|
315011
|
7.5 |
HIGH
Network
|
phpgurukul
|
job_portal
|
SQL injection vulnerability, by which an attacker could send a specially designed query through id parameter in /jobportal/admin/employee/index.php, and retrieve all the information stored in it.
|
CWE-89
SQL Injection
|
CVE-2024-8469
|
2024-09-6 20:43 |
2024-09-5 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
315012
|
7.5 |
HIGH
Network
|
phpgurukul
|
job_portal
|
SQL injection vulnerability, by which an attacker could send a specially designed query through search parameter in /jobportal/index.php, and retrieve all the information stored in it.
|
CWE-89
SQL Injection
|
CVE-2024-8468
|
2024-09-6 20:43 |
2024-09-5 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
315013
|
7.5 |
HIGH
Network
|
phpgurukul
|
job_portal
|
SQL injection vulnerability, by which an attacker could send a specially designed query through id parameter in /jobportal/admin/category/index.php, and retrieve all the information stored in it.
|
CWE-89
SQL Injection
|
CVE-2024-8467
|
2024-09-6 20:42 |
2024-09-5 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
315014
|
7.5 |
HIGH
Network
|
phpgurukul
|
job_portal
|
SQL injection vulnerability, by which an attacker could send a specially designed query through CATEGORY parameter in /jobportal/admin/category/controller.php, and retrieve all the information stored…
|
CWE-89
SQL Injection
|
CVE-2024-8466
|
2024-09-6 20:24 |
2024-09-5 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
315015
|
7.5 |
HIGH
Network
|
phpgurukul
|
job_portal
|
SQL injection vulnerability, by which an attacker could send a specially designed query through user_id parameter in /jobportal/admin/user/controller.php, and retrieve all the information stored in i…
|
CWE-89
SQL Injection
|
CVE-2024-8465
|
2024-09-6 20:16 |
2024-09-5 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
315016
|
7.5 |
HIGH
Network
|
phpgurukul
|
job_portal
|
SQL injection vulnerability, by which an attacker could send a specially designed query through JOBREGID parameter in /jobportal/admin/applicants/controller.php, and retrieve all the information stor…
|
CWE-89
SQL Injection
|
CVE-2024-8464
|
2024-09-6 20:15 |
2024-09-5 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
315017
|
- |
|
-
|
-
|
In the Linux kernel, the following vulnerability has been resolved:
media: aspeed: Fix memory overwrite if timing is 1600x900
When capturing 1600x900, system could crash when system memory usage is…
|
-
|
CVE-2023-52916
|
2024-09-6 18:15 |
2024-09-6 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
315018
|
- |
|
-
|
-
|
The WP ULike WordPress plugin before 4.7.2.1 does not properly sanitize user display names when rendering on a public page.
|
-
|
CVE-2024-6792
|
2024-09-6 15:15 |
2024-09-6 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
315019
|
7.5 |
HIGH
Network
|
nescalante
|
urlregex
|
A vulnerability was found in nescalante urlregex up to 0.5.0 and classified as problematic. This issue affects some unknown processing of the file index.js of the component Backtracking. The manipula…
|
CWE-1333
Inefficient Regular Expression Complexity
|
CVE-2020-36830
|
2024-09-6 06:47 |
2024-09-3 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
315020
|
7.8 |
HIGH
Local
|
qualcomm
|
ar8035_firmware csra6620_firmware csra6640_firmware fastconnect_6200_firmware fastconnect_6700_firmware fastconnect_6900_firmware fastconnect_7800_firmware flight_rb5_5g_firmware…
|
Memory corruption while processing IOCTL call for getting group info.
|
CWE-416
Use After Free
|
CVE-2024-38402
|
2024-09-6 06:43 |
2024-09-2 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|