|
249461
|
6.5 |
MEDIUM
Network
|
cisco
|
anyconnect_secure_mobility_client secure_client
|
A vulnerability in Internet Key Exchange version 2 (IKEv2) processing of Cisco Secure Client Software could allow an unauthenticated, remote attacker to cause a denial of service (DoS) of Cisco Secur…
|
CWE-191
Integer Underflow (Wrap or Wraparound)
|
CVE-2024-20474
|
2024-11-2 03:14 |
2024-10-24 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
249462
|
8.8 |
HIGH
Network
|
grafana
|
grafana
|
The SQL Expressions experimental feature of Grafana allows for the evaluation of `duckdb` queries containing user input. These queries are insufficiently sanitized before being passed to `duckdb`, le…
|
CWE-77
Command Injection
|
CVE-2024-9264
|
2024-11-2 03:14 |
2024-10-18 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
249463
|
6.5 |
MEDIUM
Network
|
cisco
|
secure_firewall_management_center
|
A vulnerability in the web-based management interface of Cisco Secure Firewall Management Center (FMC) Software could allow an authenticated, remote attacker to conduct SQL injection attacks on an af…
|
CWE-89
SQL Injection
|
CVE-2024-20473
|
2024-11-2 03:09 |
2024-10-24 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
249464
|
9.9 |
CRITICAL
Network
|
cisco
|
secure_firewall_management_center
|
A vulnerability in the web-based management interface of Cisco Secure Firewall Management Center (FMC) Software, formerly Firepower Management Center Software, could allow an authenticated, remote at…
|
CWE-78
OS Command
|
CVE-2024-20424
|
2024-11-2 03:07 |
2024-10-24 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
249465
|
7.8 |
HIGH
Local
|
vso-software
|
convertxtodvd
|
A vulnerability, which was classified as critical, was found in VSO ConvertXtoDvd 7.0.0.83. Affected is an unknown function in the library avcodec.dll of the file ConvertXtoDvd.exe. The manipulation …
|
CWE-427
Uncontrolled Search Path Element
|
CVE-2024-10093
|
2024-11-2 03:07 |
2024-10-18 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
249466
|
7.5 |
HIGH
Network
|
chimurai
|
http-proxy-middleware
|
Versions of the package http-proxy-middleware before 2.0.7, from 3.0.0 and before 3.0.3 are vulnerable to Denial of Service (DoS) due to an UnhandledPromiseRejection error thrown by micromatch. An at…
|
NVD-CWE-noinfo
|
CVE-2024-21536
|
2024-11-2 03:03 |
2024-10-19 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
249467
|
6.5 |
MEDIUM
Network
|
cisco
|
firepower_management_center
|
A vulnerability in the web-based management interface of Cisco Secure Firewall Management Center (FMC) Software, formerly Firepower Management Center Software, could allow an authenticated, remote at…
|
CWE-22
Path Traversal
|
CVE-2024-20379
|
2024-11-2 03:02 |
2024-10-24 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
249468
|
6.5 |
MEDIUM
Network
|
cisco
|
secure_firewall_management_center
|
A vulnerability in the web-based management interface of Cisco Secure Firewall Management Center (FMC) Software, formerly Firepower Management Center Software, could allow an authenticated, remote at…
|
CWE-89
SQL Injection
|
CVE-2024-20340
|
2024-11-2 02:40 |
2024-10-24 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
249469
|
- |
|
-
|
-
|
Phpgurukul Teachers Record Management System v2.1 is vulnerable to SQL Injection in add-teacher.php via the mobile number or email parameter.
|
-
|
CVE-2024-51063
|
2024-11-2 02:35 |
2024-11-1 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
249470
|
- |
|
-
|
-
|
Projectworlds Online Admission System v1 is vulnerable to SQL Injection in index.php via the 'a_id' parameter.
|
-
|
CVE-2024-51060
|
2024-11-2 02:35 |
2024-11-1 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|