9.8

CVSS3.1

CVE-2024-57480 -

H3C N12 V100R005 contains a buffer overflow vulnerability due to the lack of length verification in the AP configuration function. Attackers who successfully exploit this vulnerability can cause the remote target device to crash or execute arbitrary commands by sending a POST request to /bin/webs.

๐Ÿ“… Published: Jan. 14, 2025, midnight ๐Ÿ”„ Last Modified: May 27, 2025, 5 p.m.

9.8

CVSS3.1

CVE-2024-48760 -

An issue in GestioIP v3.5.7 allows a remote attacker to execute arbitrary code via the file upload function. The attacker can upload a malicious perlcmd.cgi file that overwrites the original upload.cgi file, enabling remote command execution.

๐Ÿ“… Published: Jan. 14, 2025, midnight ๐Ÿ”„ Last Modified: June 6, 2025, 3:40 p.m.

7.5

CVSS3.1

CVE-2025-22984 -

An access control issue in the component /api/squareComment/DelectSquareById of iceCMS v2.2.0 allows unauthenticated attackers to access sensitive information.

๐Ÿ“… Published: Jan. 14, 2025, midnight ๐Ÿ”„ Last Modified: April 18, 2025, 7:20 p.m.

7.5

CVSS3.1

CVE-2024-57643 - virtuoso-opensource: DoS in box_deserialize_string

An issue in the box_deserialize_string component of openlink virtuoso-opensource v7.2.11 allows attackers to cause a Denial of Service (DoS) via crafted SQL statements.

๐Ÿ“… Published: Jan. 14, 2025, midnight ๐Ÿ”„ Last Modified: April 17, 2025, 4:47 p.m.

7.5

CVSS3.1

CVE-2024-57765 -

MSFM before 2025.01.01 was discovered to contain a SQL injection vulnerability via the s_name parameter at table/list.

๐Ÿ“… Published: Jan. 14, 2025, midnight ๐Ÿ”„ Last Modified: April 10, 2025, 3:37 p.m.

9.1

CVSS3.1

CVE-2024-57764 -

MSFM before 2025.01.01 was discovered to contain a fastjson deserialization vulnerability via the component system/table/add.

๐Ÿ“… Published: Jan. 14, 2025, midnight ๐Ÿ”„ Last Modified: April 10, 2025, 3:37 p.m.

7.5

CVSS3.1

CVE-2024-57630 -

An issue in the exps_card component of MonetDB Server v11.49.1 allows attackers to cause a Denial of Service (DoS) via crafted SQL statements.

๐Ÿ“… Published: Jan. 14, 2025, midnight ๐Ÿ”„ Last Modified: April 10, 2025, 6:11 p.m.

7.5

CVSS3.1

CVE-2024-57625 -

An issue in the merge_table_prune_and_unionize component of MonetDB Server v11.49.1 allows attackers to cause a Denial of Service (DoS) via crafted SQL statements.

๐Ÿ“… Published: Jan. 14, 2025, midnight ๐Ÿ”„ Last Modified: April 10, 2025, 6:12 p.m.

7.5

CVSS3.1

CVE-2024-57653 - virtuoso-opensource: DoS in qst_vec_set_copy

An issue in the qst_vec_set_copy component of openlink virtuoso-opensource v7.2.11 allows attackers to cause a Denial of Service (DoS) via crafted SQL statements.

๐Ÿ“… Published: Jan. 14, 2025, midnight ๐Ÿ”„ Last Modified: April 17, 2025, 4:47 p.m.

8.7

CVSS3.1

CVE-2024-53561 -

A remote code execution (RCE) vulnerability in Arcadyan Meteor 2 CPE FG360 Firmware ETV2.10 allows attackers to execute arbitrary code via a crafted request.

๐Ÿ“… Published: Jan. 14, 2025, midnight ๐Ÿ”„ Last Modified: April 15, 2026, 12:35 a.m.
Total resulsts: 347241
Page 6962 of 34,725
ยซ previous page ยป next page
Filters