7.3

CVSS3.1

CVE-2024-11622 -

An XML external entity injection (XXE) vulnerability in HPE Insight Remote Support may allow remote users to disclose information in certain cases.

πŸ“… Published: Nov. 26, 2024, 9:31 p.m. πŸ”„ Last Modified: Dec. 12, 2024, 7:52 p.m.

8.7

CVSS4.0

CVE-2024-11745 - Tenda AC8 SetStaticRouteCfg route_static_check stack-based overflow

A vulnerability was found in Tenda AC8 16.03.34.09 and classified as critical. Affected by this issue is the function route_static_check of the file /goform/SetStaticRouteCfg. The manipulation of the argument list leads to stack-based buffer overflow. The attack may be launched remotely. The exploi…

πŸ“… Published: Nov. 26, 2024, 9 p.m. πŸ”„ Last Modified: Dec. 3, 2024, 3:25 p.m.

6.9

CVSS4.0

CVE-2024-11744 - 1000 Projects Portfolio Management System MCA register.php sql injection

A vulnerability has been found in 1000 Projects Portfolio Management System MCA 1.0 and classified as critical. Affected by this vulnerability is an unknown functionality of the file /register.php. The manipulation of the argument name leads to sql injection. The attack can be launched remotely. Th…

πŸ“… Published: Nov. 26, 2024, 8:31 p.m. πŸ”„ Last Modified: Dec. 3, 2024, 3:30 p.m.

5.7

CVSS3.1

CVE-2024-43784 - Re-creating a deleted user in lakeFS will re-enable previous user credentials that existed prior to…

lakeFS is an open-source tool that transforms object storage into a Git-like repository. Existing lakeFS users who have issued credentials to users who have been deleted are affected by this vulnerability. When creating a new user with the same username as a deleted user, that user will inherit all…

πŸ“… Published: Nov. 26, 2024, 8:17 p.m. πŸ”„ Last Modified: April 15, 2026, 12:35 a.m.

6.9

CVSS4.0

CVE-2024-11743 - SourceCodester Best House Rental Management System POST Request ajax.php cross-site request forgery

A vulnerability, which was classified as problematic, was found in SourceCodester Best House Rental Management System 1.0. Affected is an unknown function of the file /rental/ajax.php?action=delete_user of the component POST Request Handler. The manipulation leads to cross-site request forgery. It …

πŸ“… Published: Nov. 26, 2024, 8 p.m. πŸ”„ Last Modified: Dec. 4, 2024, 9:07 p.m.

5.3

CVSS4.0

CVE-2024-11742 - SourceCodester Best House Rental Management System ajax.php cross site scripting

A vulnerability, which was classified as problematic, has been found in SourceCodester Best House Rental Management System 1.0. This issue affects some unknown processing of the file /rental/ajax.php?action=save_tenant. The manipulation of the argument lastname/firstname/middlename leads to cross s…

πŸ“… Published: Nov. 26, 2024, 8 p.m. πŸ”„ Last Modified: Dec. 4, 2024, 9:04 p.m.

7.6

CVSS3.1

CVE-2024-49053 - Microsoft Dynamics 365 Sales Spoofing Vulnerability

Microsoft Dynamics 365 Sales Spoofing Vulnerability

πŸ“… Published: Nov. 26, 2024, 7:51 p.m. πŸ”„ Last Modified: July 8, 2025, 3:41 p.m.

8.2

CVSS3.1

CVE-2024-49052 - Microsoft Azure PolicyWatch Elevation of Privilege Vulnerability

Missing authentication for critical function in Microsoft Azure PolicyWatch allows an unauthorized attacker to elevate privileges over a network.

πŸ“… Published: Nov. 26, 2024, 7:44 p.m. πŸ”„ Last Modified: July 8, 2025, 3:41 p.m.

9.3

CVSS3.1

CVE-2024-49038 - Microsoft Copilot Studio Elevation Of Privilege Vulnerability

Improper neutralization of input during web page generation ('Cross-site Scripting') in Copilot Studio by an unauthorized attacker leads to elevation of privilege over a network.

πŸ“… Published: Nov. 26, 2024, 7:43 p.m. πŸ”„ Last Modified: July 8, 2025, 3:41 p.m.

8.7

CVSS3.1

CVE-2024-49035 - Partner.Microsoft.Com Elevation of Privilege Vulnerability

An improper access control vulnerability in Partner.Microsoft.com allows an a unauthenticated attacker to elevate privileges over a network.

πŸ“… Published: Nov. 26, 2024, 7:40 p.m. πŸ”„ Last Modified: Oct. 28, 2025, 2:15 p.m.
Total resulsts: 349182
Page 7692 of 34,919
Β« previous page Β» next page
Filters