|
251781
|
7.5 |
HIGH
Network
|
wikimedia
|
wikimedia-extensions-css
|
Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal') vulnerability in The Wikimedia Foundation Mediawiki - CSS Extension allows Path Traversal.This issue affects Mediawiki -…
|
CWE-22
Path Traversal
|
CVE-2024-47841
|
2024-10-17 01:34 |
2024-10-5 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
251782
|
9.8 |
CRITICAL
Network
|
mediawiki
|
cargo
|
Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in The Wikimedia Foundation Mediawiki - Cargo allows SQL Injection.This issue affects Mediawiki - Ca…
|
CWE-89
SQL Injection
|
CVE-2024-47849
|
2024-10-17 01:34 |
2024-10-5 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
251783
|
6.5 |
MEDIUM
Network
|
avaiga
|
taipy
|
Taipy is an open-source Python library for easy, end-to-end application development for data scientists and machine learning engineers. In affected versions session cookies are served without Secure …
|
CWE-319 CWE-732
Cleartext Transmission of Sensitive Information Incorrect Permission Assignment for Critical Resource
|
CVE-2024-47833
|
2024-10-17 01:33 |
2024-10-10 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
251784
|
5.4 |
MEDIUM
Network
|
code-projects
|
blood_bank_system
|
A vulnerability was found in code-projects Blood Bank Management System 1.0. It has been classified as problematic. This affects an unknown part of the file blooddetails.php. The manipulation of the …
|
CWE-79
Cross-site Scripting
|
CVE-2024-9803
|
2024-10-17 01:21 |
2024-10-11 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
251785
|
8.8 |
HIGH
Network
|
dlink
|
dir-619l_firmware
|
A vulnerability, which was classified as critical, has been found in D-Link DIR-619L B1 2.06. Affected by this issue is the function formSetLog of the file /goform/formSetLog. The manipulation of the…
|
CWE-120
Classic Buffer Overflow
|
CVE-2024-9786
|
2024-10-17 01:15 |
2024-10-10 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
251786
|
8.8 |
HIGH
Network
|
dlink
|
dir-619l_firmware
|
A vulnerability classified as critical was found in D-Link DIR-619L B1 2.06. Affected by this vulnerability is the function formSetDDNS of the file /goform/formSetDDNS. The manipulation of the argume…
|
CWE-120
Classic Buffer Overflow
|
CVE-2024-9785
|
2024-10-17 01:15 |
2024-10-10 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
251787
|
6.5 |
MEDIUM
Network
|
shilpisoft
|
net_back_office
|
This vulnerability exists in the Shilpi Net Back Office due to improper access controls on certain API endpoints. An authenticated remote attacker could exploit this vulnerability by manipulating a p…
|
CWE-639
Authorization Bypass Through User-Controlled Key
|
CVE-2024-47657
|
2024-10-17 00:44 |
2024-10-4 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
251788
|
8.1 |
HIGH
Network
|
microsoft
|
visual_studio_2022 .net
|
.NET and Visual Studio Remote Code Execution Vulnerability
|
NVD-CWE-noinfo
|
CVE-2024-38229
|
2024-10-17 00:36 |
2024-10-9 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
251789
|
8.8 |
HIGH
Network
|
dlink
|
dir-619l_firmware
|
A vulnerability was found in D-Link DIR-619L B1 2.06. It has been classified as critical. This affects the function formSetPortTr of the file /goform/formSetPortTr. The manipulation of the argument c…
|
CWE-120
Classic Buffer Overflow
|
CVE-2024-9911
|
2024-10-17 00:32 |
2024-10-14 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
251790
|
8.8 |
HIGH
Network
|
dlink
|
dir-619l_firmware
|
A vulnerability was found in D-Link DIR-619L B1 2.06 and classified as critical. Affected by this issue is the function formSetPassword of the file /goform/formSetPassword. The manipulation of the ar…
|
CWE-120
Classic Buffer Overflow
|
CVE-2024-9910
|
2024-10-17 00:32 |
2024-10-14 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|