5.1

CVSS4.0

CVE-2024-10479 - LinZhaoguan pb-cms Theme Management Module admin#themes cross site scripting

A vulnerability, which was classified as problematic, was found in LinZhaoguan pb-cms up to 2.0.1. Affected is an unknown function of the file /admin#themes of the component Theme Management Module. The manipulation leads to cross site scripting. It is possible to launch the attack remotely. The ex…

πŸ“… Published: Oct. 29, 2024, 1 a.m. πŸ”„ Last Modified: Sept. 29, 2025, 2:51 p.m.

9.8

CVSS3.1

CVE-2024-45656 - IBM Flexible Service Processor hard coded credentials

IBM Flexible Service Processor (FSP) FW860.00 through FW860.B3, FW950.00 through FW950.C0, FW1030.00 through FW1030.61, FW1050.00 through FW1050.21, and FW1060.00 through FW1060.10 has static credentials which may allow network users to gain service privileges to the FSP.

πŸ“… Published: Oct. 29, 2024, 12:37 a.m. πŸ”„ Last Modified: Dec. 3, 2025, 6:14 p.m.

5.1

CVSS4.0

CVE-2024-10478 - LinZhaoguan pb-cms Edit Article edit cross site scripting

A vulnerability, which was classified as problematic, has been found in LinZhaoguan pb-cms up to 2.0.1. This issue affects some unknown processing of the file /admin#article/edit?id=2 of the component Edit Article Handler. The manipulation leads to cross site scripting. The attack may be initiated …

πŸ“… Published: Oct. 29, 2024, 12:31 a.m. πŸ”„ Last Modified: Sept. 29, 2025, 2:53 p.m.

5.1

CVSS4.0

CVE-2024-10477 - LinZhaoguan pb-cms Permission Management Page admin#permissions cross site scripting

A vulnerability classified as problematic was found in LinZhaoguan pb-cms up to 2.0.1. This vulnerability affects unknown code of the file /admin#permissions of the component Permission Management Page. The manipulation leads to cross site scripting. The attack can be initiated remotely. The exploi…

πŸ“… Published: Oct. 29, 2024, 12:31 a.m. πŸ”„ Last Modified: Sept. 29, 2025, 3 p.m.

7.5

CVSS3.1

CVE-2024-44080 -

In Jitsi Meet before 2.0.9779, the functionality to share an image using giphy was implemented in an insecure way, resulting in clients loading GIFs from any arbitrary URL if a message from another participant contains a URL encoded in the expected format.

πŸ“… Published: Oct. 29, 2024, midnight πŸ”„ Last Modified: July 10, 2025, 7:33 p.m.

5.5

CVSS3.1

CVE-2024-50078 - Bluetooth: Call iso_exit() on module unload

In the Linux kernel, the following vulnerability has been resolved: Bluetooth: Call iso_exit() on module unload If iso_init() has been called, iso_exit() must be called on module unload. Without that, the struct proto that iso_init() registered with proto_register() becomes invalid, which could c…

πŸ“… Published: Oct. 29, 2024, midnight πŸ”„ Last Modified: Nov. 3, 2025, 11:16 p.m.

9.8

CVSS3.1

CVE-2024-48138 -

A remote code execution (RCE) vulnerability in the component /PluXml/core/admin/parametres_edittpl.php of PluXml v5.8.16 and lower allows attackers to execute arbitrary code via injecting a crafted payload into a template.

πŸ“… Published: Oct. 29, 2024, midnight πŸ”„ Last Modified: April 15, 2026, 12:35 a.m.

5.5

CVSS3.1

CVE-2024-50072 - x86/bugs: Use code segment selector for VERW operand

In the Linux kernel, the following vulnerability has been resolved: x86/bugs: Use code segment selector for VERW operand Robert Gill reported below #GP in 32-bit mode when dosemu software was executing vm86() system call: general protection fault: 0000 [#1] PREEMPT SMP CPU: 4 PID: 4610 Comm:…

πŸ“… Published: Oct. 29, 2024, midnight πŸ”„ Last Modified: Nov. 3, 2025, 11:16 p.m.

10

CVSS3.1

CVE-2024-51378 -

getresetstatus in dns/views.py and ftp/views.py in CyberPanel (aka Cyber Panel) before 1c0c6cb allows remote attackers to bypass authentication and execute arbitrary commands via /dns/getresetstatus or /ftp/getresetstatus by bypassing secMiddleware (which is only for a POST request) and using shell…

πŸ“… Published: Oct. 29, 2024, midnight πŸ”„ Last Modified: Nov. 7, 2025, 7:02 p.m.

7.5

CVSS3.1

CVE-2019-25219 - asio: missing fallback error code

Asio C++ Library before 1.13.0 lacks a fallback error code in the case of SSL_ERROR_SYSCALL with no associated error information from the SSL library being used.

πŸ“… Published: Oct. 29, 2024, midnight πŸ”„ Last Modified: April 15, 2026, 12:35 a.m.
Total resulsts: 344718
Page 7660 of 34,472
Β« previous page Β» next page
Filters