5.3

CVSS4.0

CVE-2024-4724 - Campcodes Legal Case Management System case-type cross site scripting

A vulnerability, which was classified as problematic, was found in Campcodes Legal Case Management System 1.0. Affected is an unknown function of the file /admin/case-type. The manipulation of the argument case_type_name leads to cross site scripting. It is possible to launch the attack remotely. T…

πŸ“… Published: May 10, 2024, 4:31 p.m. πŸ”„ Last Modified: Feb. 19, 2025, 6:33 p.m.

5.3

CVSS4.0

CVE-2024-4723 - Campcodes Legal Case Management System case-status cross site scripting

A vulnerability, which was classified as problematic, has been found in Campcodes Legal Case Management System 1.0. This issue affects some unknown processing of the file /admin/case-status. The manipulation of the argument case_status leads to cross site scripting. The attack may be initiated remo…

πŸ“… Published: May 10, 2024, 4:31 p.m. πŸ”„ Last Modified: Feb. 19, 2025, 6:33 p.m.

8.6

CVSS3.1

CVE-2024-34199 -

TinyWeb 1.94 and below allows unauthenticated remote attackers to cause a denial of service (Buffer Overflow) when sending excessively large elements in the request line.

πŸ“… Published: May 10, 2024, 4:24 p.m. πŸ”„ Last Modified: Jan. 5, 2026, 4:15 p.m.

6.5

CVSS3.1

CVE-2024-34245 -

An arbitrary file read vulnerability in DedeCMS v5.7.114 allows authenticated attackers to read arbitrary files by specifying any path in makehtml_js_action.php.

πŸ“… Published: May 10, 2024, 4:19 p.m. πŸ”„ Last Modified: April 1, 2025, 6:05 p.m.

8.6

CVSS3.1

CVE-2023-26566 -

Sangoma FreePBX 1805 through 2203 on Linux contains hardcoded credentials for the Asterisk REST Interface (ARI), which allows remote attackers to reconfigure Asterisk and make external and internal calls via HTTP and WebSocket requests sent to the API.

πŸ“… Published: May 10, 2024, 4:14 p.m. πŸ”„ Last Modified: April 15, 2026, 12:35 a.m.

5.3

CVSS4.0

CVE-2024-4722 - Campcodes Complete Web-Based School Management System index.php cross site scripting

A vulnerability classified as problematic was found in Campcodes Complete Web-Based School Management System 1.0. This vulnerability affects unknown code of the file index.php. The manipulation of the argument category leads to cross site scripting. The attack can be initiated remotely. The exploit…

πŸ“… Published: May 10, 2024, 4 p.m. πŸ”„ Last Modified: Feb. 20, 2025, 8:55 p.m.

6.3

CVSS3.1

CVE-2024-34695 - WOWS Karma vulnerable to a post submission bounce/timing attack

WOWS Karma is a reputation system for Wargaming's World of Warships. A user is able to click multiple times on "create" on a post creation prompt before the modal closes, which triggers sending several post creation API requests at once. Due to timing, sending multiple posts simultaneously requests…

πŸ“… Published: May 10, 2024, 3:57 p.m. πŸ”„ Last Modified: April 15, 2026, 12:35 a.m.

8.2

CVSS3.1

CVE-2024-34360 - Previous ATX is not checked to be the newest valid ATX by Smesher when validating incoming ATX

go-spacemesh is a Go implementation of the Spacemesh protocol full node. Nodes can publish activations transactions (ATXs) which reference the incorrect previous ATX of the Smesher that created the ATX. ATXs are expected to form a single chain from the newest to the first ATX ever published by an i…

πŸ“… Published: May 10, 2024, 3:50 p.m. πŸ”„ Last Modified: April 15, 2026, 12:35 a.m.

5.4

CVSS3.1

CVE-2024-28781 - IBM UrbanCode Deploy cross-site scripting

IBM UrbanCode Deploy (UCD) 7.0 through 7.0.5.20, 7.1 through 7.1.2.16, 7.2 through 7.2.3.9, 7.3 through 7.3.2.4, and 8.0 through 8.0.0.1 is vulnerable to cross-site scripting. This vulnerability allows users to embed arbitrary JavaScript code in the Web UI thus altering the intended functionality p…

πŸ“… Published: May 10, 2024, 3:49 p.m. πŸ”„ Last Modified: Jan. 27, 2025, 6:31 p.m.

5.3

CVSS4.0

CVE-2024-4721 - Campcodes Complete Web-Based School Management System add_student_subject.php cross site scripting

A vulnerability classified as problematic has been found in Campcodes Complete Web-Based School Management System 1.0. This affects an unknown part of the file /model/add_student_subject.php. The manipulation of the argument index leads to cross site scripting. It is possible to initiate the attack…

πŸ“… Published: May 10, 2024, 3:31 p.m. πŸ”„ Last Modified: Feb. 20, 2025, 8:50 p.m.
Total resulsts: 349182
Page 9907 of 34,919
Β« previous page Β» next page
Filters