|
306511
|
- |
|
-
|
-
|
Cobbler, a Linux installation server that allows for rapid setup of network installation environments, has an improper authentication vulnerability starting in version 3.0.0 and prior to versions 3.2…
|
CWE-287
Improper Authentication
|
CVE-2024-47533
|
2024-11-20 06:57 |
2024-11-19 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
306512
|
- |
|
-
|
-
|
GLPI is a free asset and IT management software package. Starting in version 0.80 and prior to version 10.0.17, an unauthenticated user can use an application endpoint to check if an email address co…
|
CWE-200
Information Exposure
|
CVE-2024-43416
|
2024-11-20 06:57 |
2024-11-19 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
306513
|
6.4 |
MEDIUM
Network
|
-
|
-
|
The Elfsight Telegram Chat CC plugin for WordPress is vulnerable to unauthorized modification of data to a missing capability check on the 'updatePreferences' function in all versions up to, and incl…
|
CWE-862
Missing Authorization
|
CVE-2024-10390
|
2024-11-20 06:57 |
2024-11-19 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
306514
|
5.4 |
MEDIUM
Network
|
-
|
-
|
A vulnerability in the web-based interface of Cisco Webex Teams could allow an authenticated, remote attacker to conduct cross-site scripting attacks.
The vulnerability is due to improper valid…
|
CWE-80
Basic XSS
|
CVE-2020-26067
|
2024-11-20 06:57 |
2024-11-19 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
306515
|
- |
|
-
|
-
|
A vulnerability in the web UI of Cisco SD-WAN vManage Software could allow an authenticated, remote attacker to gain read and write access to information that is stored on an affected system.
T…
|
CWE-611
XXE
|
CVE-2020-26066
|
2024-11-20 06:57 |
2024-11-19 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
306516
|
- |
|
-
|
-
|
Improper input validation in some Zoom Apps before version 6.2.0 may allow an unauthenticated user to conduct a denial of service via network access.
|
-
|
CVE-2024-45422
|
2024-11-20 06:56 |
2024-11-20 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
306517
|
- |
|
-
|
-
|
Uncontrolled resource consumption in some Zoom Apps before version 6.2.0 may allow an authenticated user to conduct a denial of service via network access.
|
-
|
CVE-2024-45420
|
2024-11-20 06:56 |
2024-11-20 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
306518
|
- |
|
-
|
-
|
Improper input validation in some Zoom Apps may allow an unauthenticated user to conduct a disclosure of information via network access.
|
-
|
CVE-2024-45419
|
2024-11-20 06:56 |
2024-11-20 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
306519
|
4.3 |
MEDIUM
Network
|
-
|
-
|
IBM Concert Software 1.0.0, 1.0.1, 1.0.2, and 1.0.2.1 could allow an authenticated user to obtain sensitive information that could aid in further attacks against the system.
|
CWE-359
Exposure of Private Personal Information to an Unauthorized Actor
|
CVE-2024-37070
|
2024-11-20 06:56 |
2024-11-20 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
306520
|
- |
|
-
|
-
|
Type Confusion in V8 in Google Chrome prior to 131.0.6778.85 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML page. (Chromium security severity: High)
|
-
|
CVE-2024-11395
|
2024-11-20 06:56 |
2024-11-20 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|