6.5

CVSS3.1

CVE-2024-3182 -

Install-type password disclosure vulnerability inย Universal Installer including the Silent Installer in TIBCO Hawk versions 6.2.0, 6.2.1, 6.2.2 and 6.2.3 allows user's Enterprise Message Service (EMS) password to be exposed outside of the hawkagent.cfg and hawkevent.cfg config files.

๐Ÿ“… Published: May 15, 2024, 6:04 p.m. ๐Ÿ”„ Last Modified: April 15, 2026, 12:35 a.m.

4.8

CVSS3.1

CVE-2024-20383 - Cisco Secure Email and Web Manager Stored Cross-Site Scripting Vulnerability

A vulnerability in the web-based management interface of Cisco AsyncOS Software for Cisco Secure Email and Web Manager could allow an authenticated, remote attacker to conduct an XSS attack against a user of the interface. This vulnerability is due to insufficient validation of user input. An atโ€ฆ

๐Ÿ“… Published: May 15, 2024, 5:59 p.m. ๐Ÿ”„ Last Modified: Aug. 8, 2025, 1:15 p.m.

4.8

CVSS3.1

CVE-2024-20257 -

A vulnerability in the web-based management interface of Cisco AsyncOS Software for Cisco Secure Email Gateway could allow an authenticated, remote attacker to conduct an XSS attack against a user of the interface.r This vulnerability is due to insufficient validation of user input. An attacker cโ€ฆ

๐Ÿ“… Published: May 15, 2024, 5:58 p.m. ๐Ÿ”„ Last Modified: Aug. 6, 2025, 4:56 p.m.

4.8

CVSS3.1

CVE-2024-20256 -

A vulnerability in the web-based management interface of Cisco AsyncOS Software for Cisco Secure Email and Web Manager and Secure Web Appliance could allow an authenticated, remote attacker to conduct an XSS attack against a user of the interface. This vulnerability is due to insufficient validatโ€ฆ

๐Ÿ“… Published: May 15, 2024, 5:56 p.m. ๐Ÿ”„ Last Modified: Aug. 7, 2025, 5:10 p.m.

6.1

CVSS3.1

CVE-2024-20258 -

A vulnerability in the web-based management interface of Cisco AsyncOS Software for Cisco Secure Email and Web Manager and Secure Email Gateway could allow an unauthenticated, remote attacker to conduct an XSS attack against a user of the interface. This vulnerability is due to insufficient valiโ€ฆ

๐Ÿ“… Published: May 15, 2024, 5:32 p.m. ๐Ÿ”„ Last Modified: July 31, 2025, 7:44 p.m.

5.3

CVSS4.0

CVE-2024-4905 - Kashipara College Management System view_students_each_detail.php sql injection

A vulnerability classified as critical has been found in Kashipara College Management System 1.0. Affected is an unknown function of the file view_students_each_detail.php. The manipulation of the argument id leads to sql injection. It is possible to launch the attack remotely. The exploit has beenโ€ฆ

๐Ÿ“… Published: May 15, 2024, 5:31 p.m. ๐Ÿ”„ Last Modified: Feb. 11, 2025, 6:35 p.m.

7.8

CVSS3.1

CVE-2024-20366 -

A vulnerability in the Tail-f High Availability Cluster Communications (HCC) function pack of Cisco Crosswork Network Services Orchestrator (NSO) could allow an authenticated, local attacker to elevate privileges to root on an affected device. This vulnerability exists because a user-controlled โ€ฆ

๐Ÿ“… Published: May 15, 2024, 5:25 p.m. ๐Ÿ”„ Last Modified: March 25, 2025, 5:49 p.m.

6.8

CVSS3.1

CVE-2024-20391 -

A vulnerability in the Network Access Manager (NAM) module of Cisco Secure Client could allow an unauthenticated attacker with physical access to an affected device to elevate privileges to SYSTEM. This vulnerability is due to a lack of authentication on a specific function. A successful exploitโ€ฆ

๐Ÿ“… Published: May 15, 2024, 5:24 p.m. ๐Ÿ”„ Last Modified: July 22, 2025, 6:02 p.m.

4.7

CVSS3.1

CVE-2024-20369 -

A vulnerability in the web-based management interface of Cisco Crosswork Network Services Orchestrator (NSO) could allow an unauthenticated, remote attacker to redirect a user to a malicious web page. This vulnerability is due to improper input validation of a parameter in an HTTP request. An โ€ฆ

๐Ÿ“… Published: May 15, 2024, 5:23 p.m. ๐Ÿ”„ Last Modified: March 25, 2025, 5:44 p.m.

6.1

CVSS3.1

CVE-2024-20392 -

A vulnerability in the web-based management API of Cisco AsyncOS Software for Cisco Secure Email Gateway could allow an unauthenticated, remote attacker to conduct an HTTP response splitting attack. This vulnerability is due to insufficient input validation of some parameters that are passed toโ€ฆ

๐Ÿ“… Published: May 15, 2024, 5:22 p.m. ๐Ÿ”„ Last Modified: Aug. 6, 2025, 4:48 p.m.
Total resulsts: 349182
Page 9847 of 34,919
ยซ previous page ยป next page
Filters