|
251521
|
8.8 |
HIGH
Local
|
cisco
|
nx-os
|
A vulnerability in the Python interpreter of Cisco NX-OS Software could allow an authenticated, low-privileged, local attacker to escape the Python sandbox and gain unauthorized access to the underly…
|
NVD-CWE-Other
|
CVE-2024-20284
|
2024-10-18 00:03 |
2024-08-29 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
251522
|
7.2 |
HIGH
Network
|
codezips
|
tourist_management_system
|
A vulnerability was found in Codezips Tourist Management System 1.0 and classified as critical. Affected by this issue is some unknown functionality of the file /admin/change-image.php. The manipulat…
|
CWE-434
Unrestricted Upload of File with Dangerous Type
|
CVE-2024-9816
|
2024-10-17 23:53 |
2024-10-11 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
251523
|
7.2 |
HIGH
Network
|
codezips
|
tourist_management_system
|
A vulnerability has been found in Codezips Tourist Management System 1.0 and classified as critical. Affected by this vulnerability is an unknown functionality of the file /admin/create-package.php. …
|
CWE-434
Unrestricted Upload of File with Dangerous Type
|
CVE-2024-9815
|
2024-10-17 23:52 |
2024-10-11 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
251524
|
9.8 |
CRITICAL
Network
|
codezips
|
pharmacy_management_system
|
A vulnerability, which was classified as critical, was found in Codezips Pharmacy Management System 1.0. Affected is an unknown function of the file product/update.php. The manipulation of the argume…
|
CWE-89
SQL Injection
|
CVE-2024-9814
|
2024-10-17 23:48 |
2024-10-11 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
251525
|
4.8 |
MEDIUM
Network
|
classroombookings
|
classroombookings
|
A vulnerability was found in Craig Rodway Classroombookings 2.8.7 and classified as problematic. This issue affects some unknown processing of the file /sessions of the component Session Page. The ma…
|
CWE-79
Cross-site Scripting
|
CVE-2024-9807
|
2024-10-17 23:44 |
2024-10-11 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
251526
|
4.8 |
MEDIUM
Network
|
classroombookings
|
classroombookings
|
A vulnerability has been found in Craig Rodway Classroombookings up to 2.8.6 and classified as problematic. This vulnerability affects unknown code of the file /rooms/fields of the component Room Pag…
|
CWE-79
Cross-site Scripting
|
CVE-2024-9806
|
2024-10-17 23:44 |
2024-10-11 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
251527
|
7.8 |
HIGH
Local
|
deltaww
|
cncsoft-g2
|
Delta Electronics CNCSoft-G2 lacks proper validation of the length of user-supplied data prior to copying it to a fixed-length heap-based buffer. An attacker can manipulate users to visit a malicious…
|
CWE-787
Out-of-bounds Write
|
CVE-2024-47964
|
2024-10-17 23:37 |
2024-10-11 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
251528
|
7.8 |
HIGH
Local
|
deltaww
|
cncsoft-g2
|
Delta Electronics CNCSoft-G2 lacks proper validation of user-supplied data, which can result in a write past the end of an allocated object. An attacker can manipulate users to visit a malicious page…
|
CWE-787
Out-of-bounds Write
|
CVE-2024-47963
|
2024-10-17 23:37 |
2024-10-11 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
251529
|
7.8 |
HIGH
Local
|
deltaww
|
cncsoft-g2
|
Delta Electronics CNCSoft-G2 lacks proper validation of the length of user-supplied data prior to copying it to a fixed-length stack-based buffer. An attacker can manipulate an insider to visit a mal…
|
CWE-787
Out-of-bounds Write
|
CVE-2024-47962
|
2024-10-17 23:37 |
2024-10-11 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
251530
|
7.8 |
HIGH
Local
|
deltaww
|
cncsoft-g2
|
Delta Electronics CNCSoft-G2 lacks proper initialization of memory prior to accessing it. An attacker can manipulate users to visit a malicious page or file to leverage this vulnerability to execute …
|
CWE-908
Use of Uninitialized Resource
|
CVE-2024-47966
|
2024-10-17 23:36 |
2024-10-11 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|