141
|
- |
|
-
|
-
|
In J2eeFAST <=2.7, the backend function has unsafe filtering, which allows an attacker to trigger certain sensitive functions resulting in arbitrary code execution.
New
|
-
|
CVE-2024-45944
|
2024-10-19 04:15 |
2024-10-19 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
142
|
- |
|
-
|
-
|
A vulnerability was found in Topdata Inner Rep Plus WebServer 2.01. It has been classified as problematic. Affected is an unknown function of the file /InnerRepPlus.html of the component Operator Det…
New
|
CWE-549
Missing Password Field Masking
|
CVE-2024-10122
|
2024-10-19 04:15 |
2024-10-19 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
143
|
- |
|
-
|
-
|
A vulnerability was found in wfh45678 Radar up to 1.0.8 and classified as critical. This issue affects some unknown processing of the component Interface Handler. The manipulation with the input /../…
New
|
CWE-639
Authorization Bypass Through User-Controlled Key
|
CVE-2024-10121
|
2024-10-19 04:15 |
2024-10-19 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
144
|
- |
|
-
|
-
|
Rejected reason: ** REJECT ** DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: CVE-2024-9884. Reason: This candidate is a reservation duplicate of CVE-2024-9884. Notes: All CVE users should reference CV…
New
|
-
|
CVE-2024-10115
|
2024-10-19 04:15 |
2024-10-19 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
145
|
7.5 |
HIGH
Network
oracle
|
weblogic_server
|
Vulnerability in the Oracle WebLogic Server product of Oracle Fusion Middleware (component: Console). Supported versions that are affected are 12.2.1.4.0 and 14.1.1.0.0. Easily exploitable vulnerab…
Update
|
NVD-CWE-noinfo
|
CVE-2024-21274
|
2024-10-19 04:05 |
2024-10-16 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
146
|
7.5 |
HIGH
Network
oracle
|
weblogic_server
|
Vulnerability in the Oracle WebLogic Server product of Oracle Fusion Middleware (component: Core). Supported versions that are affected are 12.2.1.4.0 and 14.1.1.0.0. Easily exploitable vulnerabili…
Update
|
NVD-CWE-noinfo
|
CVE-2024-21260
|
2024-10-19 04:05 |
2024-10-16 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
147
|
7.5 |
HIGH
Network
oracle
|
weblogic_server
|
Vulnerability in the Oracle WebLogic Server product of Oracle Fusion Middleware (component: Core). Supported versions that are affected are 12.2.1.4.0 and 14.1.1.0.0. Easily exploitable vulnerabili…
Update
|
NVD-CWE-noinfo
|
CVE-2024-21234
|
2024-10-19 04:05 |
2024-10-16 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
148
|
7.5 |
HIGH
Network
oracle
|
service_bus
|
Vulnerability in the Oracle Service Bus product of Oracle Fusion Middleware (component: OSB Core Functionality). The supported version that is affected is 12.2.1.4.0. Easily exploitable vulnerabili…
Update
|
NVD-CWE-noinfo
|
CVE-2024-21246
|
2024-10-19 04:04 |
2024-10-16 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
149
|
4.3 |
MEDIUM
Adjacent
|
hima
|
f30_03x_yy_\(com\)_firmware f30_03x_yy_\(cpu\)_firmware f35_03x_yy_\(com\)_firmware f35_03x_yy_\(cpu\)_firmware f60_cpu_03x_yy_\(com\)_firmware f60_cpu_03x_yy_\(cpu\)_firmware f-com…
|
An unauthenticated attacker can send a ping request from one network to another through an error in the origin verification even though the ports are separated by VLAN.
Update
|
CWE-346
Origin Validation Error
|
CVE-2024-24782
|
2024-10-19 04:01 |
2024-02-13 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
150
|
7.5 |
HIGH
Network
hima
|
f30_03x_yy_\(com\)_firmware f30_03x_yy_\(cpu\)_firmware f35_03x_yy_\(com\)_firmware f35_03x_yy_\(cpu\)_firmware f60_cpu_03x_yy_\(com\)_firmware f60_cpu_03x_yy_\(cpu\)_firmware f-com…
|
An unauthenticated remote attacker can use an uncontrolled resource consumption vulnerability to DoS the affected devices through excessive traffic on a single ethernet port.
Update
|
NVD-CWE-noinfo
|
CVE-2024-24781
|
2024-10-19 04:00 |
2024-02-13 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|