2231
|
- |
|
-
|
-
|
Incorrect Privilege Assignment vulnerability in CE21 CE21 Suite allows Privilege Escalation.This issue affects CE21 Suite: from n/a through 2.2.0.
|
CWE-266
Incorrect Privilege Assignment
|
CVE-2024-54293
|
2024-12-14 00:15 |
2024-12-14 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
2232
|
- |
|
-
|
-
|
Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in Appsplate Appsplate allows SQL Injection.This issue affects Appsplate: from n/a through 2.1.3.
|
CWE-89
SQL Injection
|
CVE-2024-54292
|
2024-12-14 00:15 |
2024-12-14 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
2233
|
- |
|
-
|
-
|
Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in Justin Fletcher Role Includer allows Reflected XSS.This issue affects Role Includer: from n/a thr…
|
CWE-79
Cross-site Scripting
|
CVE-2024-54290
|
2024-12-14 00:15 |
2024-12-14 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
2234
|
- |
|
-
|
-
|
Missing Authorization vulnerability in Awesome Support Team Awesome Support allows Exploiting Incorrectly Configured Access Control Security Levels.This issue affects Awesome Support: from n/a throug…
|
CWE-862
Missing Authorization
|
CVE-2024-54289
|
2024-12-14 00:15 |
2024-12-14 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
2235
|
- |
|
-
|
-
|
Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in LDD Web Design LDD Directory Lite allows Reflected XSS.This issue affects LDD Directory Lite: fro…
|
CWE-79
Cross-site Scripting
|
CVE-2024-54288
|
2024-12-14 00:15 |
2024-12-14 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
2236
|
- |
|
-
|
-
|
Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in Best Wp Developer Advanced Blog Post Block allows Stored XSS.This issue affects Advanced Blog Pos…
|
CWE-79
Cross-site Scripting
|
CVE-2024-54287
|
2024-12-14 00:15 |
2024-12-14 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
2237
|
- |
|
-
|
-
|
Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in Sendsmaily LLC Smaily for WP allows Stored XSS.This issue affects Smaily for WP: from n/a through…
|
CWE-79
Cross-site Scripting
|
CVE-2024-54286
|
2024-12-14 00:15 |
2024-12-14 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
2238
|
- |
|
-
|
-
|
Deserialization of Untrusted Data vulnerability in Themeum WP Mega Menu allows Object Injection.This issue affects WP Mega Menu: from n/a through 1.4.2.
|
CWE-502
Deserialization of Untrusted Data
|
CVE-2024-54282
|
2024-12-14 00:15 |
2024-12-14 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
2239
|
- |
|
-
|
-
|
Missing Authorization vulnerability in Plugin Devs News Ticker for Elementor allows Accessing Functionality Not Properly Constrained by ACLs.This issue affects News Ticker for Elementor: from n/a thr…
|
CWE-862
Missing Authorization
|
CVE-2024-54278
|
2024-12-14 00:15 |
2024-12-14 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
2240
|
- |
|
-
|
-
|
Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in Alireza aliniya Nias course allows DOM-Based XSS.This issue affects Nias course: from n/a through…
|
CWE-79
Cross-site Scripting
|
CVE-2024-54277
|
2024-12-14 00:15 |
2024-12-14 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|