6.2
CVE-2024-52897 - IBM MQ information disclosure
IBM MQ 9.2 LTS, 9.3 LTS, 9.3 CD, 9.4 LTS, and 9.4 CD web console could allow a remote attacker to obtain sensitive information when a detailed technical error message is returned.
5.3
CVE-2024-51471 - IBM MQ Appliance denial of service
IBM MQ Appliance 9.3 LTS, 9.3 CD, and 9.4 LTSΒ web console could allow an authenticated user to cause a denial-of-service when trace is enabled due to information being written into memory outside of the intended buffer size.
6.2
CVE-2024-52896 - IBM MQ information disclosure
IBM MQ 9.2 LTS, 9.3 LTS, 9.3 CD, 9.4 LTS, and 9.4 CD web console could allow a remote attacker to obtain sensitive information when a detailed technical error message is returned.
5.3
CVE-2024-12790 - code-projects Hostel Management Site room-details.php cross site scripting
A vulnerability was found in code-projects Hostel Management Site 1.0. It has been declared as problematic. This vulnerability affects unknown code of the file room-details.php. The manipulation leads to cross site scripting. The attack can be initiated remotely. The exploit has been disclosed to tβ¦
5.3
CVE-2021-22501 -
Improper Restriction of XML External Entity Reference vulnerability in OpenTextβ’ Operations Bridge Manager allows Input Data Manipulation.Β The vulnerability could be exploited to confidential information This issue affects Operations Bridge Manager: 2017.05, 2017.11, 2018.05, 2018.11, 2019.05, 2β¦
5.3
CVE-2024-12789 - PbootCMS IndexController.php code injection
A vulnerability was found in PbootCMS up to 3.2.3. It has been classified as critical. This affects an unknown part of the file apps/home/controller/IndexController.php. The manipulation of the argument tag leads to code injection. It is possible to initiate the attack remotely. The exploit has beeβ¦
6.9
CVE-2024-12788 - Codezips Technical Discussion Forum signinpost.php sql injection
A vulnerability was found in Codezips Technical Discussion Forum 1.0 and classified as critical. Affected by this issue is some unknown functionality of the file signinpost.php. The manipulation of the argument username leads to sql injection. The attack may be launched remotely. The exploit has beβ¦
0.0
CVE-2024-12804 -
This CVE ID has been rejected or withdrawn by its CVE Numbering Authority.
2.4
CVE-2024-12801 - SaxEventRecorder vulnerable to Server-Side Request Forgery (SSRF) attacks
Server-Side Request Forgery (SSRF) in SaxEventRecorder by QOS.CH logback version 0.1 to 1.3.14 and 1.4.0 to 1.5.12Β on the Java platform, allows an attacker to forge requests by compromising logback configuration files in XML. The attacks involves the modification of DOCTYPE declaration inΒ XMLβ¦
4.8
CVE-2024-38864 - User-Readable Private Key in Windows Agent
Incorrect permissions on the Checkmk Windows Agent's data directory in Checkmk < 2.3.0p23, < 2.2.0p38 and <= 2.1.0p49 (EOL) allows a local attacker to read sensitive data.