5.4

CVSS3.1

CVE-2024-42793 -

A Cross-Site Request Forgery (CSRF) vulnerability was found in Kashipara Music Management System v1.0 via a crafted request to the /music/ajax.php?action=save_user page.

πŸ“… Published: Aug. 28, 2024, midnight πŸ”„ Last Modified: Aug. 30, 2024, 3:56 p.m.

8.8

CVSS3.1

CVE-2024-34195 -

TOTOLINK AC1200 Wireless Router A3002R Firmware V1.1.1-B20200824 is vulnerable to Buffer Overflow. In the boa server program's CGI handling function formWlEncrypt, there is a lack of length restriction on the wlan_ssid field. This oversight leads to potential buffer overflow under specific circumst…

πŸ“… Published: Aug. 28, 2024, midnight πŸ”„ Last Modified: Aug. 30, 2024, 3:59 p.m.

9.1

CVSS3.1

CVE-2024-44760 -

Incorrect access control in the component /servlet/SnoopServlet of Shenzhou News Union Enterprise Management System v5.0 through v18.8 allows attackers to access sensitive information regarding the server.

πŸ“… Published: Aug. 28, 2024, midnight πŸ”„ Last Modified: Nov. 15, 2024, 8:15 p.m.

8.7

CVSS4.0

CVE-2024-8226 - Tenda O1 setcfm formSetCfm stack-based overflow

A vulnerability has been found in Tenda O1 1.0.0.7(10648) and classified as critical. Affected by this vulnerability is the function formSetCfm of the file /goform/setcfm. The manipulation of the argument funcpara1 leads to stack-based buffer overflow. The attack can be launched remotely. The explo…

πŸ“… Published: Aug. 27, 2024, 11:31 p.m. πŸ”„ Last Modified: Aug. 29, 2024, 12:13 a.m.

8.7

CVSS4.0

CVE-2024-8225 - Tenda G3 SetSysTimeCfg formSetSysTime stack-based overflow

A vulnerability, which was classified as critical, was found in Tenda G3 15.11.0.20. Affected is the function formSetSysTime of the file /goform/SetSysTimeCfg. The manipulation of the argument sysTimePolicy leads to stack-based buffer overflow. It is possible to launch the attack remotely. The expl…

πŸ“… Published: Aug. 27, 2024, 11 p.m. πŸ”„ Last Modified: Aug. 29, 2024, 12:14 a.m.

8.7

CVSS4.0

CVE-2024-8224 - Tenda G3 setDebugCfg formSetDebugCfg stack-based overflow

A vulnerability, which was classified as critical, has been found in Tenda G3 15.11.0.20. This issue affects the function formSetDebugCfg of the file /goform/setDebugCfg. The manipulation of the argument enable/level/module leads to stack-based buffer overflow. The attack may be initiated remotely.…

πŸ“… Published: Aug. 27, 2024, 11 p.m. πŸ”„ Last Modified: Dec. 13, 2024, 3:15 p.m.

5.3

CVSS4.0

CVE-2024-8223 - SourceCodester Music Gallery Site Master.php sql injection

A vulnerability classified as critical was found in SourceCodester Music Gallery Site 1.0. This vulnerability affects unknown code of the file /classes/Master.php?f=delete_category. The manipulation of the argument id leads to sql injection. The attack can be initiated remotely. The exploit has bee…

πŸ“… Published: Aug. 27, 2024, 10:31 p.m. πŸ”„ Last Modified: Aug. 29, 2024, 3:11 p.m.

5.3

CVSS4.0

CVE-2024-8222 - SourceCodester Music Gallery Site sql injection

A vulnerability classified as critical has been found in SourceCodester Music Gallery Site 1.0. This affects an unknown part of the file /admin/?page=musics/manage_music. The manipulation of the argument id leads to sql injection. It is possible to initiate the attack remotely. The exploit has been…

πŸ“… Published: Aug. 27, 2024, 10:31 p.m. πŸ”„ Last Modified: Aug. 29, 2024, 3:13 p.m.

5.3

CVSS4.0

CVE-2024-8221 - SourceCodester Music Gallery Site manage_category.php sql injection

A vulnerability was found in SourceCodester Music Gallery Site 1.0. It has been rated as critical. Affected by this issue is some unknown functionality of the file /admin/categories/manage_category.php. The manipulation of the argument id leads to sql injection. The attack may be launched remotely.…

πŸ“… Published: Aug. 27, 2024, 10 p.m. πŸ”„ Last Modified: Aug. 29, 2024, 3:32 p.m.

5.3

CVSS4.0

CVE-2024-8220 - itsourcecode Tailoring Management System staffedit.php sql injection

A vulnerability was found in itsourcecode Tailoring Management System 1.0. It has been declared as critical. Affected by this vulnerability is an unknown functionality of the file staffedit.php. The manipulation of the argument id/stafftype/address/fullname/phonenumber/salary leads to sql injection…

πŸ“… Published: Aug. 27, 2024, 10 p.m. πŸ”„ Last Modified: Aug. 29, 2024, 2:49 p.m.
Total resulsts: 349182
Page 8719 of 34,919
Β« previous page Β» next page
Filters