6.1

CVSS3.1

CVE-2024-37304 - NuGetGallery's Markdown Autolinks Processing Vulnerable to Cross-site Scripting

NuGet Gallery is a package repository that powers nuget.org. The NuGetGallery has a security vulnerability related to its handling of autolinks in Markdown content. While the platform properly filters out JavaScript from standard links, it does not adequately sanitize autolinks. This oversight allo…

πŸ“… Published: June 12, 2024, 2:27 p.m. πŸ”„ Last Modified: Sept. 4, 2025, 7:12 p.m.

9.8

CVSS3.1

CVE-2024-36265 - Apache Submarine Server Core: authorization bypass

** UNSUPPORTED WHEN ASSIGNED ** Incorrect Authorization vulnerability in Apache Submarine Server Core. This issue affects Apache Submarine Server Core: from 0.8.0. As this project is retired, we do not plan to release a version that fixes this issue. Users are recommended to find an alternative o…

πŸ“… Published: June 12, 2024, 2:12 p.m. πŸ”„ Last Modified: March 19, 2025, 9:15 p.m.

9.8

CVSS3.1

CVE-2024-36264 - Apache Submarine Commons Utils: default secret

** UNSUPPORTED WHEN ASSIGNED ** Improper Authentication vulnerability in Apache Submarine Commons Utils. If the user doesn't explicitly set `submarine.auth.default.secret`, a default value will be used. This issue affects Apache Submarine Commons Utils: from 0.8.0. As this project is retired, w…

πŸ“… Published: June 12, 2024, 2:06 p.m. πŸ”„ Last Modified: March 20, 2025, 7:15 p.m.

8.1

CVSS3.1

CVE-2024-36263 - Apache Submarine Server Core: SQL injection

** UNSUPPORTED WHEN ASSIGNED ** Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in Apache Submarine Server Core. This issue affects Apache Submarine Server Core: all versions. As this project is retired, we do not plan to release a version that f…

πŸ“… Published: June 12, 2024, 2:05 p.m. πŸ”„ Last Modified: July 15, 2025, 4:38 p.m.

9.3

CVSS4.0

CVE-2024-1659 - Arbitrary File Upload in MegaBIP

Arbitrary File Upload vulnerability in MegaBIP software allows attacker to upload any file to the server (including a PHP code file) without an authentication.Β This issue affects MegaBIP software versions through 5.10.

πŸ“… Published: June 12, 2024, 1:48 p.m. πŸ”„ Last Modified: Nov. 21, 2024, 8:51 a.m.

9.3

CVSS4.0

CVE-2024-1577 - Remote Code Execution in MegaBIP

Remote Code Execution vulnerability in MegaBIP software allows to execute arbitrary code on the server without requiring authentication by savingΒ crafted by the attacker PHP code to one of the website files.Β This issue affects MegaBIP software versions through 5.11.2.

πŸ“… Published: June 12, 2024, 1:47 p.m. πŸ”„ Last Modified: Nov. 21, 2024, 8:50 a.m.

9.3

CVSS4.0

CVE-2024-1576 - SQL Injection in MegaBIP

SQL Injection vulnerability in MegaBIP software allows attacker to obtain site administrator privileges, including access to the administration panel and the ability to change the administrator password.Β This issue affects MegaBIP software versions through 5.09.

πŸ“… Published: June 12, 2024, 1:47 p.m. πŸ”„ Last Modified: Nov. 21, 2024, 8:50 a.m.

8.8

CVSS3.1

CVE-2024-25949 -

Dell OS10 Networking Switches, versions10.5.6.x, 10.5.5.x, 10.5.4.x and 10.5.3.x ,contain an improper authorization vulnerability. A remote authenticated attacker could potentially exploit this vulnerability leading to escalation of privileges.

πŸ“… Published: June 12, 2024, 12:58 p.m. πŸ”„ Last Modified: Nov. 21, 2024, 9:01 a.m.

6.5

CVSS3.1

CVE-2024-5313 -

CWE-668: Exposure of the Resource Wrong Sphere vulnerability exists that exposes a SSH interface over the product network interface. This does not allow to directly exploit the product or make any unintended operation as the SSH interface access is protected by an authentication mechanism. Impacts …

πŸ“… Published: June 12, 2024, 12:14 p.m. πŸ”„ Last Modified: Nov. 21, 2024, 9:47 a.m.

6.5

CVSS3.1

CVE-2024-5056 -

CWE-552: Files or Directories Accessible to External Parties vulnerability exists which may prevent user to update the device firmware and prevent proper behavior of the webserver when specific files or directories are removed from the filesystem.

πŸ“… Published: June 12, 2024, 12:10 p.m. πŸ”„ Last Modified: Nov. 21, 2024, 9:46 a.m.
Total resulsts: 349182
Page 9484 of 34,919
Β« previous page Β» next page
Filters