|
312961
|
- |
|
-
|
-
|
A SQL Injection vulnerability exists in the service configuration functionality in Centreon Web 24.04.x before 24.04.3, 23.10.x before 23.10.13, 23.04.x before 23.04.19, and 22.10.x before 22.10.23.
|
-
|
CVE-2024-39841
|
2024-08-24 03:46 |
2024-08-24 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
312962
|
- |
|
-
|
-
|
A SQL Injection vulnerability exists in the Timeperiod component in Centreon Web 24.04.x before 24.04.3, 23.10.x before 23.10.13, 23.04.x before 23.04.19, and 22.10.x before 22.10.23.
|
-
|
CVE-2024-33853
|
2024-08-24 03:46 |
2024-08-24 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
312963
|
- |
|
-
|
-
|
A SQL Injection vulnerability exists in the Downtime component in Centreon Web 24.04.x before 24.04.3, 23.10.x before 23.10.13, 23.04.x before 23.04.19, and 22.10.x before 22.10.23.
|
-
|
CVE-2024-33852
|
2024-08-24 03:46 |
2024-08-24 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
312964
|
8.8 |
HIGH
Network
|
siemens
|
ruggedcom_rm1224_lte\(4g\)_eu_firmware ruggedcom_rm1224_lte\(4g\)_nam_firmware scalance_m804pb_firmware scalance_m826-2_shdsl-router_firmware scalance_m874-2_firmware scalance_m874-3_f…
|
A vulnerability has been identified in RUGGEDCOM RM1224 LTE(4G) EU (6GK6108-4AM00-2BA2) (All versions < V8.1), RUGGEDCOM RM1224 LTE(4G) NAM (6GK6108-4AM00-2DA2) (All versions < V8.1), SCALANCE M804PB…
|
NVD-CWE-noinfo
|
CVE-2024-41976
|
2024-08-24 03:40 |
2024-08-13 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
312965
|
8.0 |
HIGH
Network
|
siemens
|
ruggedcom_rm1224_lte\(4g\)_eu_firmware ruggedcom_rm1224_lte\(4g\)_nam_firmware scalance_m804pb_firmware scalance_m826-2_shdsl-router_firmware scalance_m874-2_firmware scalance_m874-3_f…
|
A vulnerability has been identified in RUGGEDCOM RM1224 LTE(4G) EU (6GK6108-4AM00-2BA2) (All versions < V8.1), RUGGEDCOM RM1224 LTE(4G) NAM (6GK6108-4AM00-2DA2) (All versions < V8.1), SCALANCE M804PB…
|
NVD-CWE-Other
|
CVE-2024-41977
|
2024-08-24 03:39 |
2024-08-13 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
312966
|
- |
|
-
|
-
|
DedeCMS V5.7.115 has a command execution vulnerability via file_manage_view.php?fmdo=newfile&activepath.
|
-
|
CVE-2024-42636
|
2024-08-24 03:35 |
2024-08-24 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
312967
|
- |
|
-
|
-
|
publiccms V4.0.202302.e and before is vulnerable to Any File Upload via publiccms/admin/cmsTemplate/saveMetaData
|
-
|
CVE-2024-42523
|
2024-08-24 03:35 |
2024-08-24 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
312968
|
- |
|
-
|
-
|
A host header injection vulnerability in Staff Appraisal System v1.0 allows attackers to obtain the password reset token via user interaction with a crafted password reset link. This will allow attac…
|
-
|
CVE-2024-42915
|
2024-08-24 03:35 |
2024-08-24 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
312969
|
- |
|
-
|
-
|
DrayTek Vigor 3900 before v1.5.1.5_Beta, DrayTek Vigor 2960 before v1.5.1.5_Beta and DrayTek Vigor 300B before v1.5.1.5_Beta were discovered to contain a command injection vulnerability via the actio…
|
-
|
CVE-2024-43027
|
2024-08-24 03:35 |
2024-08-22 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
312970
|
7.5 |
HIGH
Network
|
axios
|
axios
|
axios 1.7.2 allows SSRF via unexpected behavior where requests for path relative URLs get processed as protocol relative URLs.
|
CWE-918
Server-Side Request Forgery (SSRF)
|
CVE-2024-39338
|
2024-08-24 03:35 |
2024-08-12 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|