|
314471
|
6.1 |
MEDIUM
Network
|
organizr
|
organizr
|
Organizr v1.90 is vulnerable to Cross Site Scripting (XSS) via api.php.
|
CWE-79
Cross-site Scripting
|
CVE-2024-41371
|
2024-09-5 01:08 |
2024-08-30 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
314472
|
9.8 |
CRITICAL
Network
|
organizr
|
organizr
|
Organizr v1.90 was discovered to contain a SQL injection vulnerability via chat/setlike.php.
|
CWE-89
SQL Injection
|
CVE-2024-41370
|
2024-09-5 01:08 |
2024-08-30 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
314473
|
6.1 |
MEDIUM
Network
|
phpipam
|
phpipam
|
phpipam 1.6 is vulnerable to Cross Site Scripting (XSS) via app\admin\import-export\import-load-data.php.
|
CWE-79
Cross-site Scripting
|
CVE-2024-41358
|
2024-09-5 01:07 |
2024-08-30 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
314474
|
6.1 |
MEDIUM
Network
|
baijunyao
|
bjyadmin
|
bjyadmin commit a560fd5 is vulnerable to Cross Site Scripting (XSS) via Public/statics/umeditor1_2_3/php/getContent.php
|
CWE-79
Cross-site Scripting
|
CVE-2024-41351
|
2024-09-5 01:07 |
2024-08-30 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
314475
|
6.1 |
MEDIUM
Network
|
baijunyao
|
bjyadmin
|
bjyadmin commit a560fd5 is vulnerable to Cross Site Scripting (XSS) via Public/statics/umeditor1_2_3/php/imageUp.php
|
CWE-79
Cross-site Scripting
|
CVE-2024-41350
|
2024-09-5 01:07 |
2024-08-30 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
314476
|
6.1 |
MEDIUM
Network
|
jpatokal
|
openflights
|
openflights commit 5234b5b is vulnerable to Cross-Site Scripting (XSS) via php/alsearch.php
|
CWE-79
Cross-site Scripting
|
CVE-2024-41348
|
2024-09-5 01:06 |
2024-08-30 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
314477
|
6.1 |
MEDIUM
Network
|
jpatokal
|
openflights
|
openflights commit 5234b5b is vulnerable to Cross-Site Scripting (XSS) via php/settings.php
|
CWE-79
Cross-site Scripting
|
CVE-2024-41347
|
2024-09-5 01:05 |
2024-08-30 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
314478
|
5.4 |
MEDIUM
Network
|
jpatokal
|
openflights
|
openflights commit 5234b5b is vulnerable to Cross-Site Scripting (XSS) via php/submit.php
|
CWE-79
Cross-site Scripting
|
CVE-2024-41346
|
2024-09-5 01:05 |
2024-08-30 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
314479
|
9.8 |
CRITICAL
Network
|
smackcoders
|
sendgrid
|
Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in Smackcoders SendGrid for WordPress allows SQL Injection.This issue affects SendGrid for WordPress…
|
CWE-89
SQL Injection
|
CVE-2024-43965
|
2024-09-5 01:02 |
2024-08-30 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
314480
|
9.8 |
CRITICAL
Network
|
progress
|
whatsup_gold
|
In WhatsUp Gold versions released before 2024.0.0, if the application is configured with only a single user, a SQL Injection vulnerability allows an unauthenticated attacker to retrieve the users enc…
|
CWE-89
SQL Injection
|
CVE-2024-6671
|
2024-09-5 00:53 |
2024-08-30 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|