8

CVSS3.1

CVE-2024-48631 -

D-Link DIR_882_FW130B06 and DIR_878 DIR_878_FW130B08 were discovered to contain a command injection vulnerability via the SSID parameter in the SetWLanRadioSettings function. This vulnerability allows attackers to execute arbitrary OS commands via a crafted POST request.

πŸ“… Published: Oct. 17, 2024, midnight πŸ”„ Last Modified: May 7, 2025, 4:06 p.m.

5.3

CVSS3.1

CVE-2024-49593 -

In Advanced Custom Fields (ACF) before 6.3.9 and Secure Custom Fields before 6.3.6.3 (plugins for WordPress), using the Field Group editor to edit one of the plugin's fields can result in execution of a stored XSS payload. NOTE: if you wish to use the WP Engine alternative update mechanism for the …

πŸ“… Published: Oct. 17, 2024, midnight πŸ”„ Last Modified: April 15, 2026, 12:35 a.m.

8

CVSS3.1

CVE-2024-48629 -

D-Link DIR_882_FW130B06 and DIR_878 DIR_878_FW130B08 were discovered to contain a command injection vulnerability via the IPAddress parameter in the SetGuestZoneRouterSettings function. This vulnerability allows attackers to execute arbitrary OS commands via a crafted POST request.

πŸ“… Published: Oct. 17, 2024, midnight πŸ”„ Last Modified: May 7, 2025, 4:07 p.m.

5.7

CVSS3.1

CVE-2024-27766 - mariadb: RCE via user defined function

An issue in MariaDB v.11.1 allows a remote attacker to execute arbitrary code via the lib_mysqludf_sys.so function. NOTE: this is disputed by the MariaDB Foundation because no privilege boundary is crossed.

πŸ“… Published: Oct. 17, 2024, midnight πŸ”„ Last Modified: July 10, 2025, 7:12 p.m.

7.1

CVSS3.1

CVE-2024-30875 - jquery-ui: XSS via window.addEventListener

Cross Site Scripting vulnerability in JavaScript Library jquery-ui v.1.13.1 allows a remote attacker to obtain sensitive information and execute arbitrary code via a crafted payload to the window.addEventListener component. NOTE: this is disputed by the Supplier because it cannot be reproduced, and…

πŸ“… Published: Oct. 17, 2024, midnight πŸ”„ Last Modified: April 15, 2026, 12:35 a.m.

9.8

CVSS3.1

CVE-2023-26785 - mariadb: RCE vulnerability

MariaDB v10.5 was discovered to contain a remote code execution (RCE) vulnerability via UDF Code in a Shared Object File, followed by a "create function" statement. NOTE: this is disputed by the MariaDB Foundation because no privilege boundary is crossed.

πŸ“… Published: Oct. 17, 2024, midnight πŸ”„ Last Modified: July 10, 2025, 7:06 p.m.

8

CVSS3.1

CVE-2024-48637 -

D-Link DIR_882_FW130B06 and DIR_878 DIR_878_FW130B08 were discovered to contain a command injection vulnerability via the VLANID:1/VID parameter in the SetVLANSettings function. This vulnerability allows attackers to execute arbitrary OS commands via a crafted POST request.

πŸ“… Published: Oct. 17, 2024, midnight πŸ”„ Last Modified: May 7, 2025, 4:06 p.m.

5.6

CVSS3.1

CVE-2023-39593 - mariadb: authenticated RCE vulnerability

Insecure permissions in the sys_exec function of MariaDB v10.5 allows authenticated attackers to execute arbitrary commands with elevated privileges. NOTE: this is disputed by the MariaDB Foundation because no privilege boundary is crossed.

πŸ“… Published: Oct. 17, 2024, midnight πŸ”„ Last Modified: July 10, 2025, 7:09 p.m.

8

CVSS3.1

CVE-2024-48638 -

D-Link DIR_882_FW130B06 and DIR_878 DIR_878_FW130B08 were discovered to contain a command injection vulnerability via the SubnetMask parameter in the SetGuestZoneRouterSettings function. This vulnerability allows attackers to execute arbitrary OS commands via a crafted POST request.

πŸ“… Published: Oct. 17, 2024, midnight πŸ”„ Last Modified: May 7, 2025, 3:50 p.m.

7.5

CVSS3.1

CVE-2024-38819 - org.springframework:spring-webmvc: Path traversal vulnerability in functional web frameworks

Applications serving static resources through the functional web frameworks WebMvc.fn or WebFlux.fn are vulnerable to path traversal attacks. An attacker can craft malicious HTTP requests and obtain any file on the file system that is also accessible to the process in which the Spring application i…

πŸ“… Published: Oct. 17, 2024, midnight πŸ”„ Last Modified: April 15, 2026, 12:35 a.m.
Total resulsts: 349182
Page 8259 of 34,919
Β« previous page Β» next page
Filters