIUM
Local
|
-
|
-
|
A vulnerability classified as problematic was found in INW Krbyyyzo 25.2002. Affected by this vulnerability is an unknown functionality of the file /gbo.aspx of the component Daily Huddle Site. The m…
|
CWE-404 CWE-400
Improper Resource Shutdown or Release Uncontrolled Resource Consumption
|
CVE-2024-12345
|
2025-01-27 20:15 |
2025-01-27 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
1167
|
- |
|
-
|
-
|
Relative Path Traversal vulnerability in Apache Solr.
Solr instances running on Windows are vulnerable to arbitrary filepath write-access, due to a lack of input-sanitation in the "configset upload"…
|
CWE-23
Relative Path Traversal
|
CVE-2024-52012
|
2025-01-27 18:15 |
2025-01-27 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
1168
|
- |
|
-
|
-
|
Core creation allows users to replace "trusted" configset files with arbitrary configuration
Solr instances that (1) use the "FileSystemConfigSetService" component (the default in "standalone" or "u…
|
CWE-250
Execution with Unnecessary Privileges
|
CVE-2025-24814
|
2025-01-27 18:15 |
2025-01-27 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
1169
|
- |
|
-
|
-
|
A vulnerability in OTRS Application Server and reverse proxy settings allows session hijacking due to missing attributes for sensitive cookie settings in HTTPS sessions.
This issue affects:
* O…
|
-
|
CVE-2025-24390
|
2025-01-27 15:15 |
2025-01-27 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
1170
|
- |
|
-
|
-
|
Certain errors of the upstream libraries will insert sensitive information in the OTRS or ((OTRS)) Community Edition log mechanism and mails send to the system administrator.
This issue affects:
…
|
-
|
CVE-2025-24389
|
2025-01-27 15:15 |
2025-01-27 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|