5.3

CVSS3.0

CVE-2024-47864 -

home 5G HR02, Wi-Fi STATION SH-52B, and Wi-Fi STATION SH-54C contain a buffer overflow vulnerability in the hidden debug function. A remote unauthenticated attacker may get the web console of the product down.

๐Ÿ“… Published: Dec. 23, 2024, 12:18 a.m. ๐Ÿ”„ Last Modified: Dec. 24, 2024, 12:39 a.m.

9.8

CVSS3.0

CVE-2024-46873 -

Multiple SHARP routers leave the hidden debug function enabled. An arbitrary OS command may be executed with the root privilege by a remote unauthenticated attacker.

๐Ÿ“… Published: Dec. 23, 2024, 12:17 a.m. ๐Ÿ”„ Last Modified: Dec. 24, 2024, 12:39 a.m.

7.2

CVSS3.0

CVE-2024-45721 -

home 5G HR02, Wi-Fi STATION SH-52B, and Wi-Fi STATION SH-54C contain an OS command injection vulnerability in the HOST name configuration screen. An arbitrary OS command may be executed with the root privilege by an administrative user.

๐Ÿ“… Published: Dec. 23, 2024, 12:17 a.m. ๐Ÿ”„ Last Modified: Dec. 24, 2024, 12:39 a.m.

5.3

CVSS4.0

CVE-2024-12898 - 1000 Projects Attendance Tracking Management System faculty_action.php sql injection

A vulnerability was found in 1000 Projects Attendance Tracking Management System 1.0. It has been declared as critical. This vulnerability affects unknown code of the file /admin/faculty_action.php. The manipulation of the argument faculty_course_id leads to sql injection. The attack can be initiatโ€ฆ

๐Ÿ“… Published: Dec. 23, 2024, midnight ๐Ÿ”„ Last Modified: Jan. 8, 2025, 6:48 p.m.

9.1

CVSS3.1

CVE-2024-40896 - libxml2: XXE vulnerability

In libxml2 2.11 before 2.11.9, 2.12 before 2.12.9, and 2.13 before 2.13.3, the SAX parser can produce events for external entities even if custom SAX handlers try to override entity content (by setting "checked"). This makes classic XXE attacks possible.

๐Ÿ“… Published: Dec. 23, 2024, midnight ๐Ÿ”„ Last Modified: Nov. 25, 2025, 1:32 p.m.

5.3

CVSS4.0

CVE-2024-12897 - Intelbras VIP S4320 G2 Web Interface Sha1Account1 path traversal

A vulnerability was found in Intelbras VIP S3020 G2, VIP S4020 G2, VIP S4020 G3 and VIP S4320 G2 up to 20241222. It has been classified as critical. This affects an unknown part of the file ../mtd/Config/Sha1Account1 of the component Web Interface. The manipulation leads to path traversal: '../fileโ€ฆ

๐Ÿ“… Published: Dec. 22, 2024, 11:31 p.m. ๐Ÿ”„ Last Modified: Dec. 27, 2024, 9:15 a.m.

6.9

CVSS4.0

CVE-2024-12896 - Intelbras VIP S4320 G2 Web Interface webCapsConfig information disclosure

A vulnerability was found in Intelbras VIP S3020 G2, VIP S4020 G2, VIP S4020 G3 and VIP S4320 G2 up to 20241222 and classified as problematic. Affected by this issue is some unknown functionality of the file /web_caps/webCapsConfig of the component Web Interface. The manipulation leads to informatiโ€ฆ

๐Ÿ“… Published: Dec. 22, 2024, 11 p.m. ๐Ÿ”„ Last Modified: Dec. 24, 2024, 4:15 p.m.

5.3

CVSS4.0

CVE-2024-12895 - TreasureHuntGame TreasureHunt checkflag.php console_log sql injection

A vulnerability has been found in TreasureHuntGame TreasureHunt up to 963e0e0 and classified as critical. Affected by this vulnerability is the function console_log of the file TreasureHunt/checkflag.php. The manipulation of the argument problema leads to sql injection. The attack can be launched rโ€ฆ

๐Ÿ“… Published: Dec. 22, 2024, 2 p.m. ๐Ÿ”„ Last Modified: Jan. 10, 2025, 9:14 p.m.

5.3

CVSS4.0

CVE-2024-12894 - TreasureHuntGame TreasureHunt acesso.php sql injection

A vulnerability, which was classified as critical, was found in TreasureHuntGame TreasureHunt up to 963e0e0. Affected is an unknown function of the file TreasureHunt/acesso.php. The manipulation of the argument usuario leads to sql injection. It is possible to launch the attack remotely. This produโ€ฆ

๐Ÿ“… Published: Dec. 22, 2024, noon ๐Ÿ”„ Last Modified: Jan. 10, 2025, 9:12 p.m.

5.1

CVSS4.0

CVE-2024-12893 - Portabilis i-Educar Tipo de Usuรกrio Page 2 cross site scripting

A vulnerability, which was classified as problematic, has been found in Portabilis i-Educar up to 2.9. Affected by this issue is some unknown functionality of the file /usuarios/tipos/2 of the component Tipo de Usuรกrio Page. The manipulation of the argument name leads to cross site scripting. The aโ€ฆ

๐Ÿ“… Published: Dec. 22, 2024, 8 a.m. ๐Ÿ”„ Last Modified: July 2, 2025, 7:09 p.m.
Total resulsts: 343923
Page 6867 of 34,393
ยซ previous page ยป next page
Filters