|
313221
|
8.8 |
HIGH
Network
|
pligg
|
pligg_cms
|
Pligg CMS v2.0.2 was discovered to contain a Cross-Site Request Forgery (CSRF) vulnerability via /admin/admin_backup.php?dobackup=files
|
CWE-352
Origin Validation Error
|
CVE-2024-42610
|
2024-08-21 22:11 |
2024-08-21 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
313222
|
8.8 |
HIGH
Network
|
pligg
|
pligg_cms
|
Pligg CMS v2.0.2 was discovered to contain a Cross-Site Request Forgery (CSRF) vulnerability via /admin/admin_widgets.php?action=remove&widget=Statistics
|
CWE-352
Origin Validation Error
|
CVE-2024-42616
|
2024-08-21 22:10 |
2024-08-21 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
313223
|
8.8 |
HIGH
Network
|
pligg
|
pligg_cms
|
Pligg CMS v2.0.2 was discovered to contain a Cross-Site Request Forgery (CSRF) vulnerability via /module.php?module=karma
|
CWE-352
Origin Validation Error
|
CVE-2024-42618
|
2024-08-21 22:09 |
2024-08-21 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
313224
|
8.8 |
HIGH
Network
|
pligg
|
pligg_cms
|
Pligg CMS v2.0.2 was discovered to contain a Cross-Site Request Forgery (CSRF) vulnerability via /admin/admin_config.php?action=save&var_id=32
|
CWE-352
Origin Validation Error
|
CVE-2024-42617
|
2024-08-21 22:09 |
2024-08-21 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
313225
|
8.8 |
HIGH
Network
|
pligg
|
pligg_cms
|
Pligg CMS v2.0.2 was discovered to contain a Cross-Site Request Forgery (CSRF) vulnerability via /admin/admin_editor.php
|
CWE-352
Origin Validation Error
|
CVE-2024-42621
|
2024-08-21 21:50 |
2024-08-21 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
313226
|
7.5 |
HIGH
Network
|
floraison
|
fugit
|
fugit contains time tools for flor and the floraison group. The fugit "natural" parser, that turns "every wednesday at 5pm" into "0 17 * * 3", accepted any length of input and went on attempting to p…
|
NVD-CWE-noinfo
|
CVE-2024-43380
|
2024-08-21 21:38 |
2024-08-20 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
313227
|
3.1 |
LOW
Network
|
trufflesecurity
|
trufflehog
|
TruffleHog is a secrets scanning tool. Prior to v3.81.9, this vulnerability allows a malicious actor to craft data in a way that, when scanned by specific detectors, could trigger the detector to mak…
|
CWE-918
Server-Side Request Forgery (SSRF)
|
CVE-2024-43379
|
2024-08-21 21:37 |
2024-08-20 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
313228
|
9.8 |
CRITICAL
Network
|
jielink\+_jsotc2016_project
|
jielink\+_jsotc2016
|
A vulnerability has been found in Anhui Deshun Intelligent Technology Jieshun JieLink+ JSOTC2016 up to 20240805 and classified as problematic. Affected by this vulnerability is an unknown functionali…
|
NVD-CWE-Other
|
CVE-2024-7921
|
2024-08-21 21:34 |
2024-08-19 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
313229
|
9.8 |
CRITICAL
Network
|
microcks
|
microcks
|
In Microcks before 1.10.0, the POST /api/import and POST /api/export endpoints allow non-administrator access.
|
NVD-CWE-noinfo
|
CVE-2024-44076
|
2024-08-21 21:33 |
2024-08-19 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
313230
|
9.8 |
CRITICAL
Network
|
jielink\+_jsotc2016_project
|
jielink\+_jsotc2016
|
A vulnerability, which was classified as problematic, was found in Anhui Deshun Intelligent Technology Jieshun JieLink+ JSOTC2016 up to 20240805. Affected is an unknown function of the file /Report/P…
|
NVD-CWE-Other
|
CVE-2024-7920
|
2024-08-21 21:31 |
2024-08-19 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|