6.1

CVSS3.1

CVE-2024-50861 -

The ip_mod_dns_key_form.cgi request in GestioIP v3.5.7 is vulnerable to Stored XSS. An attacker can inject malicious code into the "TSIG Key" field, which is saved in the database and triggers XSS when viewed, enabling data exfiltration and CSRF attacks.

๐Ÿ“… Published: Jan. 14, 2025, midnight ๐Ÿ”„ Last Modified: June 6, 2025, 3:40 p.m.

7.5

CVSS3.1

CVE-2024-57624 -

An issue in the exp_atom component of MonetDB Server v11.49.1 allows attackers to cause a Denial of Service (DoS) via crafted SQL statements.

๐Ÿ“… Published: Jan. 14, 2025, midnight ๐Ÿ”„ Last Modified: April 10, 2025, 6:12 p.m.

7.5

CVSS3.1

CVE-2024-57623 -

An issue in the HEAP_malloc component of MonetDB Server v11.49.1 allows attackers to cause a Denial of Service (DoS) via crafted SQL statements.

๐Ÿ“… Published: Jan. 14, 2025, midnight ๐Ÿ”„ Last Modified: April 10, 2025, 6:10 p.m.

7.5

CVSS3.1

CVE-2024-57654 - virtuoso-opensource: DoS in qst_vec_get_int64

An issue in the qst_vec_get_int64 component of openlink virtuoso-opensource v7.2.11 allows attackers to cause a Denial of Service (DoS) via crafted SQL statements.

๐Ÿ“… Published: Jan. 14, 2025, midnight ๐Ÿ”„ Last Modified: April 17, 2025, 4:46 p.m.

4.8

CVSS3.1

CVE-2024-50859 -

The ip_import_acl_csv request in GestioIP v3.5.7 is vulnerable to Reflected XSS. When a user uploads an improperly formatted file, the content may be reflected in the HTML response, allowing the attacker to execute malicious scripts or exfiltrate data.

๐Ÿ“… Published: Jan. 14, 2025, midnight ๐Ÿ”„ Last Modified: June 6, 2025, 3:40 p.m.

7.5

CVSS3.1

CVE-2024-54730 -

Flatnotes <v5.3.1 is vulnerable to denial of service through the upload image function.

๐Ÿ“… Published: Jan. 14, 2025, midnight ๐Ÿ”„ Last Modified: April 15, 2026, 12:35 a.m.

7.5

CVSS3.1

CVE-2024-57626 -

An issue in the mat_join2 component of MonetDB Server v11.49.1 allows attackers to cause a Denial of Service (DoS) via crafted SQL statements.

๐Ÿ“… Published: Jan. 14, 2025, midnight ๐Ÿ”„ Last Modified: April 10, 2025, 6:12 p.m.

7.5

CVSS3.1

CVE-2024-57762 -

MSFM before v2025.01.01 was discovered to contain a deserialization vulnerability via the pom.xml configuration file.

๐Ÿ“… Published: Jan. 14, 2025, midnight ๐Ÿ”„ Last Modified: April 10, 2025, 3:38 p.m.

7.5

CVSS3.1

CVE-2024-57664 - virtuoso-opensource: DoS in sqlg_group_node

An issue in the sqlg_group_node component of openlink virtuoso-opensource v7.2.11 allows attackers to cause a Denial of Service (DoS) via crafted SQL statements.

๐Ÿ“… Published: Jan. 14, 2025, midnight ๐Ÿ”„ Last Modified: April 17, 2025, 3:22 p.m.

7.5

CVSS3.1

CVE-2024-57628 -

An issue in the exp_values_set_supertype component of MonetDB Server v11.49.1 allows attackers to cause a Denial of Service (DoS) via crafted SQL statements.

๐Ÿ“… Published: Jan. 14, 2025, midnight ๐Ÿ”„ Last Modified: April 10, 2025, 6:12 p.m.
Total resulsts: 349182
Page 7161 of 34,919
ยซ previous page ยป next page
Filters