8.4

CVSS3.1

CVE-2024-47921 - Smadar SPS – CWE-327: Use of a Broken or Risky Cryptographic Algorithm

Smadar SPS – CWE-327: Use of a Broken or Risky Cryptographic Algorithm

πŸ“… Published: Dec. 30, 2024, 9:47 a.m. πŸ”„ Last Modified: Dec. 30, 2024, 2:21 p.m.

7.5

CVSS3.1

CVE-2024-47920 - Tiki Wiki CMS – CWE-79: Improper Neutralization of Input During Web Page Generation ('Cross-site Sc…

Tiki Wiki CMS – CWE-79: Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')

πŸ“… Published: Dec. 30, 2024, 9:46 a.m. πŸ”„ Last Modified: Dec. 30, 2024, 2:21 p.m.

9.8

CVSS3.1

CVE-2024-47919 - Tiki Wiki CMS – CWE-78: Improper Neutralization of Special Elements used in an OS Command ('OS Comm…

Tiki Wiki CMS – CWE-78: Improper Neutralization of Special Elements used in an OS Command ('OS Command Injection')

πŸ“… Published: Dec. 30, 2024, 9:43 a.m. πŸ”„ Last Modified: Dec. 30, 2024, 4:14 p.m.

6.1

CVSS3.1

CVE-2024-47918 - Tiki Wiki CMS – CWE-80: Improper Neutralization of Script-Related HTML Tags in a Web Page (Basic XS…

Tiki Wiki CMS – CWE-80: Improper Neutralization of Script-Related HTML Tags in a Web Page (Basic XSS)

πŸ“… Published: Dec. 30, 2024, 9:41 a.m. πŸ”„ Last Modified: Dec. 30, 2024, 4:16 p.m.

7.5

CVSS3.1

CVE-2024-47917 - Mobotix - CWE-79: Improper Neutralization of Input During Web Page Generation ('Cross-site Scriptin…

CWE-79: Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')

πŸ“… Published: Dec. 30, 2024, 9:40 a.m. πŸ”„ Last Modified: Dec. 30, 2024, 4:20 p.m.

7.6

CVSS3.1

CVE-2024-22063 - ZTE ZENIC ONE R58 product has a CSV injection vulnerability

The ZENIC ONE R58 products by ZTE Corporation have a command injection vulnerability. An authenticated attacker can exploit this vulnerability to tamper with messages, inject malicious code, and subsequently launch attacks on related devices.

πŸ“… Published: Dec. 30, 2024, 9:30 a.m. πŸ”„ Last Modified: Jan. 28, 2025, 5:05 p.m.

5.3

CVSS4.0

CVE-2024-13039 - code-projects Simple Chat System add_user.php sql injection

A vulnerability was found in code-projects Simple Chat System 1.0. It has been rated as critical. Affected by this issue is some unknown functionality of the file /add_user.php. The manipulation of the argument name/email/password/number leads to sql injection. The attack may be launched remotely. …

πŸ“… Published: Dec. 30, 2024, 4:31 a.m. πŸ”„ Last Modified: April 3, 2025, 4:29 p.m.

6.9

CVSS4.0

CVE-2024-13038 - CodeAstro Simple Loan Management System Login index.php sql injection

A vulnerability was found in CodeAstro Simple Loan Management System 1.0. It has been declared as critical. Affected by this vulnerability is an unknown functionality of the file /index.php of the component Login. The manipulation of the argument email leads to sql injection. The attack can be laun…

πŸ“… Published: Dec. 30, 2024, 4 a.m. πŸ”„ Last Modified: April 3, 2025, 4:28 p.m.

5.3

CVSS4.0

CVE-2024-13037 - 1000 Projects Attendance Tracking Management System report.php attendance_report sql injection

A vulnerability was found in 1000 Projects Attendance Tracking Management System 1.0. It has been classified as critical. Affected is the function attendance_report of the file /admin/report.php. The manipulation of the argument course_id leads to sql injection. It is possible to launch the attack …

πŸ“… Published: Dec. 30, 2024, 3:31 a.m. πŸ”„ Last Modified: Jan. 6, 2025, 5 p.m.

5.3

CVSS4.0

CVE-2024-13036 - code-projects Chat System update_room.php sql injection

A vulnerability was found in code-projects Chat System 1.0 and classified as critical. This issue affects some unknown processing of the file /admin/update_room.php. The manipulation of the argument id/name/password leads to sql injection. The attack may be initiated remotely. The exploit has been …

πŸ“… Published: Dec. 30, 2024, 3 a.m. πŸ”„ Last Modified: Oct. 23, 2025, 8:06 p.m.
Total resulsts: 343996
Page 6813 of 34,400
Β« previous page Β» next page
Filters