6.4

CVSS3.1

CVE-2025-24530 -

An issue was discovered in phpMyAdmin 5.x before 5.2.2. An XSS vulnerability has been discovered for the check tables feature. A crafted table or database name could be used for XSS.

๐Ÿ“… Published: Jan. 23, 2025, midnight ๐Ÿ”„ Last Modified: April 15, 2026, 12:35 a.m.

10

CVSS3.1

CVE-2024-55971 -

SQL Injection vulnerability in the default configuration of the Logitime WebClock application <= 5.43.0 allows an unauthenticated user to run arbitrary code on the backend database server.

๐Ÿ“… Published: Jan. 23, 2025, midnight ๐Ÿ”„ Last Modified: April 15, 2026, 12:35 a.m.

9.8

CVSS3.1

CVE-2024-57328 -

A SQL Injection vulnerability exists in the login form of Online Food Ordering System v1.0. The vulnerability arises because the input fields username and password are not properly sanitized, allowing attackers to inject malicious SQL queries to bypass authentication and gain unauthorized access.

๐Ÿ“… Published: Jan. 23, 2025, midnight ๐Ÿ”„ Last Modified: Jan. 29, 2025, 1:52 p.m.

9.8

CVSS3.1

CVE-2024-55194 -

OpenImageIO v3.1.0.0dev was discovered to contain a heap overflow via the component /OpenImageIO/fmath.h.

๐Ÿ“… Published: Jan. 23, 2025, midnight ๐Ÿ”„ Last Modified: Jan. 29, 2025, 3:19 p.m.

4.3

CVSS3.1

CVE-2023-46400 -

KWHotel 0.47 is vulnerable to CSV Formula Injection in the add guest function.

๐Ÿ“… Published: Jan. 23, 2025, midnight ๐Ÿ”„ Last Modified: Feb. 7, 2025, 9:03 p.m.

6.1

CVSS3.1

CVE-2024-57326 -

A Reflected Cross-Site Scripting (XSS) vulnerability exists in the search.php file of the Online Pizza Delivery System 1.0. The vulnerability allows an attacker to execute arbitrary JavaScript code in the browser via unsanitized input passed through the search parameter.

๐Ÿ“… Published: Jan. 23, 2025, midnight ๐Ÿ”„ Last Modified: June 27, 2025, 7:39 p.m.

9.1

CVSS3.1

CVE-2024-53923 -

An issue was discovered in Centreon Web 24.10.x before 24.10.3, 24.04.x before 24.04.9, 23.10.x before 23.10.19, 23.04.x before 23.04.24. A user with high privileges is able to achieve SQL injection in the form to upload media.

๐Ÿ“… Published: Jan. 23, 2025, midnight ๐Ÿ”„ Last Modified: June 6, 2025, 3:32 p.m.

6.1

CVSS3.1

CVE-2024-57386 -

Cross Site Scripting vulnerability in Wallos v.2.41.0 allows a remote attacker to execute arbitrary code via the profile picture function.

๐Ÿ“… Published: Jan. 23, 2025, midnight ๐Ÿ”„ Last Modified: Jan. 31, 2025, 4:13 p.m.

7.8

CVSS3.1

CVE-2024-53588 -

A DLL hijacking vulnerability in iTop VPN v16.0 allows attackers to execute arbitrary code via placing a crafted DLL file into the path \ProgramData\iTop VPN\Downloader\vpn6.

๐Ÿ“… Published: Jan. 23, 2025, midnight ๐Ÿ”„ Last Modified: April 15, 2026, 12:35 a.m.

7.5

CVSS3.1

CVE-2024-55195 -

An allocation-size-too-big bug in the component /imagebuf.cpp of OpenImageIO v3.1.0.0dev may cause a Denial of Service (DoS) when the program to requests to allocate too much space.

๐Ÿ“… Published: Jan. 23, 2025, midnight ๐Ÿ”„ Last Modified: April 15, 2026, 12:35 a.m.
Total resulsts: 346636
Page 6738 of 34,664
ยซ previous page ยป next page
Filters