9.8

CVSS3.1

CVE-2024-44097 -

According to the researcher: "The TLS connections are encrypted against tampering or eavesdropping. However, the application does not validate the server certificate properly while initializing the TLS connection. This allows for a network attacker to intercept the connection and read the data. The…

πŸ“… Published: Oct. 2, 2024, 2:06 p.m. πŸ”„ Last Modified: July 24, 2025, 3:58 p.m.

5.3

CVSS4.0

CVE-2024-9429 - code-projects Restaurant Reservation System filter2.php sql injection

A vulnerability has been found in code-projects Restaurant Reservation System 1.0 and classified as critical. Affected by this vulnerability is an unknown functionality of the file /filter2.php. The manipulation of the argument from/to leads to sql injection. The attack can be launched remotely. Th…

πŸ“… Published: Oct. 2, 2024, 12:31 p.m. πŸ”„ Last Modified: Oct. 7, 2024, 8:15 p.m.

8.8

CVSS3.1

CVE-2024-8885 -

A local privilege escalation vulnerability in Sophos Intercept X for Windows with Central Device Encryption 2024.2.0 and older allows writing of arbitrary files.

πŸ“… Published: Oct. 2, 2024, 12:25 p.m. πŸ”„ Last Modified: Oct. 4, 2024, 1:50 p.m.

7.9

CVSS3.1

CVE-2024-8038 -

Vulnerable juju introspection abstract UNIX domain socket. An abstract UNIX domain socket responsible for introspection is available without authentication locally to network namespace users. This enables denial of service attacks.

πŸ“… Published: Oct. 2, 2024, 10:12 a.m. πŸ”„ Last Modified: Aug. 26, 2025, 5:44 p.m.

6.5

CVSS3.1

CVE-2024-8037 -

Vulnerable juju hook tool abstract UNIX domain socket. When combined with an attack of JUJU_CONTEXT_ID, any user on the local system with access to the default network namespace may connect to the @/var/lib/juju/agents/unit-xxxx-yyyy/agent.socket and perform actions that are normally reserved to a …

πŸ“… Published: Oct. 2, 2024, 10:12 a.m. πŸ”„ Last Modified: Aug. 26, 2025, 5:48 p.m.

6.5

CVSS3.1

CVE-2024-35294 - Schneider Elektronik Series 700 prone to missing authentication for traffic capture function

An unauthenticated remote attacker may use the devices traffic capture without authentication to grab plaintext administrative credentials.

πŸ“… Published: Oct. 2, 2024, 10:07 a.m. πŸ”„ Last Modified: Oct. 4, 2024, 1:50 p.m.

8.7

CVSS3.1

CVE-2024-7558 -

JUJU_CONTEXT_ID is a predictable authentication secret. On a Juju machine (non-Kubernetes) or Juju charm container (on Kubernetes), an unprivileged user in the same network namespace can connect to an abstract domain socket and guess the JUJU_CONTEXT_ID value. This gives the unprivileged user acces…

πŸ“… Published: Oct. 2, 2024, 10:06 a.m. πŸ”„ Last Modified: Aug. 26, 2025, 5:42 p.m.

9.1

CVSS3.1

CVE-2024-35293 - Schneider Elektronik Series 700 prone to missing authentication for critical reset function

An unauthenticated remote attacker may use a missing authentication for critical function vulnerability to reboot or erase the affected devices resulting in data loss and/or a DoS.

πŸ“… Published: Oct. 2, 2024, 9:51 a.m. πŸ”„ Last Modified: Oct. 4, 2024, 1:50 p.m.

6.4

CVSS3.1

CVE-2024-8505 - WordPress Infinite Scroll - Ajax Load More <= 7.1.2 - Authenticated (Contributor+) Stored Cross-Sit…

The WordPress Infinite Scroll – Ajax Load More plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the β€˜button_label’ parameter in all versions up to, and including, 7.1.2 due to insufficient input sanitization and output escaping. This makes it possible for authenticated attacker…

πŸ“… Published: Oct. 2, 2024, 9:31 a.m. πŸ”„ Last Modified: Oct. 7, 2024, 7:26 p.m.

6.4

CVSS3.1

CVE-2024-8282 - Ibtana – WordPress Website Builder <= 1.2.4.4 - Authenticated (Contributor+) Stored Cross-Site Scri…

The Ibtana – WordPress Website Builder plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the β€˜align’ attribute within the 'wp:ive/ive-productscarousel' Gutenberg block in all versions up to, and including, 1.2.4.4 due to insufficient input sanitization and output escaping. This …

πŸ“… Published: Oct. 2, 2024, 9:31 a.m. πŸ”„ Last Modified: Oct. 7, 2024, 8:11 p.m.
Total resulsts: 342251
Page 7726 of 34,226
Β« previous page Β» next page
Filters