|
314051
|
8.8 |
HIGH
Network
|
sender
|
sender
|
Cross-Site Request Forgery (CSRF) vulnerability in Sender Sender – Newsletter, SMS and Email Marketing Automation for WooCommerce.This issue affects Sender – Newsletter, SMS and Email Marketing Autom…
|
CWE-352
Origin Validation Error
|
CVE-2024-39657
|
2024-09-19 01:25 |
2024-08-27 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
314052
|
8.8 |
HIGH
Network
|
10up
|
simple_local_avatars
|
Cross-Site Request Forgery (CSRF) vulnerability in 10up Simple Local Avatars.This issue affects Simple Local Avatars: from n/a through 2.7.10.
|
CWE-352
Origin Validation Error
|
CVE-2024-43116
|
2024-09-19 01:22 |
2024-08-27 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
314053
|
8.8 |
HIGH
Network
|
loftware
|
spectrum
|
Loftware Spectrum before 4.6 HF14 allows authenticated XXE attacks.
|
CWE-611
XXE
|
CVE-2023-37233
|
2024-09-19 01:10 |
2024-09-11 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
314054
|
9.8 |
CRITICAL
Network
|
loftware
|
spectrum
|
Loftware Spectrum through 4.6 has unprotected JMX Registry.
|
NVD-CWE-noinfo
|
CVE-2023-37234
|
2024-09-19 01:05 |
2024-09-11 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
314055
|
7.5 |
HIGH
Network
|
loftware
|
spectrum
|
Loftware Spectrum through 4.6 exposes Sensitive Information (Logs) to an Unauthorized Actor.
|
NVD-CWE-noinfo
|
CVE-2023-37232
|
2024-09-19 00:55 |
2024-09-11 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
314056
|
8.8 |
HIGH
Network
|
inspireui
|
mstore_api
|
The MStore API – Create Native Android & iOS Apps On The Cloud plugin for WordPress is vulnerable to arbitrary file uploads due to missing file type validation in the update_user_profile() function i…
|
CWE-434
Unrestricted Upload of File with Dangerous Type
|
CVE-2024-8242
|
2024-09-19 00:47 |
2024-09-14 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
314057
|
9.1 |
CRITICAL
Network
|
siemens
|
simatic_rf360r_firmware simatic_rf1170r_firmware simatic_rf1140r_firmware simatic_reader_rf685r_fcc_firmware simatic_reader_rf685r_etsi_firmware simatic_reader_rf685r_cmiit_firmware
|
A vulnerability has been identified in SIMATIC Reader RF610R CMIIT (6GT2811-6BC10-2AA0) (All versions < V4.2), SIMATIC Reader RF610R ETSI (6GT2811-6BC10-0AA0) (All versions < V4.2), SIMATIC Reader RF…
|
NVD-CWE-noinfo
|
CVE-2024-37995
|
2024-09-19 00:37 |
2024-09-10 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
314058
|
7.1 |
HIGH
Network
|
siemens
|
simatic_rf360r_firmware simatic_rf1170r_firmware simatic_rf1140r_firmware simatic_reader_rf685r_fcc_firmware simatic_reader_rf685r_etsi_firmware simatic_reader_rf685r_cmiit_firmware
|
A vulnerability has been identified in SIMATIC Reader RF610R CMIIT (6GT2811-6BC10-2AA0) (All versions < V4.2), SIMATIC Reader RF610R ETSI (6GT2811-6BC10-0AA0) (All versions < V4.2), SIMATIC Reader RF…
|
NVD-CWE-Other
|
CVE-2024-37994
|
2024-09-19 00:35 |
2024-09-10 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
314059
|
4.8 |
MEDIUM
Network
|
classcms
|
classcms
|
A vulnerability, which was classified as problematic, has been found in ClassCMS 4.8. Affected by this issue is some unknown functionality of the file /index.php/admin of the component Article Handle…
|
CWE-79
Cross-site Scripting
|
CVE-2024-8145
|
2024-09-19 00:34 |
2024-08-25 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
314060
|
7.5 |
HIGH
Network
|
siemens
|
simatic_rf360r_firmware simatic_rf1170r_firmware simatic_rf1140r_firmware simatic_reader_rf685r_fcc_firmware simatic_reader_rf685r_etsi_firmware simatic_reader_rf685r_cmiit_firmware
|
A vulnerability has been identified in SIMATIC Reader RF610R CMIIT (6GT2811-6BC10-2AA0) (All versions < V4.2), SIMATIC Reader RF610R ETSI (6GT2811-6BC10-0AA0) (All versions < V4.2), SIMATIC Reader RF…
|
NVD-CWE-noinfo
|
CVE-2024-37993
|
2024-09-19 00:32 |
2024-09-10 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|