5.3

CVSS4.0

CVE-2024-9031 - CodeCanyon CRMGo SaaS show cross site scripting

A vulnerability, which was classified as problematic, has been found in CodeCanyon CRMGo SaaS up to 7.2. This issue affects some unknown processing of the file /project/task/{task_id}/show. The manipulation of the argument comment leads to cross site scripting. The attack may be initiated remotely.…

πŸ“… Published: Sept. 20, 2024, noon πŸ”„ Last Modified: Sept. 25, 2024, 4:52 p.m.

5.3

CVSS4.0

CVE-2024-9030 - CodeCanyon CRMGo SaaS note cross site scripting

A vulnerability classified as problematic was found in CodeCanyon CRMGo SaaS 7.2. This vulnerability affects unknown code of the file /deal/{note_id}/note. The manipulation of the argument notes leads to cross site scripting. The attack can be initiated remotely. The exploit has been disclosed to t…

πŸ“… Published: Sept. 20, 2024, noon πŸ”„ Last Modified: Sept. 25, 2024, 6:01 p.m.

9.8

CVSS3.1

CVE-2024-9043 - Cellopoint Secure Email Gateway - Buffer Overflow

Secure Email Gateway from Cellopoint has Buffer Overflow Vulnerability in authentication process. Remote unauthenticated attackers can send crafted packets to crash the process, thereby bypassing authentication and obtaining system administrator privileges.

πŸ“… Published: Sept. 20, 2024, 10:14 a.m. πŸ”„ Last Modified: Sept. 25, 2024, 5:54 p.m.

8.1

CVSS3.1

CVE-2024-41721 - bhyve(8) out-of-bounds read access via XHCI emulation

An insufficient boundary validation in the USB code could lead to an out-of-bounds read on the heap, which could potentially lead to an arbitrary write and remote code execution.

πŸ“… Published: Sept. 20, 2024, 7:51 a.m. πŸ”„ Last Modified: April 15, 2026, 12:35 a.m.

9.8

CVSS3.1

CVE-2024-8853 - Webo-facto <= 1.40 - Unauthenticated Privilege Escalation

The Webo-facto plugin for WordPress is vulnerable to privilege escalation in versions up to, and including, 1.40 due to insufficient restriction on the 'doSsoAuthentification' function. This makes it possible for unauthenticated attackers to make themselves administrators by registering with a user…

πŸ“… Published: Sept. 20, 2024, 7:33 a.m. πŸ”„ Last Modified: April 8, 2026, 5:19 p.m.

5.3

CVSS4.0

CVE-2024-9011 - code-projects Crud Operation System updata.php sql injection

A vulnerability, which was classified as critical, was found in code-projects Crud Operation System 1.0. Affected is an unknown function of the file updata.php. The manipulation of the argument sid leads to sql injection. It is possible to launch the attack remotely. The exploit has been disclosed …

πŸ“… Published: Sept. 20, 2024, midnight πŸ”„ Last Modified: Sept. 25, 2024, 5:48 p.m.

7.5

CVSS3.1

CVE-2024-46648 -

eNMS 4.4.0 to 4.7.1 is vulnerable to Directory Traversal via scan_folder.

πŸ“… Published: Sept. 20, 2024, midnight πŸ”„ Last Modified: April 16, 2025, 7:18 p.m.

3.8

CVSS3.1

CVE-2024-8612 - Qemu-kvm: information leak in virtio devices

A flaw was found in QEMU, in the virtio-scsi, virtio-blk, and virtio-crypto devices. The size for virtqueue_push as set in virtio_scsi_complete_req / virtio_blk_req_complete / virito_crypto_req_complete could be larger than the true size of the data which has been sent to guest. Once virtqueue_push…

πŸ“… Published: Sept. 20, 2024, midnight πŸ”„ Last Modified: April 15, 2026, 12:35 a.m.

4.8

CVSS3.1

CVE-2024-46654 -

A stored cross-site scripting (XSS) vulnerability in the Add Scheduled Task module of Maccms10 v2024.1000.4040 allows attackers to execute arbitrary web scripts or HTML via a crafted payload.

πŸ“… Published: Sept. 20, 2024, midnight πŸ”„ Last Modified: April 28, 2025, 5:51 p.m.

9.8

CVSS3.1

CVE-2024-46640 -

SeaCMS 13.2 has a remote code execution vulnerability located in the file sql.class.chp. Although the system has a check function, the check function is not executed during execution, allowing remote code execution by writing to the file through the MySQL slow query method.

πŸ“… Published: Sept. 20, 2024, midnight πŸ”„ Last Modified: March 28, 2025, 5:12 p.m.
Total resulsts: 349182
Page 8502 of 34,919
Β« previous page Β» next page
Filters