9.8

CVSS3.1

CVE-2024-54724 -

PHPYun before 7.0.2 is vulnerable to code execution through backdoor-restricted arbitrary file writing and file inclusion.

πŸ“… Published: Jan. 9, 2025, midnight πŸ”„ Last Modified: April 15, 2026, 12:35 a.m.

9.8

CVSS3.1

CVE-2024-55225 -

An issue in the component src/api/identity.rs of Vaultwarden prior to v1.32.5 allows attackers to impersonate users, including Administrators, via a crafted authorization request.

πŸ“… Published: Jan. 9, 2025, midnight πŸ”„ Last Modified: June 20, 2025, 6:29 p.m.

6.3

CVSS3.1

CVE-2024-54761 -

BigAnt Office Messenger 5.6.06 is vulnerable to SQL Injection via the 'dev_code' parameter.

πŸ“… Published: Jan. 9, 2025, midnight πŸ”„ Last Modified: Sept. 29, 2025, 5:43 p.m.

9.8

CVSS3.1

CVE-2023-28354 -

An issue was discovered in Opsview Monitor Agent 6.8. An unauthenticated remote attacker can call check_nrpe against affected targets, specifying known NRPE plugins, which in default installations are configured to accept command control characters and pass them to command-line interpreters for NRP…

πŸ“… Published: Jan. 9, 2025, midnight πŸ”„ Last Modified: April 15, 2026, 12:35 a.m.

6.5

CVSS3.1

CVE-2024-56114 -

Canlineapp Online 1.1 is vulnerable to Broken Access Control and allows users with the Auditor role to create an audit template as a result of improper authorization checks. This feature is designated for supervisor role, but auditors have been able to successfully create audit templates from their…

πŸ“… Published: Jan. 9, 2025, midnight πŸ”„ Last Modified: July 16, 2025, 10:49 a.m.

8.8

CVSS3.1

CVE-2024-51229 -

Cross Site Scripting vulnerability in LinZhaoguan pb-cms v.2.0 allows a remote attacker to execute arbitrary code via the theme management function.

πŸ“… Published: Jan. 9, 2025, midnight πŸ”„ Last Modified: Sept. 29, 2025, 5:42 p.m.

0.0

CVE-2024-57362 -

DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: CVE-2024-54840. Reason: This candidate is a reservation duplicate of CVE-2024-54840. Notes: All CVE users should reference CVE-2024-54840 instead of this candidate. All references and descriptions in this candidate have been removed to prevent accidenta…

πŸ“… Published: Jan. 9, 2025, midnight πŸ”„ Last Modified: Feb. 3, 2025, 6:15 p.m.

6.8

CVSS3.1

CVE-2024-48806 -

Buffer Overflow vulnerability in Neat Board NFC v.1.20240620.0015 allows a physically proximate attackers to escalate privileges via a crafted payload to the password field

πŸ“… Published: Jan. 9, 2025, midnight πŸ”„ Last Modified: April 15, 2026, 12:35 a.m.

6.3

CVSS3.1

CVE-2024-54762 -

Ruoyi v.4.7.9 and before contains an authenticated SQL injection vulnerability. This is because the filterKeyword method does not completely filter SQL injection keywords, resulting in the risk of SQL injection.

πŸ“… Published: Jan. 9, 2025, midnight πŸ”„ Last Modified: May 14, 2025, 6:26 p.m.

7.8

CVSS3.1

CVE-2024-46464 -

In PRIMX ZED Enterprise up to 2024.3, technical files stored in local folders with common user access can be manipulated to render the host computer unavailable or to execute programs with an elevation of privilege.

πŸ“… Published: Jan. 9, 2025, midnight πŸ”„ Last Modified: April 15, 2026, 12:35 a.m.
Total resulsts: 349182
Page 7220 of 34,919
Β« previous page Β» next page
Filters