7.2

CVSS3.1

CVE-2024-54929 -

KASHIPARA E-learning Management System v1.0 is vulnerable to SQL Injection in /admin/delete_subject.php.

๐Ÿ“… Published: Dec. 9, 2024, midnight ๐Ÿ”„ Last Modified: March 18, 2025, 3:15 p.m.

9.8

CVSS3.1

CVE-2024-54923 -

A SQL Injection vulnerability was found in /admin/edit_teacher.php in kashipara E-learning Management System v1.0, which allows remote attackers to execute arbitrary SQL commands to get unauthorized database access via the department parameter.

๐Ÿ“… Published: Dec. 9, 2024, midnight ๐Ÿ”„ Last Modified: April 14, 2025, 3:15 p.m.

5.4

CVSS3.1

CVE-2024-54919 -

A Stored Cross Site Scripting (XSS ) was found in /teacher_avatar.php of kashipara E-learning Management System v1.0. This vulnerability allows remote attackers to execute arbitrary java script via the filename parameter.

๐Ÿ“… Published: Dec. 9, 2024, midnight ๐Ÿ”„ Last Modified: Dec. 10, 2024, 6:15 p.m.

9.8

CVSS3.1

CVE-2024-54918 -

Kashipara E-learning Management System v1.0 is vulnerable to Remote Code Execution via File Upload in /teacher_avatar.php.

๐Ÿ“… Published: Dec. 9, 2024, midnight ๐Ÿ”„ Last Modified: April 14, 2025, 3:14 p.m.

8.8

CVSS3.1

CVE-2024-50628 -

An issue was discovered in the web services of Digi ConnectPort LTS before 1.4.12. It allows an attacker on the local area network to achieve unauthorized manipulation of resources, which may lead to remote code execution when combined with other issues.

๐Ÿ“… Published: Dec. 9, 2024, midnight ๐Ÿ”„ Last Modified: June 27, 2025, 4:06 p.m.

7.5

CVSS3.1

CVE-2024-46547 -

A vulnerability was found in Romain Bourdon Wampserver all versions (discovered in v3.2.3 and v3.2.6) where unauthorized users could access sensitive information due to improper access control validation via PHP Info Page. This issue can lead to data leaks.

๐Ÿ“… Published: Dec. 9, 2024, midnight ๐Ÿ”„ Last Modified: April 15, 2026, 12:35 a.m.

4.3

CVSS3.1

CVE-2022-29974 -

AMI (aka American Megatrends) NTFS driver 1.0.0 (fixed in late 2021 or early 2022) has a buffer overflow. This driver is, for example, used in certain ASUS devices.

๐Ÿ“… Published: Dec. 9, 2024, midnight ๐Ÿ”„ Last Modified: April 15, 2026, 12:35 a.m.

5.4

CVSS3.1

CVE-2024-54936 -

A Stored Cross-Site Scripting (XSS) vulnerability was found in /send_message.php of Kashipara E-learning Management System v1.0. This vulnerability allows remote attackers to execute arbitrary scripts via the my_message parameter.

๐Ÿ“… Published: Dec. 9, 2024, midnight ๐Ÿ”„ Last Modified: Dec. 10, 2024, 6:15 p.m.

9.8

CVSS3.1

CVE-2024-54933 -

Kashipara E-learning Management System v1.0 is vulnerable to SQL Injection in /admin/delete_content.php.

๐Ÿ“… Published: Dec. 9, 2024, midnight ๐Ÿ”„ Last Modified: Dec. 12, 2024, 6:15 p.m.

9.8

CVSS3.1

CVE-2024-54925 -

A SQL Injection was found in /remove_sent_message.php in kashipara E-learning Management System v1.0, which allows remote attackers to execute arbitrary SQL commands to get unauthorized database access via the id parameter.

๐Ÿ“… Published: Dec. 9, 2024, midnight ๐Ÿ”„ Last Modified: April 14, 2025, 3:14 p.m.
Total resulsts: 349182
Page 7586 of 34,919
ยซ previous page ยป next page
Filters