|
312201
|
6.1 |
MEDIUM
Network
|
mozilla
|
firefox
|
Long pressing on a download link could potentially provide a means for cross-site scripting This vulnerability affects Firefox for iOS < 129.
|
CWE-79
Cross-site Scripting
|
CVE-2024-43112
|
2024-08-30 01:51 |
2024-08-7 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
312202
|
5.5 |
MEDIUM
Local
|
samsung
|
email
|
Use of implicit intent for sensitive communication in Samsung Email prior to version 6.1.94.2 allows local attackers to get sensitive information.
|
NVD-CWE-Other
|
CVE-2024-34636
|
2024-08-30 01:47 |
2024-08-7 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
312203
|
10.0 |
CRITICAL
Network
|
openhab
|
openhab_web_interface
|
openHAB, a provider of open-source home automation software, has add-ons including the visualization add-on CometVisu. Prior to version 4.2.1, the proxy endpoint of openHAB's CometVisu add-on can be …
|
NVD-CWE-noinfo
|
CVE-2024-42467
|
2024-08-30 01:26 |
2024-08-12 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
312204
|
9.8 |
CRITICAL
Network
|
dlink
|
dns-315l_firmware dns-320lw_firmware dns-1550-04_firmware dns-1200-05_firmware dns-1100-4_firmware dns-726-4_firmware dns-345_firmware dns-343_firmware dns-340l_firmware dn…
|
A vulnerability was found in D-Link DNS-120, DNR-202L, DNS-315L, DNS-320, DNS-320L, DNS-320LW, DNS-321, DNR-322L, DNS-323, DNS-325, DNS-326, DNS-327L, DNR-326, DNS-340L, DNS-343, DNS-345, DNS-726-4, …
|
CWE-78
OS Command
|
CVE-2024-8210
|
2024-08-30 01:04 |
2024-08-28 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
312205
|
8.8 |
HIGH
Network
|
g5plus
|
ultimate_bootstrap_elements_for_elementor
|
Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal') vulnerability in G5Theme Ultimate Bootstrap Elements for Elementor allows PHP Local File Inclusion.This issue affects Ul…
|
CWE-22
Path Traversal
|
CVE-2024-43140
|
2024-08-30 01:04 |
2024-08-13 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
312206
|
8.1 |
HIGH
Network
|
gitlab
|
gitlab
|
A permission check vulnerability in GitLab CE/EE affecting all versions starting from 8.12 prior to 17.0.6, 17.1 prior to 17.1.4, and 17.2 prior to 17.2.2 allowed for LFS tokens to read and write to…
|
CWE-639
Authorization Bypass Through User-Controlled Key
|
CVE-2024-3035
|
2024-08-30 00:55 |
2024-08-8 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
312207
|
9.8 |
CRITICAL
Network
|
dlink
|
dns-315l_firmware dns-320lw_firmware dns-1550-04_firmware dns-1200-05_firmware dns-1100-4_firmware dns-726-4_firmware dns-345_firmware dns-343_firmware dns-340l_firmware dn…
|
A vulnerability was found in D-Link DNS-120, DNR-202L, DNS-315L, DNS-320, DNS-320L, DNS-320LW, DNS-321, DNR-322L, DNS-323, DNS-325, DNS-326, DNS-327L, DNR-326, DNS-340L, DNS-343, DNS-345, DNS-726-4, …
|
CWE-78
OS Command
|
CVE-2024-8211
|
2024-08-30 00:54 |
2024-08-28 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
312208
|
9.8 |
CRITICAL
Network
|
dlink
|
dns-315l_firmware dns-320lw_firmware dns-1550-04_firmware dns-1200-05_firmware dns-1100-4_firmware dns-726-4_firmware dns-345_firmware dns-343_firmware dns-340l_firmware dn…
|
A vulnerability was found in D-Link DNS-120, DNR-202L, DNS-315L, DNS-320, DNS-320L, DNS-320LW, DNS-321, DNR-322L, DNS-323, DNS-325, DNS-326, DNS-327L, DNR-326, DNS-340L, DNS-343, DNS-345, DNS-726-4, …
|
CWE-77
Command Injection
|
CVE-2024-8212
|
2024-08-30 00:53 |
2024-08-28 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
312209
|
9.8 |
CRITICAL
Network
|
dlink
|
dns-315l_firmware dns-320lw_firmware dns-1550-04_firmware dns-1200-05_firmware dns-1100-4_firmware dns-726-4_firmware dns-345_firmware dns-343_firmware dns-340l_firmware dn…
|
A vulnerability classified as critical has been found in D-Link DNS-120, DNR-202L, DNS-315L, DNS-320, DNS-320L, DNS-320LW, DNS-321, DNR-322L, DNS-323, DNS-325, DNS-326, DNS-327L, DNR-326, DNS-340L, D…
|
CWE-78
OS Command
|
CVE-2024-8213
|
2024-08-30 00:51 |
2024-08-28 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
312210
|
6.5 |
MEDIUM
Network
|
gitlab
|
gitlab
|
An issue has been discovered in GitLab CE/EE affecting all versions before 17.0.6, 17.1 prior to 17.1.4, and 17.2 prior to 17.2.2. An issue was found that allows someone to abuse a discrepancy betwe…
|
CWE-94
Code Injection
|
CVE-2024-3958
|
2024-08-30 00:50 |
2024-08-8 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|