|
312091
|
7.5 |
HIGH
Network
|
fujitsu
|
ipcom_ve2_ls_100_firmware ipcom_ve2_ls_200_firmware ipcom_ve2_ls_220_firmware ipcom_ve2_ls_plus_100_firmware ipcom_ve2_ls_plus_200_firmware ipcom_ve2_ls_plus_220_firmware ipcom_ve2_…
|
Observable timing discrepancy issue exists in IPCOM EX2 Series V01L02NF0001 to V01L06NF0401, V01L20NF0001 to V01L20NF0401, V02L20NF0001 to V02L21NF0301, and IPCOM VE2 Series V01L04NF0001 to V01L06NF0…
|
CWE-203
Information Exposure Through Discrepancy
|
CVE-2024-39921
|
2024-09-19 23:59 |
2024-09-4 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
312092
|
7.8 |
HIGH
Local
|
adobe
|
acrobat acrobat_dc acrobat_reader acrobat_reader_dc
|
Acrobat Reader versions 24.002.21005, 24.001.30159, 20.005.30655, 24.003.20054 and earlier are affected by a Type Confusion vulnerability that could result in arbitrary code execution in the context …
|
CWE-843
Type Confusion
|
CVE-2024-45112
|
2024-09-19 23:56 |
2024-09-13 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
312093
|
7.5 |
HIGH
Network
|
utarit
|
soliclub
|
Exposure of Sensitive Information to an Unauthorized Actor vulnerability in Utarit Information SoliClub allows Retrieve Embedded Sensitive Data.This issue affects SoliClub: before 4.4.0 for iOS, befo…
|
NVD-CWE-noinfo
|
CVE-2024-3305
|
2024-09-19 23:44 |
2024-09-12 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
312094
|
7.5 |
HIGH
Network
|
utarit
|
soliclub
|
Authorization Bypass Through User-Controlled Key vulnerability in Utarit Information SoliClub allows Exploiting Incorrectly Configured Access Control Security Levels.This issue affects SoliClub: befo…
|
CWE-639
Authorization Bypass Through User-Controlled Key
|
CVE-2024-3306
|
2024-09-19 23:43 |
2024-09-12 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
312095
|
5.3 |
MEDIUM
Network
|
emilyploszaj
|
emi
|
EMI v.1.1.10 and before, fixed in v.1.1.11, contains an Improper Validation of Specified Index, Position, or Offset in Input vulnerability. The specific issue is a failure to validate slot index and …
|
CWE-129
Improper Validation of Array Index
|
CVE-2024-41564
|
2024-09-19 23:40 |
2024-08-29 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
312096
|
8.8 |
HIGH
Network
|
zohocorp
|
manageengine_pam360 manageengine_password_manager_pro
|
Zohocorp ManageEngine Password Manager Pro versions before 12431 and ManageEngine PAM360 versions before 7001 are affected by authenticated SQL Injection vulnerability via a global search option.
|
CWE-89
SQL Injection
|
CVE-2024-5546
|
2024-09-19 23:39 |
2024-08-28 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
312097
|
5.4 |
MEDIUM
Network
|
connx
|
esp_hr_management
|
Improper Neutralization of Input During Web Page Generation vulnerability in "Update of Personal Details" form in ConnX ESP HR Management allows Stored XSS attack. An attacker might inject a script t…
|
CWE-79
Cross-site Scripting
|
CVE-2024-7269
|
2024-09-19 23:37 |
2024-08-28 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
312098
|
7.5 |
HIGH
Network
|
rockwellautomation
|
compactlogix_5380_firmware compact_guardlogix_5380_sil_2_firmware compact_guardlogix_5380_sil_3_firmware compactlogix_5480_firmware controllogix_5580_firmware guardlogix_5580_firmware<…
|
A denial-of-service vulnerability exists in the Rockwell Automation affected products when specially crafted packets are sent to the CIP Security Object. If exploited the device will become unavailab…
|
NVD-CWE-noinfo
|
CVE-2024-6077
|
2024-09-19 23:31 |
2024-09-13 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
312099
|
9.8 |
CRITICAL
Network
|
soplanning
|
soplanning
|
A unauthenticated Remote Code Execution (RCE) vulnerability is found in the SO Planning online planning tool. If the public view setting is enabled, a attacker can upload a PHP-file that will be avai…
|
CWE-367
Time-of-check Time-of-use (TOCTOU) Race Condition
|
CVE-2024-27114
|
2024-09-19 23:27 |
2024-09-11 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
312100
|
6.1 |
MEDIUM
Network
|
microfocus
|
edirectory
|
Possible
Improper Neutralization of Input During Web Page Generation Vulnerability
in eDirectory has been discovered in
OpenText™ eDirectory 9.2.3.0000.
|
CWE-79
Cross-site Scripting
|
CVE-2021-22503
|
2024-09-19 23:25 |
2024-09-12 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|