|
314561
|
6.1 |
MEDIUM
Network
|
baijunyao
|
bjyadmin
|
bjyadmin commit a560fd5 is vulnerable to Cross Site Scripting (XSS) via Public/statics/umeditor1_2_3/php/getContent.php
|
CWE-79
Cross-site Scripting
|
CVE-2024-41351
|
2024-09-5 01:07 |
2024-08-30 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
314562
|
6.1 |
MEDIUM
Network
|
baijunyao
|
bjyadmin
|
bjyadmin commit a560fd5 is vulnerable to Cross Site Scripting (XSS) via Public/statics/umeditor1_2_3/php/imageUp.php
|
CWE-79
Cross-site Scripting
|
CVE-2024-41350
|
2024-09-5 01:07 |
2024-08-30 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
314563
|
6.1 |
MEDIUM
Network
|
jpatokal
|
openflights
|
openflights commit 5234b5b is vulnerable to Cross-Site Scripting (XSS) via php/alsearch.php
|
CWE-79
Cross-site Scripting
|
CVE-2024-41348
|
2024-09-5 01:06 |
2024-08-30 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
314564
|
6.1 |
MEDIUM
Network
|
jpatokal
|
openflights
|
openflights commit 5234b5b is vulnerable to Cross-Site Scripting (XSS) via php/settings.php
|
CWE-79
Cross-site Scripting
|
CVE-2024-41347
|
2024-09-5 01:05 |
2024-08-30 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
314565
|
5.4 |
MEDIUM
Network
|
jpatokal
|
openflights
|
openflights commit 5234b5b is vulnerable to Cross-Site Scripting (XSS) via php/submit.php
|
CWE-79
Cross-site Scripting
|
CVE-2024-41346
|
2024-09-5 01:05 |
2024-08-30 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
314566
|
9.8 |
CRITICAL
Network
|
smackcoders
|
sendgrid
|
Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in Smackcoders SendGrid for WordPress allows SQL Injection.This issue affects SendGrid for WordPress…
|
CWE-89
SQL Injection
|
CVE-2024-43965
|
2024-09-5 01:02 |
2024-08-30 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
314567
|
9.8 |
CRITICAL
Network
|
progress
|
whatsup_gold
|
In WhatsUp Gold versions released before 2024.0.0, if the application is configured with only a single user, a SQL Injection vulnerability allows an unauthenticated attacker to retrieve the users enc…
|
CWE-89
SQL Injection
|
CVE-2024-6671
|
2024-09-5 00:53 |
2024-08-30 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
314568
|
9.8 |
CRITICAL
Network
|
mozilla
|
firefox
|
Memory safety bugs present in Firefox 129. Some of these bugs showed evidence of memory corruption and we presume that with enough effort some of these could have been exploited to run arbitrary code…
|
CWE-787
Out-of-bounds Write
|
CVE-2024-8389
|
2024-09-5 00:50 |
2024-09-3 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
314569
|
9.8 |
CRITICAL
Network
|
seacms
|
seacms
|
SeaCMS v12.9 was discovered to contain a SQL injection vulnerability via the id parameter at /dmplayer/dmku/index.php?ac=del.
|
CWE-89
SQL Injection
|
CVE-2024-44921
|
2024-09-5 00:00 |
2024-09-3 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
314570
|
6.1 |
MEDIUM
Network
|
seacms
|
seacms
|
A cross-site scripting (XSS) vulnerability in the component admin_collect_news.php of SeaCMS v12.9 allows attackers to execute arbitrary web scripts or HTML via a crafted payload injected into the si…
|
CWE-79
Cross-site Scripting
|
CVE-2024-44920
|
2024-09-4 23:59 |
2024-09-3 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|