101
|
7.5 |
HIGH
Network
anisha
|
university_event_management_system
|
A vulnerability was found in code-projects University Event Management System 1.0 and classified as critical. This issue affects some unknown processing of the file /dodelete.php. The manipulation of…
New
|
CWE-89
SQL Injection
|
CVE-2024-10760
|
2024-11-6 04:45 |
2024-11-4 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
102
|
8.8 |
HIGH
Network
|
zohocorp
|
manageengine_adaudit_plus
|
Zohocorp ManageEngine ADAudit Plus versions 8121 and prior are vulnerable to SQL Injection in Technician reports option.
New
|
CWE-89
SQL Injection
|
CVE-2024-36485
|
2024-11-6 04:44 |
2024-11-4 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
103
|
8.8 |
HIGH
Network
|
zohocorp
|
manageengine_admanager_plus
|
Zohocorp ManageEngine ADManager Plus versions 7241 and prior are vulnerable to SQL Injection in Archived Audit Report.
New
|
CWE-89
SQL Injection
|
CVE-2024-48878
|
2024-11-6 04:44 |
2024-11-4 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
104
|
9.8 |
CRITICAL
Network
projectworlds
|
life_insurance_management_system
|
A vulnerability was found in Project Worlds Life Insurance Management System 1.0. It has been classified as critical. This affects an unknown part of the file /editPayment.php. The manipulation of th…
New
|
CWE-89
SQL Injection
|
CVE-2024-10734
|
2024-11-6 04:43 |
2024-11-3 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
105
|
8.6 |
HIGH
Network
cisco
|
adaptive_security_appliance_software firepower_threat_defense_software
|
A vulnerability in the Internet Key Exchange version 2 (IKEv2) protocol for VPN termination of Cisco Adaptive Security Appliance (ASA) Software and Cisco Firepower Threat Defense (FTD) Software could…
Update
|
NVD-CWE-noinfo
|
CVE-2024-20426
|
2024-11-6 04:43 |
2024-10-24 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
106
|
9.8 |
CRITICAL
Network
esafenet
|
cdg
|
A vulnerability was found in ESAFENET CDG 5. It has been rated as critical. This issue affects the function actionPassDecryptApplication1 of the file /com/esafenet/servlet/client/DecryptApplicationSe…
Update
|
CWE-89
SQL Injection
|
CVE-2024-10377
|
2024-11-6 04:41 |
2024-10-25 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
107
|
9.8 |
CRITICAL
Network
esafenet
|
cdg
|
A vulnerability was found in ESAFENET CDG 5. It has been declared as critical. This vulnerability affects the function actionPassOrNotAutoSign of the file /com/esafenet/servlet/service/processsign/Au…
Update
|
CWE-89
SQL Injection
|
CVE-2024-10376
|
2024-11-6 04:41 |
2024-10-25 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
108
|
6.1 |
MEDIUM
Network
|
toshibatec sharp
|
e-studio1058_firmware e-studio1208_firmware e-studio908_firmware bp-90c70_firmware bp-90c80_firmware bp-70c65_firmware bp-70c55_firmware bp-70c45_firmware bp-70c36_firmware
|
Sharp and Toshiba Tec MFPs improperly process query parameters in HTTP requests, which may allow contamination of unintended data to HTTP response headers.
Accessing a crafted URL which points to an…
Update
|
CWE-116
Improper Encoding or Escaping of Output
|
CVE-2024-47549
|
2024-11-6 04:40 |
2024-10-25 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
109
|
7.5 |
HIGH
Network
toshibatec sharp
|
e-studio1058_firmware e-studio1208_firmware e-studio908_firmware bp-90c70_firmware bp-90c80_firmware bp-70c65_firmware bp-70c55_firmware bp-70c45_firmware bp-70c36_firmware
|
Sharp and Toshiba Tec MFPs improperly process HTTP request headers, resulting in an Out-of-bounds Read vulnerability.
Crafted HTTP requests may cause affected products crashed.
Update
|
CWE-125
Out-of-bounds Read
|
CVE-2024-43424
|
2024-11-6 04:39 |
2024-10-25 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
110
|
7.5 |
HIGH
Network
toshibatec sharp
|
e-studio1058_firmware e-studio1208_firmware e-studio908_firmware bp-90c70_firmware bp-90c80_firmware bp-70c65_firmware bp-70c55_firmware bp-70c45_firmware bp-70c36_firmware
|
Sharp and Toshiba Tec MFPs contain multiple Out-of-bounds Read vulnerabilities, due to improper processing of keyword search input and improper processing of SOAP messages.
Crafted HTTP requests may…
Update
|
CWE-125
Out-of-bounds Read
|
CVE-2024-42420
|
2024-11-6 04:39 |
2024-10-25 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|