4.6

CVSS3.1

CVE-2024-24507 -

Cross Site Scripting vulnerability in Act-On 2023 allows a remote attacker to execute arbitrary code via the newUser parameter in the login.jsp component.

๐Ÿ“… Published: July 22, 2024, midnight ๐Ÿ”„ Last Modified: March 13, 2025, 2:15 p.m.

8.4

CVSS3.1

CVE-2024-34329 -

Insecure permissions in Entrust Datacard XPS Card Printer Driver 8.5 and earlier without the dxp1-patch-E24-004 patch allows unauthenticated attackers to execute arbitrary code as SYSTEM via a crafted DLL payload.

๐Ÿ“… Published: July 22, 2024, midnight ๐Ÿ”„ Last Modified: April 15, 2026, 12:35 a.m.

8.8

CVSS3.1

CVE-2024-41320 -

TOTOLINK A6000R V1.0.1-B20201211.2000 was discovered to contain a command injection vulnerability via the ifname parameter in the get_apcli_conn_info function.

๐Ÿ“… Published: July 22, 2024, midnight ๐Ÿ”„ Last Modified: April 3, 2025, 3:48 p.m.

9.1

CVSS3.1

CVE-2024-41704 -

LibreChat through 0.7.4-rc1 does not validate the normalized pathnames of images.

๐Ÿ“… Published: July 22, 2024, midnight ๐Ÿ”„ Last Modified: Nov. 21, 2024, 9:33 a.m.

6.1

CVSS3.1

CVE-2024-41709 -

Backdrop CMS before 1.27.3 and 1.28.x before 1.28.2 does not sufficiently sanitize field labels before they are displayed in certain places. This vulnerability is mitigated by the fact that an attacker must have a role with the "administer fields" permission.

๐Ÿ“… Published: July 22, 2024, midnight ๐Ÿ”„ Last Modified: March 21, 2025, 9:15 p.m.

7.6

CVSS3.1

CVE-2020-24102 -

Directory Traversal vulnerability in Punkbuster pbsv.d64 2.351, allows remote attackers to execute arbitrary code.

๐Ÿ“… Published: July 22, 2024, midnight ๐Ÿ”„ Last Modified: April 15, 2026, 12:35 a.m.

7.5

CVSS3.1

CVE-2024-40051 -

IP Guard v4.81.0307.0 was discovered to contain an arbitrary file read vulnerability via the file name parameter.

๐Ÿ“… Published: July 22, 2024, midnight ๐Ÿ”„ Last Modified: Nov. 21, 2024, 9:30 a.m.

6.8

CVSS3.1

CVE-2024-41314 -

TOTOLINK A6000R V1.0.1-B20201211.2000 was discovered to contain a command injection vulnerability via the iface parameter in the vif_disable function.

๐Ÿ“… Published: July 22, 2024, midnight ๐Ÿ”„ Last Modified: April 3, 2025, 3:48 p.m.

8.9

CVSS3.1

CVE-2024-25638 - DNSJava DNSSEC Bypass

dnsjava is an implementation of DNS in Java. Records in DNS replies are not checked for their relevance to the query, allowing an attacker to respond with RRs from different zones. This vulnerability is fixed in 3.6.0.

๐Ÿ“… Published: July 22, 2024, midnight ๐Ÿ”„ Last Modified: April 15, 2026, 12:35 a.m.

9.8

CVSS3.1

CVE-2024-40502 -

SQL injection vulnerability in Hospital Management System Project in ASP.Net MVC 1 allows aremote attacker to execute arbitrary code via the btn_login_b_Click function of the Loginpage.aspx

๐Ÿ“… Published: July 22, 2024, midnight ๐Ÿ”„ Last Modified: May 16, 2025, 12:47 p.m.
Total resulsts: 349182
Page 9083 of 34,919
ยซ previous page ยป next page
Filters