9.4

CVSS3.1

CVE-2024-34947 -

Quanxun Huiju Network Technology (Beijing) Co.,Ltd IK-Q3000 3.7.10 x64 Build202401261655 was discovered to be vulnerable to an ICMP redirect attack.

πŸ“… Published: May 20, 2024, 4:16 p.m. πŸ”„ Last Modified: April 15, 2026, 12:35 a.m.

0.0

CVE-2024-5144 -

** REJECT ** DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: CVE-2024-4342. Reason: This candidate is a reservation duplicate of CVE-2024-4342. Notes: All CVE users should reference CVE-2024-4342 instead of this candidate. All references and descriptions in this candidate have been removed to prevent…

πŸ“… Published: May 20, 2024, 2:25 p.m. πŸ”„ Last Modified: May 31, 2024, 6:15 p.m.

8.1

CVSS3.1

CVE-2024-4151 - Improper Access Control in lunary-ai/lunary

An Improper Access Control vulnerability exists in lunary-ai/lunary version 1.2.2, where users can view and update any prompts in any projects due to insufficient access control checks in the handling of PATCH and GET requests for template versions. This vulnerability allows unauthorized users to m…

πŸ“… Published: May 20, 2024, 2:14 p.m. πŸ”„ Last Modified: Jan. 31, 2025, 11:15 a.m.

8.7

CVSS3.1

CVE-2024-2835 - OpenText ArcSight Enterprise Security Manager and ArcSight Platform Stored XSS

A Stored Cross-Site Scripting (XSS) vulnerability has been identified in OpenText ArcSight Enterprise Security Manager and ArcSight Platform. The vulnerability could be remotely exploited.

πŸ“… Published: May 20, 2024, 1:10 p.m. πŸ”„ Last Modified: April 15, 2026, 12:35 a.m.

8.7

CVSS3.1

CVE-2024-3482 - OpenText ArcSight Enterprise Security Manager and ArcSight Platform Stored XSS

A Stored Cross-Site Scripting (XSS) vulnerability has been identified in OpenText ArcSight Enterprise Security Manager and ArcSight Platform. The vulnerability could be remotely exploited.

πŸ“… Published: May 20, 2024, 1:09 p.m. πŸ”„ Last Modified: April 15, 2026, 12:35 a.m.

7.5

CVSS3.1

CVE-2024-34953 -

An issue in taurusxin ncmdump v1.3.2 allows attackers to cause a Denial of Service (DoS) via memory exhaustion by supplying a crafted .ncm file

πŸ“… Published: May 20, 2024, 1:09 p.m. πŸ”„ Last Modified: April 15, 2026, 12:35 a.m.

5

CVSS3.1

CVE-2024-34952 -

taurusxin ncmdump v1.3.2 was discovered to contain a segmentation violation via the NeteaseCrypt::FixMetadata() function at /src/ncmcrypt.cpp. This vulnerability allows attackers to cause a Denial of Service (DoS) via a crafted .ncm file.

πŸ“… Published: May 20, 2024, 1:09 p.m. πŸ”„ Last Modified: April 15, 2026, 12:35 a.m.

8.1

CVSS3.1

CVE-2024-27312 - Authorization vulnerability in PAM360

Zohocorp ManageEngine PAM360 version 6601 is vulnerable to authorization vulnerability which allows a low-privileged user to perform admin actions. Note: This vulnerability affects only the PAM360 6600 version. No other versions are applicable to this vulnerability.

πŸ“… Published: May 20, 2024, 12:38 p.m. πŸ”„ Last Modified: Nov. 25, 2024, 3:14 p.m.

7.2

CVSS3.1

CVE-2024-4287 - Improper Input Validation in mintplex-labs/anything-llm

In mintplex-labs/anything-llm, a vulnerability exists due to improper input validation in the workspace update process. Specifically, the application fails to validate or format JSON data sent in an HTTP POST request to `/api/workspace/:workspace-slug/update`, allowing it to be executed as part of …

πŸ“… Published: May 20, 2024, 12:24 p.m. πŸ”„ Last Modified: July 10, 2025, 5:19 p.m.

8.3

CVSS3.1

CVE-2023-49330 -

Zoho ManageEngine ADAudit Plus versions below 7271 allows SQL Injection while getting aggregate report data.

πŸ“… Published: May 20, 2024, 12:19 p.m. πŸ”„ Last Modified: May 12, 2025, 1:46 p.m.
Total resulsts: 349182
Page 9764 of 34,919
Β« previous page Β» next page
Filters