|
312121
|
- |
|
-
|
-
|
Rejected reason: This CVE ID has been rejected or withdrawn by its CVE Numbering Authority.
|
-
|
CVE-2024-7051
|
2024-08-31 01:15 |
2024-08-31 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
312122
|
6.1 |
MEDIUM
Network
|
gianniporto
|
intothedark
|
Improper Neutralization of Input During Web Page Generation (XSS or 'Cross-site Scripting') vulnerability in Gianni Porto IntoTheDark allows Reflected XSS.This issue affects IntoTheDark: from n/a thr…
|
CWE-79
Cross-site Scripting
|
CVE-2024-43958
|
2024-08-31 01:15 |
2024-08-30 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
312123
|
6.5 |
MEDIUM
Network
|
stitionai
|
devika
|
stitionai/devika main branch as of commit cdfb782b0e634b773b10963c8034dc9207ba1f9f is vulnerable to Local File Read (LFI) by Prompt Injection. The integration of Google Gimini 1.0 Pro with `HarmBlock…
|
CWE-74
Injection
|
CVE-2024-6331
|
2024-08-31 01:15 |
2024-08-4 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
312124
|
4.8 |
MEDIUM
Network
|
pagebuilderaddons
|
web_and_woocommerce_addons_for_wpbakery_builder
|
Improper Neutralization of Input During Web Page Generation (XSS or 'Cross-site Scripting') vulnerability in Page Builder Addons Web and WooCommerce Addons for WPBakery Builder allows Stored XSS.This…
|
CWE-79
Cross-site Scripting
|
CVE-2024-43960
|
2024-08-31 01:12 |
2024-08-30 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
312125
|
6.1 |
MEDIUM
Network
|
waspthemes
|
yellowpencil
|
Improper Neutralization of Input During Web Page Generation (XSS or 'Cross-site Scripting') vulnerability in WaspThemes YellowPencil Visual CSS Style Editor allows Reflected XSS.This issue affects Ye…
|
CWE-79
Cross-site Scripting
|
CVE-2024-43963
|
2024-08-31 01:10 |
2024-08-30 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
312126
|
7.5 |
HIGH
Network
|
ollama
|
ollama
|
extractFromZipFile in model.go in Ollama before 0.1.47 can extract members of a ZIP archive outside of the parent directory.
|
CWE-22
Path Traversal
|
CVE-2024-45436
|
2024-08-31 01:08 |
2024-08-29 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
312127
|
7.2 |
HIGH
Network
|
lopalopa
|
responsive_school_management_system
|
A SQL injection vulnerability in /smsa/admin_login.php in Kashipara Responsive School Management System v3.2.0 allows an attacker to execute arbitrary SQL commands via the "username" parameter of the…
|
CWE-89
SQL Injection
|
CVE-2024-41236
|
2024-08-31 01:02 |
2024-08-29 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
312128
|
5.5 |
MEDIUM
Local
|
irfanview
|
irfanview
|
An issue in the component EXR!ReadEXR+0x4eef0 of Irfanview v4.67.1.0 allows attackers to cause an access violation via a crafted EXR file. This vulnerability can lead to a Denial of Service (DoS).
|
NVD-CWE-Other
|
CVE-2024-44915
|
2024-08-31 01:01 |
2024-08-29 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
312129
|
5.5 |
MEDIUM
Local
|
irfanview
|
irfanview
|
An issue in the component EXR!ReadEXR+0x3df50 of Irfanview v4.67.1.0 allows attackers to cause an access violation via a crafted EXR file. This vulnerability can lead to a Denial of Service (DoS).
|
NVD-CWE-Other
|
CVE-2024-44914
|
2024-08-31 01:01 |
2024-08-29 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
312130
|
5.5 |
MEDIUM
Local
|
irfanview
|
irfanview
|
An issue in the component EXR!ReadEXR+0x40ef1 of Irfanview v4.67.1.0 allows attackers to cause an access violation via a crafted EXR file. This vulnerability can lead to a Denial of Service (DoS).
|
NVD-CWE-Other
|
CVE-2024-44913
|
2024-08-31 01:01 |
2024-08-29 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|