|
312321
|
- |
|
-
|
-
|
A Cross-site Scripting (XSS) vulnerability exists in version v2024-01-05 of the indexmenu plugin when is used and enabled in Dokuwiki (Open Source Wiki Engine). A malicious attacker can input XSS pay…
|
-
|
CVE-2024-42758
|
2024-08-20 03:35 |
2024-08-17 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
312322
|
- |
|
-
|
-
|
H3C GR1100-P v100R009 was discovered to use a hardcoded password in /etc/shadow, which allows attackers to log in as root.
|
-
|
CVE-2024-42639
|
2024-08-20 03:35 |
2024-08-17 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
312323
|
- |
|
-
|
-
|
XML External Entity (XXE) vulnerability in Terminalfour 8.0.0001 through 8.3.18 and XML JDBC versions up to 1.0.4 allows authenticated users to submit malicious XML via unspecified features which cou…
|
-
|
CVE-2024-22219
|
2024-08-20 03:35 |
2024-08-16 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
312324
|
9.8 |
CRITICAL
Network
|
dlink
|
dns-120_firmware dnr-202l_firmware dns-315l_firmware dns-320_firmware dns-320l_firmware dns-320lw_firmware dns-321_firmware dnr-322l_firmware dns-323_firmware dns-325_firmw…
|
** UNSUPPORTED WHEN ASSIGNED ** A vulnerability has been found in D-Link DNS-120, DNR-202L, DNS-315L, DNS-320, DNS-320L, DNS-320LW, DNS-321, DNR-322L, DNS-323, DNS-325, DNS-326, DNS-327L, DNR-326, DN…
|
CWE-120
Classic Buffer Overflow
|
CVE-2024-7831
|
2024-08-20 03:35 |
2024-08-15 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
312325
|
9.8 |
CRITICAL
Network
|
dlink
|
dns-120_firmware dnr-202l_firmware dns-315l_firmware dns-320_firmware dns-320l_firmware dns-320lw_firmware dns-321_firmware dnr-322l_firmware dns-323_firmware dns-325_firmw…
|
** UNSUPPORTED WHEN ASSIGNED ** A vulnerability, which was classified as critical, was found in D-Link DNS-120, DNR-202L, DNS-315L, DNS-320, DNS-320L, DNS-320LW, DNS-321, DNR-322L, DNS-323, DNS-325, …
|
CWE-120
Classic Buffer Overflow
|
CVE-2024-7830
|
2024-08-20 03:34 |
2024-08-15 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
312326
|
9.8 |
CRITICAL
Network
|
dlink
|
dns-120_firmware dnr-202l_firmware dns-315l_firmware dns-320_firmware dns-320l_firmware dns-320lw_firmware dns-321_firmware dnr-322l_firmware dns-323_firmware dns-325_firmw…
|
** UNSUPPORTED WHEN ASSIGNED ** A vulnerability, which was classified as critical, has been found in D-Link DNS-120, DNR-202L, DNS-315L, DNS-320, DNS-320L, DNS-320LW, DNS-321, DNR-322L, DNS-323, DNS-…
|
CWE-120
Classic Buffer Overflow
|
CVE-2024-7829
|
2024-08-20 03:34 |
2024-08-15 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
312327
|
9.8 |
CRITICAL
Network
|
dlink
|
dns-120_firmware dnr-202l_firmware dns-315l_firmware dns-320_firmware dns-320l_firmware dns-320lw_firmware dns-321_firmware dnr-322l_firmware dns-323_firmware dns-325_firmw…
|
** UNSUPPORTED WHEN ASSIGNED ** A vulnerability classified as critical was found in D-Link DNS-120, DNR-202L, DNS-315L, DNS-320, DNS-320L, DNS-320LW, DNS-321, DNR-322L, DNS-323, DNS-325, DNS-326, DNS…
|
CWE-120
Classic Buffer Overflow
|
CVE-2024-7828
|
2024-08-20 03:33 |
2024-08-15 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
312328
|
4.8 |
MEDIUM
Network
|
online_railway_reservation_system_project
|
online_railway_reservation_system
|
A vulnerability has been found in CodeAstro Online Railway Reservation System 1.0 and classified as problematic. Affected by this vulnerability is an unknown functionality of the file /admin/admin-up…
|
CWE-79
Cross-site Scripting
|
CVE-2024-7815
|
2024-08-20 03:32 |
2024-08-15 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
312329
|
4.8 |
MEDIUM
Network
|
online_railway_reservation_system_project
|
online_railway_reservation_system
|
A vulnerability, which was classified as problematic, was found in CodeAstro Online Railway Reservation System 1.0. Affected is an unknown function of the file /admin/admin-add-employee.php of the co…
|
CWE-79
Cross-site Scripting
|
CVE-2024-7814
|
2024-08-20 03:31 |
2024-08-15 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
312330
|
4.3 |
MEDIUM
Network
|
monospace
|
directus
|
Directus v10.13.0 allows an authenticated external attacker to modify presets created by the same user to assign them to another user. This is possible because the application only validates the user…
|
CWE-639
Authorization Bypass Through User-Controlled Key
|
CVE-2024-6534
|
2024-08-20 03:17 |
2024-08-15 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|