|
304561
|
7.8 |
HIGH
Local
|
microsoft
|
windows_server_2008 windows_server_2012 windows_server_2025 windows_10_1809 windows_server_2019 windows_server_2022 windows_10_21h2 windows_11_22h2 windows_10_22h2 windows_…
|
Windows NT OS Kernel Elevation of Privilege Vulnerability
|
NVD-CWE-noinfo
|
CVE-2024-43623
|
2024-11-16 08:58 |
2024-11-13 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
304562
|
8.8 |
HIGH
Network
|
microsoft
|
windows_server_2008 windows_server_2012 windows_server_2025 windows_10_1809 windows_server_2019 windows_server_2022 windows_10_21h2 windows_11_22h2 windows_10_22h2 windows_…
|
Windows Telephony Service Remote Code Execution Vulnerability
|
NVD-CWE-noinfo
|
CVE-2024-43622
|
2024-11-16 08:58 |
2024-11-13 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
304563
|
8.1 |
HIGH
Local
|
microsoft
|
windows_server_2025 windows_server_2022 windows_11_22h2 windows_11_23h2 windows_server_2022_23h2 windows_11_24h2
|
Microsoft Windows VMSwitch Elevation of Privilege Vulnerability
|
NVD-CWE-noinfo
|
CVE-2024-43625
|
2024-11-16 08:57 |
2024-11-13 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
304564
|
4.3 |
MEDIUM
Network
|
get-simple
|
getsimplecms
|
A vulnerability was found in GetSimpleCMS 3.3.16 and classified as problematic. This issue affects some unknown processing of the file /admin/profile.php. The manipulation leads to cross-site request…
|
CWE-352
Origin Validation Error
|
CVE-2024-11125
|
2024-11-16 08:01 |
2024-11-13 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
304565
|
6.1 |
MEDIUM
Network
|
airties
|
air4443_firmware
|
Improper Neutralization of Input During Web Page Generation (XSS or 'Cross-site Scripting') vulnerability in AirTies Air4443 Firmware allows Cross-Site Scripting (XSS).This issue affects Air4443 Firm…
|
CWE-79
Cross-site Scripting
|
CVE-2024-9477
|
2024-11-16 07:54 |
2024-11-14 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
304566
|
5.4 |
MEDIUM
Network
|
siemens
|
ozw672_firmware ozw772_firmware
|
A vulnerability has been identified in OZW672 (All versions < V5.2), OZW772 (All versions < V5.2). The user accounts tab of affected devices is vulnerable to stored cross-site scripting (XSS) attacks…
|
CWE-79
Cross-site Scripting
|
CVE-2024-36140
|
2024-11-16 07:53 |
2024-11-12 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
304567
|
4.8 |
MEDIUM
Network
|
publiccms
|
publiccms
|
A vulnerability was found in Public CMS 5.202406.d and classified as problematic. This issue affects some unknown processing of the file /admin/cmsVote/save of the component Voting Management. The ma…
|
CWE-79
Cross-site Scripting
|
CVE-2024-11175
|
2024-11-16 07:50 |
2024-11-14 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
304568
|
7.8 |
HIGH
Local
|
siemens
|
spectrum_power_7
|
A vulnerability has been identified in Spectrum Power 7 (All versions < V24Q3). The affected product contains several root-owned SUID binaries that could allow an authenticated local attacker to esca…
|
NVD-CWE-noinfo
|
CVE-2024-29119
|
2024-11-16 07:50 |
2024-11-12 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
304569
|
7.2 |
HIGH
Network
|
timgeyssens
|
ui-o-matic
|
A vulnerability has been found in TimGeyssens UIOMatic 5 and classified as critical. This vulnerability affects unknown code of the file /src/UIOMatic/wwwroot/backoffice/resources/uioMaticObject.r. T…
|
CWE-89
SQL Injection
|
CVE-2024-11124
|
2024-11-16 07:47 |
2024-11-12 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
304570
|
- |
|
-
|
-
|
Sercomm Model Etisalat Model S3- AC2100 is affected by Cross Site Scripting (XSS) via the firmware update page.
|
-
|
CVE-2021-27703
|
2024-11-16 07:35 |
2024-11-13 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|