|
311721
|
6.1 |
MEDIUM
Network
|
netcat
|
netcat_content_management_system
|
A vulnerability in NetCat CMS allows an attacker to execute JavaScript code in a user's browser when they visit specific paths on the site.
This issue affects NetCat CMS v. 6.4.0.24126.2 and possibly…
|
CWE-79
Cross-site Scripting
|
CVE-2024-8653
|
2024-09-24 02:55 |
2024-09-20 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
311722
|
6.1 |
MEDIUM
Network
|
netcat
|
netcat_content_management_system
|
A vulnerability in NetCat CMS allows an attacker to execute JavaScript code in a user's browser when they visit specific path on the site.
This issue affects NetCat CMS v. 6.4.0.24126.2 and possibly …
|
CWE-79
Cross-site Scripting
|
CVE-2024-8652
|
2024-09-24 02:53 |
2024-09-20 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
311723
|
5.3 |
MEDIUM
Network
|
netcat
|
netcat_content_management_system
|
A vulnerability in NetCat CMS allows an attacker to send a specially crafted http request that can be used to check whether a user exists in the system, which could be a basis for further attacks.
Th…
|
CWE-203
Information Exposure Through Discrepancy
|
CVE-2024-8651
|
2024-09-24 02:51 |
2024-09-20 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
311724
|
4.3 |
MEDIUM
Network
|
google
|
chrome
|
Inappropriate implementation in UI in Google Chrome on iOS prior to 129.0.6668.58 allowed a remote attacker to perform UI spoofing via a crafted HTML page. (Chromium security severity: Low)
|
NVD-CWE-noinfo
|
CVE-2024-8909
|
2024-09-24 02:51 |
2024-09-18 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
311725
|
4.3 |
MEDIUM
Network
|
google
|
chrome
|
Incorrect security UI in Downloads in Google Chrome prior to 129.0.6668.58 allowed a remote attacker who convinced a user to engage in specific UI gestures to perform UI spoofing via a crafted HTML p…
|
NVD-CWE-noinfo
|
CVE-2024-8906
|
2024-09-24 02:38 |
2024-09-18 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
311726
|
8.8 |
HIGH
Network
|
microsoft
|
sql_2016_azure_connect_feature_pack sql_server_2016 sql_server_2017 sql_server_2019 sql_server_2022
|
Microsoft SQL Server Native Scoring Remote Code Execution Vulnerability
|
NVD-CWE-noinfo
|
CVE-2024-37339
|
2024-09-24 02:34 |
2024-09-11 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
311727
|
8.8 |
HIGH
Network
|
microsoft
|
edge_chromium
|
Microsoft Edge (Chromium-based) Remote Code Execution Vulnerability
|
NVD-CWE-noinfo
|
CVE-2024-43489
|
2024-09-24 02:33 |
2024-09-20 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
311728
|
4.3 |
MEDIUM
Network
|
microsoft
|
edge_chromium
|
Microsoft Edge (Chromium-based) Spoofing Vulnerability
|
NVD-CWE-noinfo
|
CVE-2024-38221
|
2024-09-24 02:33 |
2024-09-20 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
311729
|
8.8 |
HIGH
Network
|
microsoft
|
edge_chromium
|
Microsoft Edge (Chromium-based) Remote Code Execution Vulnerability
|
NVD-CWE-noinfo
|
CVE-2024-43496
|
2024-09-24 02:32 |
2024-09-20 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
311730
|
9.8 |
CRITICAL
Network
|
dlink
|
dar-7000_firmware
|
A vulnerability classified as critical has been found in D-Link DAR-7000 up to 20240912. Affected is an unknown function of the file /view/DBManage/Backup_Server_commit.php. The manipulation of the a…
|
CWE-78
OS Command
|
CVE-2024-9004
|
2024-09-24 02:29 |
2024-09-20 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|