|
249831
|
7.2 |
HIGH
Network
|
funadmin
|
funadmin
|
Funadmin v5.0.2 has a SQL injection vulnerability in /curd/table/edit.
|
CWE-89
SQL Injection
|
CVE-2024-48222
|
2024-11-1 00:44 |
2024-10-26 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
249832
|
7.2 |
HIGH
Network
|
funadmin
|
funadmin
|
Funadmin v5.0.2 has a SQL injection vulnerability in /curd/table/list.
|
CWE-89
SQL Injection
|
CVE-2024-48218
|
2024-11-1 00:44 |
2024-10-26 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
249833
|
9.1 |
CRITICAL
Network
|
langchain
|
langchain
|
A path traversal vulnerability exists in the `getFullPath` method of langchain-ai/langchainjs version 0.2.5. This vulnerability allows attackers to save files anywhere in the filesystem, overwrite ex…
|
CWE-22
Path Traversal
|
CVE-2024-7774
|
2024-11-1 00:39 |
2024-10-29 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
249834
|
7.2 |
HIGH
Network
|
funadmin
|
funadmin
|
Funadmin 5.0.2 is vulnerable to SQL Injection in curd/table/savefield.
|
CWE-89
SQL Injection
|
CVE-2024-48226
|
2024-11-1 00:38 |
2024-10-26 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
249835
|
6.5 |
MEDIUM
Network
|
funadmin
|
funadmin
|
Funadmin v5.0.2 has an arbitrary file deletion vulnerability in /curd/index/delfile.
|
NVD-CWE-noinfo
|
CVE-2024-48225
|
2024-11-1 00:35 |
2024-10-26 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
249836
|
- |
|
-
|
-
|
A vulnerability in the backup feature of Cisco UCS Central Software could allow an attacker with access to a backup file to learn sensitive information that is stored in the full state and configurat…
|
-
|
CVE-2024-20280
|
2024-11-1 00:35 |
2024-10-17 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
249837
|
- |
|
-
|
-
|
Improper input validation in Power Management Firmware (PMFW) may allow an attacker with privileges to send a malformed input for the "set temperature input selection" command, potentially resulting …
|
-
|
CVE-2023-31310
|
2024-11-1 00:35 |
2024-08-14 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
249838
|
4.9 |
MEDIUM
Network
|
funadmin
|
funadmin
|
Funadmin v5.0.2 has an arbitrary file read vulnerability in /curd/index/editfile.
|
CWE-22
Path Traversal
|
CVE-2024-48224
|
2024-11-1 00:32 |
2024-10-26 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
249839
|
6.1 |
MEDIUM
Network
|
manzurulhaque
|
banner_slider
|
Improper Neutralization of Input During Web Page Generation (XSS or 'Cross-site Scripting') vulnerability in Manzurul Haque Banner Slider allows Reflected XSS.This issue affects Banner Slider: from n…
|
CWE-79
Cross-site Scripting
|
CVE-2024-49635
|
2024-11-1 00:27 |
2024-10-29 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
249840
|
5.3 |
MEDIUM
Network
|
hcltech
|
sametime
|
HCL Sametime is impacted by the error messages containing sensitive information. An attacker can use this information to launch another, more focused attack.
|
CWE-209
Information Exposure Through an Error Message
|
CVE-2023-50355
|
2024-11-1 00:18 |
2024-10-24 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|