6.1

CVSS3.1

CVE-2024-20496 - Cisco SD-WAN vEdge Routers Denial of Service Vulnerability

A vulnerability in the UDP packet validation code of Cisco SD-WAN vEdge Software could allow an unauthenticated, adjacent attacker to cause a denial of service (DoS) condition on an affected system. This vulnerability is due to incorrect handling of a specific type of malformed UDP packet. An at…

πŸ“… Published: Sept. 25, 2024, 4:20 p.m. πŸ”„ Last Modified: April 15, 2026, 12:35 a.m.

6.4

CVSS3.1

CVE-2024-20475 - Cisco SD-WAN vManage Cross-Site Scripting Vulnerability

A vulnerability in the web-based management interface of Cisco Catalyst SD-WAN Manager, formerly Cisco SD-WAN vManage, could allow an authenticated, remote attacker to conduct a cross-site scripting (XSS) attack against a user of the interface. This vulnerability exists because the web-based man…

πŸ“… Published: Sept. 25, 2024, 4:19 p.m. πŸ”„ Last Modified: Oct. 3, 2024, 5:49 p.m.

5.8

CVSS3.1

CVE-2024-20508 - Cisco UTD Snort IPS Engine Software for Cisco IOS XE Software Security Policy Bypass and Denial of …

A vulnerability in Cisco Unified Threat Defense (UTD) Snort Intrusion Prevention System (IPS) Engine for Cisco IOS XE Software could allow an unauthenticated, remote attacker to bypass configured security policies or cause a denial of service (DoS) condition on an affected device. This vulnerabi…

πŸ“… Published: Sept. 25, 2024, 4:19 p.m. πŸ”„ Last Modified: Nov. 12, 2024, 3:03 p.m.

7.5

CVSS3.1

CVE-2024-20350 - Cisco Catalyst Center Static SSH Host Key Vulnerability

A vulnerability in the SSH server of Cisco Catalyst Center, formerly Cisco DNA Center, could allow an unauthenticated, remote attacker to impersonate a Cisco Catalyst Center appliance. This vulnerability is due to the presence of a static SSH host key. An attacker could exploit this vulnerabilit…

πŸ“… Published: Sept. 25, 2024, 4:19 p.m. πŸ”„ Last Modified: July 30, 2025, 4:08 p.m.

8.6

CVSS3.1

CVE-2024-20455 -

A vulnerability in the process that classifies traffic that is going to the Unified Threat Defense (UTD) component of Cisco IOS XE Software in controller mode could allow an unauthenticated, remote attacker to cause a denial of service (DoS) condition on an affected device. This vulnerability ex…

πŸ“… Published: Sept. 25, 2024, 4:18 p.m. πŸ”„ Last Modified: Oct. 24, 2024, 7:47 p.m.

8.1

CVSS3.1

CVE-2024-47078 - Meshtastic firmware Authentication/Authorization Bypass via MQTT

Meshtastic is an open source, off-grid, decentralized, mesh network. Meshtastic uses MQTT to communicate over an internet connection to a shared or private MQTT Server. Nodes can communicate directly via an internet connection or proxied through a connected phone (i.e., via bluetooth). Prior to ver…

πŸ“… Published: Sept. 25, 2024, 3:32 p.m. πŸ”„ Last Modified: Dec. 2, 2024, 6:31 p.m.

5.5

CVSS3.1

CVE-2024-7421 -

An information exposure in Devolutions Remote Desktop Manager 2024.2.20.0 and earlier on Windows allows local attackers with access to system logs to obtain session credentials via passwords included in command-line arguments when launching WinSCP sessions

πŸ“… Published: Sept. 25, 2024, 3:12 p.m. πŸ”„ Last Modified: March 17, 2025, 3:15 p.m.

5.3

CVSS3.1

CVE-2024-43237 - WordPress Tag Groups plugin <= 2.0.3 - Sensitive Data Exposure vulnerability

Exposure of Sensitive Information to an Unauthorized Actor vulnerability in Steve Burge WordPress Tag Cloud Plugin – Tag Groups tag-groups.This issue affects WordPress Tag Cloud Plugin – Tag Groups: from n/a through <= 2.0.3.

πŸ“… Published: Sept. 25, 2024, 2:48 p.m. πŸ”„ Last Modified: April 23, 2026, 3:18 p.m.

5.3

CVSS3.1

CVE-2024-43990 - WordPress Masterstudy LMS Starter theme <= 1.1.8 - Sensitive Data Exposure vulnerability

Insertion of Sensitive Information into Log File vulnerability in StylemixThemes Masterstudy LMS Starter.This issue affects Masterstudy LMS Starter: from n/a through 1.1.8.

πŸ“… Published: Sept. 25, 2024, 2:47 p.m. πŸ”„ Last Modified: April 15, 2026, 12:35 a.m.

7.1

CVSS3.1

CVE-2024-43959 - WordPress Super Testimonials plugin <= 4.0.1 - Reflected Cross Site Scripting (XSS) vulnerability

Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in Themepoints Testimonials super-testimonial allows Reflected XSS.This issue affects Testimonials: from n/a through <= 4.0.1.

πŸ“… Published: Sept. 25, 2024, 2:44 p.m. πŸ”„ Last Modified: April 23, 2026, 3:18 p.m.
Total resulsts: 349182
Page 8475 of 34,919
Β« previous page Β» next page
Filters