|
315321
|
- |
|
-
|
-
|
An authenticated user can download sensitive files from NX, EX, FX, AX, IVX, and CMS using path traversal for the URL of network anomaly download_artifact.
|
CWE-35
Path Traversal: '.../...//'
|
CVE-2024-7608
|
2024-08-28 18:15 |
2024-08-27 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
315322
|
- |
|
-
|
-
|
Dell Client Platform BIOS contains a Use of Default Cryptographic Key Vulnerability. A high privileged attacker with local access could potentially exploit this vulnerability, leading to Secure Boot…
|
CWE-1392
Use of Default Credentials
|
CVE-2024-39584
|
2024-08-28 15:15 |
2024-08-28 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
315323
|
- |
|
-
|
-
|
Dell Dock Firmware and Dell Client Platform contain an Improper Link Resolution vulnerability during installation resulting in arbitrary folder deletion, which could lead to Privilege Escalation or D…
|
CWE-59
Link Following
|
CVE-2023-43078
|
2024-08-28 15:15 |
2024-08-28 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
315324
|
5.3 |
MEDIUM
Network
|
-
|
-
|
The Mollie Payments for WooCommerce plugin for WordPress is vulnerable to information exposure in all versions up to, and including, 7.7.0. This is due to the error reporting being enabled by default…
|
CWE-200
Information Exposure
|
CVE-2024-6448
|
2024-08-28 13:15 |
2024-08-28 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
315325
|
9.8 |
CRITICAL
Network
|
-
|
-
|
The Ultimate Store Kit Elementor Addons, Woocommerce Builder, EDD Builder, Elementor Store Builder, Product Grid, Product Table, Woocommerce Slider plugin is vulnerable to PHP Object Injection via de…
|
-
|
CVE-2024-8030
|
2024-08-28 12:15 |
2024-08-28 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
315326
|
5.3 |
MEDIUM
Network
|
-
|
-
|
The Relevanssi Live Ajax Search plugin for WordPress is vulnerable to argument injection in all versions up to, and including, 2.4. This is due to insufficient validation of input supplied via POST d…
|
-
|
CVE-2024-7573
|
2024-08-28 12:15 |
2024-08-28 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
315327
|
- |
|
-
|
-
|
A Reflected Cross Site Scripting (XSS) vulnerability was found in "/music/controller.php?page=test" in Kashipara Music Management System v1.0. This vulnerability allows remote attackers to execute ar…
|
-
|
CVE-2024-42789
|
2024-08-28 05:35 |
2024-08-27 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
315328
|
- |
|
-
|
-
|
A SQL Injection vulnerability exists in the Graph Template component in Centreon Web 24.04.x before 24.04.3, 23.10.x before 23.10.13, 23.04.x before 23.04.19, and 22.10.x before 22.10.23.
|
-
|
CVE-2024-33854
|
2024-08-28 05:35 |
2024-08-24 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
315329
|
4.3 |
MEDIUM
Network
|
google
|
chrome
|
Inappropriate implementation in WebApp Installs in Google Chrome on Windows prior to 128.0.6613.84 allowed an attacker who convinced a user to install a malicious application to perform UI spoofing v…
|
NVD-CWE-noinfo
|
CVE-2024-8033
|
2024-08-28 04:39 |
2024-08-22 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
315330
|
- |
|
progress
|
whatsup_gold
|
Buffer overflow in the _maincfgret.cgi script for Ipswitch WhatsUp Gold before 8.03 Hotfix 1 allows remote attackers to execute arbitrary code via a long instancename parameter.
|
NVD-CWE-Other
|
CVE-2004-0798
|
2024-08-28 02:48 |
2004-10-20 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|