|
309041
|
7.2 |
HIGH
Network
|
cisco
|
unified_computing_system
|
A vulnerability in the Redfish API of Cisco UCS B-Series, Cisco UCS Managed C-Series, and Cisco UCS X-Series Servers could allow an authenticated, remote attacker with administrative privileges to pe…
|
CWE-77
Command Injection
|
CVE-2024-20365
|
2024-10-8 23:28 |
2024-10-3 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
309042
|
6.1 |
MEDIUM
Network
|
sulu
|
sulu
|
Sulu is a PHP content management system. This vulnerability allows an attacker to inject arbitrary HTML/JavaScript code through the media download URL in Sulu CMS. It affects the SuluMediaBundle comp…
|
CWE-79
Cross-site Scripting
|
CVE-2024-47617
|
2024-10-8 23:23 |
2024-10-4 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
309043
|
5.9 |
MEDIUM
Network
|
cisco
|
nexus_dashboard_orchestrator
|
A vulnerability in the SSL/TLS implementation of Cisco Nexus Dashboard Orchestrator (NDO) could allow an unauthenticated, remote attacker to intercept sensitive information from an affected device.&n…
|
CWE-295
Improper Certificate Validation
|
CVE-2024-20385
|
2024-10-8 23:22 |
2024-10-3 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
309044
|
7.5 |
HIGH
Network
|
hypestudio
|
social_web_suite
|
The Social Web Suite – Social Media Auto Post, Social Media Auto Publish plugin for WordPress is vulnerable to Directory Traversal in all versions up to, and including, 4.1.11 via the download_log fu…
|
CWE-22
Path Traversal
|
CVE-2024-8352
|
2024-10-8 23:17 |
2024-10-3 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
309045
|
8.8 |
HIGH
Network
|
cisco
|
nexus_dashboard_fabric_controller
|
A vulnerability in the REST API and web UI of Cisco Nexus Dashboard Fabric Controller (NDFC) could allow an authenticated, low-privileged, remote attacker to perform a command injection attack agains…
|
CWE-77
Command Injection
|
CVE-2024-20432
|
2024-10-8 23:10 |
2024-10-3 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
309046
|
5.4 |
MEDIUM
Network
|
cisco
|
nexus_dashboard nexus_dashboard_fabric_controller
|
A vulnerability in the REST API endpoints of Cisco NDFC could allow an authenticated, low-privileged, remote attacker to read or write files on an affected device.
This vulnerability exists becaus…
|
CWE-862
Missing Authorization
|
CVE-2024-20438
|
2024-10-8 22:54 |
2024-10-3 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
309047
|
9.1 |
CRITICAL
Network
|
cisco
|
rv042_firmware rv042g_firmware rv320_firmware rv325_firmware
|
A vulnerability in the web-based management interface of Cisco Small Business RV042, RV042G, RV320, and RV325 Routers could allow an authenticated, Administrator-level, remote attacker to execute arb…
|
CWE-787
Out-of-bounds Write
|
CVE-2024-20521
|
2024-10-8 22:50 |
2024-10-3 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
309048
|
9.1 |
CRITICAL
Network
|
cisco
|
rv042_firmware rv042g_firmware rv320_firmware rv325_firmware
|
A vulnerability in the web-based management interface of Cisco Small Business RV042, RV042G, RV320, and RV325 Routers could allow an authenticated, Administrator-level, remote attacker to execute arb…
|
CWE-787
Out-of-bounds Write
|
CVE-2024-20520
|
2024-10-8 22:50 |
2024-10-3 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
309049
|
9.1 |
CRITICAL
Network
|
cisco
|
rv042_firmware rv042g_firmware rv320_firmware rv325_firmware
|
A vulnerability in the web-based management interface of Cisco Small Business RV042, RV042G, RV320, and RV325 Routers could allow an authenticated, Administrator-level, remote attacker to execute arb…
|
CWE-787
Out-of-bounds Write
|
CVE-2024-20519
|
2024-10-8 22:50 |
2024-10-3 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
309050
|
9.1 |
CRITICAL
Network
|
cisco
|
rv042_firmware rv042g_firmware rv320_firmware rv325_firmware
|
A vulnerability in the web-based management interface of Cisco Small Business RV042, RV042G, RV320, and RV325 Routers could allow an authenticated, Administrator-level, remote attacker to execute arb…
|
CWE-787
Out-of-bounds Write
|
CVE-2024-20518
|
2024-10-8 22:50 |
2024-10-3 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|