|
256651
|
6.1 |
MEDIUM
Network
|
seacms
|
seacms
|
Seacms v13 is vulnerable to Cross Site Scripting (XSS) via admin-video.php.
|
CWE-79
Cross-site Scripting
|
CVE-2024-44683
|
2024-09-5 01:41 |
2024-08-31 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
256652
|
5.5 |
MEDIUM
Local
|
openatom
|
openharmony
|
in OpenHarmony v4.0.0 and prior versions allow a local attacker cause information leak through out-of-bounds Read.
|
CWE-125
Out-of-bounds Read
|
CVE-2024-39612
|
2024-09-5 01:38 |
2024-09-2 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
256653
|
6.1 |
MEDIUM
Network
|
shopxo
|
shopxo
|
ShopXO 6.2 is vulnerable to Cross Site Scripting (XSS) in the backend that allows attackers to execute code by changing POST parameters.
|
CWE-79
Cross-site Scripting
|
CVE-2024-44682
|
2024-09-5 01:38 |
2024-08-31 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
256654
|
9.8 |
CRITICAL
Network
|
oretnom23
|
computer_laboratory_management_system
|
A vulnerability classified as critical has been found in SourceCodester Computer Laboratory Management System 1.0. Affected is the function update_settings_info of the file /classes/SystemSettings.ph…
|
CWE-89
SQL Injection
|
CVE-2024-8346
|
2024-09-5 01:37 |
2024-08-31 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
256655
|
9.8 |
CRITICAL
Network
|
oretnom23
|
music_gallery_site
|
A vulnerability was found in SourceCodester Music Gallery Site 1.0 and classified as critical. Affected by this issue is some unknown functionality of the file /classes/Users.php?f=delete. The manipu…
|
CWE-89
SQL Injection
|
CVE-2024-8345
|
2024-09-5 01:35 |
2024-08-31 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
256656
|
7.5 |
HIGH
Network
|
openatom
|
openharmony
|
in OpenHarmony v4.1.0 and prior versions allow a remote attacker cause information leak through out-of-bounds Read.
|
CWE-125
Out-of-bounds Read
|
CVE-2024-39775
|
2024-09-5 01:34 |
2024-09-2 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
256657
|
9.8 |
CRITICAL
Network
|
oretnom23
|
sentiment_based_movie_rating_system
|
A vulnerability, which was classified as critical, was found in SourceCodester Sentiment Based Movie Rating System 1.0. Affected is an unknown function of the file /classes/Users.php?f=save_client of…
|
CWE-89
SQL Injection
|
CVE-2024-8343
|
2024-09-5 01:34 |
2024-08-31 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
256658
|
8.8 |
HIGH
Network
|
nelzkie15
|
petshop_management_system
|
A vulnerability, which was classified as critical, has been found in SourceCodester Petshop Management System 1.0. This issue affects some unknown processing of the file /controllers/add_client.php. …
|
CWE-434
Unrestricted Upload of File with Dangerous Type
|
CVE-2024-8342
|
2024-09-5 01:34 |
2024-08-31 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
256659
|
7.8 |
HIGH
Local
|
openatom
|
openharmony
|
in OpenHarmony v4.1.0 and prior versions allow a local attacker cause the common permission is upgraded to root and sensitive information leak through use after free.
|
CWE-416
Use After Free
|
CVE-2024-41157
|
2024-09-5 01:30 |
2024-09-2 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
256660
|
7.8 |
HIGH
Local
|
openatom
|
openharmony
|
in OpenHarmony v4.1.0 and prior versions allow a local attacker arbitrary code execution in pre-installed apps through out-of-bounds write.
|
CWE-787
Out-of-bounds Write
|
CVE-2024-39816
|
2024-09-5 01:30 |
2024-09-2 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|