7.5

CVSS3.1

CVE-2024-48791 -

An issue in Plug n Play Camera com.starvedia.mCamView.zwave 5.5.1 allows a remote attacker to obtain sensitive information via the firmware update process

πŸ“… Published: Oct. 14, 2024, midnight πŸ”„ Last Modified: April 15, 2026, 12:35 a.m.

7.3

CVSS3.1

CVE-2024-48255 -

Cloudlog 2.6.15 allows Oqrs.php get_station_info station_id SQL injection.

πŸ“… Published: Oct. 14, 2024, midnight πŸ”„ Last Modified: Oct. 16, 2024, 2:26 p.m.

8.4

CVSS3.1

CVE-2024-35519 -

Netgear EX6120 v1.0.0.68, Netgear EX6100 v1.0.2.28, and Netgear EX3700 v1.0.0.96 are vulnerable to command injection in operating_mode.cgi via the ap_mode parameter.

πŸ“… Published: Oct. 14, 2024, midnight πŸ”„ Last Modified: March 17, 2025, 4:15 p.m.

5.3

CVSS3.1

CVE-2024-49214 - haproxy: Spoofed IP Bypass in HAProxy QUIC Listener 0-RTT Sessions

QUIC in HAProxy 3.1.x before 3.1-dev7, 3.0.x before 3.0.5, and 2.9.x before 2.9.11 allows opening a 0-RTT session with a spoofed IP address. This can bypass the IP allow/block list functionality.

πŸ“… Published: Oct. 14, 2024, midnight πŸ”„ Last Modified: April 15, 2026, 12:35 a.m.

7.3

CVSS3.1

CVE-2024-48249 -

Wavelog 1.8.5 allows Gridmap_model.php get_band_confirmed SQL injection via band, sat, propagation, or mode.

πŸ“… Published: Oct. 14, 2024, midnight πŸ”„ Last Modified: May 27, 2025, 7:41 p.m.

7.3

CVSS3.1

CVE-2024-48257 -

Wavelog 1.8.5 allows Oqrs_model.php get_worked_modes station_id SQL injectioin.

πŸ“… Published: Oct. 14, 2024, midnight πŸ”„ Last Modified: Oct. 16, 2024, 2:24 p.m.

6.1

CVSS3.1

CVE-2024-48821 -

Cross Site Scripting vulnerability in Automatic Systems Maintenance SlimLane 29565_d74ecce0c1081d50546db573a499941b10799fb7 allows a remote attacker to escalate privileges via the FtpConfig.php component.

πŸ“… Published: Oct. 14, 2024, midnight πŸ”„ Last Modified: April 15, 2026, 12:35 a.m.

7.5

CVSS3.1

CVE-2024-48799 -

An issue in LOREX TECHNOLOGY INC com.lorexcorp.lorexping 1.4.22 allows a remote attacker to obtain sensitive information via the firmware update process.

πŸ“… Published: Oct. 14, 2024, midnight πŸ”„ Last Modified: April 15, 2026, 12:35 a.m.

5.9

CVSS3.1

CVE-2024-48793 -

An issue in INATRONIC com.inatronic.bmw 2.7.1 allows a remote attacker to obtain sensitive information via the firmware update process.

πŸ“… Published: Oct. 14, 2024, midnight πŸ”„ Last Modified: April 15, 2026, 12:35 a.m.

9.8

CVSS3.0

CVE-2024-7099 - SQL Injection in netease-youdao/qanything

netease-youdao/qanything version 1.4.1 contains a vulnerability where unsafe data obtained from user input is concatenated in SQL queries, leading to SQL injection. The affected functions include `get_knowledge_base_name`, `from_status_to_status`, `delete_files`, and `get_file_by_status`. An attack…

πŸ“… Published: Oct. 13, 2024, 9:09 p.m. πŸ”„ Last Modified: July 30, 2025, 7:44 p.m.
Total resulsts: 349182
Page 8304 of 34,919
Β« previous page Β» next page
Filters