|
251551
|
9.8 |
CRITICAL
Network
|
online_health_care_system_project
|
online_health_care_system
|
A vulnerability classified as critical has been found in SourceCodester Online Health Care System 1.0. Affected is an unknown function of the file search.php. The manipulation of the argument f_name …
|
CWE-89
SQL Injection
|
CVE-2024-8080
|
2024-10-17 23:04 |
2024-08-23 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
251552
|
6.5 |
MEDIUM
Network
|
ampache
|
ampache
|
ampache is a web based audio/video streaming application and file manager. A CSRF attack can be performed in order to delete objects (Playlist, smartlist etc.). Cross-Site Request Forgery (CSRF) is a…
|
CWE-352
Origin Validation Error
|
CVE-2024-47828
|
2024-10-17 22:55 |
2024-10-10 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
251553
|
4.3 |
MEDIUM
Network
|
enalean
|
tuleap
|
Tuleap is a tool for end to end traceability of application and system developments. Prior to Tuleap Community Edition 15.13.99.113, Tuleap Enterprise Edition 15.13-5, and Tuleap Enterprise Edition 1…
|
CWE-755
Improper Handling of Exceptional Conditions
|
CVE-2024-47767
|
2024-10-17 22:50 |
2024-10-15 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
251554
|
4.9 |
MEDIUM
Network
|
enalean
|
tuleap
|
Tuleap is a tool for end to end traceability of application and system developments. Prior to Tuleap Community Edition 15.13.99.110, Tuleap Enterprise Edition 15.13-5, and Tuleap Enterprise Edition 1…
|
CWE-755
Improper Handling of Exceptional Conditions
|
CVE-2024-47766
|
2024-10-17 22:48 |
2024-10-15 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
251555
|
6.1 |
MEDIUM
Network
|
wp-slimstat
|
slimstat_analytics
|
The SlimStat Analytics plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the resource parameter in all versions up to, and including, 5.2.6 due to insufficient input sanitization …
|
CWE-79
Cross-site Scripting
|
CVE-2024-9548
|
2024-10-17 22:46 |
2024-10-15 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
251556
|
5.3 |
MEDIUM
Network
|
xplodedthemes
|
wpide
|
The WPIDE – File Manager & Code Editor plugin for WordPress is vulnerable to Full Path Disclosure in all versions up to, and including, 3.4.9. This is due to the plugin utilizing the PHP-Parser libra…
|
NVD-CWE-noinfo
|
CVE-2024-9546
|
2024-10-17 22:34 |
2024-10-15 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
251557
|
6.5 |
MEDIUM
Adjacent
|
microsoft
|
windows_server_2022_23h2 windows_10_1809 windows_11_21h2 windows_10_21h2 windows_10_22h2 windows_11_23h2 windows_11_24h2 windows_11_22h2 windows_server_2019
|
Windows Mobile Broadband Driver Denial of Service Vulnerability
|
NVD-CWE-noinfo
|
CVE-2024-43559
|
2024-10-17 22:31 |
2024-10-9 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
251558
|
6.5 |
MEDIUM
Adjacent
|
microsoft
|
windows_server_2022_23h2 windows_10_1809 windows_11_21h2 windows_10_21h2 windows_10_22h2 windows_11_23h2 windows_11_24h2 windows_11_22h2 windows_server_2019
|
Windows Mobile Broadband Driver Denial of Service Vulnerability
|
NVD-CWE-noinfo
|
CVE-2024-43558
|
2024-10-17 22:31 |
2024-10-9 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
251559
|
6.5 |
MEDIUM
Adjacent
|
microsoft
|
windows_server_2022_23h2 windows_10_1809 windows_11_21h2 windows_10_21h2 windows_10_22h2 windows_11_23h2 windows_11_24h2 windows_11_22h2 windows_server_2019
|
Windows Mobile Broadband Driver Denial of Service Vulnerability
|
NVD-CWE-noinfo
|
CVE-2024-43557
|
2024-10-17 22:31 |
2024-10-9 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
251560
|
4.9 |
MEDIUM
Network
|
splunk
|
splunk
|
In Splunk Enterprise versions below 9.3.1, 9.2.3, and 9.1.6, the software potentially exposes sensitive HTTP parameters to the `_internal` index. This exposure could happen if you configure the Splun…
|
CWE-532
Inclusion of Sensitive Information in Log Files
|
CVE-2024-45738
|
2024-10-17 22:17 |
2024-10-15 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|