|
314081
|
4.3 |
MEDIUM
Network
|
-
|
-
|
The specific API in TCBServiSign Windows Version from CHANGING Information Technology does does not properly validate the length of server-side input. When a user visits a spoofed website, unauthenti…
|
CWE-121
Stack-based Buffer Overflow
|
CVE-2024-40722
|
2024-08-2 21:59 |
2024-08-2 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
314082
|
8.8 |
HIGH
Network
|
-
|
-
|
The specific API in TCBServiSign Windows Version from CHANGING Information Technology does not properly validate server-side input. When a user visits a spoofed website, unauthenticated remote attack…
|
CWE-20
Improper Input Validation
|
CVE-2024-40721
|
2024-08-2 21:59 |
2024-08-2 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
314083
|
- |
|
-
|
-
|
The specific API in TCBServiSign Windows Version from CHANGING Information Technology does not properly validate server-side input. When a user visits a spoofed website, unauthenticated remote attack…
|
CWE-20
Improper Input Validation
|
CVE-2024-40720
|
2024-08-2 21:59 |
2024-08-2 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
314084
|
6.5 |
MEDIUM
Network
|
-
|
-
|
The encryption strength of the authorization keys in CHANGING Information Technology TCBServiSign Windows Version is insufficient. When a remote attacker tricks a victim into visiting a malicious web…
|
CWE-326
Inadequate Encryption Strength
|
CVE-2024-40719
|
2024-08-2 21:59 |
2024-08-2 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
314085
|
- |
|
-
|
-
|
Soft Serve is a self-hostable Git server for the command line. Prior to 0.7.5, it is possible for a user who can commit files to a repository hosted by Soft Serve to execute arbitrary code via enviro…
|
-
|
CVE-2024-41956
|
2024-08-2 21:59 |
2024-08-2 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
314086
|
- |
|
-
|
-
|
biscuit-rust is the Rust implementation of Biscuit, an authentication and authorization token for microservices architectures. Third-party blocks can be generated without transferring the whole token…
|
-
|
CVE-2024-41949
|
2024-08-2 21:59 |
2024-08-2 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
314087
|
- |
|
-
|
-
|
biscuit-java is the java implementation of Biscuit, an authentication and authorization token for microservices architectures. Third-party blocks can be generated without transferring the whole token…
|
-
|
CVE-2024-41948
|
2024-08-2 21:59 |
2024-08-2 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
314088
|
- |
|
-
|
-
|
Improper Neutralization of Input During Web Page Generation (XSS or 'Cross-site Scripting') vulnerability in BdThemes Element Pack Elementor Addons allows Stored XSS.This issue affects Element Pack E…
|
CWE-79
Cross-site Scripting
|
CVE-2024-39667
|
2024-08-2 21:59 |
2024-08-2 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
314089
|
- |
|
-
|
-
|
Improper Neutralization of Input During Web Page Generation (XSS or 'Cross-site Scripting') vulnerability in YMC Filter & Grids allows Stored XSS.This issue affects Filter & Grids: from n/a through 2…
|
CWE-79
Cross-site Scripting
|
CVE-2024-39665
|
2024-08-2 21:59 |
2024-08-2 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
314090
|
- |
|
-
|
-
|
Improper Neutralization of Input During Web Page Generation (XSS or 'Cross-site Scripting') vulnerability in Modernaweb Studio Black Widgets For Elementor allows Stored XSS.This issue affects Black W…
|
CWE-79
Cross-site Scripting
|
CVE-2024-39662
|
2024-08-2 21:59 |
2024-08-2 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|