801
|
6.1 |
MEDIUM
Network
|
redhat
|
single_sign-on openshift_container_platform openshift_container_platform_for_power openshift_container_platform_for_linuxone openshift_container_platform_for_ibm_z build_of_keycloak
|
A misconfiguration flaw was found in Keycloak. This issue can allow an attacker to redirect users to an arbitrary URL if a 'Valid Redirect URI' is set to http://localhost or http://127.0.0.1, enablin…
Update
|
CWE-601
Open Redirect
|
CVE-2024-8883
|
2024-11-5 13:15 |
2024-09-20 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
802
|
7.7 |
HIGH
Network
|
-
|
-
|
A flaw exists in the SAML signature validation method within the Keycloak XMLSignatureUtil class. The method incorrectly determines whether a SAML signature is for the full document or only for speci…
Update
|
CWE-347
Improper Verification of Cryptographic Signature
|
CVE-2024-8698
|
2024-11-5 13:15 |
2024-09-20 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
803
|
- |
|
-
|
-
|
A vulnerability was found in code-projects E-Health Care System 1.0. It has been classified as critical. Affected is an unknown function of the file Doctor/app_request.php. The manipulation of the ar…
New
|
CWE-89 CWE-74 CWE-707
SQL Injection Injection Improper Enforcement of Message or Data Structure
|
CVE-2024-10810
|
2024-11-5 11:15 |
2024-11-5 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
804
|
- |
|
-
|
-
|
A vulnerability was found in code-projects E-Health Care System 1.0 and classified as critical. This issue affects some unknown processing of the file /Doctor/chat.php. The manipulation of the argume…
New
|
CWE-89 CWE-74 CWE-707
SQL Injection Injection Improper Enforcement of Message or Data Structure
|
CVE-2024-10809
|
2024-11-5 11:15 |
2024-11-5 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
805
|
- |
|
-
|
-
|
A vulnerability has been found in code-projects E-Health Care System 1.0 and classified as critical. This vulnerability affects unknown code of the file Admin/req_detail.php. The manipulation of the …
New
|
CWE-89 CWE-74 CWE-707
SQL Injection Injection Improper Enforcement of Message or Data Structure
|
CVE-2024-10808
|
2024-11-5 11:15 |
2024-11-5 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
806
|
- |
|
-
|
-
|
A vulnerability was found in PHPGurukul Hospital Management System 4.0. It has been rated as problematic. This issue affects some unknown processing of the file hms/doctor/search.php. The manipulatio…
New
|
CWE-79 CWE-74 CWE-707
Cross-site Scripting Injection Improper Enforcement of Message or Data Structure
|
CVE-2024-10807
|
2024-11-5 11:15 |
2024-11-5 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
807
|
6.4 |
MEDIUM
Network
|
-
|
-
|
The Shortcodes Blocks Creator Ultimate plugin for WordPress is vulnerable to Stored Cross-Site Scripting via 'scu' shortcode in versions up to, and including, 2.1.3 due to insufficient input sanitiza…
New
|
CWE-79
Cross-site Scripting
|
CVE-2024-10340
|
2024-11-5 11:15 |
2024-11-5 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
808
|
- |
|
-
|
-
|
A vulnerability was found in Wildfly’s management interface. Due to the lack of limitation of sockets for the management interface, it may be possible to cause a denial of service hitting the nofile …
Update
|
-
|
CVE-2024-4029
|
2024-11-5 11:15 |
2024-05-3 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
809
|
9.8 |
CRITICAL
Network
ptzoptics
|
pt30x-sdi_firmware pt30x-ndi-xx-g2_firmware
|
PTZOptics PT30X-SDI/NDI-xx before firmware 6.3.40 is vulnerable to an OS command injection issue. The camera does not sufficiently validate the ntp_addr configuration value which may lead to arbitrar…
Update
|
CWE-78
OS Command
|
CVE-2024-8957
|
2024-11-5 11:00 |
2024-09-18 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
810
|
9.1 |
CRITICAL
Network
ptzoptics
|
pt30x-sdi_firmware pt30x-ndi-xx-g2_firmware
|
PTZOptics PT30X-SDI/NDI-xx before firmware 6.3.40 is vulnerable to an insufficient authentication issue. The camera does not properly enforce authentication to /cgi-bin/param.cgi when requests are se…
Update
|
CWE-287
Improper Authentication
|
CVE-2024-8956
|
2024-11-5 11:00 |
2024-09-18 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|