CVE Alert: CVE-2024-47641
Vulnerability Summary: CVE-2024-47641 Improper Neutralization of Input During Web Page Generation (XSS or 'Cross-site Scripting') vulnerability in WPDeveloperr Confetti Fall...
Vulnerability Summary: CVE-2024-47641 Improper Neutralization of Input During Web Page Generation (XSS or 'Cross-site Scripting') vulnerability in WPDeveloperr Confetti Fall...
Vulnerability Summary: CVE-2024-47172 Computer Vision Annotation Tool (CVAT) is an interactive video and image annotation tool for computer vision. An...
Vulnerability Summary: CVE-2024-45772 Deserialization of Untrusted Data vulnerability in Apache Lucene Replicator. This issue affects Apache Lucene's replicator module: from...
Vulnerability Summary: CVE-2024-45920 A Stored Cross-Site Scripting (XSS) vulnerability in Solvait 24.4.2 allows remote attackers to inject malicious scripts into...
Vulnerability Summary: CVE-2024-46293 Sourcecodester Online Medicine Ordering System 1.0 is vulnerable to Incorrect Access Control. There is a lack of...
Vulnerability Summary: CVE-2024-46280 PIX-LINK LV-WR22 RE3002-P1-01_V117.0 is vulnerable to Improper Access Control. The TELNET service is enabled with weak credentials...
Vulnerability Summary: CVE-2024-47531 Scout is a web-based visualizer for VCF-files. Due to the lack of sanitization in the filename, it...
Vulnerability Summary: CVE-2024-46510 ESAFENET CDG v5 was discovered to contain a SQL injection vulnerability via the id parameter in the...
Vulnerability Summary: CVE-2024-47530 Scout is a web-based visualizer for VCF-files. Open redirect vulnerability allows performing phishing attacks on users by...
Vulnerability Summary: CVE-2024-45993 Giflib Project v5.2.2 is vulnerable to a heap buffer overflow via gif2rgb. Affected Endpoints: No affected endpoints...
Vulnerability Summary: CVE-2024-46475 A reflected cross-site scripting (XSS) vulnerability on the homepage of Metronic Admin Dashboard Template v2.0 allows attackers...
Vulnerability Summary: CVE-2024-46548 TP-Link Tapo P125M and Kasa KP125M v1.0.3 was discovered to improperly validate certificates, allowing attackers to eavesdrop...
Vulnerability Summary: CVE-2024-46540 A remote code execution (RCE) vulnerability in the component /admin/store.php of Emlog Pro before v2.3.15 allows attackers...
Vulnerability Summary: CVE-2024-46549 An issue in the TP-Link MQTT Broker and API gateway of TP-Link Kasa KP125M v1.0.3 allows attackers...
Vulnerability Summary: CVE-2024-28810 An issue was discovered in Infinera hiT 7300 5.60.50. Sensitive information inside diagnostic files (exported by the...
Vulnerability Summary: CVE-2024-42017 An issue was discovered in Atos Eviden iCare 2.7.1 through 2.7.11. The application exposes a web interface...
Vulnerability Summary: CVE-2024-9158 A stored cross site scripting vulnerability exists in Nessus Network Monitor where an authenticated, privileged local attacker...
Vulnerability Summary: CVE-2024-28809 An issue was discovered in Infinera hiT 7300 5.60.50. Cleartext storage of sensitive password in firmware update...
Vulnerability Summary: CVE-2024-46511 LoadZilla LLC LoadLogic v1.4.3 was discovered to contain insecure permissions vulnerability which allows a remote attacker to...
Vulnerability Summary: CVE-2024-28807 An issue was discovered in Infinera hiT 7300 5.60.50. Cleartext storage of sensitive information in the memory...
Vulnerability Summary: CVE-2024-7671 A maliciously crafted DWFX file, when parsed in dwfcore.dll through Autodesk Navisworks, can force an Out-of-Bounds Write....
Vulnerability Summary: CVE-2024-28812 An issue was discovered in Infinera hiT 7300 5.60.50. A hidden SSH service (on the local management...
Vulnerability Summary: CVE-2024-28813 An issue was discovered in Infinera hiT 7300 5.60.50. Undocumented privileged functions in the @CT management application...
Vulnerability Summary: CVE-2024-7670 A maliciously crafted DWFX file, when parsed in w3dtk.dll through Autodesk Navisworks, can force an Out-of-Bounds Read....