9.8

CVSS3.1

CVE-2024-28285 -

A Fault Injection vulnerability in the SymmetricDecrypt function in cryptopp/elgamal.h of Cryptopp Crypto++ 8.9, allows an attacker to co-reside in the same system with a victim process to disclose information and escalate privileges.

๐Ÿ“… Published: May 13, 2024, 7:07 p.m. ๐Ÿ”„ Last Modified: April 15, 2026, 12:35 a.m.

6.5

CVSS3.1

CVE-2024-34699 - GZ::CTF allows unprivileged user can perform XSS attacks by constructing malicious team names.

GZ::CTF is a capture the flag platform. Prior to 0.20.1, unprivileged user can perform cross-site scripting attacks on other users by constructing malicious team names. This problem has been fixed in `v0.20.1`.

๐Ÿ“… Published: May 13, 2024, 7:01 p.m. ๐Ÿ”„ Last Modified: April 15, 2026, 12:35 a.m.

7.3

CVSS3.1

CVE-2023-49781 - NocoDB Vulnerable to Stored Cross-Site Scripting in Formula.vue

NocoDB is software for building databases as spreadsheets. Prior to 0.202.9, a stored cross-site scripting vulnerability exists within the Formula virtual cell comments functionality. The nc-gui/components/virtual-cell/Formula.vue displays a v-html tag with the value of "urls" whose contents are prโ€ฆ

๐Ÿ“… Published: May 13, 2024, 6:54 p.m. ๐Ÿ”„ Last Modified: Aug. 26, 2025, 6:52 p.m.

7.8

CVSS3.1

CVE-2024-31771 -

Insecure Permission vulnerability in TotalAV v.6.0.740 allows a local attacker to escalate privileges via a crafted file

๐Ÿ“… Published: May 13, 2024, 6:42 p.m. ๐Ÿ”„ Last Modified: Jan. 21, 2026, 9:55 p.m.

5.4

CVSS3.1

CVE-2024-34899 -

WWBN AVideo 12.4 is vulnerable to Cross Site Scripting (XSS).

๐Ÿ“… Published: May 13, 2024, 6:40 p.m. ๐Ÿ”„ Last Modified: June 18, 2025, 5:41 p.m.

0.0

CVE-2024-4848 -

This CVE ID has been rejected or withdrawn by its CVE Numbering Authority.

๐Ÿ“… Published: May 13, 2024, 6:37 p.m. ๐Ÿ”„ Last Modified: July 29, 2024, 11:15 a.m.

7.3

CVSS3.1

CVE-2023-46870 -

extcap/nrf_sniffer_ble.py, extcap/nrf_sniffer_ble.sh, extcap/SnifferAPI/*.py in Nordic Semiconductor nRF Sniffer for Bluetooth LE 3.0.0, 3.1.0, 4.0.0, 4.1.0, and 4.1.1 have set incorrect file permission, which allows attackers to do code execution via modified bash and python scripts.

๐Ÿ“… Published: May 13, 2024, 6:36 p.m. ๐Ÿ”„ Last Modified: April 15, 2026, 12:35 a.m.

6.1

CVSS3.1

CVE-2024-34225 -

Cross Site Scripting vulnerability in php-lms/admin/?page=system_info in Computer Laboratory Management System using PHP and MySQL 1.0 allow remote attackers to inject arbitrary web script or HTML via the name, shortname parameters.

๐Ÿ“… Published: May 13, 2024, 5:46 p.m. ๐Ÿ”„ Last Modified: April 16, 2025, 6:47 p.m.

9.4

CVSS3.1

CVE-2024-34226 -

SQL injection vulnerability in /php-sqlite-vms/?page=manage_visitor&id=1 in SourceCodester Visitor Management System 1.0 allow attackers to execute arbitrary SQL commands via the id parameters.

๐Ÿ“… Published: May 13, 2024, 5:42 p.m. ๐Ÿ”„ Last Modified: April 22, 2025, 4:57 p.m.

7.3

CVSS3.1

CVE-2024-34224 -

Cross Site Scripting vulnerability in /php-lms/classes/Users.php?f=save in Computer Laboratory Management System using PHP and MySQL 1.0 allow remote attackers to inject arbitrary web script or HTML via the firstname, middlename, lastname parameters.

๐Ÿ“… Published: May 13, 2024, 5:38 p.m. ๐Ÿ”„ Last Modified: April 16, 2025, 6:47 p.m.
Total resulsts: 349182
Page 9890 of 34,919
ยซ previous page ยป next page
Filters