9.8

CVSS3.1

CVE-2024-44756 -

NUS-M9 ERP Management Software v3.0.0 was discovered to contain a SQL injection vulnerability via the usercode parameter at /UserWH/checkLogin.

๐Ÿ“… Published: Nov. 18, 2024, midnight ๐Ÿ”„ Last Modified: Oct. 1, 2025, 4:01 p.m.

9.8

CVSS3.1

CVE-2024-51053 -

An arbitrary file upload vulnerability in the component /main/fileupload.php of AVSCMS v8.2.0 allows attackers to execute arbitrary code via uploading a crafted file.

๐Ÿ“… Published: Nov. 18, 2024, midnight ๐Ÿ”„ Last Modified: Nov. 19, 2024, 9:57 p.m.

8.8

CVSS3.1

CVE-2024-52946 -

An issue was discovered in LemonLDAP::NG before 2.20.1. An Improper Check during session refresh allows an authenticated user to raise their authentication level if the admin configured an "Adaptative authentication rule" with an increment instead of an absolute value.

๐Ÿ“… Published: Nov. 18, 2024, midnight ๐Ÿ”„ Last Modified: Nov. 3, 2025, 11:17 p.m.

6.5

CVSS3.1

CVE-2024-52918 -

Bitcoin-Qt in Bitcoin Core before 0.20.0 allows remote attackers to cause a denial of service (memory consumption and application crash) via a BIP21 r parameter for a URL that has a large file.

๐Ÿ“… Published: Nov. 18, 2024, midnight ๐Ÿ”„ Last Modified: Nov. 18, 2024, 5:11 p.m.

6.1

CVSS3.1

CVE-2024-33231 -

Cross Site Scripting vulnerability in Ferozo Email version 1.1 allows a local attacker to execute arbitrary code via a crafted payload to the PDF preview component.

๐Ÿ“… Published: Nov. 18, 2024, midnight ๐Ÿ”„ Last Modified: Nov. 19, 2024, 9:57 p.m.

6.5

CVSS3.1

CVE-2024-52926 -

Delinea Privilege Manager before 12.0.2 mishandles the security of the Windows agent.

๐Ÿ“… Published: Nov. 18, 2024, midnight ๐Ÿ”„ Last Modified: Jan. 6, 2025, 5:55 p.m.

7.5

CVSS3.1

CVE-2024-52916 -

Bitcoin Core before 0.15.0 allows a denial of service (OOM kill of a daemon process) via a flood of minimum difficulty headers.

๐Ÿ“… Published: Nov. 18, 2024, midnight ๐Ÿ”„ Last Modified: April 30, 2025, 4:16 p.m.

4.8

CVSS3.1

CVE-2024-50849 -

A Stored Cross-Site Scripting (XSS) vulnerability in the "Rules" functionality of WorldServer v11.8.2 allows a remote authenticated attacker to execute arbitrary JavaScript code.

๐Ÿ“… Published: Nov. 18, 2024, midnight ๐Ÿ”„ Last Modified: Oct. 20, 2025, 4:15 p.m.

6.5

CVSS3.1

CVE-2024-50848 -

An XML External Entity (XXE) vulnerability in the Import object and Translation Memory import functionalities of WorldServer v11.8.2 to access sensitive information and execute arbitrary commands via supplying a crafted .tmx file.

๐Ÿ“… Published: Nov. 18, 2024, midnight ๐Ÿ”„ Last Modified: Oct. 20, 2025, 4:15 p.m.

9.8

CVSS3.1

CVE-2023-43091 - Gnome-maps: gnome maps is vulnerable to a code injection attack (similar to xss) via its service.jโ€ฆ

A flaw was found in GNOME Maps, which is vulnerable to a code injection attack via its service.json configuration file. If the configuration file is malicious, it may execute arbitrary code.

๐Ÿ“… Published: Nov. 17, 2024, 12:25 p.m. ๐Ÿ”„ Last Modified: Aug. 6, 2025, 12:46 p.m.
Total resulsts: 344126
Page 7337 of 34,413
ยซ previous page ยป next page
Filters