8.8

CVSS4.0

CVE-2024-4609 - Rockwell Automation Datalog Function within in FactoryTalkยฎ View SE contains SQL Injection Vulnerabโ€ฆ

A vulnerability exists in the Rockwell Automation FactoryTalkยฎ View SE Datalog function that could allow a threat actor to inject a malicious SQL statement if the SQL database has no authentication in place or if legitimate credentials were stolen. If exploited, the attack could result in informatiโ€ฆ

๐Ÿ“… Published: May 16, 2024, 3:13 p.m. ๐Ÿ”„ Last Modified: Jan. 30, 2025, 3:50 p.m.

0.0

CVE-2024-5007 -

This CVE ID has been rejected or withdrawn by its CVE Numbering Authority.

๐Ÿ“… Published: May 16, 2024, 3:02 p.m. ๐Ÿ”„ Last Modified: July 5, 2025, 11:15 p.m.

5.4

CVSS3.1

CVE-2024-34957 -

idccms v1.35 was discovered to contain a Cross-Site Request Forgery (CSRF) via the component admin/sysImages_deal.php?mudi=infoSet.

๐Ÿ“… Published: May 16, 2024, 2:34 p.m. ๐Ÿ”„ Last Modified: April 15, 2025, 5:03 p.m.

6.5

CVSS3.1

CVE-2024-34958 -

idccms v1.35 was discovered to contain a Cross-Site Request Forgery (CSRF) via the component admin/banner_deal.php?mudi=add

๐Ÿ“… Published: May 16, 2024, 2:32 p.m. ๐Ÿ”„ Last Modified: April 15, 2025, 5:03 p.m.

3.8

CVSS3.1

CVE-2024-35039 -

idccms V1.35 was discovered to contain a Cross-Site Request Forgery (CSRF) via admin/tplSys_deal.php?mudi=area.

๐Ÿ“… Published: May 16, 2024, 2:29 p.m. ๐Ÿ”„ Last Modified: April 15, 2025, 5:03 p.m.

6.1

CVSS3.1

CVE-2024-34582 -

Sunhillo SureLine through 8.10.0 on RICI 5000 devices allows cgi/usrPasswd.cgi userid_change XSS within the Forgot Password feature.

๐Ÿ“… Published: May 16, 2024, 2:18 p.m. ๐Ÿ”„ Last Modified: Feb. 13, 2025, 3:53 p.m.

7.5

CVSS3.1

CVE-2024-34905 -

FlyFish v3.0.0 was discovered to contain a buffer overflow via the password parameter on the login page. This vulnerability allows attackers to cause a Denial of Service (DoS) via a crafted input.

๐Ÿ“… Published: May 16, 2024, 2:09 p.m. ๐Ÿ”„ Last Modified: Feb. 13, 2025, 3:53 p.m.

7.8

CVSS3.1

CVE-2024-20389 -

A vulnerability in the ConfD CLI and the Cisco Crosswork Network Services Orchestrator CLI could allow an authenticated, low-privileged, local attacker to read and write arbitrary files as root on the underlying operating system. This vulnerability is due to improper authorization enforcement whโ€ฆ

๐Ÿ“… Published: May 16, 2024, 2:08 p.m. ๐Ÿ”„ Last Modified: July 30, 2025, 7:17 p.m.

7.8

CVSS3.1

CVE-2024-20326 -

A vulnerability in the ConfD CLI and the Cisco Crosswork Network Services Orchestrator CLI could allow an authenticated, low-privileged, local attacker to read and write arbitrary files as root on the underlying operating system. This vulnerability is due to improper authorization enforcement whโ€ฆ

๐Ÿ“… Published: May 16, 2024, 2:08 p.m. ๐Ÿ”„ Last Modified: July 25, 2025, 2:39 p.m.

7.5

CVSS3.1

CVE-2024-31142 - x86: Incorrect logic for BTC/SRSO mitigations

Because of a logical error in XSA-407 (Branch Type Confusion), the mitigation is not applied properly when it is intended to be used. XSA-434 (Speculative Return Stack Overflow) uses the same infrastructure, so is equally impacted. For more details, see: https://xenbits.xen.org/xsa/advisory-407.โ€ฆ

๐Ÿ“… Published: May 16, 2024, 1:39 p.m. ๐Ÿ”„ Last Modified: Jan. 5, 2026, 7 p.m.
Total resulsts: 343040
Page 9217 of 34,304
ยซ previous page ยป next page
Filters