|
310031
|
9.8 |
CRITICAL
Network
|
heyewei
|
jfinalcms
|
A vulnerability was found in JFinalCMS up to 1.0. It has been rated as critical. This issue affects the function delete of the file /admin/template/edit. The manipulation of the argument name leads t…
|
CWE-22
Path Traversal
|
CVE-2024-8782
|
2024-09-19 10:46 |
2024-09-14 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
310032
|
6.5 |
MEDIUM
Adjacent
|
zephyrproject
|
zephyr
|
BT: Encryption procedure host vulnerability
|
NVD-CWE-noinfo
|
CVE-2024-5754
|
2024-09-19 10:44 |
2024-09-14 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
310033
|
6.5 |
MEDIUM
Adjacent
|
zephyrproject
|
zephyr
|
BT: Missing length checks of net_buf in rfcomm_handle_data
|
CWE-191
Integer Underflow (Wrap or Wraparound)
|
CVE-2024-6258
|
2024-09-19 10:40 |
2024-09-14 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
310034
|
9.8 |
CRITICAL
Network
|
mayurik
|
best_free_law_office_management
|
SQL Injection vulnerability in Best Free Law Office Management Software-v1.0 allows an attacker to execute arbitrary code and obtain sensitive information via a crafted payload to the kortex_lite/con…
|
CWE-89
SQL Injection
|
CVE-2024-44430
|
2024-09-19 10:38 |
2024-09-14 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
310035
|
8.8 |
HIGH
Network
|
qdocs
|
smart_school
|
A vulnerability classified as critical was found in QDocs Smart School Management System 7.0.0. Affected by this vulnerability is an unknown functionality of the file /user/chat/mynewuser of the comp…
|
CWE-89
SQL Injection
|
CVE-2024-8784
|
2024-09-19 10:38 |
2024-09-14 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
310036
|
5.4 |
MEDIUM
Network
|
opentibiabr
|
myaac
|
A vulnerability classified as problematic has been found in OpenTibiaBR MyAAC up to 0.8.16. Affected is an unknown function of the file system/pages/forum/new_post.php of the component Post Reply Han…
|
CWE-79
Cross-site Scripting
|
CVE-2024-8783
|
2024-09-19 10:38 |
2024-09-14 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
310037
|
6.5 |
MEDIUM
Adjacent
|
zephyrproject
|
zephyr
|
BT: Unchecked user input in bap_broadcast_assistant
|
CWE-787
Out-of-bounds Write
|
CVE-2024-5931
|
2024-09-19 10:35 |
2024-09-14 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
310038
|
6.5 |
MEDIUM
Adjacent
|
zephyrproject
|
zephyr
|
BT:Classic: Multiple missing buf length checks
|
CWE-369
Divide By Zero
|
CVE-2024-6135
|
2024-09-19 10:34 |
2024-09-14 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
310039
|
6.5 |
MEDIUM
Adjacent
|
zephyrproject
|
zephyr
|
BT: HCI: adv_ext_report Improper discarding in adv_ext_report
|
CWE-787
Out-of-bounds Write
|
CVE-2024-6259
|
2024-09-19 10:33 |
2024-09-14 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
310040
|
6.5 |
MEDIUM
Adjacent
|
zephyrproject
|
zephyr
|
BT: Classic: SDP OOB access in get_att_search_list
|
CWE-787
Out-of-bounds Write
|
CVE-2024-6137
|
2024-09-19 10:33 |
2024-09-14 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|