|
312851
|
5.3 |
MEDIUM
Network
|
f5
|
big-ip_next_central_manager
|
BIG-IP Next Central Manager may allow an attacker to lock out an account that has never been logged in. Note: Software versions which have reached End of Technical Support (EoTS) are not evaluated.
|
CWE-287
Improper Authentication
|
CVE-2024-37028
|
2024-08-21 04:26 |
2024-08-15 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
312852
|
7.5 |
HIGH
Network
|
f5
|
big-ip_access_policy_manager big-ip_advanced_firewall_manager big-ip_advanced_web_application_firewall big-ip_analytics big-ip_application_acceleration_manager big-ip_application_secur…
|
In BIG-IP tenants running on r2000 and r4000 series hardware, or BIG-IP Virtual Edition (VEs) using Intel E810 SR-IOV NIC, undisclosed traffic can cause an increase in memory resource utilization.
…
|
CWE-770
Allocation of Resources Without Limits or Throttling
|
CVE-2024-41727
|
2024-08-21 04:25 |
2024-08-15 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
312853
|
5.5 |
MEDIUM
Local
|
xpdfreader
|
xpdf
|
In Xpdf 4.05 (and earlier), a PDF object loop in a pattern resource leads to infinite recursion and a stack overflow.
|
CWE-674
Uncontrolled Recursion
|
CVE-2024-7866
|
2024-08-21 04:23 |
2024-08-16 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
312854
|
9.8 |
CRITICAL
Network
|
kevinwong
|
online_food_ordering_system
|
A vulnerability was found in itsourcecode Online Food Ordering System 1.0. It has been rated as critical. Affected by this issue is some unknown functionality of the file /addcategory.php. The manipu…
|
CWE-89
SQL Injection
|
CVE-2024-7838
|
2024-08-21 04:16 |
2024-08-16 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
312855
|
7.5 |
HIGH
Network
|
celsiusbenelux
|
comfortkey
|
A Local File Inclusion vulnerability has been found in ComfortKey, a product of Celsius Benelux. Using this vulnerability, an unauthenticated attacker may retrieve sensitive information about the und…
|
CWE-22
Path Traversal
|
CVE-2024-27120
|
2024-08-21 04:08 |
2024-08-15 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
312856
|
8.8 |
HIGH
Network
|
rems
|
task_progress_tracker
|
A vulnerability was found in SourceCodester Task Progress Tracker 1.0. It has been classified as critical. Affected is an unknown function of the file /endpoint/delete-task.php. The manipulation of t…
|
CWE-89
SQL Injection
|
CVE-2024-7792
|
2024-08-21 04:08 |
2024-08-15 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
312857
|
- |
|
-
|
-
|
Keyfactor Command 10.5.x before 10.5.1 and 11.5.x before 11.5.1 allows SQL Injection which could result in code execution and escalation of privileges.
|
-
|
CVE-2024-33872
|
2024-08-21 03:35 |
2024-08-20 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
312858
|
- |
|
-
|
-
|
Rejected reason: ** REJECT ** DO NOT USE THIS CANDIDATE NUMBER. Reason: This candidate was issued in error. Notes: All references and descriptions in this candidate have been removed to prevent accid…
|
-
|
CVE-2023-1673
|
2024-08-21 03:15 |
2024-08-21 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
312859
|
8.8 |
HIGH
Network
|
zte
|
zxv10_et301_firmware zxv10_xt802_firmware
|
There is a permission and access control vulnerability of ZTE's ZXV10 XT802/ET301 product.Attackers with common permissions can log in the terminal web and change the password of the administrator il…
|
NVD-CWE-noinfo
|
CVE-2024-22069
|
2024-08-21 02:22 |
2024-08-8 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
312860
|
9.8 |
CRITICAL
Network
|
vonets
|
var1200-h_firmware var1200-l_firmware var600-h_firmware vap11ac_firmware vap11g-500s_firmware vbg1200_firmware vap11s-5g_firmware vap11s_firmware var11n-300_firmware vap11g…
|
Stack-based buffer overflow vulnerabilities affecting Vonets
industrial wifi bridge relays and wifi bridge repeaters, software versions
3.3.23.6.9 and prior, enable an unauthenticated remote …
|
CWE-787
Out-of-bounds Write
|
CVE-2024-39791
|
2024-08-21 02:15 |
2024-08-12 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|