7.5

CVSS3.1

CVE-2024-41700 - Barix – CWE-200 Exposure of Sensitive Information to an Unauthorized Actor

Barix – CWE-200 Exposure of Sensitive Information to an Unauthorized Actor

πŸ“… Published: Aug. 20, 2024, 12:05 p.m. πŸ”„ Last Modified: Sept. 3, 2024, 7:37 p.m.

6.5

CVSS3.1

CVE-2024-25009 - Ericsson Packet Core Controller (PCC) - Improper Input Validation Vulnerability

Ericsson Packet Core Controller (PCC) contains a vulnerability in Access and Mobility Management Function (AMF) where improper input validation can lead to denial of service which may result in service degradation.

πŸ“… Published: Aug. 20, 2024, noon πŸ”„ Last Modified: April 15, 2026, 12:35 a.m.

4.4

CVSS3.1

CVE-2024-41699 - Priority – CWE-552: Files or Directories Accessible to External Parties

Priority – CWE-552: Files or Directories Accessible to External Parties

πŸ“… Published: Aug. 20, 2024, noon πŸ”„ Last Modified: Sept. 3, 2024, 8:17 p.m.

4.3

CVSS3.1

CVE-2024-41698 - Priority – CWE-200: Exposure of Sensitive Information to an Unauthorized Actor

Priority – CWE-200: Exposure of Sensitive Information to an Unauthorized Actor

πŸ“… Published: Aug. 20, 2024, 11:55 a.m. πŸ”„ Last Modified: Sept. 3, 2024, 8:18 p.m.

6.1

CVSS3.1

CVE-2024-41697 - Priority – CWE-80: Improper Neutralization of Script-Related HTML Tags in a Web Page (Basic XSS)

Priority -Β CWE-80: Improper Neutralization of Script-Related HTML Tags in a Web Page (Basic XSS)

πŸ“… Published: Aug. 20, 2024, 11:48 a.m. πŸ”„ Last Modified: Sept. 3, 2024, 8:19 p.m.

6.4

CVSS3.1

CVE-2024-7054 - Popup Maker <= 1.19.0 - Authenticated (Contributor+) Stored Cross-Site Scripting

The Popup Maker – Boost Sales, Conversions, Optins, Subscribers with the Ultimate WP Popups Builder plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the β€˜close_text’ parameter in all versions up to, and including, 1.19.0 due to insufficient input sanitization and output escapin…

πŸ“… Published: Aug. 20, 2024, 10:58 a.m. πŸ”„ Last Modified: April 8, 2026, 5 p.m.

8.0

CVSS3.1

CVE-2024-21689 -

This High severity RCE (Remote Code Execution) vulnerability CVE-2024-21689Β  was introduced in versions 9.1.0, 9.2.0, 9.3.0, 9.4.0, 9.5.0, and 9.6.0 of Bamboo Data Center and Server. This RCE (Remote Code Execution) vulnerability, with a CVSS Score of 7.6, allows an authenticated attacker to exe…

πŸ“… Published: Aug. 20, 2024, 10 a.m. πŸ”„ Last Modified: March 13, 2025, 4:15 p.m.

5.2

CVSS4.0

CVE-2024-28829 - Privilege escalation in mk_informix plugin

Least privilege violation and reliance on untrusted inputs in the mk_informix Checkmk agent plugin before Checkmk 2.3.0p12, 2.2.0p32, 2.1.0p47 and 2.0.0 (EOL) allows local users to escalate privileges.

πŸ“… Published: Aug. 20, 2024, 9:29 a.m. πŸ”„ Last Modified: Dec. 3, 2024, 5:55 p.m.

9.8

CVSS3.1

CVE-2024-43202 - Apache DolphinScheduler: Remote Code Execution Vulnerability

Exposure of Remote Code Execution in Apache Dolphinscheduler. This issue affects Apache DolphinScheduler: before 3.2.2. We recommend users to upgrade Apache DolphinScheduler to version 3.2.2, which fixes the issue.

πŸ“… Published: Aug. 20, 2024, 7:29 a.m. πŸ”„ Last Modified: March 18, 2025, 3:57 p.m.

9.8

CVSS3.1

CVE-2024-6847 - SmartSearch WP <= 2.4.4 - Unauthenticated SQLi

The Chatbot with ChatGPT WordPress plugin before 2.4.5 does not properly sanitise and escape a parameter before using it in a SQL statement, leading to a SQL injection exploitable by unauthenticated users when submitting messages to the chatbot.

πŸ“… Published: Aug. 20, 2024, 6 a.m. πŸ”„ Last Modified: May 27, 2025, 8:49 p.m.
Total resulsts: 349182
Page 8789 of 34,919
Β« previous page Β» next page
Filters