CVE Alert: CVE-2024-10201
Vulnerability Summary: CVE-2024-10201 Administrative Management System from Wellchoose does not properly validate uploaded file types, allowing remote attackers with regular...
Vulnerability Summary: CVE-2024-10201 Administrative Management System from Wellchoose does not properly validate uploaded file types, allowing remote attackers with regular...
Vulnerability Summary: CVE-2024-43689 Stack-based buffer overflow vulnerability exists in WAB-I1750-PS and WAB-S1167-PS. By processing a specially crafted HTTP request, arbitrary...
Vulnerability Summary: CVE-2024-10198 A vulnerability was found in code-projects Pharmacy Management System 1.0. It has been declared as problematic. Affected...
Vulnerability Summary: CVE-2024-10199 A vulnerability was found in code-projects Pharmacy Management System 1.0. It has been rated as problematic. Affected...
Vulnerability Summary: CVE-2024-10196 A vulnerability was found in code-projects Pharmacy Management System 1.0 and classified as critical. This issue affects...
Vulnerability Summary: CVE-2024-8625 The TS Poll WordPress plugin before 2.4.0 does not sanitize and escape a parameter before using it...
Vulnerability Summary: CVE-2024-43945 Cross-Site Request Forgery (CSRF) vulnerability in Latepoint LatePoint allows Cross Site Request Forgery.This issue affects LatePoint: from...
Vulnerability Summary: CVE-2024-10202 Administrative Management System from Wellchoose has an OS Command Injection vulnerability, allowing remote attackers with regular privileges...
Vulnerability Summary: CVE-2024-47328 Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in FunnelKit Automation By...
Vulnerability Summary: CVE-2024-10200 Administrative Management System from Wellchoose has a Path Traversal vulnerability, allowing unauthenticated remote attackers to exploit this...
Vulnerability Summary: CVE-2024-6519 A use-after-free vulnerability was found in the QEMU LSI53C895A SCSI Host Bus Adapter emulation. This issue can...
Vulnerability Summary: CVE-2024-49293 Missing Authorization vulnerability in Rextheme WP VR allows Exploiting Incorrectly Configured Access Control Security Levels.This issue affects...
Vulnerability Summary: CVE-2024-48231 Funadmin 5.0.2 is vulnerable to SQL Injection via the selectFields parameter in the index method of \backend\controller\auth\Auth.php....
Vulnerability Summary: CVE-2024-49321 Missing Authorization vulnerability in Colorlib Simple Custom Post Order allows Exploiting Incorrectly Configured Access Control Security Levels.This...
Vulnerability Summary: CVE-2024-49273 Missing Authorization vulnerability in ProfileGrid User Profiles ProfileGrid.This issue affects ProfileGrid: from n/a through 5.9.3. Affected Endpoints:...
Vulnerability Summary: CVE-2024-46239 Multiple cross-site scripting vulnerabilities exist in PHPGurukul Hospital Management System 4.0 via the docname parameter in /doctor/edit-profile.php...
Vulnerability Summary: CVE-2024-46238 Multiple Cross Site Scripting (XSS) vulnerabilities exist in PHPGurukul Hospital Management System 4.0 via the docname parameter...
Vulnerability Summary: CVE-2024-8305 prepareUnique index may cause secondaries to crash due to incorrect enforcement of index constraints on secondaries, where...
Vulnerability Summary: CVE-2024-48709 CodeAstro Membership Management System v1.0 is vulnerable to Cross Site Scripting (XSS) via the membershipType parameter in...
Vulnerability Summary: CVE-2024-47825 Cilium is a networking, observability, and security solution with an eBPF-based dataplane. Starting in version 1.14.0 and...
Vulnerability Summary: CVE-2024-48597 Online Clinic Management System v1.0 was discovered to contain a SQL injection vulnerability via the id parameter...
Vulnerability Summary: CVE-2024-48645 In Minecraft mod "Command Block IDE" up to and including version 0.4.9, a missing authorization (CWE-862) allows...
Vulnerability Summary: CVE-2024-31007 Buffer Overflow vulnerability in IrfanView 32bit v.4.66 allows a local attacker to cause a denial of service...
Vulnerability Summary: CVE-2024-48509 Learning with Texts (LWT) 2.0.3 is vulnerable to SQL Injection. This occurs when the application fails to...