10

CVSS3.1

CVE-2024-49668 - WordPress Verbalize WP plugin <= 1.0 - Arbitrary File Upload vulnerability

Unrestricted Upload of File with Dangerous Type vulnerability in christopherdewese1099 Verbalize WP verbalize-wp allows Upload a Web Shell to a Web Server.This issue affects Verbalize WP: from n/a through <= 1.0.

πŸ“… Published: Oct. 23, 2024, 3:36 p.m. πŸ”„ Last Modified: April 23, 2026, 3:19 p.m.

9.9

CVSS3.1

CVE-2024-49669 - WordPress INK Official plugin <= 4.1.2 - Arbitrary File Upload vulnerability

Unrestricted Upload of File with Dangerous Type vulnerability in Alexander De Ridder INK Official ink-official allows Upload a Web Shell to a Web Server.This issue affects INK Official: from n/a through <= 4.1.2.

πŸ“… Published: Oct. 23, 2024, 3:35 p.m. πŸ”„ Last Modified: April 23, 2026, 3:19 p.m.

0.0

CVE-2024-49671 - WordPress AI Postpix plugin <= 1.1.8 - Arbitrary File Upload vulnerability

Unrestricted Upload of File with Dangerous Type vulnerability in Dogu Pekgoz AI Image Generator for Your Content & Featured Images – AI Postpix ai-postpix allows Upload a Web Shell to a Web Server.This issue affects AI Image Generator for Your Content & Featured Images – AI Postpix: from n/a throug…

πŸ“… Published: Oct. 23, 2024, 3:34 p.m. πŸ”„ Last Modified: April 23, 2026, 3:19 p.m.

6.6

CVSS3.1

CVE-2024-49676 - WordPress Custom Icons for Elementor plugin <= 0.3.3 - Arbitrary File Upload vulnerability

Unrestricted Upload of File with Dangerous Type vulnerability in Michael Bourne Custom Icons for Elementor custom-icons-for-elementor allows Upload a Web Shell to a Web Server.This issue affects Custom Icons for Elementor: from n/a through <= 0.3.3.

πŸ“… Published: Oct. 23, 2024, 3:31 p.m. πŸ”„ Last Modified: April 23, 2026, 3:19 p.m.

5.3

CVSS4.0

CVE-2024-10292 - ZZCMS ChangeTable.php unrestricted upload

A vulnerability was found in ZZCMS 2023 and classified as critical. This issue affects some unknown processing of the file 3/Ebak5.1/upload/ChangeTable.php. The manipulation of the argument savefilename leads to unrestricted upload. The attack may be initiated remotely. The exploit has been disclos…

πŸ“… Published: Oct. 23, 2024, 3:31 p.m. πŸ”„ Last Modified: Oct. 30, 2024, 1:40 p.m.

5.3

CVSS4.0

CVE-2024-10291 - ZZCMS phome.php Ebak_DotranExecutSQL sql injection

A vulnerability has been found in ZZCMS 2023 and classified as critical. This vulnerability affects the function Ebak_DoExecSQL/Ebak_DotranExecutSQL of the file 3/Ebak5.1/upload/phome.php. The manipulation of the argument phome leads to sql injection. The attack can be initiated remotely. The explo…

πŸ“… Published: Oct. 23, 2024, 3:31 p.m. πŸ”„ Last Modified: Oct. 30, 2024, 1:23 p.m.

4

CVSS3.1

CVE-2024-30124 - HCL Sametime is impacted by insecure services

HCL Sametime is impacted by insecure services in-use on the UIM client by default. An unused legacy REST service was enabled by default using the HTTP protocol. An attacker could potentially use this service endpoint maliciously.

πŸ“… Published: Oct. 23, 2024, 3:17 p.m. πŸ”„ Last Modified: Jan. 8, 2026, 7:46 p.m.

7.5

CVSS3.1

CVE-2024-49690 - WordPress Qi Blocks plugin <= 1.3.2 - Local File Inclusion vulnerability

Improper Control of Filename for Include/Require Statement in PHP Program ('PHP Remote File Inclusion') vulnerability in Qode Qi Blocks qi-blocks.This issue affects Qi Blocks: from n/a through <= 1.3.2.

πŸ“… Published: Oct. 23, 2024, 3:16 p.m. πŸ”„ Last Modified: April 23, 2026, 3:19 p.m.

7.5

CVSS3.1

CVE-2024-49701 - WordPress Mags theme <= 1.1.6 - Local File Inclusion vulnerability

Improper Control of Filename for Include/Require Statement in PHP Program ('PHP Remote File Inclusion') vulnerability in themehorse Mags mags.This issue affects Mags: from n/a through <= 1.1.6.

πŸ“… Published: Oct. 23, 2024, 3:15 p.m. πŸ”„ Last Modified: April 23, 2026, 3:19 p.m.

7.2

CVSS3.1

CVE-2024-49684 - WordPress Backup and Staging by WP Time Capsule plugin <= 1.22.21 - PHP Object Injection vulnerabil…

Deserialization of Untrusted Data vulnerability in revmakx Backup and Staging by WP Time Capsule wp-time-capsule allows Object Injection.This issue affects Backup and Staging by WP Time Capsule: from n/a through <= 1.22.21.

πŸ“… Published: Oct. 23, 2024, 3:13 p.m. πŸ”„ Last Modified: April 23, 2026, 3:19 p.m.
Total resulsts: 349182
Page 8169 of 34,919
Β« previous page Β» next page
Filters