9.4

CVSS3.1

CVE-2024-25518 -

RuvarOA v6.01 and v12.01 were discovered to contain a SQL injection vulnerability via the template_id parameter at /WorkFlow/wf_get_fields_approve.aspx.

πŸ“… Published: May 8, 2024, midnight πŸ”„ Last Modified: April 17, 2025, 5:20 p.m.

7.3

CVSS3.1

CVE-2024-25515 -

RuvarOA v6.01 and v12.01 were discovered to contain a SQL injection vulnerability via the sys_file_storage_id parameter at /WorkFlow/wf_work_finish_file_down.aspx.

πŸ“… Published: May 8, 2024, midnight πŸ”„ Last Modified: April 16, 2025, 7:02 p.m.

9.8

CVSS3.1

CVE-2024-31961 -

A SQL injection vulnerability in unit.php in Sonic Shopfloor.guide before 3.1.3 allows remote attackers to execute arbitrary SQL commands via the level2 parameter.

πŸ“… Published: May 8, 2024, midnight πŸ”„ Last Modified: April 15, 2026, 12:35 a.m.

6.1

CVSS3.1

CVE-2024-34255 -

jizhicms v2.5.1 contains a Cross-Site Scripting(XSS) vulnerability in the message function.

πŸ“… Published: May 8, 2024, midnight πŸ”„ Last Modified: June 13, 2025, 1 p.m.

9.4

CVSS3.1

CVE-2024-25527 -

RuvarOA v6.01 and v12.01 were discovered to contain a SQL injection vulnerability via the id parameter at /PersonalAffair/worklog_template_show.aspx.

πŸ“… Published: May 8, 2024, midnight πŸ”„ Last Modified: April 17, 2025, 5:18 p.m.

7.4

CVSS3.1

CVE-2024-27394 - tcp: Fix Use-After-Free in tcp_ao_connect_init

In the Linux kernel, the following vulnerability has been resolved: tcp: Fix Use-After-Free in tcp_ao_connect_init Since call_rcu, which is called in the hlist_for_each_entry_rcu traversal of tcp_ao_connect_init, is not part of the RCU read critical section, it is possible that the RCU grace peri…

πŸ“… Published: May 8, 2024, midnight πŸ”„ Last Modified: May 4, 2025, 9:04 a.m.

5.9

CVSS3.1

CVE-2024-25528 -

RuvarOA v6.01 and v12.01 were discovered to contain a SQL injection vulnerability via the id parameter at /PersonalAffair/worklog_template_show.aspx.

πŸ“… Published: May 8, 2024, midnight πŸ”„ Last Modified: April 17, 2025, 5:18 p.m.

9.4

CVSS3.1

CVE-2024-25524 -

RuvarOA v6.01 and v12.01 were discovered to contain a SQL injection vulnerability via the sys_file_storage_id parameter at /WorkPlan/WorkPlanAttachDownLoad.aspx.

πŸ“… Published: May 8, 2024, midnight πŸ”„ Last Modified: April 17, 2025, 5:19 p.m.

5.5

CVSS3.1

CVE-2024-27393 - xen-netfront: Add missing skb_mark_for_recycle

In the Linux kernel, the following vulnerability has been resolved: xen-netfront: Add missing skb_mark_for_recycle Notice that skb_mark_for_recycle() is introduced later than fixes tag in commit 6a5bcd84e886 ("page_pool: Allow drivers to hint on SKB recycling"). It is believed that fixes tag wer…

πŸ“… Published: May 8, 2024, midnight πŸ”„ Last Modified: May 4, 2025, 9:04 a.m.

7.5

CVSS3.1

CVE-2024-34244 -

libmodbus v3.1.10 is vulnerable to Buffer Overflow via the modbus_write_bits function. This issue can be triggered when the function is fed with specially crafted input, which leads to out-of-bounds read and can potentially cause a crash or other unintended behaviors.

πŸ“… Published: May 8, 2024, midnight πŸ”„ Last Modified: May 5, 2025, 5:13 p.m.
Total resulsts: 349182
Page 9946 of 34,919
Β« previous page Β» next page
Filters