6.1

CVSS3.1

CVE-2024-5024 - MemberPress <= 1.11.29 - Reflected Cross-Site Scripting via mepr_screenname and mepr_key Parameters

The Memberpress plugin for WordPress is vulnerable to Reflected Cross-Site Scripting via the 'mepr_screenname' and 'mepr_key' parameter in all versions up to, and including, 1.11.29 due to insufficient input sanitization and output escaping. This makes it possible for unauthenticated attackers to i…

πŸ“… Published: Aug. 30, 2024, 3:24 a.m. πŸ”„ Last Modified: April 8, 2026, 5 p.m.

6.4

CVSS3.1

CVE-2024-5061 - Enfold <= 6.0.3 - Authenticated (Contributor+) Stored Cross-Site Scripting via wrapper_class and cl…

The Enfold - Responsive Multi-Purpose Theme theme for WordPress is vulnerable to Stored Cross-Site Scripting via the β€˜wrapper_class’ and 'class' parameters in all versions up to, and including, 6.0.3 due to insufficient input sanitization and output escaping. This makes it possible for authenticate…

πŸ“… Published: Aug. 30, 2024, 3:24 a.m. πŸ”„ Last Modified: April 8, 2026, 5:19 p.m.

8.8

CVSS3.1

CVE-2024-8330 - Gether Technology 6SHR System - Unrestricted File Upload

6SHR system from Gether Technology does not properly validate uploaded file types, allowing remote attackers with regular privileges to upload web shell scripts and use them to execute arbitrary system commands on the server.

πŸ“… Published: Aug. 30, 2024, 2:29 a.m. πŸ”„ Last Modified: Sept. 5, 2024, 1:41 p.m.

8.8

CVSS3.1

CVE-2024-8329 - Gether Technology 6SHR System - SQL Injection

6SHR system from Gether Technology does not properly validate the specific page parameter, allowing remote attackers with regular privilege to inject SQL command to read, modify, and delete database contents.

πŸ“… Published: Aug. 30, 2024, 2:24 a.m. πŸ”„ Last Modified: Sept. 5, 2024, 1:40 p.m.

5.4

CVSS3.1

CVE-2024-8328 - HWA JIUH DIGITAL TECHNOLOGY Easy test Online Learning and Testing Platform - Reflected XSS

Easy test Online Learning and Testing Platform from HWA JIUH DIGITAL TECHNOLOGY does not properly validate a specific page parameter, allowing remote attackers with regular privilege to inject arbitrary JavaScript code and perform Reflected Cross-site scripting attacks.

πŸ“… Published: Aug. 30, 2024, 2:20 a.m. πŸ”„ Last Modified: Sept. 4, 2024, 5:11 p.m.

8.8

CVSS3.1

CVE-2024-8327 - HWA JIUH DIGITAL TECHNOLOGY Easy test Online Learning and Testing Platform - SQL injection

Easy test Online Learning and Testing Platform fromΒ HWA JIUH DIGITAL TECHNOLOGY does not properly validate a specific page parameter, allowing remote attackers with regular privilege to inject arbitrary SQL commands to read, modify, and delete database contents.

πŸ“… Published: Aug. 30, 2024, 2:14 a.m. πŸ”„ Last Modified: Sept. 4, 2024, 5:11 p.m.

7.5

CVSS3.1

CVE-2024-8234 -

** UNSUPPORTED WHEN ASSIGNED ** A command injection vulnerability in the functions formSysCmd(), formUpgradeCert(), and formDelcert() in the Zyxel NWA1100-N firmware version 1.00(AACE.1)C0 could allow an unauthenticated attacker to execute some OS commands to access system files on an affected devi…

πŸ“… Published: Aug. 30, 2024, 12:28 a.m. πŸ”„ Last Modified: Jan. 22, 2025, 10:29 p.m.

7.3

CVSS3.1

CVE-2024-45491 - libexpat: Integer Overflow or Wraparound

An issue was discovered in libexpat before 2.6.3. dtdCopy in xmlparse.c can have an integer overflow for nDefaultAtts on 32-bit platforms (where UINT_MAX equals SIZE_MAX).

πŸ“… Published: Aug. 30, 2024, midnight πŸ”„ Last Modified: Nov. 4, 2025, 5:16 p.m.

3.5

CVSS3.1

CVE-2024-44918 -

A cross-site scripting (XSS) vulnerability in the component admin_datarelate.php of SeaCMS v12.9 allows attackers to execute arbitrary web scripts or HTML via a crafted payload.

πŸ“… Published: Aug. 30, 2024, midnight πŸ”„ Last Modified: March 28, 2025, 5:12 p.m.

7.2

CVSS3.1

CVE-2024-44916 -

Vulnerability in admin_ip.php in Seacms v13.1, when action=set, allows attackers to control IP parameters that are written to the data/admin/ip.php file and could result in arbitrary command execution.

πŸ“… Published: Aug. 30, 2024, midnight πŸ”„ Last Modified: March 28, 2025, 5:12 p.m.
Total resulsts: 349182
Page 8696 of 34,919
Β« previous page Β» next page
Filters