821
|
- |
|
-
|
-
|
RaspAP (aka raspap-webgui) through 3.0.9 allows remote attackers to read the /etc/passwd file via a crafted request.
Update
|
-
|
CVE-2024-28753
|
2024-11-15 05:35 |
2024-03-9 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
822
|
- |
|
-
|
-
|
In the module "Ever Ultimate SEO" (everpsseo) <= 8.1.2 from Team Ever for PrestaShop, a guest can perform SQL injection in affected versions.
Update
|
-
|
CVE-2024-25848
|
2024-11-15 05:35 |
2024-03-8 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
823
|
- |
|
-
|
-
|
A cross-site scripting (XSS) vulnerability in Pkp Ojs v3.3 allows attackers to execute arbitrary web scripts or HTML via a crafted payload injected into the Publicname parameter.
Update
|
-
|
CVE-2024-25434
|
2024-11-15 05:35 |
2024-03-2 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
824
|
- |
|
-
|
-
|
In OpenBSD 7.4 before errata 009, a race condition between pf(4)'s processing of packets and expiration of packet states may cause a kernel panic.
Update
|
-
|
CVE-2023-52556
|
2024-11-15 05:35 |
2024-03-2 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
825
|
- |
|
-
|
-
|
An issue was discovered in Couchbase Server before 7.2.4. ns_server admin credentials are leaked in encoded form in the diag.log file. The earliest affected version is 7.1.5.
Update
|
-
|
CVE-2023-50436
|
2024-11-15 05:35 |
2024-02-29 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
826
|
- |
|
-
|
-
|
Vulnerability of configuration defects in some APIs of the audio module.Successful exploitation of this vulnerability may affect availability.
Update
|
-
|
CVE-2023-52358
|
2024-11-15 05:35 |
2024-02-18 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
827
|
4.4 |
MEDIUM
Local
|
fortinet
|
fortiweb
|
An exposure of sensitive system information to an unauthorized control sphere vulnerability [CWE-497] in FortiWeb version 7.6.0, version 7.4.3 and below, version 7.2.10 and below, version 7.0.10 and …
Update
|
CWE-497
Exposure of Sensitive System Information to an Unauthorized Control Sphere
|
CVE-2024-36509
|
2024-11-15 05:33 |
2024-11-13 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
828
|
7.8 |
HIGH
Local
|
fortinet
|
forticlient
|
A untrusted search path in Fortinet FortiClientWindows versions 7.4.0, versions 7.2.4 through 7.2.0, versions 7.0.12 through 7.0.0 allows an attacker to run arbitrary code via DLL hijacking and socia…
Update
|
CWE-426
Untrusted Search Path
|
CVE-2024-36507
|
2024-11-15 05:31 |
2024-11-13 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
829
|
5.4 |
MEDIUM
Network
|
brandevolutionco
|
themeshark_templates_\&_widgets_for_elementor
|
Improper Neutralization of Input During Web Page Generation (XSS or 'Cross-site Scripting') vulnerability in ThemeShark ThemeShark Templates & Widgets for Elementor allows Stored XSS.This issue affec…
Update
|
CWE-79
Cross-site Scripting
|
CVE-2024-51597
|
2024-11-15 05:27 |
2024-11-10 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
830
|
5.4 |
MEDIUM
Network
|
wpcirqle
|
bigmart_elements
|
Improper Neutralization of Input During Web Page Generation (XSS or 'Cross-site Scripting') vulnerability in wpcirqle Bigmart Elements allows DOM-Based XSS.This issue affects Bigmart Elements: from n…
Update
|
CWE-79
Cross-site Scripting
|
CVE-2024-51589
|
2024-11-15 05:26 |
2024-11-10 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|