7.5
CVE-2024-57662 - virtuoso-opensource: DoS in sqlg_hash_source
An issue in the sqlg_hash_source component of openlink virtuoso-opensource v7.2.11 allows attackers to cause a Denial of Service (DoS) via crafted SQL statements.
7.5
CVE-2024-54730 -
Flatnotes <v5.3.1 is vulnerable to denial of service through the upload image function.
7.5
CVE-2024-57619 -
An issue in the atom_get_int component of MonetDB Server v11.47.11 allows attackers to cause a Denial of Service (DoS) via crafted SQL statements.
7.5
CVE-2024-57658 - virtuoso-opensource: DoS in sql_tree_hash_1
An issue in the sql_tree_hash_1 component of openlink virtuoso-opensource v7.2.11 allows attackers to cause a Denial of Service (DoS) via crafted SQL statements.
9.1
CVE-2024-57763 -
MSFM before 2025.01.01 was discovered to contain a fastjson deserialization vulnerability via the component system/table/addField.
8.1
CVE-2024-57761 -
An arbitrary file upload vulnerability in the parserXML() method of JeeWMS before v2025.01.01 allows attackers to execute arbitrary code via uploading a crafted file.
7.5
CVE-2024-57645 - virtuoso-opensource: DoS in qi_inst_state_free
An issue in the qi_inst_state_free component of openlink virtuoso-opensource v7.2.11 allows attackers to cause a Denial of Service (DoS) via crafted SQL statements.
7.5
CVE-2024-57615 -
An issue in the BATcalcbetween_intern component of MonetDB Server v11.47.11 allows attackers to cause a Denial of Service (DoS) via crafted SQL statements.
4.8
CVE-2024-50857 -
The ip_do_job request in GestioIP v3.5.7 is vulnerable to Cross-Site Scripting (XSS). It allows data exfiltration and enables CSRF attacks. The vulnerability requires specific user permissions within the application to exploit successfully.
7.5
CVE-2024-57656 - virtuoso-opensource: DoS in sqlc_add_distinct_node
An issue in the sqlc_add_distinct_node component of openlink virtuoso-opensource v7.2.11 allows attackers to cause a Denial of Service (DoS) via crafted SQL statements.