5.3
CVE-2024-4813 - Ruijie RG-UAC interface_commit.php os command injection
A vulnerability classified as critical has been found in Ruijie RG-UAC up to 20240506. Affected is an unknown function of the file /view/networkConfig/physicalInterface/interface_commit.php. The manipulation of the argument name leads to os command injection. It is possible to launch the attack remβ¦
7.1
CVE-2024-4747 - WordPress Propovoice CRM plugin <= 1.7.6.2 - Cross Site Scripting (XSS) vulnerability
Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in Propovoice Propovoice CRM allows Stored XSS.This issue affects Propovoice CRM: from n/a through 1.7.6.2.
5.3
CVE-2024-32100 - WordPress Easy Digital Downloads plugin <= 3.2.11 - Sensitive Data Exposure vulnerability
Exposure of Sensitive Information to an Unauthorized Actor vulnerability in Easy Digital Downloads.This issue affects Easy Digital Downloads: from n/a through 3.2.11.
5.3
CVE-2024-34812 - WordPress ShopBuilder plugin <= 2.1.8 - Sensitive Data Exposure vulnerability
Insertion of Sensitive Information Into Sent Data vulnerability in RadiusTheme ShopBuilder β Elementor WooCommerce Builder Addons shopbuilder.This issue affects ShopBuilder β Elementor WooCommerce Builder Addons: from n/a through <= 2.1.8.
5.3
CVE-2024-35165 - WordPress Gutenify plugin <= 1.4.0 - Sensitive Data Exposure via API vulnerability
Exposure of Sensitive Information to an Unauthorized Actor vulnerability in Gutenify.This issue affects Gutenify: from n/a through 1.4.0.
9.8
CVE-2024-3263 - Improper authentication in YMS VIS Pro
YMS VIS Pro is an information system for veterinary and food administration, veterinarians and farm. Due to a combination of improper method for system credentials generation and weak password policy, passwords can be easily guessed and enumerated through brute force attacks. Successful attacks canβ¦
5.3
CVE-2024-35166 - WordPress FileBird β WordPress Media Library Folders & File Manager plugin <= 5.6.3 - Sensitive Datβ¦
Exposure of Sensitive Information to an Unauthorized Actor vulnerability in Ninja Team Filebird.This issue affects Filebird: from n/a through 5.6.3.
5.3
CVE-2024-35171 - WordPress Academy LMS plugin <= 1.9.25 - Sensitive Data Exposure vulnerability
Exposure of Sensitive Information to an Unauthorized Actor vulnerability in Academy LMS academy.This issue affects Academy LMS: from n/a through 1.9.25.
10
CVE-2024-31377 - WordPress WP Photo Album Plus plugin <= 8.7.01.001 - Unauth. Arbitrary File Upload vulnerability
Unrestricted Upload of File with Dangerous Type vulnerability in J.N. Breetvelt a.K.A. OpaJaap WP Photo Album Plus.This issue affects WP Photo Album Plus: from n/a through 8.7.01.001.
9.9
CVE-2024-34411 - WordPress canvasio3D Light plugin <= 2.5.0 - Arbitrary File Upload vulnerability
Unrestricted Upload of File with Dangerous Type vulnerability in Thomas Scholl canvasio3D Light.This issue affects canvasio3D Light: from n/a through 2.5.0.