8

CVSS3.1

CVE-2024-5785 - Command injection vulnerability in Comtrend router

Command injection vulnerability in Comtrend router WLD71-T1_v2.0.201820, affecting the GRG-4280us version. This vulnerability could allow an authenticated user to execute commands inside the router by making a POST request to the URL “/boaform/admin/formUserTracert”.

📅 Published: June 10, 2024, 12:13 p.m. 🔄 Last Modified: April 15, 2026, 12:35 a.m.

5.9

CVSS3.1

CVE-2024-28833 - Missing brute-force protection for two factor authentication

Improper restriction of excessive authentication attempts with two factor authentication methods in Checkmk 2.3 before 2.3.0p6 facilitates brute-forcing of second factor mechanisms.

📅 Published: June 10, 2024, 11:55 a.m. 🔄 Last Modified: Nov. 21, 2024, 9:07 a.m.

9.3

CVSS4.0

CVE-2024-3700 - Hardcoded password in Estomed Sp. z o.o. Simple Care software

Use of hard-coded password to the patients' database allows an attacker to retrieve sensitive data stored in the database. The password is the same among all Simple Care software installations. This issue affects Estomed Sp. z o.o. Simple Care software in all versions. The software is no longer su…

📅 Published: June 10, 2024, 11:19 a.m. 🔄 Last Modified: Oct. 3, 2025, 9:15 a.m.

9.3

CVSS4.0

CVE-2024-3699 - Hardcoded password in drEryk Gabinet

Use of hard-coded password to the patients' database allows an attacker to retrieve sensitive data stored in the database. The password is the same among all drEryk Gabinet installations.This issue affects drEryk Gabinet software versions from 7.0.0.0 through 9.17.0.0.

📅 Published: June 10, 2024, 11:18 a.m. 🔄 Last Modified: Oct. 3, 2025, 9:15 a.m.

9.3

CVSS4.0

CVE-2024-1228 - Hardcoded password in Eurosoft Przychodnia

Use of hard-coded password to the patients' database allows an attacker to retrieve sensitive data stored in the database. The password is the same among all Eurosoft Przychodnia installations. This issue affects Eurosoft Przychodnia software before version 20240417.001 (from that version vulnerab…

📅 Published: June 10, 2024, 11:13 a.m. 🔄 Last Modified: Oct. 7, 2025, 1:21 p.m.

5.3

CVSS3.1

CVE-2024-4744 - WordPress iPages Flipbook plugin <= 1.5.1 - Broken Access Control vulnerability

Missing Authorization vulnerability in Avirtum iPages Flipbook.This issue affects iPages Flipbook: from n/a through 1.5.1.

📅 Published: June 10, 2024, 8:10 a.m. 🔄 Last Modified: Nov. 21, 2024, 9:43 a.m.

4.3

CVSS3.1

CVE-2024-4745 - WordPress Giveaways and Contests by RafflePress plugin <= 1.12.4 - Broken Access Control vulnerabil…

Missing Authorization vulnerability in RafflePress Giveaways and Contests by RafflePress.This issue affects Giveaways and Contests by RafflePress: from n/a through 1.12.4.

📅 Published: June 10, 2024, 8:09 a.m. 🔄 Last Modified: Nov. 21, 2024, 9:43 a.m.

4.3

CVSS3.1

CVE-2024-22296 - WordPress 12 Step Meeting List plugin <= 3.14.28 - Broken Access Control vulnerability

Missing Authorization vulnerability in Code for Recovery 12 Step Meeting List.This issue affects 12 Step Meeting List: from n/a through 3.14.28.

📅 Published: June 10, 2024, 8:07 a.m. 🔄 Last Modified: Nov. 21, 2024, 8:56 a.m.

5.3

CVSS3.1

CVE-2024-22298 - WordPress Amelia plugin <= 1.0.98 - Broken Access Control vulnerability

Missing Authorization vulnerability in TMS Amelia ameliabooking.This issue affects Amelia: from n/a through 1.0.98.

📅 Published: June 10, 2024, 8:06 a.m. 🔄 Last Modified: March 20, 2025, 3:39 p.m.

5.4

CVSS3.1

CVE-2024-21751 - WordPress RabbitLoader plugin <= 2.19.13 - Broken Access Control vulnerability

Missing Authorization vulnerability in RabbitLoader.This issue affects RabbitLoader: from n/a through 2.19.13.

📅 Published: June 10, 2024, 8:05 a.m. 🔄 Last Modified: Nov. 21, 2024, 8:54 a.m.
Total resulsts: 349182
Page 9524 of 34,919
« previous page » next page
Filters