|
250281
|
- |
|
-
|
-
|
Reachable Assertion in BPv7 parser in µD3TN v0.14.0 allows attacker to disrupt service via malformed Extension Block
|
-
|
CVE-2024-10455
|
2024-10-29 23:34 |
2024-10-28 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
250282
|
8.3 |
HIGH
Network
|
wpplugin
|
time_clock
|
The Time Clock plugin and Time Clock Pro plugin for WordPress are vulnerable to Remote Code Execution in versions up to, and including, 1.2.2 (for Time Clock) and 1.1.4 (for Time Clock Pro) via the '…
|
CWE-94
Code Injection
|
CVE-2024-9593
|
2024-10-29 22:40 |
2024-10-19 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
250283
|
9.8 |
CRITICAL
Network
|
learning_with_texts_project
|
learning_with_texts
|
Learning with Texts (LWT) 2.0.3 is vulnerable to SQL Injection. This occurs when the application fails to properly sanitize user inputs, allowing attackers to manipulate SQL queries by injecting mali…
|
CWE-89
SQL Injection
|
CVE-2024-48509
|
2024-10-29 22:38 |
2024-10-22 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
250284
|
6.1 |
MEDIUM
Network
|
-
|
-
|
The SEUR Oficial plugin for WordPress is vulnerable to Reflected Cross-Site Scripting via the 'change_service' parameter in all versions up to, and including, 2.2.11 due to insufficient input sanitiz…
|
CWE-80
Basic XSS
|
CVE-2024-9438
|
2024-10-29 18:15 |
2024-10-29 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
250285
|
- |
|
-
|
-
|
Missing Authorization vulnerability in Szabolcs Szecsenyi PegaPoll allows Accessing Functionality Not Properly Constrained by ACLs.This issue affects PegaPoll: from n/a through 1.0.2.
|
CWE-862
Missing Authorization
|
CVE-2024-50490
|
2024-10-29 18:15 |
2024-10-29 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
250286
|
- |
|
-
|
-
|
: Incorrect Privilege Assignment vulnerability in Udit Rawat Exam Matrix allows Privilege Escalation.This issue affects Exam Matrix: from n/a through 1.5.
|
-
|
CVE-2024-50485
|
2024-10-29 18:15 |
2024-10-29 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
250287
|
- |
|
-
|
-
|
Incorrect Privilege Assignment vulnerability in Stack Themes Bstone Demo Importer allows Privilege Escalation.This issue affects Bstone Demo Importer: from n/a through 1.0.1.
|
CWE-266
Incorrect Privilege Assignment
|
CVE-2024-50481
|
2024-10-29 18:15 |
2024-10-29 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
250288
|
- |
|
-
|
-
|
Missing Authorization vulnerability in GRÜN Software Group GmbH GRÜN spendino Spendenformular allows Privilege Escalation.This issue affects GRÜN spendino Spendenformular: from n/a through 1.0.1.
|
CWE-862
Missing Authorization
|
CVE-2024-50476
|
2024-10-29 18:15 |
2024-10-29 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
250289
|
- |
|
-
|
-
|
Missing Authorization vulnerability in Scott Gamon Signup Page allows Privilege Escalation.This issue affects Signup Page: from n/a through 1.0.
|
CWE-862
Missing Authorization
|
CVE-2024-50475
|
2024-10-29 18:15 |
2024-10-29 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
250290
|
- |
|
-
|
-
|
Unrestricted Upload of File with Dangerous Type vulnerability in Ajar Productions Ajar in5 Embed allows Upload a Web Shell to a Web Server.This issue affects Ajar in5 Embed: from n/a through 3.1.3.
|
CWE-434
Unrestricted Upload of File with Dangerous Type
|
CVE-2024-50473
|
2024-10-29 18:15 |
2024-10-29 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|