1861
|
- |
|
-
|
-
|
Cross-site scripting vulnerability exists in My WP Customize Admin/Frontend versions prior to ver 1.24.1. If a malicious administrative user customizes the administrative page with some malicious con…
|
CWE-79
Cross-site Scripting
|
CVE-2024-55864
|
2024-12-17 14:15 |
2024-12-17 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
1862
|
- |
|
-
|
-
|
Some parameters of the weather module are improperly stored, leaking some sensitive information.
|
-
|
CVE-2021-26279
|
2024-12-17 13:15 |
2024-12-17 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
1863
|
6.1 |
MEDIUM
Network
|
-
|
-
|
The PowerPack Lite for Beaver Builder plugin for WordPress is vulnerable to Reflected Cross-Site Scripting via the navigate parameter in all versions up to, and including, 1.3.0.5 due to insufficient…
|
CWE-79
Cross-site Scripting
|
CVE-2024-12239
|
2024-12-17 12:15 |
2024-12-17 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
1864
|
- |
|
-
|
-
|
The wifi module exposes the interface and has improper permission control, leaking sensitive information about the device.
|
-
|
CVE-2021-26278
|
2024-12-17 12:15 |
2024-12-17 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
1865
|
- |
|
-
|
-
|
Due to the flaws in the verification of input parameters, the attacker can input carefully constructed commands to make the ABE service execute some commands with root privilege.
|
-
|
CVE-2020-12487
|
2024-12-17 12:15 |
2024-12-17 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
1866
|
- |
|
-
|
-
|
When using special mode to connect to enterprise wifi, certain options are not properly configured and attackers can pretend to be enterprise wifi through a carefully constructed wifi with the same n…
|
-
|
CVE-2020-12484
|
2024-12-17 12:15 |
2024-12-17 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
1867
|
- |
|
-
|
-
|
Authentication Bypass
vulnerability in Hitachi Ops Center Analyzer on Linux, 64 bit (Hitachi Ops Center Analyzer detail view component), Hitachi Infrastructure Analytics Advisor on Linux, 64 bit (Hit…
|
-
|
CVE-2024-10205
|
2024-12-17 11:15 |
2024-12-17 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
1868
|
6.4 |
MEDIUM
Network
|
-
|
-
|
The TPG Get Posts plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the plugin's 'tpg_get_posts' shortcode in all versions up to, and including, 3.6.5 due to insufficient input sa…
|
CWE-79
Cross-site Scripting
|
CVE-2024-11906
|
2024-12-17 09:15 |
2024-12-17 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
1869
|
6.4 |
MEDIUM
Network
|
-
|
-
|
The Animated Counters plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the plugin's 'animatedcounte' shortcode in all versions up to, and including, 2.0 due to insufficient input…
|
CWE-79
Cross-site Scripting
|
CVE-2024-11905
|
2024-12-17 09:15 |
2024-12-17 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
1870
|
6.4 |
MEDIUM
Network
|
-
|
-
|
The Slope Widgets plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the plugin's 'slope-reservations' shortcode in all versions up to, and including, 4.2.11 due to insufficient in…
|
CWE-79
Cross-site Scripting
|
CVE-2024-11902
|
2024-12-17 09:15 |
2024-12-17 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|