|
312511
|
7.5 |
HIGH
Network
|
-
|
-
|
Transient DOS when registration accept OTA is received with incorrect ciphering key data IE in Modem.
|
-
|
CVE-2024-23358
|
2024-09-3 21:59 |
2024-09-2 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
312512
|
- |
|
-
|
-
|
A vulnerability was found in HM Courts & Tribunals Service Probate Back Office up to c1afe0cdb2b2766d9e24872c4e827f8b82a6cd31. It has been classified as problematic. Affected is an unknown function o…
|
CWE-74
Injection
|
CVE-2024-8367
|
2024-09-3 21:59 |
2024-09-1 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
312513
|
- |
|
-
|
-
|
Dell PowerScale OneFS versions 8.2.2.x through 9.8.0.0 contains an incorrect privilege assignment vulnerability. A local high privileged attacker could potentially exploit this vulnerability to gain …
|
CWE-266
Incorrect Privilege Assignment
|
CVE-2024-39579
|
2024-09-3 21:59 |
2024-08-31 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
312514
|
- |
|
-
|
-
|
Dell PowerScale OneFS versions 8.2.2.x through 9.8.0.1 contains a UNIX symbolic link (symlink) following vulnerability. A local high privileged attacker could potentially exploit this vulnerability, …
|
CWE-61
UNIX Symbolic Link (Symlink) Following
|
CVE-2024-39578
|
2024-09-3 21:59 |
2024-08-31 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
312515
|
6.1 |
MEDIUM
Network
|
-
|
-
|
The tagDiv Composer plugin for WordPress is vulnerable to Reflected Cross-Site Scripting via the ‘envato_code[]’ parameter in all versions up to, and including, 5.0 due to insufficient input sanitiza…
|
CWE-79
Cross-site Scripting
|
CVE-2024-5212
|
2024-09-3 21:59 |
2024-08-31 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
312516
|
6.1 |
MEDIUM
Network
|
-
|
-
|
The tagDiv Composer plugin for WordPress is vulnerable to Reflected Cross-Site Scripting via the ‘envato_code[]’ parameter in all versions up to, and including, 5.0 due to insufficient input sanitiza…
|
CWE-79
Cross-site Scripting
|
CVE-2024-3886
|
2024-09-3 21:59 |
2024-08-31 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
312517
|
8.8 |
HIGH
Network
|
-
|
-
|
The Attire theme for WordPress is vulnerable to PHP Object Injection in all versions up to, and including, 2.0.6 via deserialization of untrusted input. This makes it possible for authenticated attac…
|
CWE-502
Deserialization of Untrusted Data
|
CVE-2024-7435
|
2024-09-3 21:59 |
2024-08-31 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
312518
|
- |
|
-
|
-
|
A vulnerability has been found in Campcodes Supplier Management System 1.0 and classified as critical. Affected by this vulnerability is an unknown functionality of the file /admin/edit_area.php. The…
|
CWE-89
SQL Injection
|
CVE-2024-8344
|
2024-09-3 21:59 |
2024-08-31 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
312519
|
- |
|
-
|
-
|
A cross-site scripting (XSS) vulnerability in the component admin_datarelate.php of SeaCMS v12.9 allows attackers to execute arbitrary web scripts or HTML via a crafted payload.
|
-
|
CVE-2024-44918
|
2024-09-3 21:59 |
2024-08-31 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
312520
|
- |
|
-
|
-
|
Vulnerability in admin_ip.php in Seacms v13.1, when action=set, allows attackers to control IP parameters that are written to the data/admin/ip.php file and could result in arbitrary command executio…
|
-
|
CVE-2024-44916
|
2024-09-3 21:59 |
2024-08-31 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|