0.0

CVE-2024-9012 -

This CVE ID has been rejected or withdrawn by its CVE Numbering Authority.

πŸ“… Published: Sept. 19, 2024, 5:01 p.m. πŸ”„ Last Modified: July 5, 2025, 11:15 p.m.

5.9

CVSS4.0

CVE-2024-8653 - Netcat CMS: multiple reflected cross-site scripting vulnerabilities in netshop module

A vulnerability in NetCat CMS allows an attacker to execute JavaScript code in a user's browser when they visit specific paths on the site. This issue affects NetCat CMS v. 6.4.0.24126.2 and possibly others. Apply patch from vendor https://netcat.ru/ https://netcat.ru/] . Versions 6.4.0.24248 and…

πŸ“… Published: Sept. 19, 2024, 4:39 p.m. πŸ”„ Last Modified: Sept. 23, 2024, 5:55 p.m.

5.9

CVSS4.0

CVE-2024-8652 - Netcat CMS: reflected cross-site scripting in openstat module

A vulnerability in NetCat CMS allows an attacker to execute JavaScript code in a user's browser when they visit specific path on the site. This issue affects NetCat CMS v. 6.4.0.24126.2 and possibly others. Apply patch from vendor https://netcat.ru/ https://netcat.ru/] . Versions 6.4.0.24248 and …

πŸ“… Published: Sept. 19, 2024, 4:35 p.m. πŸ”„ Last Modified: Sept. 23, 2024, 5:53 p.m.

6.9

CVSS4.0

CVE-2024-8651 - Netcat CMS: user enumeration

A vulnerability in NetCat CMS allows an attacker to send a specially crafted http request that can be used to check whether a user exists in the system, which could be a basis for further attacks. This issue affects NetCat CMS v. 6.4.0.24126.2 and possibly others. Apply patch from vendor https://…

πŸ“… Published: Sept. 19, 2024, 4:30 p.m. πŸ”„ Last Modified: Sept. 23, 2024, 5:51 p.m.

0.0

CVE-2024-9010 -

This CVE ID has been rejected or withdrawn by its CVE Numbering Authority.

πŸ“… Published: Sept. 19, 2024, 4:05 p.m. πŸ”„ Last Modified: Feb. 11, 2025, 2:15 a.m.

8.7

CVSS4.0

CVE-2024-45862 - Cleartext Storage of Sensitive Information in Kastle Systems Access Control System

Kastle Systems firmware prior to May 1, 2024, stored machine credentials in cleartext, which may allow an attacker to access sensitive information.

πŸ“… Published: Sept. 19, 2024, 3:54 p.m. πŸ”„ Last Modified: Sept. 30, 2024, 7:33 p.m.

9.2

CVSS4.0

CVE-2024-45861 - Use of Hard-coded Credentials in Kastle Systems Access Control System

Kastle Systems firmware prior to May 1, 2024, contained a hard-coded credential, which if accessed may allow an attacker to access sensitive information.

πŸ“… Published: Sept. 19, 2024, 3:51 p.m. πŸ”„ Last Modified: Sept. 30, 2024, 7:25 p.m.

5.7

CVSS4.0

CVE-2024-8375 - Object deserialization in Reverb leading to RCE

There exists a use after free vulnerability in Reverb.Β Reverb supports the VARIANT datatype, which is supposed to represent an arbitrary object in C++. When a tensor proto of type VARIANT is unpacked, memory is first allocated to store the entire tensor, and a ctor is called on each instance. After…

πŸ“… Published: Sept. 19, 2024, 3:50 p.m. πŸ”„ Last Modified: July 22, 2025, 7:57 p.m.

8.7

CVSS3.1

CVE-2024-7737 - Stored Cross-site Scripting (XSS) vulnerability affecting 3DSwym in 3DSwymer from Release 3DEXPERIE…

A stored Cross-site Scripting (XSS) vulnerability affecting 3DSwym in 3DSwymer from Release 3DEXPERIENCE R2022x through Release 3DEXPERIENCE R2024x allows an attacker to execute arbitrary script code in user's browser session.

πŸ“… Published: Sept. 19, 2024, 3:19 p.m. πŸ”„ Last Modified: April 15, 2026, 12:35 a.m.

8.7

CVSS3.1

CVE-2024-7736 - Reflected Cross-site Scripting (XSS) vulnerability affecting ENOVIA Collaborative Industry Innovato…

A reflected Cross-site Scripting (XSS) vulnerability affecting ENOVIA Collaborative Industry Innovator from Release 3DEXPERIENCE R2022x through Release 3DEXPERIENCE R2024x allows an attacker to execute arbitrary script code in user's browser session.

πŸ“… Published: Sept. 19, 2024, 3:18 p.m. πŸ”„ Last Modified: Oct. 22, 2025, 4:20 p.m.
Total resulsts: 349182
Page 8507 of 34,919
Β« previous page Β» next page
Filters