|
256451
|
- |
|
-
|
-
|
A Cross-Site Request Forgery (CSRF) in the component edit_categorie.php of Warehouse Inventory System v2.0 allows attackers to escalate privileges.
|
-
|
CVE-2024-42576
|
2024-08-21 01:35 |
2024-08-20 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
256452
|
- |
|
-
|
-
|
School Management System commit bae5aa was discovered to contain a SQL injection vulnerability via the medium parameter at paidclass.php.
|
-
|
CVE-2024-42569
|
2024-08-21 01:35 |
2024-08-20 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
256453
|
- |
|
-
|
-
|
Pharmacy Management System commit a2efc8 was discovered to contain a SQL injection vulnerability via the invoice_number parameter at preview.php.
|
-
|
CVE-2024-42562
|
2024-08-21 01:35 |
2024-08-20 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
256454
|
- |
|
-
|
-
|
A cross-site scripting (XSS) vulnerability in the component update_page_details.php of Blood Bank And Donation Management System commit dc9e039 allows attackers to execute arbitrary web scripts or HT…
|
-
|
CVE-2024-42560
|
2024-08-21 01:35 |
2024-08-20 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
256455
|
- |
|
-
|
-
|
A Cross-Site Request Forgery (CSRF) in the component admin_room_removed.php of Hotel Management System commit 91caab8 allows attackers to escalate privileges.
|
-
|
CVE-2024-42555
|
2024-08-21 01:35 |
2024-08-20 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
256456
|
- |
|
-
|
-
|
A Cross-Site Request Forgery (CSRF) in the component admin_room_added.php of Hotel Management System commit 91caab8 allows attackers to escalate privileges.
|
-
|
CVE-2024-42553
|
2024-08-21 01:35 |
2024-08-20 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
256457
|
7.5 |
HIGH
Network
|
vonets
|
var1200-h_firmware var1200-l_firmware var600-h_firmware vap11ac_firmware vap11g-500s_firmware vbg1200_firmware vap11s-5g_firmware vap11s_firmware var11n-300_firmware vap11g…
|
A directory traversal vulnerability affecting Vonets industrial wifi bridge relays and wifi bridge repeaters, software versions 3.3.23.6.9
and prior, enables an unauthenticated remote attacker to re…
|
CWE-22
Path Traversal
|
CVE-2024-41936
|
2024-08-21 01:26 |
2024-08-12 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
256458
|
7.8 |
HIGH
Local
|
paloaltonetworks
|
globalprotect
|
A privilege escalation (PE) vulnerability in the Palo Alto Networks GlobalProtect app on Windows devices enables a local user to execute programs with elevated privileges.
|
CWE-732
Incorrect Permission Assignment for Critical Resource
|
CVE-2024-5915
|
2024-08-21 01:23 |
2024-08-15 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
256459
|
9.8 |
CRITICAL
Network
|
paloaltonetworks
|
cortex_xsoar_commonscripts
|
A command injection issue in Palo Alto Networks Cortex XSOAR CommonScripts Pack allows an unauthenticated attacker to execute arbitrary commands within the context of an integration container.
|
CWE-77
Command Injection
|
CVE-2024-5914
|
2024-08-21 01:22 |
2024-08-15 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
256460
|
9.8 |
CRITICAL
Network
|
opensecurity
|
mobile_security_framework
|
Mobile Security Framework (MobSF) is a pen-testing, malware analysis and security assessment framework capable of performing static and dynamic analysis. Before 4.0.7, there is a flaw in the Static L…
|
CWE-22
Path Traversal
|
CVE-2024-43399
|
2024-08-21 01:21 |
2024-08-20 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|