|
312391
|
8.8 |
HIGH
Network
|
zohocorp
|
manageengine_adaudit_plus
|
Zohocorp ManageEngine ADAudit Plus versions below 8000 are vulnerable to the authenticated SQL injection in aggregate reports option.
|
CWE-89
SQL Injection
|
CVE-2024-5490
|
2024-08-27 23:36 |
2024-08-23 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
312392
|
- |
|
-
|
-
|
A cross-site scripting (XSS) vulnerability in the Create Product function of fastapi-admin pro v0.1.4 allows attackers to execute arbitrary web scripts or HTML via a crafted payload injected into the…
|
-
|
CVE-2024-42816
|
2024-08-27 23:35 |
2024-08-27 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
312393
|
6.1 |
MEDIUM
Network
|
zohocorp
|
manageengine_servicedesk_plus_msp manageengine_servicedesk_plus manageengine_supportcenter_plus
|
An Stored Cross-site Scripting vulnerability in request module affects Zohocorp ManageEngine ServiceDesk Plus, ServiceDesk Plus MSP and SupportCenter Plus.This issue affects ServiceDesk Plus versions…
|
CWE-79
Cross-site Scripting
|
CVE-2024-41150
|
2024-08-27 23:35 |
2024-08-24 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
312394
|
8.8 |
HIGH
Network
|
zohocorp
|
manageengine_adaudit_plus
|
Zohocorp ManageEngine ADAudit Plus versions below 8121 are vulnerable to the authenticated SQL injection in account lockout report.
|
CWE-89
SQL Injection
|
CVE-2024-5467
|
2024-08-27 23:35 |
2024-08-23 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
312395
|
6.1 |
MEDIUM
Network
|
blood_bank_system_project
|
blood_bank_system
|
A vulnerability has been found in code-projects Blood Bank System 1.0 and classified as problematic. Affected by this vulnerability is an unknown functionality of the file /login.php of the component…
|
CWE-79
Cross-site Scripting
|
CVE-2024-8174
|
2024-08-27 23:32 |
2024-08-27 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
312396
|
9.8 |
CRITICAL
Network
|
tenda
|
ax1806_firmware
|
Tenda AX1806 v1.0.0.1 contains a stack overflow via the iptv.stb.mode parameter in the function setIptvInfo.
|
CWE-787
Out-of-bounds Write
|
CVE-2024-44557
|
2024-08-27 23:30 |
2024-08-27 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
312397
|
9.8 |
CRITICAL
Network
|
tenda
|
ax1806_firmware
|
Tenda AX1806 v1.0.0.1 contains a stack overflow via the iptv.city.vlan parameter in the function setIptvInfo.
|
CWE-787
Out-of-bounds Write
|
CVE-2024-44555
|
2024-08-27 23:29 |
2024-08-27 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
312398
|
9.8 |
CRITICAL
Network
|
tenda
|
ax1806_firmware
|
Tenda AX1806 v1.0.0.1 contains a stack overflow via the iptv.stb.mode parameter in the function formGetIptv.
|
CWE-787
Out-of-bounds Write
|
CVE-2024-44553
|
2024-08-27 23:29 |
2024-08-27 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
312399
|
9.8 |
CRITICAL
Network
|
tenda
|
ax1806_firmware
|
Tenda AX1806 v1.0.0.1 contains a stack overflow via the adv.iptv.stballvlans parameter in the function formGetIptv.
|
CWE-787
Out-of-bounds Write
|
CVE-2024-44552
|
2024-08-27 23:29 |
2024-08-27 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
312400
|
9.8 |
CRITICAL
Network
|
tenda
|
ax1806_firmware
|
Tenda AX1806 v1.0.0.1 contains a stack overflow via the iptv.city.vlan parameter in the function formGetIptv.
|
CWE-787
Out-of-bounds Write
|
CVE-2024-44551
|
2024-08-27 23:29 |
2024-08-27 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|