0.0

CVE-2024-6211 -

loading template...

📅 Published: June 20, 2024, 5:24 p.m. 🔄 Last Modified: Oct. 13, 2025, 8:57 p.m.

6.5

CVSS3.1

CVE-2024-37350 - Cross-site scripting vulnerability in the Absolute Secure Access administrative console prior to 13…

There is a cross-site scripting vulnerability in the policy management UI of Absolute Secure Access prior to version 13.06. Attackers can interfere with a system administrator’s use of the policy management UI when the attacker convinces the victim administrator to follow a crafted link to the vuln…

📅 Published: June 20, 2024, 5:18 p.m. 🔄 Last Modified: Nov. 21, 2024, 9:23 a.m.

4.5

CVSS3.1

CVE-2024-37349 - Cross-site scripting vulnerability in the Absolute Secure Access administrative console prior to 13…

There is a cross-site scripting vulnerability in the management UI of Absolute Secure Access prior to version 13.06. Attackers with system administrator permissions can interfere with other system administrator’s use of the management UI when the victim administrator edits the same management objec…

📅 Published: June 20, 2024, 5:11 p.m. 🔄 Last Modified: Nov. 21, 2024, 9:23 a.m.

4.5

CVSS3.1

CVE-2024-37348 - Cross-site scripting vulnerability in the Absolute Secure Access administrative console prior to 13…

There is a cross-site scripting vulnerability in the management UI of Absolute Secure Access prior to version 13.06. Attackers with system administrator permissions can interfere with another system administrator’s use of the management UI when the second administrator later edits the same manageme…

📅 Published: June 20, 2024, 5:05 p.m. 🔄 Last Modified: Nov. 21, 2024, 9:23 a.m.

4.5

CVSS3.1

CVE-2024-37347 - Cross-site scripting vulnerability in the Absolute Secure Access administrative console prior to 13…

There is a cross-site scripting vulnerability in the pool configuration component of the management UI of Absolute Secure Access prior to 13.06. Attackers with system administrator permissions can pass a limited length script to be run by another administrator. The scope is unchanged, there is no l…

📅 Published: June 20, 2024, 4:56 p.m. 🔄 Last Modified: Nov. 21, 2024, 9:23 a.m.

4.9

CVSS3.1

CVE-2024-37346 - Insufficient input validation vulnerability in the Absolute Secure Access Warehouse prior to 13.06

There is an insufficient input validation vulnerability in the Warehouse component of Absolute Secure Access prior to 13.06. Attackers with system administrator permissions can impair the availability of certain elements of the Secure Access administrative UI by writing invalid data to the warehous…

📅 Published: June 20, 2024, 4:51 p.m. 🔄 Last Modified: Nov. 21, 2024, 9:23 a.m.

5.3

CVSS3.1

CVE-2024-37345 - Cross-site scripting vulnerability in the Absolute Secure Access administrative console prior to 13…

There is a cross-site scripting vulnerability in the Secure Access administrative UI of Absolute Secure Access prior to version 13.06. Attackers can pass a limited-length script to the administrative UI which is then stored where an administrator can access it. The scope is unchanged, there is no l…

📅 Published: June 20, 2024, 4:45 p.m. 🔄 Last Modified: Nov. 21, 2024, 9:23 a.m.

4.5

CVSS3.1

CVE-2024-37344 - Cross-site scripting vulnerability in the Absolute Secure Access administrative console prior to 13…

There is a cross-site scripting vulnerability in the Policy management UI of Absolute Secure Access prior to version 13.06. Attackers with system administrator permissions can interfere with another system administrator’s use of the policy management UI when the administrators are editing the same …

📅 Published: June 20, 2024, 4:38 p.m. 🔄 Last Modified: Nov. 21, 2024, 9:23 a.m.

4.8

CVSS3.1

CVE-2024-37343 - Cross-site scripting vulnerability in the Absolute Secure Access administrative console prior to 13…

There is a cross-site scripting vulnerability in the Secure Access administrative console of Absolute Secure Access prior to version 13.06. Attackers with valid tunnel credentials can pass a limited-length script to the administrative console which is then temporarily stored where an administrator …

📅 Published: June 20, 2024, 4:30 p.m. 🔄 Last Modified: Nov. 21, 2024, 9:23 a.m.

6.9

CVSS4.0

CVE-2024-6196 - itsourcecode Banking Management System admin_class.php sql injection

A vulnerability was found in itsourcecode Banking Management System 1.0 and classified as critical. Affected by this issue is some unknown functionality of the file admin_class.php. The manipulation of the argument username leads to sql injection. The attack may be launched remotely. The exploit ha…

📅 Published: June 20, 2024, 4 p.m. 🔄 Last Modified: Nov. 21, 2024, 9:49 a.m.
Total resulsts: 349182
Page 9374 of 34,919
« previous page » next page
Filters