|
312741
|
5.4 |
MEDIUM
Network
|
oretnom23
|
yoga_class_registration_system
|
A vulnerability classified as problematic has been found in SourceCodester Yoga Class Registration System 1.0. Affected is an unknown function of the file /php-ycrs/classes/SystemSettings.php. The ma…
|
CWE-79
Cross-site Scripting
|
CVE-2024-7914
|
2024-08-20 01:12 |
2024-08-19 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
312742
|
7.5 |
HIGH
Network
|
dahuasecurity
|
nvr4104-4ks2\/l_firmware nvr4108-4ks2\/l_firmware nvr4116-4ks2\/l_firmware nvr4104-p-4ks2\/l_firmware nvr4108-p-4ks2\/l_firmware nvr4108-8p-4ks2\/l_firmware nvr4116-8p-4ks2\/l_firmw…
|
A vulnerability has been found in Dahua products.Attackers
can send carefully crafted data packets to the interface with vulnerabilities,
causing the device to crash.
|
NVD-CWE-noinfo
|
CVE-2024-39944
|
2024-08-20 01:12 |
2024-07-31 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
312743
|
8.8 |
HIGH
Network
|
dlink
|
dns-120_firmware dnr-202l_firmware dns-315l_firmware dns-320_firmware dns-320l_firmware dns-320lw_firmware dns-321_firmware dnr-322l_firmware dns-323_firmware dns-325_firmw…
|
** UNSUPPORTED WHEN ASSIGNED ** A vulnerability was found in D-Link DNS-120, DNR-202L, DNS-315L, DNS-320, DNS-320L, DNS-320LW, DNS-321, DNR-322L, DNS-323, DNS-325, DNS-326, DNS-327L, DNR-326, DNS-340…
|
CWE-120
Classic Buffer Overflow
|
CVE-2024-7832
|
2024-08-20 01:02 |
2024-08-15 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
312744
|
9.8 |
CRITICAL
Network
|
dlink
|
di-8100_firmware
|
A vulnerability was found in D-Link DI-8100 16.07. It has been classified as critical. This affects the function upgrade_filter_asp of the file upgrade_filter.asp. The manipulation of the argument pa…
|
CWE-77
Command Injection
|
CVE-2024-7833
|
2024-08-20 01:00 |
2024-08-15 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
312745
|
- |
|
-
|
-
|
Rejected reason: ** REJECT ** DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: CVE-2024-1789. Reason: This candidate is a reservation duplicate of CVE-2024-1789. Notes: All CVE users should reference CV…
|
-
|
CVE-2022-1443
|
2024-08-20 00:15 |
2024-08-20 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
312746
|
- |
|
-
|
-
|
An arbitrary file deletion vulnerability exists in the admin/del.php file at line 62 in ZZCMS 2023 and earlier. Due to insufficient validation and sanitization of user input for file paths, an attack…
|
-
|
CVE-2024-43011
|
2024-08-19 23:35 |
2024-08-17 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
312747
|
- |
|
-
|
-
|
A reflected cross-site scripting (XSS) vulnerability exists in user/login.php at line 24 in ZZCMS 2023 and earlier. The application directly inserts the value of the HTTP_REFERER header into the HTML…
|
-
|
CVE-2024-43009
|
2024-08-19 23:35 |
2024-08-17 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
312748
|
- |
|
-
|
-
|
Rejected reason: ** REJECT ** DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: CVE-2024-43369. Reason: This candidate is a duplicate of CVE-2024-43369. Notes: All CVE users should reference CVE-2024-433…
|
-
|
CVE-2024-43372
|
2024-08-19 23:15 |
2024-08-19 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
312749
|
- |
|
-
|
-
|
Rejected reason: ** REJECT ** DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: CVE-2024-39304. Reason: This candidate is a duplicate of CVE-2024-39304. Notes: All CVE users should reference CVE-2024-393…
|
-
|
CVE-2024-39306
|
2024-08-19 23:15 |
2024-08-19 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
312750
|
- |
|
-
|
-
|
eLabFTW is an open source electronic lab notebook for research labs. In an eLabFTW system, one can configure who is allowed to create new user accounts. A vulnerability has been found starting in ver…
|
-
|
CVE-2024-25633
|
2024-08-19 23:15 |
2024-08-16 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|