9.1

CVSS3.1

CVE-2024-35161 - Apache Traffic Server: Incomplete check for chunked trailer section allows request smuggling

Apache Traffic Server forwards malformed HTTP chunked trailer section to origin servers. This can be utilized for request smuggling and may also lead cache poisoning if the origin servers are vulnerable. This issue affects Apache Traffic Server: from 8.0.0 through 8.1.10, from 9.0.0 through 9.2.4.…

πŸ“… Published: July 25, 2024, midnight πŸ”„ Last Modified: Nov. 3, 2025, 10:16 p.m.

6.3

CVSS3.1

CVE-2024-1724 - snapd allows $HOME/bin symlink

In snapd versions prior to 2.62, when using AppArmor for enforcement of sandbox permissions, snapd failed to restrict writes to the $HOME/bin path. In Ubuntu, when this path exists, it is automatically added to the users PATH. An attacker who could convince a user to install a malicious snap which…

πŸ“… Published: July 25, 2024, midnight πŸ”„ Last Modified: Nov. 21, 2024, 8:51 a.m.

7.3

CVSS3.1

CVE-2024-41706 -

A stored XSS issue was discovered in Archer Platform 6 before version 2024.06. A remote authenticated malicious Archer user could potentially exploit this to store malicious HTML or JavaScript code in a trusted application data store. When victim users access the data store through their browsers, …

πŸ“… Published: July 25, 2024, midnight πŸ”„ Last Modified: Nov. 21, 2024, 9:33 a.m.

4.8

CVSS3.1

CVE-2024-41707 -

An issue was discovered in Archer Platform 6 before 2024.06. Authenticated users can achieve HTML content injection. A remote authenticated malicious Archer user could potentially exploit this to store malicious HTML code in a trusted application data store. When victim users access the data store …

πŸ“… Published: July 25, 2024, midnight πŸ”„ Last Modified: March 18, 2025, 4:15 p.m.

7.2

CVSS3.1

CVE-2024-38288 -

A command-injection issue in the Certificate Signing Request (CSR) functionality in R-HUB TurboMeeting through 8.x allows authenticated attackers with administrator privileges to execute arbitrary commands on the underlying server as root.

πŸ“… Published: July 25, 2024, midnight πŸ”„ Last Modified: Nov. 21, 2024, 9:25 a.m.

7.1

CVSS3.1

CVE-2024-41705 -

A stored XSS issue was discovered in Archer Platform 6.8 before 2024.06. A remote authenticated malicious Archer user could potentially exploit this to store malicious HTML or JavaScript code in a trusted application data store. When victim users access the data store through their browsers, the ma…

πŸ“… Published: July 25, 2024, midnight πŸ”„ Last Modified: Nov. 21, 2024, 9:33 a.m.

8

CVSS3.1

CVE-2024-41473 -

Tenda FH1201 v1.2.0.14 was discovered to contain a command injection vulnerability via the mac parameter at ip/goform/WriteFacMac

πŸ“… Published: July 25, 2024, midnight πŸ”„ Last Modified: Nov. 21, 2024, 9:32 a.m.

2.7

CVSS3.1

CVE-2024-0231 - Improper Control of Resource Identifiers ('Resource Injection') in GitLab

A resource misdirection vulnerability in GitLab CE/EE versions 12.0 prior to 17.0.5, 17.1 prior to 17.1.3, and 17.2 prior to 17.2.1 allows an attacker to craft a repository import in such a way as to misdirect commits.

πŸ“… Published: July 24, 2024, 10:08 p.m. πŸ”„ Last Modified: Nov. 21, 2024, 8:46 a.m.

4.4

CVSS3.1

CVE-2024-5067 - Exposure of Sensitive Information to an Unauthorized Actor in GitLab

An issue was discovered in GitLab EE affecting all versions starting from 16.11 prior to 17.0.5, starting from 17.1 prior to 17.1.3, and starting from 17.2 prior to 17.2.1 where certain project-level analytics settings could be leaked in DOM to group members with Developer or higher roles.

πŸ“… Published: July 24, 2024, 10:08 p.m. πŸ”„ Last Modified: Nov. 21, 2024, 9:46 a.m.

2.6

CVSS3.1

CVE-2024-7060 - Exposure of Sensitive Information to an Unauthorized Actor in GitLab

An information disclosure vulnerability in GitLab CE/EE in project/group exports affecting all versions from 15.4 prior to 17.0.5, 17.1 prior to 17.1.3, and 17.2 prior to 17.2.1 allows unauthorized users to view the resultant export.

πŸ“… Published: July 24, 2024, 10:07 p.m. πŸ”„ Last Modified: Nov. 21, 2024, 9:50 a.m.
Total resulsts: 349182
Page 9057 of 34,919
Β« previous page Β» next page
Filters