8.3
CVE-2024-36034 - SQL Injection
Zohocorp ManageEngine ADAudit Plus versions belowย 8003 are vulnerable to authenticated SQL Injection in aggregate reports' search option.
8.3
CVE-2024-36035 - SQL Injection
Zohocorp ManageEngine ADAudit Plus versions belowย 8003 are vulnerable to authenticated SQL Injection in user session recording.
8.3
CVE-2024-36518 - SQL Injection
Zohocorp ManageEngine ADAudit Plus versions belowย 8110 are vulnerable to authenticated SQL Injection in attack surface analyzer's dashboard.
8.3
CVE-2024-5487 - SQL Injection
Zohocorp ManageEngine ADAudit Plus versions belowย 8110 are vulnerable to authenticated SQL Injection in attack surface analyzer's export option.
8.3
CVE-2024-5527 - SQL Injection
Zohocorp ManageEngine ADAudit Plus versions belowย 8110 are vulnerable to authenticated SQL Injection in file auditing configuration.
8.8
CVE-2024-5651 - Fence-agents-remediation: fence agent command line options leads to remote code execution
A flaw was found in the Fence Agents Remediation operator. This vulnerability can allow a Remote Code Execution (RCE) primitive by supplying an arbitrary command to execute in the --ssh-path/--telnet-path arguments. A low-privilege user, for example, a user with developer access, can create a speciโฆ
7.2
CVE-2024-7694 - TeamT5 ThreatSonar Anti-Ransomware - Arbitrary File Upload
ThreatSonar Anti-Ransomware from TeamT5 does not properly validate the content of uploaded files. Remote attackers with administrator privileges on the product platform can upload malicious files, which can be used to execute arbitrary system command on the server.
7.5
CVE-2024-7693 - Team Johnlong software Raiden MAILD Remote Management System - Arbitrary File Reading through Pathโฆ
Raiden MAILD Remote Management System from Team Johnlong Software has a Relative Path Traversal vulnerability, allowing unauthenticated remote attackers to read arbitrary file on the remote server.
5.3
CVE-2024-7686 - SourceCodester Kortex Lite Advocate Office Management System register_case.php cross site scripting
A vulnerability, which was classified as problematic, was found in SourceCodester Kortex Lite Advocate Office Management System 1.0. This affects an unknown part of the file register_case.php. The manipulation of the argument title/description/opposite_lawyer leads to cross site scripting. It is poโฆ
5.3
CVE-2024-7685 - SourceCodester Kortex Lite Advocate Office Management System adds.php cross site scripting
A vulnerability, which was classified as problematic, has been found in SourceCodester Kortex Lite Advocate Office Management System 1.0. Affected by this issue is some unknown functionality of the file adds.php. The manipulation of the argument name/dob/email/mobile/address leads to cross site scrโฆ