|
312251
|
7.8 |
HIGH
Local
|
logsign
|
unified_secops_platform
|
Logsign Unified SecOps Platform Incorrect Authorization Authentication Bypass Vulnerability. This vulnerability allows local attackers to bypass authentication on affected installations of Logsign Un…
|
CWE-863
Incorrect Authorization
|
CVE-2024-7604
|
2024-08-24 01:37 |
2024-08-22 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
312252
|
8.1 |
HIGH
Network
|
logsign
|
unified_secops_platform
|
Logsign Unified SecOps Platform Directory Traversal Arbitrary Directory Deletion Vulnerability. This vulnerability allows remote attackers to delete arbitrary directories on affected installations of…
|
CWE-22
Path Traversal
|
CVE-2024-7603
|
2024-08-24 01:36 |
2024-08-22 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
312253
|
6.5 |
MEDIUM
Network
|
logsign
|
unified_secops_platform
|
Logsign Unified SecOps Platform Directory Traversal Information Disclosure Vulnerability. This vulnerability allows remote attackers to disclose sensitive information on affected installations of Log…
|
CWE-22
Path Traversal
|
CVE-2024-7602
|
2024-08-24 01:36 |
2024-08-22 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
312254
|
8.1 |
HIGH
Network
|
logsign
|
unified_secops_platform
|
Logsign Unified SecOps Platform Directory data_export_delete_all Traversal Arbitrary File Deletion Vulnerability. This vulnerability allows remote attackers to delete arbitrary files on affected inst…
|
CWE-22
Path Traversal
|
CVE-2024-7601
|
2024-08-24 01:35 |
2024-08-22 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
312255
|
8.1 |
HIGH
Network
|
logsign
|
unified_secops_platform
|
Logsign Unified SecOps Platform Directory Traversal Arbitrary File Deletion Vulnerability. This vulnerability allows remote attackers to delete arbitrary files on affected installations of Logsign Un…
|
CWE-22
Path Traversal
|
CVE-2024-7600
|
2024-08-24 01:35 |
2024-08-22 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
312256
|
9.8 |
CRITICAL
Network
|
youdiancms
|
youdiancms
|
A vulnerability, which was classified as critical, was found in YouDianCMS 7. Affected is an unknown function of the file /Public/ckeditor/plugins/multiimage/dialogs/image_upload.php. The manipulatio…
|
CWE-434
Unrestricted Upload of File with Dangerous Type
|
CVE-2024-7329
|
2024-08-24 01:34 |
2024-08-1 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
312257
|
6.1 |
MEDIUM
Network
|
ckeditor
|
ckeditor
|
CKEditor4 is an open source what-you-see-is-what-you-get HTML editor. A potential vulnerability has been discovered in CKEditor 4 Code Snippet GeSHi plugin. The vulnerability allowed a reflected XSS …
|
CWE-79
Cross-site Scripting
|
CVE-2024-43407
|
2024-08-24 01:20 |
2024-08-22 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
312258
|
6.5 |
MEDIUM
Network
|
okfn
|
ckan
|
CKAN is an open-source data management system for powering data hubs and data portals. There are a number of CKAN plugins, including XLoader, DataPusher, Resource proxy and ckanext-archiver, that wor…
|
CWE-918
Server-Side Request Forgery (SSRF)
|
CVE-2024-43371
|
2024-08-24 01:20 |
2024-08-22 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
312259
|
- |
|
-
|
-
|
A SQL injection vulnerability in "/login.php" of the Kashipara Bus Ticket Reservation System v1.0 allows remote attackers to execute arbitrary SQL commands and bypass Login via the "email" or "passwo…
|
-
|
CVE-2024-42765
|
2024-08-24 01:18 |
2024-08-24 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
312260
|
- |
|
-
|
-
|
Kashipara Bus Ticket Reservation System v1.0 is vulnerable to Cross Site Request Forgery (CSRF) via /deleteTicket.php.
|
-
|
CVE-2024-42764
|
2024-08-24 01:18 |
2024-08-24 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|