7.5

CVSS3.1

CVE-2024-43477 - Microsoft Entra ID Elevation of Privilege Vulnerability

Improper access control in Decentralized Identity Services resulted in a vulnerability that allows an unauthenticated attacker to disable Verifiable ID's on another tenant.

๐Ÿ“… Published: Aug. 23, 2024, 1:14 a.m. ๐Ÿ”„ Last Modified: July 10, 2025, 4:33 p.m.

4.3

CVSS3.1

CVE-2024-43032 -

autMan v2.9.6 allows attackers to bypass authentication via a crafted web request.

๐Ÿ“… Published: Aug. 23, 2024, midnight ๐Ÿ”„ Last Modified: Sept. 3, 2025, 7:15 p.m.

6.1

CVSS3.1

CVE-2024-37392 -

A stored Cross-Site Scripting (XSS) vulnerability has been identified in SMSEagle software version < 6.0. The vulnerability arises because the application did not properly sanitize user input in the SMS messages in the inbox. This could allow an attacker to inject malicious JavaScript code into an โ€ฆ

๐Ÿ“… Published: Aug. 23, 2024, midnight ๐Ÿ”„ Last Modified: March 20, 2025, 2:15 p.m.

8

CVSS3.1

CVE-2024-42845 -

An eval Injection vulnerability in the component invesalius/reader/dicom.py of InVesalius 3.1.99991 through 3.1.99998 allows attackers to execute arbitrary code via loading a crafted DICOM file.

๐Ÿ“… Published: Aug. 23, 2024, midnight ๐Ÿ”„ Last Modified: April 15, 2026, 12:35 a.m.

9.1

CVSS3.1

CVE-2024-33852 -

A SQL Injection vulnerability exists in the Downtime component in Centreon Web 24.04.x before 24.04.3, 23.10.x before 23.10.13, 23.04.x before 23.04.19, and 22.10.x before 22.10.23.

๐Ÿ“… Published: Aug. 23, 2024, midnight ๐Ÿ”„ Last Modified: May 9, 2025, 2:11 p.m.

9.8

CVSS3.1

CVE-2024-32501 -

A SQL Injection vulnerability exists in the updateServiceHost functionality in Centreon Web 24.04.x before 24.04.3, 23.10.x before 23.10.13, 23.04.x before 23.04.19, and 22.10.x before 22.10.23.

๐Ÿ“… Published: Aug. 23, 2024, midnight ๐Ÿ”„ Last Modified: May 9, 2025, 2:10 p.m.

9.1

CVSS3.1

CVE-2024-33854 -

A SQL Injection vulnerability exists in the Graph Template component in Centreon Web 24.04.x before 24.04.3, 23.10.x before 23.10.13, 23.04.x before 23.04.19, and 22.10.x before 22.10.23.

๐Ÿ“… Published: Aug. 23, 2024, midnight ๐Ÿ”„ Last Modified: May 9, 2025, 2:11 p.m.

9.1

CVSS3.1

CVE-2024-33853 -

A SQL Injection vulnerability exists in the Timeperiod component in Centreon Web 24.04.x before 24.04.3, 23.10.x before 23.10.13, 23.04.x before 23.04.19, and 22.10.x before 22.10.23.

๐Ÿ“… Published: Aug. 23, 2024, midnight ๐Ÿ”„ Last Modified: May 9, 2025, 2:11 p.m.

9.8

CVSS3.1

CVE-2024-42765 -

A SQL injection vulnerability in "/login.php" of the Kashipara Bus Ticket Reservation System v1.0 allows remote attackers to execute arbitrary SQL commands and bypass Login via the "email" or "password" Login page parameters.

๐Ÿ“… Published: Aug. 23, 2024, midnight ๐Ÿ”„ Last Modified: May 6, 2025, 1:48 p.m.

8.8

CVSS3.1

CVE-2024-42756 -

An issue in Netgear DGN1000WW v.1.1.00.45 allows a remote attacker to execute arbitrary code via the Diagnostics page

๐Ÿ“… Published: Aug. 23, 2024, midnight ๐Ÿ”„ Last Modified: Jan. 30, 2026, 8:47 p.m.
Total resulsts: 349182
Page 8751 of 34,919
ยซ previous page ยป next page
Filters