3.9

CVSS3.1

CVE-2024-35282 -

A cleartext storage of sensitive information in memory vulnerability [CWE-316] affecting FortiClient VPN iOS 7.2 all versions, 7.0 all versions, 6.4 all versions, 6.2 all versions, 6.0 all versions may allow an unauthenticated attacker that has physical access to a jailbroken device to obtain clear…

📅 Published: Sept. 10, 2024, 2:37 p.m. 🔄 Last Modified: Jan. 14, 2026, 9:18 a.m.

6.9

CVSS3.1

CVE-2024-33508 -

An improper neutralization of special elements used in a command ('Command Injection') vulnerability [CWE-77] in Fortinet FortiClientEMS 7.2.0 through 7.2.4, 7.0.0 through 7.0.12 may allow an unauthenticated attacker to execute limited and temporary operations on the underlying database via crafted…

📅 Published: Sept. 10, 2024, 2:37 p.m. 🔄 Last Modified: Sept. 20, 2024, 7:48 p.m.

4.7

CVSS3.1

CVE-2023-44254 -

An authorization bypass through user-controlled key [CWE-639] vulnerability in FortiAnalyzer version 7.4.1 and before 7.2.5 and FortiManager version 7.4.1 and before 7.2.5 may allow a remote attacker with low privileges to read sensitive data via a crafted HTTP request.

📅 Published: Sept. 10, 2024, 2:37 p.m. 🔄 Last Modified: Dec. 12, 2024, 1:56 p.m.

4.2

CVSS3.1

CVE-2024-31490 -

An exposure of sensitive information to an unauthorized actor vulnerability in Fortinet FortiSandbox 4.4.0 through 4.4.4, FortiSandbox 4.2.1 through 4.2.6, FortiSandbox 4.0 all versions, FortiSandbox 3.2.2 through 3.2.4, FortiSandbox 3.1.5 allows attacker to information disclosure via HTTP get requ…

📅 Published: Sept. 10, 2024, 2:37 p.m. 🔄 Last Modified: Jan. 14, 2026, 2:16 p.m.

4.6

CVSS3.1

CVE-2024-45323 -

An improper access control vulnerability [CWE-284] in FortiEDR Manager API 6.2.0 through 6.2.2, 6.0 all versions may allow in a shared environment context an authenticated admin with REST API permissions in his profile and restricted to a specific organization to access backend logs that include in…

📅 Published: Sept. 10, 2024, 2:37 p.m. 🔄 Last Modified: Sept. 20, 2024, 4:23 p.m.

5

CVSS3.1

CVE-2024-43796 - express vulnerable to XSS via response.redirect()

Express.js minimalist web framework for node. In express < 4.20.0, passing untrusted user input - even after sanitizing it - to response.redirect() may execute untrusted code. This issue is patched in express 4.20.0.

📅 Published: Sept. 10, 2024, 2:36 p.m. 🔄 Last Modified: Sept. 20, 2024, 4:07 p.m.

4.3

CVSS3.1

CVE-2024-27257 - IBM OpenPages information disclosure

IBM OpenPages 8.3 and 9.0 potentially exposes information about client-side source code through use of JavaScript source maps to unauthorized users.

📅 Published: Sept. 10, 2024, 2:24 p.m. 🔄 Last Modified: Sept. 16, 2024, 2:26 p.m.

5

CVSS3.1

CVE-2024-8654 - MongoDB Server may access non-initialized region of memory leading to unexpected behaviour

MongoDB Server may access non-initialized region of memory leading to unexpected behaviour when zero arguments are called in internal aggregation stage. This issue affected MongoDB Server v6.0 version 6.0.3.

📅 Published: Sept. 10, 2024, 1:35 p.m. 🔄 Last Modified: Sept. 22, 2025, 6:39 p.m.

5.3

CVSS3.1

CVE-2024-8369 - EventPrime <= 4.0.4.3 - Missing Authorization to Unauthenticated Private or Password-Protected Even…

The EventPrime – Events Calendar, Bookings and Tickets plugin for WordPress is vulnerable to unauthorized access to Private or Password-protected events due to missing authorization checks in all versions up to, and including, 4.0.4.3. This makes it possible for unauthenticated attackers to view pr…

📅 Published: Sept. 10, 2024, 11:30 a.m. 🔄 Last Modified: April 8, 2026, 5:10 p.m.

5.4

CVSS3.1

CVE-2024-6282 - Master Addons – Free Widgets, Hover Effects, Toggle, Conditions, Animations for Elementor <= 2.0.6.…

The Master Addons – Free Widgets, Hover Effects, Toggle, Conditions, Animations for Elementor plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the data-jltma-wrapper-link element in all versions up to, and including 2.0.6.4 due to insufficient input sanitization and output esca…

📅 Published: Sept. 10, 2024, 11:30 a.m. 🔄 Last Modified: April 8, 2026, 5:05 p.m.
Total resulsts: 349182
Page 8616 of 34,919
« previous page » next page
Filters