9.8

CVSS3.1

CVE-2024-12144 - SQLi in Finder Fire Safety's Finder ERP/CRM (Old System)

Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in Finder Fire Safety Finder ERP/CRM (Old System) allows SQL Injection.This issue affects Finder ERP/CRM (Old System): before 18.12.2024.

📅 Published: March 6, 2025, 2:05 p.m. 🔄 Last Modified: April 15, 2026, 12:35 a.m.

5.9

CVSS4.0

CVE-2024-13894 - Path traversal in Smartwares cameras

Smartwares cameras CIP-37210AT and C724IP, as well as others which share the same firmware in versions up to 3.3.0, are vulnerable to path traversal. When an affected device is connected to a mobile app, it opens a port 10000 enabling a user to download pictures shot at specific moments by providi…

📅 Published: March 6, 2025, 2:03 p.m. 🔄 Last Modified: April 15, 2026, 12:35 a.m.

7.5

CVSS4.0

CVE-2024-13893 - Shared credentials in Smartwares cameras

Smartwares cameras CIP-37210AT and C724IP, as well as others which share the same firmware in versions up to 3.3.0, might share same credentials for telnet service. Hash of the password can be retrieved through physical access to SPI connected memory. For the telnet service to be enabled, the inser…

📅 Published: March 6, 2025, 2:01 p.m. 🔄 Last Modified: April 15, 2026, 12:35 a.m.

7.7

CVSS4.0

CVE-2024-13892 - Command Injection in Smartwares cameras

Smartwares cameras CIP-37210AT and C724IP, as well as others which share the same firmware in versions up to 3.3.0, are vulnerable to command injection. During the initialization process, a user has to use a mobile app to provide devices with Access Point credentials. This input is not properly sa…

📅 Published: March 6, 2025, 2 p.m. 🔄 Last Modified: April 15, 2026, 12:35 a.m.

4.7

CVSS3.1

CVE-2025-0877 - XSS in AtaksAPP's Reservation Management System

Improper Neutralization of Input During Web Page Generation (XSS or 'Cross-site Scripting') vulnerability in AtaksAPP Reservation Management System allows Cross-Site Scripting (XSS).This issue affects Reservation Management System: before 4.2.3.

📅 Published: March 6, 2025, 1:09 p.m. 🔄 Last Modified: March 6, 2025, 3:50 p.m.

4.3

CVSS3.1

CVE-2025-2045 - Incorrect Authorization in GitLab

Improper authorization in GitLab EE affecting all versions from 17.7 prior to 17.7.6, 17.8 prior to 17.8.4, 17.9 prior to 17.9.1 allow users with limited permissions to access to potentially sensitive project analytics data.

📅 Published: March 6, 2025, 1:04 p.m. 🔄 Last Modified: Aug. 6, 2025, 6:33 p.m.

5.2

CVSS4.0

CVE-2025-1696 - Exposure of Proxy Credentials in Docker Desktop Logs

A vulnerability exists in Docker Desktop prior to version 4.39.0 that could lead to the unintentional disclosure of sensitive information via application logs. In affected versions, proxy configuration data—potentially including sensitive details—was written to log files in clear text whenever an H…

📅 Published: March 6, 2025, 11:58 a.m. 🔄 Last Modified: April 15, 2026, 12:35 a.m.

6.3

CVSS3.1

CVE-2024-38311 - Apache Traffic Server: Request smuggling via pipelining after a chunked message body

Improper Input Validation vulnerability in Apache Traffic Server. This issue affects Apache Traffic Server: from 8.0.0 through 8.1.11, from 9.0.0 through 9.2.8, from 10.0.0 through 10.0.3. Users are recommended to upgrade to version 9.2.9 or 10.0.4, which fixes the issue.

📅 Published: March 6, 2025, 11:34 a.m. 🔄 Last Modified: April 29, 2025, 4:34 p.m.

6.3

CVSS3.1

CVE-2024-56195 - Apache Traffic Server: Intercept plugins are not access controlled

Improper Access Control vulnerability in Apache Traffic Server. This issue affects Apache Traffic Server: from 9.2.0 through 9.2.8, from 10.0.0 through 10.0.3. Users are recommended to upgrade to version 9.2.9 or 10.0.4, which fixes the issue.

📅 Published: March 6, 2025, 11:23 a.m. 🔄 Last Modified: April 29, 2025, 4:42 p.m.

6.3

CVSS3.1

CVE-2024-56196 - Apache Traffic Server: ACL is not fully compatible with older versions

Improper Access Control vulnerability in Apache Traffic Server. This issue affects Apache Traffic Server: from 10.0.0 through 10.0.3. Users are recommended to upgrade to version 10.0.4, which fixes the issue.

📅 Published: March 6, 2025, 11:21 a.m. 🔄 Last Modified: May 7, 2025, 4:36 p.m.
Total resulsts: 349182
Page 6430 of 34,919
« previous page » next page
Filters