5.3

CVSS3.1

CVE-2024-33117 -

crmeb_java v1.3.4 was discovered to contain a Server-Side Request Forgery (SSRF) via the mergeList method in class com.zbkj.front.pub.ImageMergeController.

๐Ÿ“… Published: May 6, 2024, midnight ๐Ÿ”„ Last Modified: June 11, 2025, 12:04 p.m.

5.3

CVSS3.1

CVE-2024-33113 -

D-LINK DIR-845L <=v1.01KRb03 is vulnerable to Information disclosurey via bsc_sms_inbox.php.

๐Ÿ“… Published: May 6, 2024, midnight ๐Ÿ”„ Last Modified: May 21, 2025, 1:02 p.m.

7.5

CVSS3.1

CVE-2024-34069 - Werkzeug's improper usage of a pathname and improper CSRF protection results in the remote command โ€ฆ

Werkzeug is a comprehensive WSGI web application library. The debugger in affected versions of Werkzeug can allow an attacker to execute code on a developer's machine under some circumstances. This requires the attacker to get the developer to interact with a domain and subdomain they control, and โ€ฆ

๐Ÿ“… Published: May 6, 2024, midnight ๐Ÿ”„ Last Modified: Dec. 3, 2025, 3:32 p.m.

5.4

CVSS3.1

CVE-2024-33829 -

idccms v1.35 was discovered to contain a Cross-Site Request Forgery (CSRF) via the component /admin/readDeal.php?mudi=updateWebCache.

๐Ÿ“… Published: May 6, 2024, midnight ๐Ÿ”„ Last Modified: April 15, 2025, 4:57 p.m.

8.1

CVSS3.1

CVE-2024-33410 -

SQL injection vulnerability in /model/delete_range_grade.php in campcodes Complete Web-Based School Management System 1.0 allows attacker to execute arbitrary SQL commands via the id parameter.

๐Ÿ“… Published: May 6, 2024, midnight ๐Ÿ”„ Last Modified: March 25, 2025, 5:20 p.m.

8.6

CVSS3.1

CVE-2024-33405 -

SQL injection vulnerability in add_friends.php in campcodes Complete Web-Based School Management System 1.0 allows attacker to execute arbitrary SQL commands via the friend_index parameter.

๐Ÿ“… Published: May 6, 2024, midnight ๐Ÿ”„ Last Modified: March 25, 2025, 5:20 p.m.

7.5

CVSS3.1

CVE-2024-34246 -

wasm3 v0.5.0 was discovered to contain an out-of-bound memory read which leads to segmentation fault via the function "main" in wasm3/platforms/app/main.c.

๐Ÿ“… Published: May 6, 2024, midnight ๐Ÿ”„ Last Modified: April 16, 2025, 6:46 p.m.

7.5

CVSS3.1

CVE-2024-34252 -

wasm3 v0.5.0 was discovered to contain a global buffer overflow which leads to segmentation fault via the function "PreserveRegisterIfOccupied" in wasm3/source/m3_compile.c.

๐Ÿ“… Published: May 6, 2024, midnight ๐Ÿ”„ Last Modified: April 16, 2025, 6:46 p.m.

7.3

CVSS3.1

CVE-2024-34534 -

A SQL injection vulnerability in Cybrosys Techno Solutions Text Commander module (aka text_commander) 16.0 through 16.0.1 allows a remote attacker to gain privileges via the data parameter to models/ir_model.py:IrModel::chech_model.

๐Ÿ“… Published: May 6, 2024, midnight ๐Ÿ”„ Last Modified: April 15, 2026, 12:35 a.m.

8.1

CVSS3.1

CVE-2024-33830 -

idccms v1.35 was discovered to contain a Cross-Site Request Forgery (CSRF) via the component /admin/readDeal.php?mudi=clearWebCache.

๐Ÿ“… Published: May 6, 2024, midnight ๐Ÿ”„ Last Modified: April 15, 2025, 4:57 p.m.
Total resulsts: 349182
Page 9979 of 34,919
ยซ previous page ยป next page
Filters