|
313501
|
6.1 |
MEDIUM
Network
|
-
|
-
|
The tagDiv Composer plugin for WordPress is vulnerable to Reflected Cross-Site Scripting via the ‘envato_code[]’ parameter in all versions up to, and including, 5.0 due to insufficient input sanitiza…
|
CWE-79
Cross-site Scripting
|
CVE-2024-3886
|
2024-09-3 21:59 |
2024-08-31 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
313502
|
8.8 |
HIGH
Network
|
-
|
-
|
The Attire theme for WordPress is vulnerable to PHP Object Injection in all versions up to, and including, 2.0.6 via deserialization of untrusted input. This makes it possible for authenticated attac…
|
CWE-502
Deserialization of Untrusted Data
|
CVE-2024-7435
|
2024-09-3 21:59 |
2024-08-31 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
313503
|
- |
|
-
|
-
|
A vulnerability has been found in Campcodes Supplier Management System 1.0 and classified as critical. Affected by this vulnerability is an unknown functionality of the file /admin/edit_area.php. The…
|
CWE-89
SQL Injection
|
CVE-2024-8344
|
2024-09-3 21:59 |
2024-08-31 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
313504
|
- |
|
-
|
-
|
A cross-site scripting (XSS) vulnerability in the component admin_datarelate.php of SeaCMS v12.9 allows attackers to execute arbitrary web scripts or HTML via a crafted payload.
|
-
|
CVE-2024-44918
|
2024-09-3 21:59 |
2024-08-31 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
313505
|
- |
|
-
|
-
|
Vulnerability in admin_ip.php in Seacms v13.1, when action=set, allows attackers to control IP parameters that are written to the data/admin/ip.php file and could result in arbitrary command executio…
|
-
|
CVE-2024-44916
|
2024-09-3 21:59 |
2024-08-31 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
313506
|
- |
|
-
|
-
|
Rejected reason: ** REJECT ** DO NOT USE THIS CVE ID. ConsultIDs: CVE-2024-39771. Reason: This CVE ID is a reservation duplicate of CVE-2024-39771. Notes: All CVE users should reference CVE-2024-3977…
|
-
|
CVE-2024-41718
|
2024-09-3 20:15 |
2024-09-3 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
313507
|
5.5 |
MEDIUM
Local
|
-
|
-
|
Rejected reason: This CVE ID has been rejected or withdrawn by its CVE Numbering Authority.
|
-
|
CVE-2022-48936
|
2024-08-31 15:15 |
2024-08-22 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
313508
|
6.6 |
MEDIUM
Local
|
intel
|
oneapi_base_toolkit distribution_for_gdb
|
Improper buffer restrictions in some Intel(R) Distribution for GDB software before version 2024.0.1 may allow an authenticated user to potentially enable denial of service via local access.
|
NVD-CWE-noinfo
|
CVE-2024-25562
|
2024-08-31 12:40 |
2024-08-14 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
313509
|
3.3 |
LOW
Local
|
intel
|
oneapi_base_toolkit distribution_for_gdb
|
Improper input validation for some Intel(R) Distribution for GDB software before version 2024.0.1 may allow an authenticated user to potentially enable denial of service via local access.
|
NVD-CWE-noinfo
|
CVE-2024-24973
|
2024-08-31 12:39 |
2024-08-14 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
313510
|
7.8 |
HIGH
Local
|
intel
|
oneapi_base_toolkit distribution_for_gdb
|
Incorrect default permissions in some Intel(R) Distribution for GDB software before version 2024.0.1 may allow an authenticated user to potentially enable escalation of privilege via local access.
|
CWE-276
Incorrect Default Permissions
|
CVE-2024-23495
|
2024-08-31 12:38 |
2024-08-14 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|