791
|
- |
|
-
|
-
|
An arbitrary file upload vulnerability in the File preview function of Raingad IM v4.1.4 allows attackers to execute arbitrary code via uploading a crafted PDF file.
Update
|
-
|
CVE-2024-35593
|
2024-10-30 17:35 |
2024-05-24 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
792
|
7.8 |
HIGH
Local
|
-
|
-
|
A flaw was found in the X.org server. Due to improperly tracked allocation size in _XkbSetCompatMap, a local attacker may be able to trigger a buffer overflow condition via a specially crafted payloa…
New
|
CWE-122
Heap-based Buffer Overflow
|
CVE-2024-9632
|
2024-10-30 17:15 |
2024-10-30 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
793
|
- |
|
-
|
-
|
Generation of Error Message Containing Sensitive Information vulnerability in Posti Posti Shipping allows Retrieve Embedded Sensitive Data.This issue affects Posti Shipping: from n/a through 3.10.2.
New
|
CWE-209
Information Exposure Through an Error Message
|
CVE-2024-50512
|
2024-10-30 17:15 |
2024-10-30 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
794
|
- |
|
-
|
-
|
Unrestricted Upload of File with Dangerous Type vulnerability in David DONISA WP donimedia carousel allows Upload a Web Shell to a Web Server.This issue affects WP donimedia carousel: from n/a throug…
New
|
CWE-434
Unrestricted Upload of File with Dangerous Type
|
CVE-2024-50511
|
2024-10-30 17:15 |
2024-10-30 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
795
|
- |
|
-
|
-
|
Unrestricted Upload of File with Dangerous Type vulnerability in Web and Print Design AR For Woocommerce allows Upload a Web Shell to a Web Server.This issue affects AR For Woocommerce: from n/a thro…
New
|
CWE-434
Unrestricted Upload of File with Dangerous Type
|
CVE-2024-50510
|
2024-10-30 17:15 |
2024-10-30 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
796
|
- |
|
-
|
-
|
Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal') vulnerability in Chetan Khandla Woocommerce Product Design allows Path Traversal.This issue affects Woocommerce Product …
New
|
CWE-22
Path Traversal
|
CVE-2024-50509
|
2024-10-30 17:15 |
2024-10-30 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
797
|
- |
|
-
|
-
|
Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal') vulnerability in Chetan Khandla Woocommerce Product Design allows Path Traversal.This issue affects Woocommerce Product …
New
|
CWE-22
Path Traversal
|
CVE-2024-50508
|
2024-10-30 17:15 |
2024-10-30 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
798
|
- |
|
-
|
-
|
Deserialization of Untrusted Data vulnerability in Daniel Schmitzer DS.DownloadList allows Object Injection.This issue affects DS.DownloadList: from n/a through 1.3.
New
|
CWE-502
Deserialization of Untrusted Data
|
CVE-2024-50507
|
2024-10-30 17:15 |
2024-10-30 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
799
|
- |
|
-
|
-
|
Incorrect Privilege Assignment vulnerability in Azexo Marketing Automation by AZEXO allows Privilege Escalation.This issue affects Marketing Automation by AZEXO: from n/a through 1.27.80.
New
|
CWE-266
Incorrect Privilege Assignment
|
CVE-2024-50506
|
2024-10-30 17:15 |
2024-10-30 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
800
|
- |
|
-
|
-
|
Incorrect Privilege Assignment vulnerability in Matt Whiteman Bulk Change Role allows Privilege Escalation.This issue affects Bulk Change Role: from n/a through 1.1.
New
|
CWE-266
Incorrect Privilege Assignment
|
CVE-2024-50504
|
2024-10-30 17:15 |
2024-10-30 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|