|
308141
|
8.8 |
HIGH
Network
|
oretnom23
|
employee_and_visitor_gate_pass_logging_system
|
A vulnerability was found in SourceCodester Employee and Visitor Gate Pass Logging System 1.0. It has been rated as critical. This issue affects some unknown processing of the file /admin/maintenance…
|
CWE-89
SQL Injection
|
CVE-2024-9315
|
2024-10-1 22:33 |
2024-09-29 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
308142
|
8.8 |
HIGH
Network
|
oretnom23
|
online_eyewear_shop
|
A vulnerability classified as critical was found in SourceCodester Online Eyewear Shop 1.0. Affected by this vulnerability is the function delete_category of the file /classes/Master.php?f=delete_cat…
|
CWE-89
SQL Injection
|
CVE-2024-9317
|
2024-10-1 22:32 |
2024-09-29 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
308143
|
9.8 |
CRITICAL
Network
|
mayurik
|
advocate_office_management_system
|
A vulnerability, which was classified as critical, has been found in SourceCodester Advocate Office Management System 1.0. Affected by this issue is some unknown functionality of the file /control/ac…
|
CWE-89
SQL Injection
|
CVE-2024-9318
|
2024-10-1 22:31 |
2024-09-29 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
308144
|
8.8 |
HIGH
Network
|
rems
|
online_timesheet_app
|
A vulnerability, which was classified as critical, was found in SourceCodester Online Timesheet App 1.0. This affects an unknown part of the file /endpoint/delete-timesheet.php. The manipulation of t…
|
CWE-89
SQL Injection
|
CVE-2024-9319
|
2024-10-1 22:29 |
2024-09-29 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
308145
|
5.3 |
MEDIUM
Network
|
oretnom23
|
railway_reservation_system
|
A vulnerability was found in SourceCodester Online Railway Reservation System 1.0 and classified as critical. This issue affects some unknown processing of the file /admin/inquiries/view_details.php.…
|
NVD-CWE-noinfo
|
CVE-2024-9321
|
2024-10-1 22:28 |
2024-09-29 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
308146
|
5.4 |
MEDIUM
Network
|
rems
|
online_timesheet_app
|
A vulnerability has been found in SourceCodester Online Timesheet App 1.0 and classified as problematic. This vulnerability affects unknown code of the file /endpoint/add-timesheet.php of the compone…
|
CWE-79
Cross-site Scripting
|
CVE-2024-9320
|
2024-10-1 22:28 |
2024-09-29 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
308147
|
2.9 |
LOW
Physics
|
opensc_project redhat
|
opensc enterprise_linux
|
A heap-based buffer overflow vulnerability was found in the libopensc OpenPGP driver. A crafted USB device or smart card with malicious responses to the APDUs during the card enrollment process using…
|
CWE-787
Out-of-bounds Write
|
CVE-2024-8443
|
2024-10-1 22:15 |
2024-09-10 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
308148
|
5.4 |
MEDIUM
Network
|
mayurik
|
free_and_open_source_inventory_management_system
|
A vulnerability was found in SourceCodester Inventory Management System 1.0. It has been declared as problematic. Affected by this vulnerability is an unknown functionality of the file /app/action/ad…
|
CWE-79
Cross-site Scripting
|
CVE-2024-9323
|
2024-10-1 21:55 |
2024-09-29 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
308149
|
9.8 |
CRITICAL
Network
|
endress
|
echo_curve_viewer fieldcare_sfe500_package field_xpert_smt79_firmware field_xpert_smt77_firmware field_xpert_smt70_firmware field_xpert_smt50_firmware
|
An unauthenticated remote attacker can run malicious c# code included in curve files and execute commands in the users context.
|
CWE-94
Code Injection
|
CVE-2024-6596
|
2024-10-1 21:26 |
2024-09-10 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
308150
|
9.8 |
CRITICAL
Network
|
openfga
|
openfga
|
OpenFGA is an authorization/permission engine. OpenFGA v1.5.7 and v1.5.8 are vulnerable to authorization bypass when calling Check API with a model that uses `but not` and `from` expressions and a us…
|
CWE-863
Incorrect Authorization
|
CVE-2024-42473
|
2024-10-1 21:21 |
2024-08-12 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|