2131
|
8.8 |
HIGH
Network
|
wangl1989
|
mysiteforme
|
A vulnerability was found in wangl1989 mysiteforme 1.0. It has been rated as critical. This issue affects the function doContent of the file src/main/java/com/mysiteform/admin/controller/system/FileC…
|
CWE-918
Server-Side Request Forgery (SSRF)
|
CVE-2024-13139
|
2025-01-11 06:02 |
2025-01-5 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
2132
|
8.8 |
HIGH
Network
|
wangl1989
|
mysiteforme
|
A vulnerability was found in wangl1989 mysiteforme 1.0. It has been declared as critical. This vulnerability affects the function upload of the file src/main/java/com/mysiteform/admin/service/ipl/Loc…
|
CWE-434
Unrestricted Upload of File with Dangerous Type
|
CVE-2024-13138
|
2025-01-11 06:01 |
2025-01-5 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
2133
|
5.4 |
MEDIUM
Network
|
wangl1989
|
mysiteforme
|
A vulnerability was found in wangl1989 mysiteforme 1.0. It has been classified as problematic. This affects the function RestResponse of the file src/main/java/com/mysiteforme/admin/controller/system…
|
CWE-79
Cross-site Scripting
|
CVE-2024-13137
|
2025-01-11 06:01 |
2025-01-5 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
2134
|
9.8 |
CRITICAL
Network
wangl1989
|
mysiteforme
|
A vulnerability was found in wangl1989 mysiteforme 1.0 and classified as critical. Affected by this issue is the function rememberMeManager of the file src/main/java/com/mysiteforme/admin/config/Shir…
|
CWE-502
Deserialization of Untrusted Data
|
CVE-2024-13136
|
2025-01-11 06:01 |
2025-01-5 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
2135
|
- |
|
-
|
-
|
On affected platforms running Arista EOS with one of the following features configured to redirect IP traffic to a next hop: policy-based routing (PBR), BGP Flowspec, or interface traffic policy -- c…
|
-
|
CVE-2024-6437
|
2025-01-11 05:15 |
2025-01-11 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
2136
|
- |
|
-
|
-
|
NETGEAR DGN1000 before 1.1.00.48 is vulnerable to an authentication bypass vulnerability. A remote and unauthenticated attacker can execute arbitrary operating system commands as root by sending craf…
|
-
|
CVE-2024-12847
|
2025-01-11 05:15 |
2025-01-11 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
2137
|
- |
|
-
|
-
|
Improper Ownership Management vulnerability in Drupal Node Access Rebuild Progressive allows Target Influence via Framing.This issue affects Node Access Rebuild Progressive: from 0.0.0 before 2.0.2.
|
-
|
CVE-2024-13246
|
2025-01-11 05:15 |
2025-01-10 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
2138
|
8.8 |
HIGH
Network
|
codezips
|
gym_management_system
|
A vulnerability has been found in Codezips Gym Management System 1.0 and classified as critical. Affected by this vulnerability is an unknown functionality of the file /dashboard/admin/submit_payment…
|
CWE-89
SQL Injection
|
CVE-2025-0231
|
2025-01-11 04:58 |
2025-01-6 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
2139
|
9.8 |
CRITICAL
Network
fabianros
|
responsive_hotel_site
|
A vulnerability, which was classified as critical, was found in code-projects Responsive Hotel Site 1.0. Affected is an unknown function of the file /admin/print.php. The manipulation of the argument…
|
CWE-89
SQL Injection
|
CVE-2025-0230
|
2025-01-11 04:48 |
2025-01-6 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
2140
|
9.8 |
CRITICAL
Network
fabianros
|
travel_management_system
|
A vulnerability, which was classified as critical, has been found in code-projects Travel Management System 1.0. This issue affects some unknown processing of the file /enquiry.php. The manipulation …
|
CWE-89
SQL Injection
|
CVE-2025-0229
|
2025-01-11 04:45 |
2025-01-6 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|