|
256671
|
- |
|
-
|
-
|
A sensitive information disclosure vulnerability exists in ZZCMS v.2023 and before within the eginfo.php file located at /3/E_bak5.1/upload/. When accessed with the query parameter phome=ShowPHPInfo,…
|
-
|
CVE-2024-44820
|
2024-09-5 01:09 |
2024-09-5 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
256672
|
6.1 |
MEDIUM
Network
|
cdevroe
|
unmark
|
unmark 1.9.2 is vulnerable to Cross Site Scripting (XSS) via application/views/marks/add_by_url.php.
|
CWE-79
Cross-site Scripting
|
CVE-2024-41349
|
2024-09-5 01:08 |
2024-08-30 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
256673
|
9.8 |
CRITICAL
Network
|
organizr
|
organizr
|
Organizr v1.90 was discovered to contain a SQL injection vulnerability via chat/settyping.php.
|
CWE-89
SQL Injection
|
CVE-2024-41372
|
2024-09-5 01:08 |
2024-08-30 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
256674
|
6.1 |
MEDIUM
Network
|
organizr
|
organizr
|
Organizr v1.90 is vulnerable to Cross Site Scripting (XSS) via api.php.
|
CWE-79
Cross-site Scripting
|
CVE-2024-41371
|
2024-09-5 01:08 |
2024-08-30 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
256675
|
9.8 |
CRITICAL
Network
|
organizr
|
organizr
|
Organizr v1.90 was discovered to contain a SQL injection vulnerability via chat/setlike.php.
|
CWE-89
SQL Injection
|
CVE-2024-41370
|
2024-09-5 01:08 |
2024-08-30 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
256676
|
6.1 |
MEDIUM
Network
|
phpipam
|
phpipam
|
phpipam 1.6 is vulnerable to Cross Site Scripting (XSS) via app\admin\import-export\import-load-data.php.
|
CWE-79
Cross-site Scripting
|
CVE-2024-41358
|
2024-09-5 01:07 |
2024-08-30 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
256677
|
6.1 |
MEDIUM
Network
|
baijunyao
|
bjyadmin
|
bjyadmin commit a560fd5 is vulnerable to Cross Site Scripting (XSS) via Public/statics/umeditor1_2_3/php/getContent.php
|
CWE-79
Cross-site Scripting
|
CVE-2024-41351
|
2024-09-5 01:07 |
2024-08-30 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
256678
|
6.1 |
MEDIUM
Network
|
baijunyao
|
bjyadmin
|
bjyadmin commit a560fd5 is vulnerable to Cross Site Scripting (XSS) via Public/statics/umeditor1_2_3/php/imageUp.php
|
CWE-79
Cross-site Scripting
|
CVE-2024-41350
|
2024-09-5 01:07 |
2024-08-30 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
256679
|
6.1 |
MEDIUM
Network
|
jpatokal
|
openflights
|
openflights commit 5234b5b is vulnerable to Cross-Site Scripting (XSS) via php/alsearch.php
|
CWE-79
Cross-site Scripting
|
CVE-2024-41348
|
2024-09-5 01:06 |
2024-08-30 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
256680
|
6.1 |
MEDIUM
Network
|
jpatokal
|
openflights
|
openflights commit 5234b5b is vulnerable to Cross-Site Scripting (XSS) via php/settings.php
|
CWE-79
Cross-site Scripting
|
CVE-2024-41347
|
2024-09-5 01:05 |
2024-08-30 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|