|
248991
|
5.5 |
MEDIUM
Local
|
razormist
|
student_record_management_system
|
A vulnerability has been found in SourceCodester Student Record Management System 1.0 and classified as problematic. This vulnerability affects unknown code of the component Main Menu. The manipulati…
|
CWE-835
Loop with Unreachable Exit Condition ('Infinite Loop')
|
CVE-2024-11097
|
2024-11-15 00:14 |
2024-11-12 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
248992
|
6.1 |
MEDIUM
Network
|
opensuse
|
mirrorcache
|
A Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in openSUSE Tumbleweed MirrorCache allows the execution of arbitrary JS via reflected XSS in the …
|
CWE-79
Cross-site Scripting
|
CVE-2024-49505
|
2024-11-15 00:13 |
2024-11-14 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
248993
|
5.4 |
MEDIUM
Network
|
apple
|
iphone_os ipados watchos visionos tvos macos safari
|
The issue was addressed with improved checks. This issue is fixed in tvOS 18.1, iOS 18.1 and iPadOS 18.1, iOS 17.7.1 and iPadOS 17.7.1, watchOS 11.1, visionOS 2.1, macOS Sequoia 15.1, Safari 18.1. Pr…
|
NVD-CWE-noinfo
|
CVE-2024-44296
|
2024-11-14 23:58 |
2024-10-29 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
248994
|
7.3 |
HIGH
Network
|
wppa
|
wp_photo_album_plus
|
The The WP Photo Album Plus plugin for WordPress is vulnerable to arbitrary shortcode execution via getshortcodedrenderedfenodelay AJAX action in all versions up to, and including, 8.8.08.007 . This …
|
CWE-94
Code Injection
|
CVE-2024-10958
|
2024-11-14 23:57 |
2024-11-10 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
248995
|
8.8 |
HIGH
Network
|
tendacn
|
g3_firmware
|
Tenda G3 v3.0 v15.11.0.20 was discovered to contain a stack overflow via the formSetPortMapping function.
|
CWE-787
Out-of-bounds Write
|
CVE-2024-50854
|
2024-11-14 23:43 |
2024-11-14 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
248996
|
9.8 |
CRITICAL
Network
|
anisha
|
job_recruitment
|
A vulnerability was found in code-projects Job Recruitment 1.0 and classified as critical. This issue affects some unknown processing of the file /login.php. The manipulation of the argument email le…
|
CWE-89
SQL Injection
|
CVE-2024-11099
|
2024-11-14 23:37 |
2024-11-12 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
248997
|
5.5 |
MEDIUM
Local
|
adobe
|
audition
|
Audition versions 23.6.9, 24.4.6 and earlier are affected by an out-of-bounds read vulnerability that could lead to disclosure of sensitive memory. An attacker could leverage this vulnerability to by…
|
CWE-125
Out-of-bounds Read
|
CVE-2024-47449
|
2024-11-14 23:32 |
2024-11-13 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
248998
|
5.9 |
MEDIUM
Network
|
neomutt mutt redhat
|
neomutt mutt enterprise_linux
|
In neomutt and mutt, the To and Cc email headers are not validated by cryptographic signing which allows an attacker that intercepts a message to change their value and include himself as a one of th…
|
CWE-347
Improper Verification of Cryptographic Signature
|
CVE-2024-49393
|
2024-11-14 23:31 |
2024-11-12 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
248999
|
5.5 |
MEDIUM
Local
|
adobe
|
illustrator
|
Illustrator versions 28.7.1 and earlier are affected by an out-of-bounds read vulnerability that could lead to disclosure of sensitive memory. An attacker could leverage this vulnerability to bypass …
|
CWE-125
Out-of-bounds Read
|
CVE-2024-47455
|
2024-11-14 23:26 |
2024-11-13 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
249000
|
5.5 |
MEDIUM
Local
|
adobe
|
illustrator
|
Illustrator versions 28.7.1 and earlier are affected by an out-of-bounds read vulnerability that could lead to disclosure of sensitive memory. An attacker could leverage this vulnerability to bypass …
|
CWE-125
Out-of-bounds Read
|
CVE-2024-47454
|
2024-11-14 23:26 |
2024-11-13 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|