|
308731
|
5.4 |
MEDIUM
Network
|
cryoutcreations
|
mantra
|
Improper Neutralization of Input During Web Page Generation (XSS or 'Cross-site Scripting') vulnerability in CryoutCreations Mantra allows Stored XSS.This issue affects Mantra: from n/a through 3.3.2.
|
CWE-79
Cross-site Scripting
|
CVE-2024-44056
|
2024-09-23 23:39 |
2024-09-15 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
308732
|
7.8 |
HIGH
Local
|
intel
|
raid_web_console
|
Uncontrolled search path element in Intel(R) RAID Web Console software for all versions may allow an authenticated user to potentially enable escalation of privilege via local access.
|
CWE-427
Uncontrolled Search Path Element
|
CVE-2024-34153
|
2024-09-23 23:35 |
2024-09-17 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
308733
|
5.4 |
MEDIUM
Network
|
cryoutcreations
|
nirvana
|
Improper Neutralization of Input During Web Page Generation (XSS or 'Cross-site Scripting') vulnerability in CryoutCreations Nirvana allows Stored XSS.This issue affects Nirvana: from n/a through 1.6…
|
CWE-79
Cross-site Scripting
|
CVE-2024-44057
|
2024-09-23 23:33 |
2024-09-15 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
308734
|
5.4 |
MEDIUM
Network
|
cryoutcreations
|
parabola
|
Improper Neutralization of Input During Web Page Generation (XSS or 'Cross-site Scripting') vulnerability in CryoutCreations Parabola allows Stored XSS.This issue affects Parabola: from n/a through 2…
|
CWE-79
Cross-site Scripting
|
CVE-2024-44058
|
2024-09-23 23:28 |
2024-09-15 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
308735
|
5.4 |
MEDIUM
Network
|
cryoutcreations
|
fluida
|
Improper Neutralization of Input During Web Page Generation (XSS or 'Cross-site Scripting') vulnerability in CryoutCreations Fluida allows Stored XSS.This issue affects Fluida: from n/a through 1.8.8.
|
CWE-79
Cross-site Scripting
|
CVE-2024-44054
|
2024-09-23 23:23 |
2024-09-15 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
308736
|
7.8 |
HIGH
Local
|
intel
|
raid_web_console
|
Improper access control in Intel(R) RAID Web Console software for all versions may allow an authenticated user to potentially enable escalation of privilege via local access.
|
NVD-CWE-noinfo
|
CVE-2024-34543
|
2024-09-23 23:17 |
2024-09-17 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
308737
|
5.7 |
MEDIUM
Adjacent
|
intel
|
raid_web_console
|
Improper access control in Intel(R) RAID Web Console software all versions may allow an authenticated user to potentially enable denial of service via adjacent access.
|
NVD-CWE-noinfo
|
CVE-2024-36261
|
2024-09-23 23:16 |
2024-09-17 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
308738
|
5.7 |
MEDIUM
Adjacent
|
intel
|
raid_web_console
|
Improper access control in Intel(R) RAID Web Console all versions may allow an authenticated user to potentially enable denial of service via adjacent access.
|
NVD-CWE-noinfo
|
CVE-2024-36247
|
2024-09-23 23:16 |
2024-09-17 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
308739
|
5.7 |
MEDIUM
Adjacent
|
intel
|
raid_web_console
|
Improper input validation in some Intel(R) RAID Web Console software all versions may allow an authenticated user to potentially enable information disclosure via adjacent access.
|
NVD-CWE-noinfo
|
CVE-2024-34545
|
2024-09-23 23:13 |
2024-09-17 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
308740
|
6.5 |
MEDIUM
Adjacent
|
espressif
|
esp-now
|
ESP-NOW Component provides a connectionless Wi-Fi communication protocol. An replay attacks vulnerability was discovered in the implementation of the ESP-NOW because the caches is not differentiated …
|
CWE-345
Insufficient Verification of Data Authenticity
|
CVE-2024-42483
|
2024-09-23 23:06 |
2024-09-13 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|