721
|
6.5 |
MEDIUM
Adjacent
|
linuxfoundation
|
magma
|
A Null pointer dereference vulnerability in the Mobile Management Entity (MME) in Magma <= 1.8.0 (fixed in v1.9 commit 08472ba98b8321f802e95f5622fa90fec2dea486) allows network-adjacent attackers to c…
|
CWE-476
NULL Pointer Dereference
|
CVE-2023-37038
|
2025-01-27 23:31 |
2025-01-22 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
722
|
6.5 |
MEDIUM
Adjacent
|
linuxfoundation
|
magma
|
A Null pointer dereference vulnerability in the Mobile Management Entity (MME) in Magma <= 1.8.0 (fixed in v1.9 commit 08472ba98b8321f802e95f5622fa90fec2dea486) allows network-adjacent attackers to c…
|
CWE-476
NULL Pointer Dereference
|
CVE-2023-37036
|
2025-01-27 23:31 |
2025-01-22 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
723
|
7.5 |
HIGH
Network
linuxfoundation
|
magma
|
The Linux Foundation Magma <= 1.8.0 (fixed in v1.9 commit 08472ba98b8321f802e95f5622fa90fec2dea486) was discovered to contain a buffer overflow in the decode_protocol_configuration_options function a…
|
CWE-125
Out-of-bounds Read
|
CVE-2024-24417
|
2025-01-27 23:30 |
2025-01-22 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
724
|
7.5 |
HIGH
Network
linuxfoundation
|
magma
|
The Linux Foundation Magma <= 1.8.0 (fixed in v1.9 commit 08472ba98b8321f802e95f5622fa90fec2dea486) was discovered to contain a buffer overflow in the decode_traffic_flow_template_packet_filter funct…
|
CWE-120
Classic Buffer Overflow
|
CVE-2024-24419
|
2025-01-27 23:29 |
2025-01-22 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
725
|
- |
|
-
|
-
|
Missing Authorization vulnerability in Houzez.co Houzez. This issue affects Houzez: from n/a through 3.4.0.
|
CWE-862
Missing Authorization
|
CVE-2025-24754
|
2025-01-27 23:15 |
2025-01-27 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
726
|
- |
|
-
|
-
|
Path Traversal vulnerability in MORKVA Morkva UA Shipping allows PHP Local File Inclusion. This issue affects Morkva UA Shipping: from n/a through 1.0.18.
|
CWE-35
Path Traversal: '.../...//'
|
CVE-2025-24685
|
2025-01-27 23:15 |
2025-01-27 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
727
|
- |
|
-
|
-
|
Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in Eniture Technology LTL Freight Quotes – Worldwide Express Edition allows SQL Injection. This issu…
|
CWE-89
SQL Injection
|
CVE-2025-24664
|
2025-01-27 23:15 |
2025-01-27 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
728
|
- |
|
-
|
-
|
Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in MORKVA Shipping for Nova Poshta allows SQL Injection. This issue affects Shipping for Nova Poshta…
|
CWE-89
SQL Injection
|
CVE-2025-24612
|
2025-01-27 23:15 |
2025-01-27 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
729
|
- |
|
-
|
-
|
Deserialization of Untrusted Data vulnerability in ThimPress FundPress allows Object Injection. This issue affects FundPress: from n/a through 2.0.6.
|
CWE-502
Deserialization of Untrusted Data
|
CVE-2025-24601
|
2025-01-27 23:15 |
2025-01-27 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
730
|
- |
|
-
|
-
|
Missing Authorization vulnerability in BdThemes Ultimate Store Kit Elementor Addons allows Exploiting Incorrectly Configured Access Control Security Levels. This issue affects Ultimate Store Kit Elem…
|
CWE-862
Missing Authorization
|
CVE-2025-24584
|
2025-01-27 23:15 |
2025-01-27 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|