|
313061
|
- |
|
-
|
-
|
Dovecot accepts dot LF DOT LF symbol as end of DATA command. RFC requires that it should always be CR LF DOT CR LF. This causes Dovecot to convert single mail with LF DOT LF in middle, into two email…
|
-
|
CVE-2024-25584
|
2024-09-7 01:46 |
2024-09-7 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
313062
|
- |
|
-
|
-
|
`gix-path` is a crate of the `gitoxide` project (an implementation of `git` written in Rust) dealing paths and their conversions. Prior to version 0.10.11, `gix-path` runs `git` to find the path of a…
|
-
|
CVE-2024-45405
|
2024-09-7 01:46 |
2024-09-6 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
313063
|
- |
|
-
|
-
|
Sourcecodester Simple Forum Website v1.0 has a SQL injection vulnerability in /php-sqlite-forum/?page=manage_user&id=.
|
-
|
CVE-2024-44739
|
2024-09-7 01:46 |
2024-09-6 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
313064
|
8.8 |
HIGH
Network
|
ibm
|
webmethods_integration
|
IBM webMethods Integration 10.15 could allow an authenticated user to create scheduler tasks that would allow them to escalate their privileges to administrator due to missing authentication.
|
NVD-CWE-Other
|
CVE-2024-45075
|
2024-09-7 01:45 |
2024-09-5 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
313065
|
6.5 |
MEDIUM
Network
|
ibm
|
webmethods_integration
|
IBM webMethods Integration 10.15 could allow an authenticated user to traverse directories on the system. An attacker could send a specially crafted URL request containing "dot dot" sequences (/../) …
|
CWE-22
Path Traversal
|
CVE-2024-45074
|
2024-09-7 01:45 |
2024-09-5 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
313066
|
4.3 |
MEDIUM
Network
|
munyweki
|
insurance_management_system
|
A vulnerability has been found in SourceCodester Insurance Management System 1.0 and classified as problematic. Affected by this vulnerability is an unknown functionality. The manipulation leads to c…
|
CWE-352
Origin Validation Error
|
CVE-2024-8414
|
2024-09-7 01:44 |
2024-09-5 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
313067
|
9.9 |
CRITICAL
Network
|
ibm
|
webmethods_integration
|
IBM webMethods Integration 10.15 could allow an authenticated user to upload and execute arbitrary files which could be executed on the underlying operating system.
|
CWE-434
Unrestricted Upload of File with Dangerous Type
|
CVE-2024-45076
|
2024-09-7 01:44 |
2024-09-5 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
313068
|
9.8 |
CRITICAL
Network
|
oretnom23
|
food_ordering_management_system
|
A vulnerability was found in SourceCodester Food Ordering Management System 1.0 and classified as critical. Affected by this issue is some unknown functionality of the file /routers/add-ticket.php. T…
|
CWE-89
SQL Injection
|
CVE-2024-8415
|
2024-09-7 01:40 |
2024-09-5 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
313069
|
9.8 |
CRITICAL
Network
|
oretnom23
|
food_ordering_management_system
|
A vulnerability was found in SourceCodester Food Ordering Management System 1.0. It has been classified as critical. This affects an unknown part of the file /routers/ticket-status.php. The manipulat…
|
CWE-89
SQL Injection
|
CVE-2024-8416
|
2024-09-7 01:38 |
2024-09-5 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
313070
|
6.2 |
MEDIUM
Local
|
huawei
|
emui harmonyos
|
Permission verification vulnerability in the lock screen module
Impact: Successful exploitation of this vulnerability may affect availability
|
NVD-CWE-noinfo
|
CVE-2023-7265
|
2024-09-7 01:38 |
2024-08-8 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|