501
|
7.4 |
HIGH
Network
|
-
|
-
|
A vulnerability was found in Ruby. The Ruby interpreter is vulnerable to the Marvin Attack. This attack allows the attacker to decrypt previously encrypted messages or forge signatures by exchanging …
|
CWE-385
Covert Timing Channel
|
CVE-2025-0306
|
2025-01-9 13:15 |
2025-01-9 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
502
|
5.6 |
MEDIUM
Local
|
-
|
-
|
A flaw was found in the OpenJPEG project. A heap buffer overflow condition may be triggered when certain options are specified while using the opj_decompress utility. This can lead to an application…
|
CWE-122
Heap-based Buffer Overflow
|
CVE-2024-56827
|
2025-01-9 13:15 |
2025-01-9 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
503
|
5.6 |
MEDIUM
Local
|
-
|
-
|
A flaw was found in the OpenJPEG project. A heap buffer overflow condition may be triggered when certain options are specified while using the opj_decompress utility. This can lead to an application…
|
CWE-122
Heap-based Buffer Overflow
|
CVE-2024-56826
|
2025-01-9 13:15 |
2025-01-9 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
504
|
- |
|
-
|
-
|
A vulnerability classified as problematic was found in SingMR HouseRent 1.0. This vulnerability affects unknown code of the file /toAdminUpdateHousePage?hID=30. The manipulation leads to cross site s…
|
CWE-79 CWE-94
Cross-site Scripting Code Injection
|
CVE-2024-13213
|
2025-01-9 13:15 |
2025-01-9 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
505
|
- |
|
-
|
-
|
A vulnerability classified as critical has been found in SingMR HouseRent 1.0. This affects the function singleUpload/upload of the file src/main/java/com/house/wym/controller/AddHouseController.java…
|
CWE-284 CWE-434
Improper Access Control Unrestricted Upload of File with Dangerous Type
|
CVE-2024-13212
|
2025-01-9 13:15 |
2025-01-9 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
506
|
- |
|
-
|
-
|
A vulnerability was found in SingMR HouseRent 1.0. It has been rated as critical. Affected by this issue is some unknown functionality of the file src/main/java/com/house/wym/controller/AdminControll…
|
CWE-284 CWE-266
Improper Access Control Incorrect Privilege Assignment
|
CVE-2024-13211
|
2025-01-9 13:15 |
2025-01-9 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
507
|
- |
|
-
|
-
|
A vulnerability was found in donglight bookstore???????? 1.0. It has been declared as critical. Affected by this vulnerability is the function uploadPicture of the file src/main/java/org/zdd/bookstor…
|
CWE-284 CWE-434
Improper Access Control Unrestricted Upload of File with Dangerous Type
|
CVE-2024-13210
|
2025-01-9 13:15 |
2025-01-9 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
508
|
- |
|
-
|
-
|
A vulnerability was found in Redaxo CMS 5.18.1. It has been classified as problematic. Affected is an unknown function of the file /index.php?page=structure&category_id=1&article_id=1&clang=1&functio…
|
CWE-79 CWE-94
Cross-site Scripting Code Injection
|
CVE-2024-13209
|
2025-01-9 13:15 |
2025-01-9 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
509
|
- |
|
-
|
-
|
A vulnerability classified as critical has been found in REVE Antivirus 1.0.0.0 on Linux. This affects an unknown part of the file /usr/local/reveantivirus/tmp/reveinstall. The manipulation leads to …
|
CWE-266 CWE-276
Incorrect Privilege Assignment Incorrect Default Permissions
|
CVE-2024-13206
|
2025-01-9 13:15 |
2025-01-9 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
510
|
- |
|
-
|
-
|
A vulnerability was found in kurniaramadhan E-Commerce-PHP 1.0. It has been declared as critical. Affected by this vulnerability is an unknown functionality of the file /blog-details.php. The manipul…
|
CWE-89 CWE-74
SQL Injection Injection
|
CVE-2024-13204
|
2025-01-9 12:15 |
2025-01-9 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|