|
308801
|
- |
|
-
|
-
|
IoT Haat Smart Plug IH-IN-16A-S v5.16.1 is vulnerable to Authentication Bypass by Capture-replay.
|
-
|
CVE-2024-46041
|
2024-10-8 02:47 |
2024-10-8 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
308802
|
- |
|
-
|
-
|
A vulnerability has been discovered in Winhex affecting version 16.1 SR-1 and 20.4. This vulnerability consists of a buffer overflow controlling the Structured Exception Handler (SEH) registers. This…
|
CWE-119
Incorrect Access of Indexable Resource ('Range Error')
|
CVE-2023-6362
|
2024-10-8 02:47 |
2024-10-8 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
308803
|
- |
|
-
|
-
|
A vulnerability has been discovered in Winhex affecting version 16.1 SR-1 and 20.4. This vulnerability consists of a buffer overflow controlling the Structured Exception Handler (SEH) registers. This…
|
CWE-119
Incorrect Access of Indexable Resource ('Range Error')
|
CVE-2023-6361
|
2024-10-8 02:47 |
2024-10-8 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
308804
|
5.4 |
MEDIUM
Network
|
-
|
-
|
Adobe Experience Manager versions 6.5.20 and earlier are affected by a stored Cross-Site Scripting (XSS) vulnerability that could be abused by a low-privileged attacker to inject malicious scripts in…
|
CWE-79
Cross-site Scripting
|
CVE-2024-45153
|
2024-10-8 02:47 |
2024-10-7 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
308805
|
- |
|
-
|
-
|
The E2EE password entropy generated by Rocket.Chat Mobile prior to version 4.5.1 is insufficient, allowing attackers to crack it if they have the appropriate time and resources.
|
-
|
CVE-2024-42027
|
2024-10-8 02:47 |
2024-10-7 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
308806
|
- |
|
-
|
-
|
Elsight – CWE-78: Improper Neutralization of Special Elements used in an OS Command ('OS Command Injection')
|
CWE-78
OS Command
|
CVE-2024-45252
|
2024-10-8 02:47 |
2024-10-6 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
308807
|
- |
|
-
|
-
|
Elsight – CWE-78: Improper Neutralization of Special Elements used in an OS Command ('OS Command Injection')
|
-
|
CVE-2024-45251
|
2024-10-8 02:47 |
2024-10-6 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
308808
|
- |
|
-
|
-
|
ZKteco – CWE 200 Exposure of Sensitive Information to an Unauthorized Actor
|
CWE-200
Information Exposure
|
CVE-2024-45250
|
2024-10-8 02:47 |
2024-10-6 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
308809
|
- |
|
-
|
-
|
Cavok – CWE-89: Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection')
|
CWE-89
SQL Injection
|
CVE-2024-45249
|
2024-10-8 02:47 |
2024-10-6 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
308810
|
- |
|
-
|
-
|
Multi-DNC – CWE-35: Path Traversal: '.../...//'
|
CWE-35
Path Traversal: '.../...//'
|
CVE-2024-45248
|
2024-10-8 02:47 |
2024-10-6 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|