551
|
5.4 |
MEDIUM
Network
|
emlog
|
emlog
|
A vulnerability classified as problematic has been found in Emlog Pro up to 2.4.3. Affected is an unknown function of the file /admin/article.php?action=upload_cover of the component Cover Upload Han…
|
CWE-79
Cross-site Scripting
|
CVE-2024-13140
|
2025-01-11 06:34 |
2025-01-5 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
552
|
9.8 |
CRITICAL
Network
code-projects
|
online_shoe_store
|
A vulnerability, which was classified as critical, was found in code-projects Online Shoe Store 1.0. This affects an unknown part of the file /summary.php. The manipulation of the argument tid leads …
|
CWE-89
SQL Injection
|
CVE-2025-0208
|
2025-01-11 06:28 |
2025-01-4 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
553
|
9.8 |
CRITICAL
Network
code-projects
|
online_shoe_store
|
A vulnerability, which was classified as critical, has been found in code-projects Online Shoe Store 1.0. Affected by this issue is some unknown functionality of the file /function/login.php. The man…
|
CWE-89
SQL Injection
|
CVE-2025-0207
|
2025-01-11 06:27 |
2025-01-4 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
554
|
9.8 |
CRITICAL
Network
campcodes
|
school_faculty_scheduling_system
|
A vulnerability has been found in Campcodes School Faculty Scheduling System 1.0 and classified as critical. Affected by this vulnerability is an unknown functionality of the file /admin/ajax.php?act…
|
CWE-89
SQL Injection
|
CVE-2025-0210
|
2025-01-11 06:20 |
2025-01-4 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
555
|
- |
|
-
|
-
|
On affected platforms running Arista EOS, a specially crafted packet with incorrect VLAN tag might be copied to CPU, which may cause incorrect control plane behavior related to the packet, such as ro…
|
-
|
CVE-2024-5872
|
2025-01-11 06:15 |
2025-01-11 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
556
|
- |
|
-
|
-
|
MonicaHQ v4.1.2 was discovered to contain an authenticated Client-Side Injection vulnerability via the Reason parameter at /people/h:[id]/debts/create.
|
-
|
CVE-2024-54998
|
2025-01-11 06:15 |
2025-01-11 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
557
|
- |
|
-
|
-
|
MonicaHQ v4.1.2 was discovered to contain multiple Client-Side Injection vulnerabilities via the first_name and last_name parameters in the Add a new relationship feature.
|
-
|
CVE-2024-54994
|
2025-01-11 06:15 |
2025-01-11 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
558
|
8.8 |
HIGH
Network
|
wangl1989
|
mysiteforme
|
A vulnerability was found in wangl1989 mysiteforme 1.0. It has been rated as critical. This issue affects the function doContent of the file src/main/java/com/mysiteform/admin/controller/system/FileC…
|
CWE-918
Server-Side Request Forgery (SSRF)
|
CVE-2024-13139
|
2025-01-11 06:02 |
2025-01-5 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
559
|
8.8 |
HIGH
Network
|
wangl1989
|
mysiteforme
|
A vulnerability was found in wangl1989 mysiteforme 1.0. It has been declared as critical. This vulnerability affects the function upload of the file src/main/java/com/mysiteform/admin/service/ipl/Loc…
|
CWE-434
Unrestricted Upload of File with Dangerous Type
|
CVE-2024-13138
|
2025-01-11 06:01 |
2025-01-5 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
560
|
5.4 |
MEDIUM
Network
|
wangl1989
|
mysiteforme
|
A vulnerability was found in wangl1989 mysiteforme 1.0. It has been classified as problematic. This affects the function RestResponse of the file src/main/java/com/mysiteforme/admin/controller/system…
|
CWE-79
Cross-site Scripting
|
CVE-2024-13137
|
2025-01-11 06:01 |
2025-01-5 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|