|
309051
|
8.1 |
HIGH
Network
|
master-nan
|
sweet-cms
|
A vulnerability was found in master-nan Sweet-CMS up to 5f441e022b8876f07cde709c77b5be6d2f262e3f. It has been rated as problematic. This issue affects the function LogHandler of the file middleware/l…
|
CWE-117
Improper Output Neutralization for Logs
|
CVE-2024-8334
|
2024-09-20 00:39 |
2024-08-30 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
309052
|
9.8 |
CRITICAL
Network
|
openrapid
|
rapidcms
|
A vulnerability classified as critical has been found in OpenRapid RapidCMS up to 1.3.1. Affected is an unknown function of the file /resource/runlogon.php. The manipulation of the argument username …
|
CWE-89
SQL Injection
|
CVE-2024-8335
|
2024-09-20 00:31 |
2024-08-30 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
309053
|
8.1 |
HIGH
Network
|
eclipse
|
eclipse_dataspace_components
|
In Eclipse Dataspace Components, from version 0.5.0 and before version 0.9.0, the ConsumerPullTransferTokenValidationApiController does not check for token validity (expiry, not-before, issuance date…
|
CWE-287
Improper Authentication
|
CVE-2024-8642
|
2024-09-20 00:18 |
2024-09-11 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
309054
|
7.5 |
HIGH
Network
|
hoverfly
|
hoverfly
|
Hoverfly is a lightweight service virtualization/ API simulation / API mocking tool for developers and testers. The `/api/v2/simulation` POST handler allows users to create new simulation views from …
|
CWE-22
Path Traversal
|
CVE-2024-45388
|
2024-09-20 00:18 |
2024-09-3 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
309055
|
4.6 |
MEDIUM
Physics
|
idec
|
kit-fc6a-24-kc_firmware kit-fc6a-24-pc_firmware kit-fc6a-24-ra_firmware kit-fc6a-24-ra-hg1g_firmware kit-fc6a-24-ra-hg2g-5tn_firmware kit-fc6a-24-ra-hg2g-5tt_firmware kit-fc6a-24-rc…
|
Cleartext transmission of sensitive information vulnerability exists in multiple IDEC PLCs. If an attacker sends a specific command to PLC's serial communication port, user credentials may be obtaine…
|
CWE-319
Cleartext Transmission of Sensitive Information
|
CVE-2024-41927
|
2024-09-20 00:10 |
2024-09-4 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
309056
|
7.8 |
HIGH
Local
|
adobe
|
acrobat acrobat_dc acrobat_reader acrobat_reader_dc
|
Acrobat Reader versions 24.002.21005, 24.001.30159, 20.005.30655, 24.003.20054 and earlier are affected by a Use After Free vulnerability that could result in arbitrary code execution in the context …
|
CWE-416
Use After Free
|
CVE-2024-41869
|
2024-09-20 00:09 |
2024-09-13 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
309057
|
7.5 |
HIGH
Network
|
fujitsu
|
ipcom_ve2_ls_100_firmware ipcom_ve2_ls_200_firmware ipcom_ve2_ls_220_firmware ipcom_ve2_ls_plus_100_firmware ipcom_ve2_ls_plus_200_firmware ipcom_ve2_ls_plus_220_firmware ipcom_ve2_…
|
Observable timing discrepancy issue exists in IPCOM EX2 Series V01L02NF0001 to V01L06NF0401, V01L20NF0001 to V01L20NF0401, V02L20NF0001 to V02L21NF0301, and IPCOM VE2 Series V01L04NF0001 to V01L06NF0…
|
CWE-203
Information Exposure Through Discrepancy
|
CVE-2024-39921
|
2024-09-19 23:59 |
2024-09-4 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
309058
|
7.8 |
HIGH
Local
|
adobe
|
acrobat acrobat_dc acrobat_reader acrobat_reader_dc
|
Acrobat Reader versions 24.002.21005, 24.001.30159, 20.005.30655, 24.003.20054 and earlier are affected by a Type Confusion vulnerability that could result in arbitrary code execution in the context …
|
CWE-843
Type Confusion
|
CVE-2024-45112
|
2024-09-19 23:56 |
2024-09-13 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
309059
|
7.5 |
HIGH
Network
|
utarit
|
soliclub
|
Exposure of Sensitive Information to an Unauthorized Actor vulnerability in Utarit Information SoliClub allows Retrieve Embedded Sensitive Data.This issue affects SoliClub: before 4.4.0 for iOS, befo…
|
NVD-CWE-noinfo
|
CVE-2024-3305
|
2024-09-19 23:44 |
2024-09-12 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
309060
|
7.5 |
HIGH
Network
|
utarit
|
soliclub
|
Authorization Bypass Through User-Controlled Key vulnerability in Utarit Information SoliClub allows Exploiting Incorrectly Configured Access Control Security Levels.This issue affects SoliClub: befo…
|
CWE-639
Authorization Bypass Through User-Controlled Key
|
CVE-2024-3306
|
2024-09-19 23:43 |
2024-09-12 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|