|
313041
|
- |
|
-
|
-
|
An arbitrary file write issue in the exfiltration endpoint in BYOB (Build Your Own Botnet) 2.0 allows attackers to overwrite SQLite databases and bypass authentication via an unauthenticated HTTP req…
|
-
|
CVE-2024-45256
|
2024-08-26 16:15 |
2024-08-26 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
313042
|
- |
|
-
|
-
|
A traversal vulnerability in GeneralDocs.aspx in CentralSquare CryWolf (False Alarm Management) through 2024-08-09 allows unauthenticated attackers to read files outside of the working web directory …
|
-
|
CVE-2024-45241
|
2024-08-26 16:15 |
2024-08-26 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
313043
|
- |
|
-
|
-
|
The Shield Security WordPress plugin before 20.0.6 does not sanitise and escape a parameter before outputting it back in the page, leading to a Reflected Cross-Site Scripting which could be used aga…
|
-
|
CVE-2024-7313
|
2024-08-26 15:15 |
2024-08-26 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
313044
|
- |
|
-
|
-
|
Validating the order of the public keys in the Diffie-Hellman Key Agreement Protocol, when an approved safe prime is used, allows remote attackers (from the client side) to trigger unnecessarily expe…
|
-
|
CVE-2024-41996
|
2024-08-26 15:15 |
2024-08-26 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
313045
|
- |
|
-
|
-
|
cron/entry.c in vixie cron before 9cc8ab1, as used in OpenBSD 7.4 and 7.5, allows a heap-based buffer underflow and memory corruption. NOTE: this issue was introduced during a May 2023 refactoring.
|
-
|
CVE-2024-43688
|
2024-08-26 15:15 |
2024-08-20 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
313046
|
- |
|
-
|
-
|
Python Pip Pandas v2.2.2 was discovered to contain an arbitrary file read vulnerability.
|
-
|
CVE-2024-42992
|
2024-08-26 12:35 |
2024-08-24 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
313047
|
4.8 |
MEDIUM
Network
|
ibm
|
common_licensing
|
IBM Common Licensing 9.0 is vulnerable to stored cross-site scripting. This vulnerability allows a privileged user to embed arbitrary JavaScript code in the Web UI thus altering the intended function…
|
CWE-79
Cross-site Scripting
|
CVE-2024-41774
|
2024-08-24 20:15 |
2024-08-13 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
313048
|
9.8 |
CRITICAL
Network
|
project_expense_monitoring_system_project
|
project_expense_monitoring_system
|
A vulnerability was found in itsourcecode Project Expense Monitoring System 1.0. It has been declared as critical. Affected by this vulnerability is an unknown functionality of the file execute.php. …
|
CWE-89
SQL Injection
|
CVE-2024-7934
|
2024-08-24 04:54 |
2024-08-20 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
313049
|
9.8 |
CRITICAL
Network
|
project_expense_monitoring_system_project
|
project_expense_monitoring_system
|
A vulnerability was found in itsourcecode Project Expense Monitoring System 1.0. It has been classified as critical. Affected is an unknown function of the file login1.php of the component Backend Lo…
|
CWE-89
SQL Injection
|
CVE-2024-7933
|
2024-08-24 04:53 |
2024-08-20 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
313050
|
9.8 |
CRITICAL
Network
|
project_expense_monitoring_system_project
|
project_expense_monitoring_system
|
A vulnerability was found in itsourcecode Project Expense Monitoring System 1.0. It has been rated as critical. Affected by this issue is some unknown functionality of the file print.php. The manipul…
|
CWE-89
SQL Injection
|
CVE-2024-7935
|
2024-08-24 04:52 |
2024-08-20 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|