|
303641
|
- |
|
-
|
-
|
Rejected reason: ** REJECT ** DO NOT USE THIS CANDIDATE NUMBER. Reason: This candidate was issued in error. Notes: All references and descriptions in this candidate have been removed to prevent accid…
|
-
|
CVE-2024-11086
|
2024-11-20 22:15 |
2024-11-20 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
303642
|
- |
|
-
|
-
|
Improper Validation of Specified Type of Input vulnerability in Mitsubishi Electric Corporation MELSEC iQ-F Series FX5-ENET versions 1.100 and later and FX5-ENET/IP versions 1.100 to 1.104 allows a r…
|
CWE-1287
Improper Validation of Specified Type of Input
|
CVE-2024-8403
|
2024-11-20 10:15 |
2024-11-19 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
303643
|
5.3 |
MEDIUM
Network
|
-
|
-
|
The Google for WooCommerce plugin for WordPress is vulnerable to Information Disclosure in all versions up to, and including, 2.8.6. This is due to publicly accessible print_php_information.php file.…
|
CWE-862
Missing Authorization
|
CVE-2024-10486
|
2024-11-20 06:57 |
2024-11-19 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
303644
|
- |
|
-
|
-
|
The WesHacks GitHub repository provides the official Hackathon competition website source code for the Muweilah Wesgreen Hackathon. The page `schedule.html` before 17 November 2024 or commit 93dfb83 …
|
CWE-494
Download of Code Without Integrity Check
|
CVE-2024-52583
|
2024-11-20 06:57 |
2024-11-19 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
303645
|
- |
|
-
|
-
|
MarkUs is a web application for the submission and grading of student assignments. In versions prior to 2.4.8, an arbitrary file write vulnerability accessible via the update_files method of the Subm…
|
CWE-434
Unrestricted Upload of File with Dangerous Type
|
CVE-2024-51499
|
2024-11-20 06:57 |
2024-11-19 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
303646
|
- |
|
-
|
-
|
MarkUs, a web application for the submission and grading of student assignments, is vulnerable to path traversal in versions prior to 2.4.8. Authenticated instructors may download any file on the web…
|
CWE-22
Path Traversal
|
CVE-2024-47820
|
2024-11-20 06:57 |
2024-11-19 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
303647
|
- |
|
-
|
-
|
Cobbler, a Linux installation server that allows for rapid setup of network installation environments, has an improper authentication vulnerability starting in version 3.0.0 and prior to versions 3.2…
|
CWE-287
Improper Authentication
|
CVE-2024-47533
|
2024-11-20 06:57 |
2024-11-19 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
303648
|
- |
|
-
|
-
|
GLPI is a free asset and IT management software package. Starting in version 0.80 and prior to version 10.0.17, an unauthenticated user can use an application endpoint to check if an email address co…
|
CWE-200
Information Exposure
|
CVE-2024-43416
|
2024-11-20 06:57 |
2024-11-19 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
303649
|
6.4 |
MEDIUM
Network
|
-
|
-
|
The Elfsight Telegram Chat CC plugin for WordPress is vulnerable to unauthorized modification of data to a missing capability check on the 'updatePreferences' function in all versions up to, and incl…
|
CWE-862
Missing Authorization
|
CVE-2024-10390
|
2024-11-20 06:57 |
2024-11-19 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
303650
|
5.4 |
MEDIUM
Network
|
-
|
-
|
A vulnerability in the web-based interface of Cisco Webex Teams could allow an authenticated, remote attacker to conduct cross-site scripting attacks.
The vulnerability is due to improper valid…
|
CWE-80
Basic XSS
|
CVE-2020-26067
|
2024-11-20 06:57 |
2024-11-19 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|