5.3

CVSS4.0

CVE-2024-4683 - Campcodes Complete Web-Based School Management System exam_timetable_insert_form.php cross site scr…

A vulnerability was found in Campcodes Complete Web-Based School Management System 1.0 and classified as problematic. Affected by this issue is some unknown functionality of the file /view/exam_timetable_insert_form.php. The manipulation of the argument exam leads to cross site scripting. The attac…

πŸ“… Published: May 9, 2024, 6:31 p.m. πŸ”„ Last Modified: Feb. 19, 2025, 6:37 p.m.

6.1

CVSS3.1

CVE-2024-22910 -

Cross Site Scripting (XSS) vulnerability in CrushFTP v.10.6.0 and v.10.5.5 allows an attacker to execute arbitrary code via a crafted payload.

πŸ“… Published: May 9, 2024, 6:29 p.m. πŸ”„ Last Modified: June 13, 2025, 12:52 p.m.

6.1

CVSS3.1

CVE-2024-24157 -

Gnuboard g6 / https://github.com/gnuboard/g6 commit c2cc1f5069e00491ea48618d957332d90f6d40e4 is vulnerable to Cross Site Scripting (XSS) via board.py.

πŸ“… Published: May 9, 2024, 6:18 p.m. πŸ”„ Last Modified: Sept. 2, 2025, 6:18 p.m.

7.7

CVSS3.1

CVE-2024-4545 - EDB Postgres Advanced Server (EPAS) authenticated file read permissions bypass using edbldr

All versions of EnterpriseDB Postgres Advanced Server (EPAS) from 15.0 prior to 15.7.0 and from 16.0 prior to 16.3.0 may allow users using edbldr to bypass role permissions from pg_read_server_files. This could allow low privilege users to read files to which they would not otherwise have access.

πŸ“… Published: May 9, 2024, 6:12 p.m. πŸ”„ Last Modified: April 15, 2026, 12:35 a.m.

6.5

CVSS3.1

CVE-2023-29881 -

phpok 6.4.003 is vulnerable to SQL injection in the function index_f() in phpok64/framework/api/call_control.php.

πŸ“… Published: May 9, 2024, 5:56 p.m. πŸ”„ Last Modified: June 13, 2025, 12:59 p.m.

7.2

CVSS3.1

CVE-2024-34338 -

Tenda O3V2 with firmware versions V1.0.0.10 and V1.0.0.12 was discovered to contain a Blind Command Injection via dest parameter in /goform/getTraceroute. This vulnerability allows attackers to execute arbitrary commands with root privileges. Authentication is required to exploit this vulnerability.

πŸ“… Published: May 9, 2024, 5:51 p.m. πŸ”„ Last Modified: June 30, 2025, 5:27 p.m.

7.3

CVSS3.1

CVE-2024-31954 -

An issue was discovered in the installer in Samsung Portable SSD for T5 1.6.10 on Windows. Because it is possible to tamper with the directory and DLL files used during the installation process, an attacker can escalate privileges through arbitrary code execution. (An attacker must already have use…

πŸ“… Published: May 9, 2024, 5:45 p.m. πŸ”„ Last Modified: April 15, 2026, 12:35 a.m.

6.7

CVSS3.1

CVE-2024-31953 -

An issue was discovered in Samsung Magician 8.0.0 on macOS. Because it is possible to tamper with the directory and executable files used during the installation process, an attacker can escalate privileges through arbitrary code execution. (The attacker must already have user privileges, and an ad…

πŸ“… Published: May 9, 2024, 5:42 p.m. πŸ”„ Last Modified: June 3, 2025, 4:34 p.m.

6.7

CVSS3.1

CVE-2024-31952 -

An issue was discovered in Samsung Magician 8.0.0 on macOS. Because symlinks are used during the installation process, an attacker can escalate privileges via arbitrary file permission writes. (The attacker must already have user privileges, and an administrator password must be entered during the …

πŸ“… Published: May 9, 2024, 5:38 p.m. πŸ”„ Last Modified: June 3, 2025, 4:34 p.m.

5.3

CVSS4.0

CVE-2024-4682 - Campcodes Complete Web-Based School Management System exam_timetable_update_form.php cross site scr…

A vulnerability has been found in Campcodes Complete Web-Based School Management System 1.0 and classified as problematic. Affected by this vulnerability is an unknown functionality of the file /view/exam_timetable_update_form.php. The manipulation of the argument exam leads to cross site scripting…

πŸ“… Published: May 9, 2024, 5:31 p.m. πŸ”„ Last Modified: Feb. 19, 2025, 6:36 p.m.
Total resulsts: 349182
Page 9922 of 34,919
Β« previous page Β» next page
Filters