1071
|
- |
|
-
|
-
|
The wifi module exposes the interface and has improper permission control, leaking sensitive information about the device.
|
-
|
CVE-2021-26278
|
2024-12-17 12:15 |
2024-12-17 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
1072
|
- |
|
-
|
-
|
Due to the flaws in the verification of input parameters, the attacker can input carefully constructed commands to make the ABE service execute some commands with root privilege.
|
-
|
CVE-2020-12487
|
2024-12-17 12:15 |
2024-12-17 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
1073
|
- |
|
-
|
-
|
When using special mode to connect to enterprise wifi, certain options are not properly configured and attackers can pretend to be enterprise wifi through a carefully constructed wifi with the same n…
|
-
|
CVE-2020-12484
|
2024-12-17 12:15 |
2024-12-17 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
1074
|
- |
|
-
|
-
|
Authentication Bypass
vulnerability in Hitachi Ops Center Analyzer on Linux, 64 bit (Hitachi Ops Center Analyzer detail view component), Hitachi Infrastructure Analytics Advisor on Linux, 64 bit (Hit…
|
-
|
CVE-2024-10205
|
2024-12-17 11:15 |
2024-12-17 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
1075
|
6.4 |
MEDIUM
Network
|
-
|
-
|
The TPG Get Posts plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the plugin's 'tpg_get_posts' shortcode in all versions up to, and including, 3.6.5 due to insufficient input sa…
|
CWE-79
Cross-site Scripting
|
CVE-2024-11906
|
2024-12-17 09:15 |
2024-12-17 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
1076
|
6.4 |
MEDIUM
Network
|
-
|
-
|
The Animated Counters plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the plugin's 'animatedcounte' shortcode in all versions up to, and including, 2.0 due to insufficient input…
|
CWE-79
Cross-site Scripting
|
CVE-2024-11905
|
2024-12-17 09:15 |
2024-12-17 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
1077
|
6.4 |
MEDIUM
Network
|
-
|
-
|
The Slope Widgets plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the plugin's 'slope-reservations' shortcode in all versions up to, and including, 4.2.11 due to insufficient in…
|
CWE-79
Cross-site Scripting
|
CVE-2024-11902
|
2024-12-17 09:15 |
2024-12-17 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
1078
|
6.4 |
MEDIUM
Network
|
-
|
-
|
The Portfolio – Filterable Masonry Portfolio Gallery for Professionals plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the plugin's 'portfolio-pro' shortcode in all versions up …
|
CWE-79
Cross-site Scripting
|
CVE-2024-11900
|
2024-12-17 09:15 |
2024-12-17 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
1079
|
- |
|
-
|
-
|
Cross-Site Request Forgery (CSRF) vulnerability in Tom Royal Stop Registration Spam allows Stored XSS.This issue affects Stop Registration Spam: from n/a through 1.23.
|
CWE-352
Origin Validation Error
|
CVE-2024-56017
|
2024-12-17 08:15 |
2024-12-17 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
1080
|
6.4 |
MEDIUM
Network
|
-
|
-
|
The CRM Perks – WordPress HelpDesk Integration – Zendesk, Freshdesk, HelpScout plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the plugin's 'crm-perks-tickets' shortcode in all …
|
CWE-79
Cross-site Scripting
|
CVE-2024-12443
|
2024-12-17 08:15 |
2024-12-17 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|