1051
|
5.3 |
MEDIUM
Network
-
|
-
|
A flaw was found in FFmpeg's TTY Demuxer. This vulnerability allows possible data exfiltration via improper parsing of non-TTY-compliant input files in HLS playlists.
|
CWE-99
Resource Injection
|
CVE-2023-6602
|
2025-01-1 00:15 |
2025-01-1 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
1052
|
- |
|
-
|
-
|
Cross-Site Request Forgery (CSRF) vulnerability in EditionGuard Dev Team EditionGuard for WooCommerce – eBook Sales with DRM allows Privilege Escalation.This issue affects EditionGuard for WooCommerc…
|
CWE-352
Origin Validation Error
|
CVE-2024-56207
|
2024-12-31 23:15 |
2024-12-31 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
1053
|
- |
|
-
|
-
|
Cross-Site Request Forgery (CSRF) vulnerability in Amarjeet Amar allows Authentication Bypass.This issue affects gap-hub-user-role: from n/a through 3.4.1.
|
CWE-352
Origin Validation Error
|
CVE-2024-56206
|
2024-12-31 23:15 |
2024-12-31 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
1054
|
- |
|
-
|
-
|
Cross-Site Request Forgery (CSRF) vulnerability in Yonatan Reinberg of Social Ink Sinking Dropdowns allows Privilege Escalation.This issue affects Sinking Dropdowns: from n/a through 1.25.
|
CWE-352
Origin Validation Error
|
CVE-2024-56204
|
2024-12-31 23:15 |
2024-12-31 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
1055
|
- |
|
-
|
-
|
Cross-Site Request Forgery (CSRF) vulnerability in George Holmes II Wayne Audio Player allows Privilege Escalation.This issue affects Wayne Audio Player: from n/a through 1.0.
|
CWE-352
Origin Validation Error
|
CVE-2024-56203
|
2024-12-31 23:15 |
2024-12-31 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
1056
|
- |
|
-
|
-
|
Missing Authorization vulnerability in Azzaroco WP SuperBackup allows Exploiting Incorrectly Configured Access Control Security Levels.This issue affects WP SuperBackup: from n/a through 2.3.3.
|
CWE-862
Missing Authorization
|
CVE-2024-56070
|
2024-12-31 23:15 |
2024-12-31 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
1057
|
- |
|
-
|
-
|
Missing Authorization vulnerability in Inspry Agency Toolkit allows Privilege Escalation.This issue affects Agency Toolkit: from n/a through 1.0.23.
|
CWE-862
Missing Authorization
|
CVE-2024-56066
|
2024-12-31 23:15 |
2024-12-31 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
1058
|
- |
|
-
|
-
|
Missing Authorization vulnerability in Webful Creations Computer Repair Shop allows Privilege Escalation.This issue affects Computer Repair Shop: from n/a through 3.8119.
|
CWE-862
Missing Authorization
|
CVE-2024-56061
|
2024-12-31 23:15 |
2024-12-31 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
1059
|
- |
|
-
|
-
|
Path Traversal: '.../...//' vulnerability in VibeThemes WPLMS allows Path Traversal.This issue affects WPLMS: from n/a before 1.9.9.5.
|
CWE-35
Path Traversal: '.../...//'
|
CVE-2024-56045
|
2024-12-31 23:15 |
2024-12-31 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
1060
|
- |
|
-
|
-
|
Authentication Bypass Using an Alternate Path or Channel vulnerability in VibeThemes WPLMS allows Authentication Bypass.This issue affects WPLMS: from n/a through 1.9.9.
|
CWE-288
Authentication Bypass Using an Alternate Path or Channel
|
CVE-2024-56044
|
2024-12-31 23:15 |
2024-12-31 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|