|
313441
|
8.8 |
HIGH
Network
|
pligg
|
pligg_cms
|
Pligg CMS v2.0.2 was discovered to contain a Cross-Site Request Forgery (CSRF) via admin/admin_page.php?link_id=1&mode=delete
|
CWE-352
Origin Validation Error
|
CVE-2024-42611
|
2024-08-21 22:11 |
2024-08-21 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
313442
|
8.8 |
HIGH
Network
|
pligg
|
pligg_cms
|
Pligg CMS v2.0.2 was discovered to contain a Cross-Site Request Forgery (CSRF) vulnerability via /admin/admin_backup.php?dobackup=files
|
CWE-352
Origin Validation Error
|
CVE-2024-42610
|
2024-08-21 22:11 |
2024-08-21 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
313443
|
8.8 |
HIGH
Network
|
pligg
|
pligg_cms
|
Pligg CMS v2.0.2 was discovered to contain a Cross-Site Request Forgery (CSRF) vulnerability via /admin/admin_widgets.php?action=remove&widget=Statistics
|
CWE-352
Origin Validation Error
|
CVE-2024-42616
|
2024-08-21 22:10 |
2024-08-21 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
313444
|
8.8 |
HIGH
Network
|
pligg
|
pligg_cms
|
Pligg CMS v2.0.2 was discovered to contain a Cross-Site Request Forgery (CSRF) vulnerability via /module.php?module=karma
|
CWE-352
Origin Validation Error
|
CVE-2024-42618
|
2024-08-21 22:09 |
2024-08-21 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
313445
|
8.8 |
HIGH
Network
|
pligg
|
pligg_cms
|
Pligg CMS v2.0.2 was discovered to contain a Cross-Site Request Forgery (CSRF) vulnerability via /admin/admin_config.php?action=save&var_id=32
|
CWE-352
Origin Validation Error
|
CVE-2024-42617
|
2024-08-21 22:09 |
2024-08-21 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
313446
|
8.8 |
HIGH
Network
|
pligg
|
pligg_cms
|
Pligg CMS v2.0.2 was discovered to contain a Cross-Site Request Forgery (CSRF) vulnerability via /admin/admin_editor.php
|
CWE-352
Origin Validation Error
|
CVE-2024-42621
|
2024-08-21 21:50 |
2024-08-21 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
313447
|
7.5 |
HIGH
Network
|
floraison
|
fugit
|
fugit contains time tools for flor and the floraison group. The fugit "natural" parser, that turns "every wednesday at 5pm" into "0 17 * * 3", accepted any length of input and went on attempting to p…
|
NVD-CWE-noinfo
|
CVE-2024-43380
|
2024-08-21 21:38 |
2024-08-20 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
313448
|
3.1 |
LOW
Network
|
trufflesecurity
|
trufflehog
|
TruffleHog is a secrets scanning tool. Prior to v3.81.9, this vulnerability allows a malicious actor to craft data in a way that, when scanned by specific detectors, could trigger the detector to mak…
|
CWE-918
Server-Side Request Forgery (SSRF)
|
CVE-2024-43379
|
2024-08-21 21:37 |
2024-08-20 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
313449
|
9.8 |
CRITICAL
Network
|
jielink\+_jsotc2016_project
|
jielink\+_jsotc2016
|
A vulnerability has been found in Anhui Deshun Intelligent Technology Jieshun JieLink+ JSOTC2016 up to 20240805 and classified as problematic. Affected by this vulnerability is an unknown functionali…
|
NVD-CWE-Other
|
CVE-2024-7921
|
2024-08-21 21:34 |
2024-08-19 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
313450
|
9.8 |
CRITICAL
Network
|
microcks
|
microcks
|
In Microcks before 1.10.0, the POST /api/import and POST /api/export endpoints allow non-administrator access.
|
NVD-CWE-noinfo
|
CVE-2024-44076
|
2024-08-21 21:33 |
2024-08-19 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|