8.8

CVSS4.0

CVE-2024-47849 - Backticks can allow the usage of not-allowed SQL functions

Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in The Wikimedia Foundation Mediawiki - Cargo allows SQL Injection.This issue affects Mediawiki - Cargo: from 3.6.X before 3.6.1.

๐Ÿ“… Published: Oct. 5, 2024, 12:29 a.m. ๐Ÿ”„ Last Modified: Oct. 16, 2024, 4:34 p.m.

6.9

CVSS4.0

CVE-2024-47845 - CSS sanitizer used incorrectly, and is easily bypassed

Improper Encoding or Escaping of Output vulnerability in The Wikimedia Foundation Mediawiki - CSS Extension allows Code Injection.This issue affects Mediawiki - CSS Extension: from 1.39.X before 1.39.9, from 1.41.X before 1.41.3, from 1.42.X before 1.42.2.

๐Ÿ“… Published: Oct. 5, 2024, 12:09 a.m. ๐Ÿ”„ Last Modified: Oct. 23, 2024, 3 p.m.

6.9

CVSS4.0

CVE-2024-47848 - User can review/unreview articles while blocked

Exposure of Sensitive Information to an Unauthorized Actor vulnerability in The Wikimedia Foundation Mediawiki - PageTriage allows Authentication Bypass.This issue affects Mediawiki - PageTriage: from 1.39.X before 1.39.9, from 1.41.X before 1.41.3, from 1.42.X before 1.42.2.

๐Ÿ“… Published: Oct. 4, 2024, 11:53 p.m. ๐Ÿ”„ Last Modified: April 15, 2026, 12:35 a.m.

8.7

CVSS4.0

CVE-2024-43683 - Improper verification of the Host header in TimeProvider 4100

URL Redirection to Untrusted Site ('Open Redirect') vulnerability in Microchip TimeProvider 4100 allows XSS Through HTTP Headers.This issue affects TimeProvider 4100: from 1.0.

๐Ÿ“… Published: Oct. 4, 2024, 7:56 p.m. ๐Ÿ”„ Last Modified: Nov. 1, 2024, 4:15 p.m.

8.7

CVSS4.0

CVE-2024-43684 - Cross-Site Request Forgery vulnerability in TimeProvider 4100

Cross-Site Request Forgery (CSRF) vulnerability in Microchip TimeProvider 4100 allows Cross Site Request Forgery, Cross-Site Scripting (XSS).This issue affects TimeProvider 4100: from 1.0.

๐Ÿ“… Published: Oct. 4, 2024, 7:51 p.m. ๐Ÿ”„ Last Modified: Aug. 29, 2025, 9:15 p.m.

8.7

CVSS4.0

CVE-2024-43685 - Session token fixation in TimeProvider 4100

Improper Authentication vulnerability in Microchip TimeProvider 4100 (login modules) allows Session Hijacking.This issue affects TimeProvider 4100: from 1.0 before 2.4.7.

๐Ÿ“… Published: Oct. 4, 2024, 7:48 p.m. ๐Ÿ”„ Last Modified: Sept. 29, 2025, 9:40 p.m.

5.4

CVSS4.0

CVE-2024-43686 - Reflected XSS in TimeProvider 4100 chart component

Improper Neutralization of Input During Web Page Generation (XSS or 'Cross-site Scripting') vulnerability in Microchip TimeProvider 4100 (data plot modules) allows Reflected XSS.This issue affects TimeProvider 4100: from 1.0 before 2.4.7.

๐Ÿ“… Published: Oct. 4, 2024, 7:47 p.m. ๐Ÿ”„ Last Modified: Oct. 16, 2024, 7:20 p.m.

8.5

CVSS4.0

CVE-2024-9054 - Remote code Execution inTimeProviderยฎ 4100

Improper Neutralization of Special Elements used in an OS Command ('OS Command Injection'), Exposure of Sensitive Information to an Unauthorized Actor vulnerability in Microchip TimeProvider 4100 (Configuration modules) allows Command Injection.This issue affects TimeProvider 4100: from 1.0 before โ€ฆ

๐Ÿ“… Published: Oct. 4, 2024, 7:42 p.m. ๐Ÿ”„ Last Modified: Sept. 29, 2025, 9:41 p.m.

7.7

CVSS4.0

CVE-2024-43687 - XSS vulnerability in bannerconfig endpoint in TimeProvider 4100

Improper Neutralization of Input During Web Page Generation (XSS or 'Cross-site Scripting') vulnerability in Microchip TimeProvider 4100 (banner config modules) allows Cross-Site Scripting (XSS).This issue affects TimeProvider 4100: from 1.0 before 2.4.7.

๐Ÿ“… Published: Oct. 4, 2024, 7:41 p.m. ๐Ÿ”„ Last Modified: May 23, 2025, 3:13 p.m.

6.3

CVSS4.0

CVE-2024-7801 - SQL injection in get_chart_data in TimeProvider 4100

Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in Microchip TimeProvider 4100 (Data plot modules) allows SQL Injection.This issue affects TimeProvider 4100: from 1.0 before 2.4.7.

๐Ÿ“… Published: Oct. 4, 2024, 7:38 p.m. ๐Ÿ”„ Last Modified: Oct. 17, 2024, 3:19 p.m.
Total resulsts: 349182
Page 8399 of 34,919
ยซ previous page ยป next page
Filters