|
314611
|
9.8 |
CRITICAL
Network
|
rainniar
|
bike_delivery_system
|
A vulnerability, which was classified as critical, was found in itsourcecode Bike Delivery System 1.0. Affected is an unknown function of the file contact_us_action.php. The manipulation of the argum…
|
CWE-89
SQL Injection
|
CVE-2024-7505
|
2024-09-12 04:53 |
2024-08-6 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
314612
|
6.5 |
MEDIUM
Network
|
cybozu
|
office
|
Insertion of sensitive information into sent data issue exists in Cybozu Office 10.0.0 to 10.8.6, which may allow a user who can login to the product to view data that the user does not have access b…
|
NVD-CWE-noinfo
|
CVE-2024-39817
|
2024-09-12 04:36 |
2024-08-6 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
314613
|
9.8 |
CRITICAL
Network
|
tenda
|
i22_firmware
|
A vulnerability has been found in Tenda i22 1.0.0.3(4687) and classified as critical. Affected by this vulnerability is the function formApPortalWebAuth of the file /goform/apPortalAuth. The manipula…
|
CWE-120
Classic Buffer Overflow
|
CVE-2024-7585
|
2024-09-12 04:32 |
2024-08-8 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
314614
|
9.8 |
CRITICAL
Network
|
tenda
|
i22_firmware
|
A vulnerability, which was classified as critical, was found in Tenda i22 1.0.0.3(4687). Affected is the function formApPortalPhoneAuth of the file /goform/apPortalPhoneAuth. The manipulation of the …
|
CWE-120
Classic Buffer Overflow
|
CVE-2024-7584
|
2024-09-12 04:25 |
2024-08-8 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
314615
|
7.8 |
HIGH
Local
|
jetbrains
|
teamcity
|
In JetBrains TeamCity before 2024.07.1 possible privilege escalation due to incorrect directory permissions
|
CWE-276
Incorrect Default Permissions
|
CVE-2024-43114
|
2024-09-12 04:11 |
2024-08-6 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
314616
|
5.5 |
MEDIUM
Local
|
huawei
|
emui harmonyos
|
LaunchAnywhere vulnerability in the account module.
Impact: Successful exploitation of this vulnerability may affect service confidentiality.
|
NVD-CWE-noinfo
|
CVE-2024-42034
|
2024-09-12 03:55 |
2024-08-8 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
314617
|
7.8 |
HIGH
Local
|
huawei
|
harmonyos emui
|
Permission control vulnerability in the App Multiplier module
Impact:Successful exploitation of this vulnerability may affect functionality and confidentiality.
|
NVD-CWE-noinfo
|
CVE-2024-42035
|
2024-09-12 03:52 |
2024-08-8 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
314618
|
8.8 |
HIGH
Network
|
pharmacy_management_system_project
|
pharmacy_management_system
|
A vulnerability was found in code-projects Pharmacy Management System 1.0 and classified as critical. This issue affects some unknown processing of the file /index.php?action=editPharmacist. The mani…
|
CWE-89
SQL Injection
|
CVE-2024-8147
|
2024-09-12 03:37 |
2024-08-25 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
314619
|
5.5 |
MEDIUM
Local
|
logitech
|
options\+
|
Logitech Options+ on MacOS prior 1.72 allows a local attacker to inject dynamic library within Options+ runtime and abuse permissions granted by the user to Options+ such as Camera.
|
CWE-863
Incorrect Authorization
|
CVE-2024-8011
|
2024-09-12 03:15 |
2024-08-25 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
314620
|
5.3 |
MEDIUM
Network
|
purevpn
|
purevpn
|
PureVPN Linux client 2.0.2-Productions fails to properly handle DNS queries, allowing them to bypass the VPN tunnel and be sent directly to the ISP or default DNS servers.
|
NVD-CWE-noinfo
|
CVE-2023-48957
|
2024-09-12 03:07 |
2024-08-26 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|