CVE Alert: CVE-2024-10202
Vulnerability Summary: CVE-2024-10202 Administrative Management System from Wellchoose has an OS Command Injection vulnerability, allowing remote attackers with regular privileges...
Vulnerability Summary: CVE-2024-10202 Administrative Management System from Wellchoose has an OS Command Injection vulnerability, allowing remote attackers with regular privileges...
Vulnerability Summary: CVE-2024-47328 Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in FunnelKit Automation By...
Vulnerability Summary: CVE-2024-49273 Missing Authorization vulnerability in ProfileGrid User Profiles ProfileGrid.This issue affects ProfileGrid: from n/a through 5.9.3. Affected Endpoints:...
Vulnerability Summary: CVE-2024-6519 A use-after-free vulnerability was found in the QEMU LSI53C895A SCSI Host Bus Adapter emulation. This issue can...
Vulnerability Summary: CVE-2024-49293 Missing Authorization vulnerability in Rextheme WP VR allows Exploiting Incorrectly Configured Access Control Security Levels.This issue affects...
Vulnerability Summary: CVE-2024-48231 Funadmin 5.0.2 is vulnerable to SQL Injection via the selectFields parameter in the index method of \backend\controller\auth\Auth.php....
Vulnerability Summary: CVE-2024-49321 Missing Authorization vulnerability in Colorlib Simple Custom Post Order allows Exploiting Incorrectly Configured Access Control Security Levels.This...
Vulnerability Summary: CVE-2024-46239 Multiple cross-site scripting vulnerabilities exist in PHPGurukul Hospital Management System 4.0 via the docname parameter in /doctor/edit-profile.php...
Vulnerability Summary: CVE-2024-46238 Multiple Cross Site Scripting (XSS) vulnerabilities exist in PHPGurukul Hospital Management System 4.0 via the docname parameter...
Vulnerability Summary: CVE-2024-8305 prepareUnique index may cause secondaries to crash due to incorrect enforcement of index constraints on secondaries, where...
Vulnerability Summary: CVE-2024-48709 CodeAstro Membership Management System v1.0 is vulnerable to Cross Site Scripting (XSS) via the membershipType parameter in...
Vulnerability Summary: CVE-2024-47825 Cilium is a networking, observability, and security solution with an eBPF-based dataplane. Starting in version 1.14.0 and...
Vulnerability Summary: CVE-2024-48509 Learning with Texts (LWT) 2.0.3 is vulnerable to SQL Injection. This occurs when the application fails to...
Vulnerability Summary: CVE-2024-46236 CodeAstro Membership Management System v1.0 is vulnerable to Cross Site Scripting (XSS) via the address parameter in...
Vulnerability Summary: CVE-2024-48597 Online Clinic Management System v1.0 was discovered to contain a SQL injection vulnerability via the id parameter...
Vulnerability Summary: CVE-2024-48645 In Minecraft mod "Command Block IDE" up to and including version 0.4.9, a missing authorization (CWE-862) allows...
Vulnerability Summary: CVE-2024-31007 Buffer Overflow vulnerability in IrfanView 32bit v.4.66 allows a local attacker to cause a denial of service...
Vulnerability Summary: CVE-2024-49608 : Incorrect Privilege Assignment vulnerability in Gerry Ntabuhashe GERRYWORKS Post by Mail allows Privilege Escalation.This issue affects...
Vulnerability Summary: CVE-2024-49329 Unrestricted Upload of File with Dangerous Type vulnerability in Vivek Tamrakar WP REST API FNS allows Upload...
Vulnerability Summary: CVE-2024-49327 Unrestricted Upload of File with Dangerous Type vulnerability in Asep Bagja Priandana Woostagram Connect allows Upload a...
Vulnerability Summary: CVE-2024-49607 Unrestricted Upload of File with Dangerous Type vulnerability in Redwan Hilali WP Dropbox Dropins allows Upload a...
Vulnerability Summary: CVE-2024-49324 Unrestricted Upload of File with Dangerous Type vulnerability in Sovratec Sovratec Case Management allows Upload a Web...
Vulnerability Summary: CVE-2024-49330 Unrestricted Upload of File with Dangerous Type vulnerability in brx8r Nice Backgrounds allows Upload a Web Shell...
Vulnerability Summary: CVE-2024-49623 Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in Hasan Movahed Duplicate...