541
|
- |
|
-
|
-
|
In WhatsUp Gold versions released before 2024.0.2, an unauthenticated attacker can configure LDAP settings.
|
CWE-306
Missing Authentication for Critical Function
|
CVE-2024-12106
|
2024-12-31 20:15 |
2024-12-31 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
542
|
- |
|
-
|
-
|
In WhatsUp Gold versions released before 2024.0.2, an authenticated user can use a specially crafted HTTP request that can lead to information disclosure.
|
CWE-22
Path Traversal
|
CVE-2024-12105
|
2024-12-31 20:15 |
2024-12-31 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
543
|
- |
|
-
|
-
|
Cross-Site Request Forgery (CSRF) vulnerability in Alexander Volkov WP Nice Loader allows Stored XSS.This issue affects WP Nice Loader: from n/a through 0.1.0.4.
|
CWE-352
Origin Validation Error
|
CVE-2024-56232
|
2024-12-31 19:15 |
2024-12-31 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
544
|
- |
|
-
|
-
|
Improper Control of Filename for Include/Require Statement in PHP Program ('PHP Remote File Inclusion') vulnerability in Dynamic Web Lab Dynamic Product Category Grid, Slider for WooCommerce allows P…
|
CWE-98
Improper Control of Filename for Include/Require Statement in PHP Program ('PHP Remote File Inclusion')
|
CVE-2024-56230
|
2024-12-31 19:15 |
2024-12-31 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
545
|
- |
|
-
|
-
|
Cross-Site Request Forgery (CSRF) vulnerability in Searchiq SearchIQ.This issue affects SearchIQ: from n/a through 4.6.
|
CWE-352
Origin Validation Error
|
CVE-2024-56229
|
2024-12-31 19:15 |
2024-12-31 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
546
|
- |
|
-
|
-
|
Cross-Site Request Forgery (CSRF) vulnerability in Codebard CodeBard Help Desk allows Cross Site Request Forgery.This issue affects CodeBard Help Desk: from n/a through 1.1.1.
|
CWE-352
Origin Validation Error
|
CVE-2024-56222
|
2024-12-31 19:15 |
2024-12-31 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
547
|
- |
|
-
|
-
|
Incorrect Privilege Assignment vulnerability in SSL Wireless SSL Wireless SMS Notification allows Privilege Escalation.This issue affects SSL Wireless SMS Notification: from n/a through 3.5.0.
|
CWE-266
Incorrect Privilege Assignment
|
CVE-2024-56220
|
2024-12-31 19:15 |
2024-12-31 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
548
|
- |
|
-
|
-
|
Cross-Site Request Forgery (CSRF) vulnerability in AuRise Creative, SevenSpark Contact Form 7 Dynamic Text Extension allows Cross Site Request Forgery.This issue affects Contact Form 7 Dynamic Text E…
|
CWE-352
Origin Validation Error
|
CVE-2024-56218
|
2024-12-31 19:15 |
2024-12-31 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
549
|
- |
|
-
|
-
|
Improper Control of Filename for Include/Require Statement in PHP Program ('PHP Remote File Inclusion') vulnerability in Themify Themify Builder allows PHP Local File Inclusion.This issue affects The…
|
CWE-98
Improper Control of Filename for Include/Require Statement in PHP Program ('PHP Remote File Inclusion')
|
CVE-2024-56216
|
2024-12-31 19:15 |
2024-12-31 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
550
|
- |
|
-
|
-
|
Path Traversal: '.../...//' vulnerability in DeluxeThemes Userpro allows Path Traversal.This issue affects Userpro: from n/a through 5.1.9.
|
CWE-35
Path Traversal: '.../...//'
|
CVE-2024-56214
|
2024-12-31 19:15 |
2024-12-31 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|