CVE Alert: CVE-2024-26271
Vulnerability Summary: CVE-2024-26271 Cross-site request forgery (CSRF) vulnerability in the My Account widget in Liferay Portal 7.4.3.75 through 7.4.3.111, and...
Vulnerability Summary: CVE-2024-26271 Cross-site request forgery (CSRF) vulnerability in the My Account widget in Liferay Portal 7.4.3.75 through 7.4.3.111, and...
Vulnerability Summary: CVE-2022-23861 Multiple Stored Cross-Site Scripting vulnerabilities were discovered in Y Soft SAFEQ 6 Build 53. Multiple fields in...
Vulnerability Summary: CVE-2024-43177 IBM Concert 1.0.0 and 1.0.1 vulnerable to attacks that rely on the use of cookies without the...
Vulnerability Summary: CVE-2022-23862 A Local Privilege Escalation issue was discovered in Y Soft SAFEQ 6 Build 53. The SafeQ JMX...
Vulnerability Summary: CVE-2024-8980 The Script Console in Liferay Portal 7.0.0 through 7.4.3.101, and Liferay DXP 2023.Q3.1 through 2023.Q3.4, 7.4 GA...
Vulnerability Summary: CVE-2024-38002 The workflow component in Liferay Portal 7.3.2 through 7.4.3.111, and Liferay DXP 2023.Q4.0 through 2023.Q4.5, 2023.Q3.1 through...
Vulnerability Summary: CVE-2024-47819 Umbraco, a free and open source .NET content management system, has a cross-site scripting vulnerability starting in...
Vulnerability Summary: CVE-2024-49373 No Fuss Computing Centurion ERP is open source enterprise resource planning (ERP) software. Prior to version 1.2.1,...
Vulnerability Summary: CVE-2024-46240 Collabtive 3.1 is vulnerable to Cross-site scripting (XSS) via the name parameter under action=system and the company/contact...
Vulnerability Summary: CVE-2024-48605 An issue in Helakuru Desktop Application v1.1 allows a local attacker to execute arbitrary code via the...
Vulnerability Summary: CVE-2024-48925 Umbraco, a free and open source .NET content management system, has an improper access control issue starting...
Vulnerability Summary: CVE-2024-45518 An issue was discovered in Zimbra Collaboration (ZCS) 10.1.x before 10.1.1, 10.0.x before 10.0.9, 9.0.0 before Patch...
Vulnerability Summary: CVE-2024-48926 Umbraco, a free and open source .NET content management system, has an insufficient session expiration issue in...
Vulnerability Summary: CVE-2024-48927 Umbraco, a free and open source .NET content management system, has a remote code execution issue in...
Vulnerability Summary: CVE-2024-48929 Umbraco is a free and open source .NET content management system. In versions on the 13.x branch...
Vulnerability Summary: CVE-2024-46538 A cross-site scripting (XSS) vulnerability in pfsense v2.5.2 allows attackers to execute arbitrary web scripts or HTML...
Vulnerability Summary: CVE-2024-48707 Collabtive 3.1 is vulnerable to Cross-site scripting (XSS) via the name parameter under (a) action=add or action=edit...
Vulnerability Summary: CVE-2024-48570 Client Management System 1.0 was discovered to contain a SQL injection vulnerability via the Between Dates Reports...
Vulnerability Summary: CVE-2024-48708 Collabtive 3.1 is vulnerable to Cross-Site Scripting (XSS) via the name parameter in (a) file tasklist.php under...
Vulnerability Summary: CVE-2024-49208 Archer Platform 2024.03 before version 2024.08 is affected by an authorization bypass vulnerability related to supporting application...
Vulnerability Summary: CVE-2024-48706 Collabtive 3.1 is vulnerable to Cross-site scripting (XSS) via the title parameter with action=add or action=editform within...
Vulnerability Summary: CVE-2024-49210 Reflected XSS was discovered in an iView List Archer Platform UX page in Archer Platform 6.x before...
Vulnerability Summary: CVE-2024-49209 Archer Platform 2024.03 before version 2024.09 is affected by an API authorization bypass vulnerability related to supporting...
Vulnerability Summary: CVE-2024-39753 An modOSCE SQL Injection vulnerability in Trend Micro Apex One could allow a remote attacker to execute...