971
|
- |
|
-
|
-
|
A vulnerability classified as critical was found in Beijing Yunfan Internet Technology Yunfan Learning Examination System 1.9.2. Affected by this vulnerability is an unknown functionality of the file…
|
CWE-287
Improper Authentication
|
CVE-2024-13111
|
2025-01-2 23:15 |
2025-01-2 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
972
|
- |
|
-
|
-
|
A vulnerability classified as problematic has been found in Beijing Yunfan Internet Technology Yunfan Learning Examination System 1.9.2. Affected is an unknown function of the file src/main/java/com/…
|
CWE-200 CWE-284
Information Exposure Improper Access Control
|
CVE-2024-13110
|
2025-01-2 23:15 |
2025-01-2 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
973
|
- |
|
-
|
-
|
In the Linux kernel, the following vulnerability has been resolved:
ceph: fix memory leak in ceph_direct_read_write()
The bvecs array which is allocated in iter_get_bvecs_alloc() is leaked
and page…
|
-
|
CVE-2024-56710
|
2025-01-2 23:15 |
2024-12-29 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
974
|
- |
|
-
|
-
|
Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in WP Hait Post Grid Elementor Addon allows Stored XSS.This issue affects Post Grid Elementor Addon:…
|
CWE-79
Cross-site Scripting
|
CVE-2024-56268
|
2025-01-2 22:15 |
2025-01-2 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
975
|
- |
|
-
|
-
|
Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in CoolPlugins Coins MarketCap allows DOM-Based XSS.This issue affects Coins MarketCap: from n/a thr…
|
CWE-79
Cross-site Scripting
|
CVE-2024-56257
|
2025-01-2 22:15 |
2025-01-2 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
976
|
- |
|
-
|
-
|
Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in Markyis Cool Olivia allows Reflected XSS.This issue affects Olivia: from n/a through 0.9.5.
|
CWE-79
Cross-site Scripting
|
CVE-2024-56014
|
2025-01-2 22:15 |
2025-01-2 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
977
|
- |
|
-
|
-
|
Cross-Site Request Forgery (CSRF) vulnerability in CridioStudio ListingPro allows Authentication Bypass.This issue affects ListingPro: from n/a through 2.9.4.
|
CWE-352
Origin Validation Error
|
CVE-2024-39623
|
2025-01-2 22:15 |
2025-01-2 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
978
|
- |
|
-
|
-
|
Cross-Site Request Forgery (CSRF) vulnerability in Epsiloncool WP Fast Total Search.This issue affects WP Fast Total Search: from n/a through 1.69.234.
|
CWE-352
Origin Validation Error
|
CVE-2024-38778
|
2025-01-2 22:15 |
2025-01-2 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
979
|
- |
|
-
|
-
|
Cross-Site Request Forgery (CSRF) vulnerability in Marsian allows Cross Site Request Forgery.This issue affects i-transform: from n/a through 3.0.9.
|
CWE-352
Origin Validation Error
|
CVE-2024-38764
|
2025-01-2 22:15 |
2025-01-2 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
980
|
- |
|
-
|
-
|
A vulnerability was found in Beijing Yunfan Internet Technology Yunfan Learning Examination System 1.9.2. It has been rated as critical. This issue affects some unknown processing of the file /doc.ht…
|
CWE-285 CWE-266
Improper Authorization Incorrect Privilege Assignment
|
CVE-2024-13109
|
2025-01-2 22:15 |
2025-01-2 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|