|
256791
|
- |
|
-
|
-
|
A SQL injection vulnerability in /smsa/student_login.php in Kashipara Responsive School Management System v1.0 allows an attacker to execute arbitrary SQL commands via the "username" parameter.
|
-
|
CVE-2024-41238
|
2024-08-9 02:35 |
2024-08-9 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
256792
|
- |
|
-
|
-
|
Rejected reason: ** REJECT ** DO NOT USE THIS CANDIDATE NUMBER. Reason: This candidate was issued in error. Notes: All references and descriptions in this candidate have been removed to prevent accid…
|
-
|
CVE-2024-7123
|
2024-08-9 02:15 |
2024-08-9 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
256793
|
- |
|
-
|
-
|
Rejected reason: ** REJECT ** DO NOT USE THIS CANDIDATE NUMBER. Reason: This candidate was issued in error. Notes: All references and descriptions in this candidate have been removed to prevent accid…
|
-
|
CVE-2024-7121
|
2024-08-9 02:15 |
2024-08-9 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
256794
|
- |
|
-
|
-
|
Editor code failed to check an attribute value. This could have led to an out-of-bounds read. This vulnerability affects Firefox < 129, Firefox ESR < 115.14, Firefox ESR < 128.1, Thunderbird < 128.1,…
|
-
|
CVE-2024-7522
|
2024-08-9 01:35 |
2024-08-6 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
256795
|
- |
|
-
|
-
|
A Stored Cross Site Scripting (XSS) vulnerability was found in "/smsa/add_class_submit.php" in Responsive School Management System v3.2.0, which allows remote attackers to execute arbitrary code via …
|
-
|
CVE-2024-41239
|
2024-08-9 01:15 |
2024-08-8 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
256796
|
- |
|
-
|
-
|
Firmware in KAON AR2140 routers prior to version 4.2.16 is vulnerable to a shell command injection via sending a crafted request to one of the endpoints.
In order to exploit this vulnerability, one h…
|
-
|
CVE-2024-3659
|
2024-08-9 00:35 |
2024-08-8 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
256797
|
7.8 |
HIGH
Local
|
enjayworld
|
enjay_crm
|
An issue in the Hardware info module of IT Solutions Enjay CRM OS v1.0 allows attackers to escape the restricted terminal environment and gain root-level privileges on the underlying system.
|
NVD-CWE-noinfo
|
CVE-2024-41309
|
2024-08-9 00:35 |
2024-08-8 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
256798
|
9.8 |
CRITICAL
Network
|
oretnom23
|
computer_laboratory_management_system
|
SourceCodester Computer Laboratory Management System 1.0 allows admin/category/view_category.php id SQL Injection.
|
CWE-89
SQL Injection
|
CVE-2024-34480
|
2024-08-9 00:35 |
2024-08-8 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
256799
|
- |
|
-
|
-
|
There is a vulnerability in the AP Certificate Management Service which could allow a threat actor to execute an unauthenticated RCE attack. Successful exploitation could allow an attacker to execute…
|
-
|
CVE-2024-42395
|
2024-08-9 00:35 |
2024-08-7 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
256800
|
9.8 |
CRITICAL
Network
|
gl-inet
|
mt6000_firmware a1300_firmware x300b_firmware ax1800_firmware axt1800_firmware mt2500_firmware mt3000_firmware x3000_firmware xe3000_firmware xe300_firmware e750_firmwar…
|
GL-iNet products AR750/AR750S/AR300M/AR300M16/MT300N-V2/B1300/MT1300/SFT1200/X750 v4.3.11, MT3000/MT2500/AXT1800/AX1800/A1300/X300B v4.5.16, XE300 v4.3.16, E750 v4.3.12, AP1300/S1300 v4.3.13, XE3000/…
|
CWE-78
OS Command
|
CVE-2024-39228
|
2024-08-9 00:35 |
2024-08-7 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|