|
307891
|
6.1 |
MEDIUM
Network
|
wp-slimstat
|
slimstat_analytics
|
The SlimStat Analytics plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the resource parameter in all versions up to, and including, 5.2.6 due to insufficient input sanitization …
|
CWE-79
Cross-site Scripting
|
CVE-2024-9548
|
2024-10-17 22:46 |
2024-10-15 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
307892
|
5.3 |
MEDIUM
Network
|
xplodedthemes
|
wpide
|
The WPIDE – File Manager & Code Editor plugin for WordPress is vulnerable to Full Path Disclosure in all versions up to, and including, 3.4.9. This is due to the plugin utilizing the PHP-Parser libra…
|
NVD-CWE-noinfo
|
CVE-2024-9546
|
2024-10-17 22:34 |
2024-10-15 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
307893
|
6.5 |
MEDIUM
Adjacent
|
microsoft
|
windows_server_2022_23h2 windows_10_1809 windows_11_21h2 windows_10_21h2 windows_10_22h2 windows_11_23h2 windows_11_24h2 windows_11_22h2 windows_server_2019
|
Windows Mobile Broadband Driver Denial of Service Vulnerability
|
NVD-CWE-noinfo
|
CVE-2024-43559
|
2024-10-17 22:31 |
2024-10-9 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
307894
|
6.5 |
MEDIUM
Adjacent
|
microsoft
|
windows_server_2022_23h2 windows_10_1809 windows_11_21h2 windows_10_21h2 windows_10_22h2 windows_11_23h2 windows_11_24h2 windows_11_22h2 windows_server_2019
|
Windows Mobile Broadband Driver Denial of Service Vulnerability
|
NVD-CWE-noinfo
|
CVE-2024-43558
|
2024-10-17 22:31 |
2024-10-9 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
307895
|
6.5 |
MEDIUM
Adjacent
|
microsoft
|
windows_server_2022_23h2 windows_10_1809 windows_11_21h2 windows_10_21h2 windows_10_22h2 windows_11_23h2 windows_11_24h2 windows_11_22h2 windows_server_2019
|
Windows Mobile Broadband Driver Denial of Service Vulnerability
|
NVD-CWE-noinfo
|
CVE-2024-43557
|
2024-10-17 22:31 |
2024-10-9 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
307896
|
4.9 |
MEDIUM
Network
|
splunk
|
splunk
|
In Splunk Enterprise versions below 9.3.1, 9.2.3, and 9.1.6, the software potentially exposes sensitive HTTP parameters to the `_internal` index. This exposure could happen if you configure the Splun…
|
CWE-532
Inclusion of Sensitive Information in Log Files
|
CVE-2024-45738
|
2024-10-17 22:17 |
2024-10-15 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
307897
|
4.9 |
MEDIUM
Network
|
splunk
|
splunk
|
In Splunk Enterprise versions below 9.3.1, 9.2.3, and 9.1.6, the software potentially exposes plaintext passwords for local native authentication Splunk users. This exposure could happen when you con…
|
CWE-532
Inclusion of Sensitive Information in Log Files
|
CVE-2024-45739
|
2024-10-17 22:16 |
2024-10-15 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
307898
|
5.4 |
MEDIUM
Network
|
splunk
|
splunk splunk_cloud_platform
|
In Splunk Enterprise versions below 9.2.3 and 9.1.6 and Splunk Cloud Platform versions below 9.2.2403, a low-privileged user that does not hold the "admin" or "power" Splunk roles could craft a malic…
|
CWE-79
Cross-site Scripting
|
CVE-2024-45740
|
2024-10-17 22:14 |
2024-10-15 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
307899
|
5.4 |
MEDIUM
Network
|
splunk
|
splunk_cloud_platform splunk
|
In Splunk Enterprise versions below 9.2.3 and 9.1.6 and Splunk Cloud Platform versions below 9.2.2403.108 and 9.1.2312.205, a low-privileged user that does not hold the "admin" or "power" Splunk role…
|
CWE-79
Cross-site Scripting
|
CVE-2024-45741
|
2024-10-17 22:12 |
2024-10-15 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
307900
|
8.0 |
HIGH
Network
|
splunk
|
splunk
|
In Splunk Enterprise for Windows versions below 9.3.1, 9.2.3, and 9.1.6, a low-privileged user that does not hold the "admin" or "power" Splunk roles could write a file to the Windows system root dir…
|
CWE-22
Path Traversal
|
CVE-2024-45731
|
2024-10-17 22:09 |
2024-10-15 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|