|
250211
|
8.2 |
HIGH
Adjacent
|
eufy
|
homebase_2_firmware
|
The Eufy Homebase 2 before firmware version 3.3.4.1h creates a dedicated wireless network for its ecosystem, which serves as a proxy to the end user's primary network. The WPA2-PSK generation of this…
|
CWE-331
Insufficient Entropy
|
CVE-2023-37822
|
2024-10-29 23:47 |
2024-10-4 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
250212
|
6.1 |
MEDIUM
Network
|
themeinwp
|
social_share_with_floating_bar
|
The Social Share With Floating Bar plugin for WordPress is vulnerable to Reflected Cross-Site Scripting due to the use of add_query_arg without appropriate escaping on the URL in all versions up to, …
|
CWE-79
Cross-site Scripting
|
CVE-2024-8790
|
2024-10-29 23:44 |
2024-10-18 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
250213
|
5.4 |
MEDIUM
Network
|
sukiwp
|
suki_sites_import
|
The Suki Sites Import plugin for WordPress is vulnerable to Stored Cross-Site Scripting via SVG File uploads in all versions up to, and including, 1.2.1 due to insufficient input sanitization and out…
|
CWE-79
Cross-site Scripting
|
CVE-2024-8916
|
2024-10-29 23:37 |
2024-10-18 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
250214
|
- |
|
xfree86_project
|
x11r6
|
The xterm terminal emulator in XFree86 4.2.0 and earlier allows attackers to modify the window title via a certain character escape sequence and then insert it back to the command line in the user's …
|
NVD-CWE-Other
|
CVE-2003-0063
|
2024-10-29 23:35 |
2003-03-3 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
250215
|
- |
|
qualcomm
|
qpopper
|
Buffer overflow in POP servers based on BSD/Qualcomm's qpopper allows remote attackers to gain root access using a long PASS command.
|
NVD-CWE-Other
|
CVE-1999-0006
|
2024-10-29 23:35 |
1998-07-14 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
250216
|
- |
|
sgi
|
irix
|
IRIX login program with a nonzero LOCKOUT parameter allows creation or damage to files.
|
NVD-CWE-Other
|
CVE-1999-0036
|
2024-10-29 23:35 |
1997-05-26 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
250217
|
- |
|
sgi bsdi sun hp ibm freebsd
|
irix bsd_os sunos hp-ux aix freebsd solaris
|
Local user gains root privileges via buffer overflow in rdist, via expstr() function.
|
NVD-CWE-Other
|
CVE-1999-0022
|
2024-10-29 23:35 |
1996-07-3 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
250218
|
- |
|
-
|
-
|
Improper Neutralization of Input During Web Page Generation (XSS or 'Cross-site Scripting') vulnerability in xarbo BuddyPress Greeting Message allows Reflected XSS.This issue affects BuddyPress Greet…
|
CWE-79
Cross-site Scripting
|
CVE-2024-49650
|
2024-10-29 23:34 |
2024-10-29 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
250219
|
- |
|
-
|
-
|
Improper Neutralization of Input During Web Page Generation (XSS or 'Cross-site Scripting') vulnerability in rafasashi SVG Captcha allows Reflected XSS.This issue affects SVG Captcha: from n/a throug…
|
CWE-79
Cross-site Scripting
|
CVE-2024-49648
|
2024-10-29 23:34 |
2024-10-29 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
250220
|
- |
|
-
|
-
|
Improper Neutralization of Input During Web Page Generation (XSS or 'Cross-site Scripting') vulnerability in Carl Alberto Simple Custom Admin allows Reflected XSS.This issue affects Simple Custom Adm…
|
-
|
CVE-2024-49647
|
2024-10-29 23:34 |
2024-10-29 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|