|
251101
|
- |
|
microsoft
|
internet_explorer
|
Microsoft Internet Explorer 6 SP1, 6 and 7 on Windows XP SP2 and SP3, 6 and 7 on Windows Server 2003 SP1 and SP2, 7 on Windows Vista Gold and SP1, and 7 on Windows Server 2008 does not properly handl…
|
CWE-399
Resource Management Errors
|
CVE-2009-0551
|
2024-10-22 02:35 |
2009-04-15 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
251102
|
- |
|
microsoft
|
windows_2003_server windows_xp windows_vista windows_server_2008 .net_framework internet_explorer report_viewer sql_server_reporting_services sql_server expression_web p…
|
Buffer overflow in GDI+ in Microsoft Internet Explorer 6 SP1, Windows XP SP2 and SP3, Office XP SP3, Office 2003 SP3, 2007 Microsoft Office System SP1 and SP2, Office Project 2002 SP1, Visio 2002 SP2…
|
CWE-119
Incorrect Access of Indexable Resource ('Range Error')
|
CVE-2009-2502
|
2024-10-22 02:35 |
2009-10-14 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
251103
|
5.4 |
MEDIUM
Network
|
madrasthemes
|
mas_elementor
|
Improper Neutralization of Input During Web Page Generation (XSS or 'Cross-site Scripting') vulnerability in MadrasThemes MAS Elementor allows DOM-Based XSS.This issue affects MAS Elementor: from n/a…
|
CWE-79
Cross-site Scripting
|
CVE-2024-49233
|
2024-10-22 02:17 |
2024-10-18 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
251104
|
5.4 |
MEDIUM
Network
|
themeworm
|
plexx_elementor_extension
|
Improper Neutralization of Input During Web Page Generation (XSS or 'Cross-site Scripting') vulnerability in themeworm Plexx Elementor Extension allows Stored XSS.This issue affects Plexx Elementor E…
|
CWE-79
Cross-site Scripting
|
CVE-2024-49234
|
2024-10-22 02:16 |
2024-10-18 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
251105
|
5.4 |
MEDIUM
Network
|
hafizuddinahmed
|
crazy_call_to_action_box
|
Improper Neutralization of Input During Web Page Generation (XSS or 'Cross-site Scripting') vulnerability in Hafiz Uddin Ahmed Crazy Call To Action Box allows Stored XSS.This issue affects Crazy Call…
|
CWE-79
Cross-site Scripting
|
CVE-2024-49236
|
2024-10-22 02:12 |
2024-10-18 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
251106
|
- |
|
-
|
-
|
Improper Input Validation in the admin portal of Ivanti Connect Secure before 22.7R2.1 and 9.1R18.9, or Ivanti Policy Secure before 22.7R1.1 allows a remote authenticated attacker to achieve remote c…
|
-
|
CVE-2024-37404
|
2024-10-22 02:10 |
2024-10-19 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
251107
|
- |
|
-
|
-
|
Ivanti DSM < version 2024.2 allows authenticated users on the local machine to run code with elevated privileges due to insecure ACL via unspecified attack vector.
|
-
|
CVE-2024-29821
|
2024-10-22 02:10 |
2024-10-19 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
251108
|
- |
|
-
|
-
|
Ivanti DSM < version 2024.2 allows authenticated users on the local machine to run code with elevated privileges due to insecure ACL via unspecified attack vector.
|
-
|
CVE-2024-29213
|
2024-10-22 02:10 |
2024-10-19 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
251109
|
- |
|
-
|
-
|
ACON is a widely-used library of tools for machine learning that focuses on adaptive correlation optimization. A potential vulnerability has been identified in the input validation process, which cou…
|
CWE-20
Improper Input Validation
|
CVE-2024-49361
|
2024-10-22 02:10 |
2024-10-19 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
251110
|
- |
|
-
|
-
|
In J2eeFAST <=2.7, the backend function has unsafe filtering, which allows an attacker to trigger certain sensitive functions resulting in arbitrary code execution.
|
-
|
CVE-2024-45944
|
2024-10-22 02:10 |
2024-10-19 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|