8.4

CVSS3.1

CVE-2024-35517 -

Netgear XR1000 v1.0.0.64 is vulnerable to command injection in usb_remote_smb_conf.cgi via the share_name parameter.

πŸ“… Published: Oct. 11, 2024, midnight πŸ”„ Last Modified: March 13, 2025, 5:15 p.m.

8.8

CVSS3.1

CVE-2024-48813 -

SQL injection vulnerability in employee-management-system-php-and-mysql-free-download.html taskmatic 1.0 allows a remote attacker to execute arbitrary code via the admin_id parameter of the /update-employee.php component.

πŸ“… Published: Oct. 11, 2024, midnight πŸ”„ Last Modified: April 15, 2026, 12:35 a.m.

6.5

CVSS3.1

CVE-2024-44415 -

A vulnerability was discovered in DI_8200-16.07.26A1, There is a buffer overflow in the dbsrv_asp function; The strcpy function is executed without checking the length of the string, leading to a buffer overflow.

πŸ“… Published: Oct. 11, 2024, midnight πŸ”„ Last Modified: April 15, 2026, 12:35 a.m.

7.5

CVSS3.1

CVE-2024-44729 -

Incorrect access control in the component app/src/server.js of Mirotalk before commit 9de226 allows unauthenticated attackers without presenter privileges to arbitrarily eject users from a meeting.

πŸ“… Published: Oct. 11, 2024, midnight πŸ”„ Last Modified: April 15, 2026, 12:35 a.m.

9.1

CVSS3.1

CVE-2024-48786 -

An issue in SWITCHBOT INC SwitchBot (com.theswitchbot.switchbot) 5.0.4 allows a remote attacker to obtain sensitive information via the firmware update process.

πŸ“… Published: Oct. 11, 2024, midnight πŸ”„ Last Modified: April 15, 2026, 12:35 a.m.

6.2

CVSS3.1

CVE-2024-45184 -

An issue was discovered in Samsung Mobile Processor, Wearable Processor, and Modems with chipset Exynos 9820, 9825, 980, 990, 850, 1080, 2100, 1280, 2200, 1330, 1380, 1480, 2400, 9110, W920, W930, Modem 5123, and Modem 5300. A USAT out-of-bounds write due to a heap buffer overflow can lead to a Den…

πŸ“… Published: Oct. 11, 2024, midnight πŸ”„ Last Modified: June 17, 2025, 3:42 p.m.

8.8

CVSS3.1

CVE-2024-48827 -

An issue in sbondCo Watcharr v.1.43.0 allows a remote attacker to execute arbitrary code and escalate privileges via the Change Password function.

πŸ“… Published: Oct. 11, 2024, midnight πŸ”„ Last Modified: Sept. 29, 2025, 5:28 p.m.

8.4

CVSS3.1

CVE-2024-35522 -

Netgear EX3700 ' AC750 WiFi Range Extender Essentials Edition before 1.0.0.98 contains an authenticated command injection in operating_mode.cgi via the ap_mode parameter with ap_24g_manual set to 1 and ap_24g_manual_sec set to NotNone.

πŸ“… Published: Oct. 11, 2024, midnight πŸ”„ Last Modified: March 13, 2025, 5:15 p.m.

6.9

CVSS4.0

CVE-2024-9818 - SourceCodester Online Veterinary Appointment System manage_category.php sql injection

A vulnerability classified as critical has been found in SourceCodester Online Veterinary Appointment System 1.0. Affected is an unknown function of the file /admin/categories/manage_category.php. The manipulation of the argument id leads to sql injection. It is possible to launch the attack remote…

πŸ“… Published: Oct. 10, 2024, 10:31 p.m. πŸ”„ Last Modified: Oct. 17, 2024, 6:13 p.m.

5.3

CVSS4.0

CVE-2024-9817 - code-projects Blood Bank System update.php sql injection

A vulnerability was found in code-projects Blood Bank System 1.0. It has been classified as critical. This affects an unknown part of the file /update.php. The manipulation of the argument name leads to sql injection. It is possible to initiate the attack remotely. The exploit has been disclosed to…

πŸ“… Published: Oct. 10, 2024, 10:31 p.m. πŸ”„ Last Modified: Oct. 17, 2024, 6:12 p.m.
Total resulsts: 349182
Page 8322 of 34,919
Β« previous page Β» next page
Filters