|
307011
|
8.2 |
HIGH
Network
|
-
|
-
|
An Improper Restriction of Communication Channel to Intended Endpoints vulnerability in the Packet Forwarding Engine (PFE) of Juniper Networks Junos OS Evolved on ACX 7000 Series allows an unauthenti…
|
CWE-923
Improper Restriction of Communication Channel to Intended Endpoints
|
CVE-2024-47490
|
2024-10-15 21:58 |
2024-10-12 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
307012
|
7.5 |
HIGH
Network
|
-
|
-
|
An Improper Handling of Exceptional Conditions vulnerability in the rpd-server of Juniper Networks Junos OS and Junos OS Evolved within cRPD allows an unauthenticated network-based attacker sending c…
|
CWE-755
Improper Handling of Exceptional Conditions
|
CVE-2024-39547
|
2024-10-15 21:58 |
2024-10-12 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
307013
|
6.1 |
MEDIUM
Network
|
-
|
-
|
The BlockMeister – Block Pattern Builder plugin for WordPress is vulnerable to Reflected Cross-Site Scripting due to the use of add_query_arg without appropriate escaping on the URL in all versions u…
|
CWE-79
Cross-site Scripting
|
CVE-2024-9616
|
2024-10-15 21:58 |
2024-10-11 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
307014
|
6.1 |
MEDIUM
Network
|
-
|
-
|
The Increase upload file size & Maximum Execution Time limit plugin for WordPress is vulnerable to Reflected Cross-Site Scripting due to the use of add_query_arg without appropriate escaping on the U…
|
-
|
CVE-2024-9611
|
2024-10-15 21:58 |
2024-10-11 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
307015
|
6.1 |
MEDIUM
Network
|
-
|
-
|
The Language Switcher plugin for WordPress is vulnerable to Reflected Cross-Site Scripting due to the use of add_query_arg without appropriate escaping on the URL in all versions up to, and including…
|
CWE-79
Cross-site Scripting
|
CVE-2024-9610
|
2024-10-15 21:58 |
2024-10-11 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
307016
|
5.0 |
MEDIUM
Local
|
-
|
-
|
An Incorrect Default Permissions vulnerability in the command line interface (CLI) of Juniper Networks Junos OS Evolved allows a low privileged local attacker to view NETCONF traceoptions files, repr…
|
CWE-276
Incorrect Default Permissions
|
CVE-2024-39544
|
2024-10-15 21:58 |
2024-10-12 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
307017
|
5.4 |
MEDIUM
Adjacent
|
-
|
-
|
An Incorrect Comparison vulnerability in the local address verification API of Juniper Networks Junos OS Evolved allows an unauthenticated network-adjacent attacker to create sessions or send traffic…
|
-
|
CVE-2024-39534
|
2024-10-15 21:58 |
2024-10-12 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
307018
|
5.5 |
MEDIUM
Local
|
-
|
-
|
An Exposure of Sensitive Information to an Unauthorized Actor vulnerability in the command-line interface (CLI) of Juniper Networks Junos OS on SRX Series devices allows a local, low-privileged user …
|
CWE-200
Information Exposure
|
CVE-2024-39527
|
2024-10-15 21:58 |
2024-10-12 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
307019
|
6.5 |
MEDIUM
Adjacent
|
-
|
-
|
An Improper Handling of Exceptional Conditions vulnerability in packet processing of Juniper Networks Junos OS on MX Series with MPC10/MPC11/LC9600 line cards, EX9200 with EX9200-15C lines cards, MX3…
|
CWE-755
Improper Handling of Exceptional Conditions
|
CVE-2024-39526
|
2024-10-15 21:58 |
2024-10-12 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
307020
|
6.4 |
MEDIUM
Network
|
-
|
-
|
The PowerPress Podcasting plugin by Blubrry plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the plugin's 'skipto' shortcode in all versions up to, and including, 11.9.18 due to …
|
CWE-79
Cross-site Scripting
|
CVE-2024-9543
|
2024-10-15 21:58 |
2024-10-11 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|