5.3

CVSS4.0

CVE-2024-13195 - donglight bookstore电商书城系统说明 HttpUtil.java getHtml server-side request forgery

A vulnerability was found in donglight bookstore电商书城系统说明 1.0.0. It has been classified as critical. This affects the function getHtml of the file src/main/java/org/zdd/bookstore/rawl/HttpUtil.java. The manipulation of the argument url leads to server-side request forgery. It is possible to initiate…

📅 Published: Jan. 8, 2025, 11:31 p.m. 🔄 Last Modified: Aug. 22, 2025, 9:41 p.m.

5.3

CVSS4.0

CVE-2024-13194 - Sucms admin_members.php sql injection

A vulnerability was found in Sucms 1.0 and classified as critical. Affected by this issue is some unknown functionality of the file /admin/admin_members.php?ac=search. The manipulation of the argument uid leads to sql injection. The attack may be launched remotely. The exploit has been disclosed to…

📅 Published: Jan. 8, 2025, 11:31 p.m. 🔄 Last Modified: June 5, 2025, 7:45 p.m.

5.3

CVSS4.0

CVE-2024-13193 - SEMCMS Image Library Management Page SEMCMS_Images.php sql injection

A vulnerability has been found in SEMCMS up to 4.8 and classified as critical. Affected by this vulnerability is an unknown functionality of the file SEMCMS_Images.php of the component Image Library Management Page. The manipulation leads to sql injection. The attack can be launched remotely. The e…

📅 Published: Jan. 8, 2025, 11 p.m. 🔄 Last Modified: April 4, 2025, 4:59 p.m.

5.3

CVSS4.0

CVE-2024-13192 - ZeroWdd myblog BlogController.java update cross site scripting

A vulnerability, which was classified as problematic, was found in ZeroWdd myblog 1.0. Affected is the function update of the file src/main/java/com/wdd/myblog/controller/admin/BlogController.java. The manipulation leads to cross site scripting. It is possible to launch the attack remotely. The exp…

📅 Published: Jan. 8, 2025, 11 p.m. 🔄 Last Modified: June 5, 2025, 7:44 p.m.

5.3

CVSS4.0

CVE-2024-13191 - ZeroWdd myblog uploadController.java upload unrestricted upload

A vulnerability, which was classified as critical, has been found in ZeroWdd myblog 1.0. This issue affects the function upload of the file src/main/java/com/wdd/myblog/controller/admin/uploadController.java. The manipulation of the argument file leads to unrestricted upload. The attack may be init…

📅 Published: Jan. 8, 2025, 10:31 p.m. 🔄 Last Modified: May 28, 2025, 8:11 p.m.

0.0

CVE-2025-0351 -

Voluntarily withdrawn

📅 Published: Jan. 8, 2025, 10:16 p.m. 🔄 Last Modified: Nov. 19, 2025, 9:35 a.m.

7

CVSS3.1

CVE-2025-0283 -

A stack-based buffer overflow in Ivanti Connect Secure before version 22.7R2.5, Ivanti Policy Secure before version 22.7R1.2, and Ivanti Neurons for ZTA gateways before version 22.7R2.3 allows a local authenticated attacker to escalate their privileges.

📅 Published: Jan. 8, 2025, 10:15 p.m. 🔄 Last Modified: Feb. 26, 2026, 7:09 p.m.

9

CVSS3.1

CVE-2025-0282 -

A stack-based buffer overflow in Ivanti Connect Secure before version 22.7R2.5, Ivanti Policy Secure before version 22.7R1.2, and Ivanti Neurons for ZTA gateways before version 22.7R2.3 allows a remote unauthenticated attacker to achieve remote code execution.

📅 Published: Jan. 8, 2025, 10:15 p.m. 🔄 Last Modified: Oct. 24, 2025, 1:54 p.m.

5.3

CVSS4.0

CVE-2024-13190 - ZeroWdd myblog BlogMapper.xml xml injection

A vulnerability classified as critical was found in ZeroWdd myblog 1.0. This vulnerability affects unknown code of the file src/main/resources/mapper/BlogMapper.xml. The manipulation of the argument findBlogList/getTotalBlogs leads to xml injection. The attack can be initiated remotely. The exploit…

📅 Published: Jan. 8, 2025, 9 p.m. 🔄 Last Modified: April 15, 2026, 12:35 a.m.

1.9

CVSS4.0

CVE-2024-53995 - GHSL-2024-288: SickChill open redirect in login

SickChill is an automatic video library manager for TV shows. A user-controlled `login` endpoint's `next_` parameter takes arbitrary content. Prior to commit c7128a8946c3701df95c285810eb75b2de18bf82, an authenticated attacker may use this to redirect the user to arbitrary destinations, leading to o…

📅 Published: Jan. 8, 2025, 8:44 p.m. 🔄 Last Modified: April 15, 2026, 12:35 a.m.
Total resulsts: 349182
Page 7221 of 34,919
« previous page » next page
Filters