71
|
- |
|
-
|
-
|
A Null pointer dereference vulnerability in the Mobile Management Entity (MME) in Magma <= 1.8.0 (fixed in v1.9 commit 08472ba98b8321f802e95f5622fa90fec2dea486) allows network-adjacent attackers to c…
New
|
-
|
CVE-2023-37036
|
2025-01-24 00:15 |
2025-01-22 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
72
|
- |
|
-
|
-
|
A Null pointer dereference vulnerability in the Mobile Management Entity (MME) in Magma <= 1.8.0 (fixed in v1.9 commit 08472ba98b8321f802e95f5622fa90fec2dea486) allows network-adjacent attackers to c…
New
|
-
|
CVE-2023-37034
|
2025-01-24 00:15 |
2025-01-22 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
73
|
- |
|
-
|
-
|
A Null pointer dereference vulnerability in the Mobile Management Entity (MME) in Magma <= 1.8.0 (fixed in v1.9 commit 08472ba98b8321f802e95f5622fa90fec2dea486) allows network-adjacent attackers to c…
New
|
-
|
CVE-2023-37033
|
2025-01-24 00:15 |
2025-01-22 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
74
|
- |
|
-
|
-
|
In the Linux kernel, the following vulnerability has been resolved:
netfilter: nf_set_pipapo: fix initial map fill
The initial buffer has to be inited to all-ones, but it must restrict
it to the si…
New
|
-
|
CVE-2024-57947
|
2025-01-23 23:15 |
2025-01-23 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
75
|
5.5 |
MEDIUM
Network
|
-
|
-
|
Improper Neutralization of Input During Web Page Generation (XSS or 'Cross-site Scripting') vulnerability in Uyumsoft Informatin Systems Uyumsoft ERP allows XSS Using Invalid Characters, Reflected XS…
New
|
CWE-79
Cross-site Scripting
|
CVE-2024-10539
|
2025-01-23 23:15 |
2025-01-23 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
76
|
6.1 |
MEDIUM
Network
|
-
|
-
|
The SEO Blogger to WordPress Migration using 301 Redirection plugin for WordPress is vulnerable to Reflected Cross-Site Scripting via the 'url' parameter in all versions up to, and including, 0.4.8 d…
New
|
CWE-79
Cross-site Scripting
|
CVE-2024-13422
|
2025-01-23 21:15 |
2025-01-23 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
77
|
6.4 |
MEDIUM
Network
|
-
|
-
|
The Cliptakes plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the plugin's 'cliptakes_input_email' shortcode in all versions up to, and including, 1.3.4 due to insufficient inpu…
New
|
CWE-79
Cross-site Scripting
|
CVE-2024-13389
|
2025-01-23 21:15 |
2025-01-23 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
78
|
6.4 |
MEDIUM
Network
|
-
|
-
|
The MDTF – Meta Data and Taxonomies Filter plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the plugin's 'mdf_results_by_ajax' shortcode in all versions up to, and including, 1.3…
New
|
CWE-79
Cross-site Scripting
|
CVE-2024-13340
|
2025-01-23 21:15 |
2025-01-23 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
79
|
6.5 |
MEDIUM
Network
|
-
|
-
|
The Tainacan plugin for WordPress is vulnerable to SQL Injection via the 'collection_id' parameter in all versions up to, and including, 0.21.12 due to insufficient escaping on the user supplied para…
New
|
CWE-89
SQL Injection
|
CVE-2024-13236
|
2025-01-23 21:15 |
2025-01-23 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
80
|
6.4 |
MEDIUM
Network
|
-
|
-
|
The Broadcast Live Video – Live Streaming : HTML5, WebRTC, HLS, RTSP, RTMP plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the plugin's 'videowhisper_hls' shortcode in all versi…
New
|
CWE-79
Cross-site Scripting
|
CVE-2024-12504
|
2025-01-23 21:15 |
2025-01-23 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|