6.8

CVSS4.0

CVE-2024-12655 - FabulaTech USB over Network IOCT ftusbbus2.sys 0x220420 null pointer dereference

A vulnerability, which was classified as problematic, has been found in FabulaTech USB over Network 6.0.6.1. Affected by this issue is the function 0x220420 in the library ftusbbus2.sys of the component IOCT Handler. The manipulation leads to null pointer dereference. It is possible to launch the a…

πŸ“… Published: Dec. 16, 2024, 4:31 p.m. πŸ”„ Last Modified: Dec. 19, 2024, 3:11 p.m.

0.0

CVE-2024-12681 -

This CVE ID has been rejected or withdrawn by its CVE Numbering Authority.

πŸ“… Published: Dec. 16, 2024, 4:30 p.m. πŸ”„ Last Modified: July 5, 2025, 11:15 p.m.

5.7

CVSS3.1

CVE-2024-11358 - Insecure Android File Provider Paths

Mattermost Android Mobile Apps versions <=2.21.0 fail to properly configure file providers which allows an attacker with local access to access files via file provider.

πŸ“… Published: Dec. 16, 2024, 4:20 p.m. πŸ”„ Last Modified: Sept. 24, 2025, 7:39 p.m.

6.8

CVSS4.0

CVE-2024-12654 - FabulaTech USB over Network IOCT ftusbbus2.sys 0x220408 null pointer dereference

A vulnerability classified as problematic was found in FabulaTech USB over Network 6.0.6.1. Affected by this vulnerability is the function 0x220408 in the library ftusbbus2.sys of the component IOCT Handler. The manipulation leads to null pointer dereference. Attacking locally is a requirement. The…

πŸ“… Published: Dec. 16, 2024, 4 p.m. πŸ”„ Last Modified: Dec. 18, 2024, 1:42 p.m.

4.3

CVSS3.1

CVE-2024-54357 - WordPress Avada theme <= 7.11.10 - Cross Site Request Forgery (CSRF) vulnerability

Cross-Site Request Forgery (CSRF) vulnerability in ThemeFusion Avada avada.This issue affects Avada: from n/a through <= 7.11.10.

πŸ“… Published: Dec. 16, 2024, 3:57 p.m. πŸ”„ Last Modified: April 1, 2026, 4:21 p.m.

0.0

CVE-2024-54376 - WordPress EazyDocs plugin <= 2.8.0 - Local File Inclusion vulnerability

Improper Control of Filename for Include/Require Statement in PHP Program ('PHP Remote File Inclusion') vulnerability in Spider Themes EazyDocs eazydocs allows PHP Local File Inclusion.This issue affects EazyDocs: from n/a through <= 2.8.0.

πŸ“… Published: Dec. 16, 2024, 3:57 p.m. πŸ”„ Last Modified: April 1, 2026, 4:21 p.m.

0.0

CVE-2024-56003 - WordPress Caldera SMTP Mailer plugin <= 1.0.1 - Broken Access Control vulnerability

Missing Authorization vulnerability in David Cramer Caldera SMTP Mailer caldera-smtp-mailer.This issue affects Caldera SMTP Mailer: from n/a through <= 1.0.1.

πŸ“… Published: Dec. 16, 2024, 3:54 p.m. πŸ”„ Last Modified: April 1, 2026, 4:21 p.m.

0.0

CVE-2024-55999 - WordPress XML Multilanguage Sitemap Generator plugin <= 2.0.6 - Broken Access Control vulnerability

Missing Authorization vulnerability in Marco Giannini XML Multilanguage Sitemap Generator xml-multilanguage-sitemap-generator.This issue affects XML Multilanguage Sitemap Generator: from n/a through <= 2.0.6.

πŸ“… Published: Dec. 16, 2024, 3:53 p.m. πŸ”„ Last Modified: April 1, 2026, 4:21 p.m.

0.0

CVE-2024-54348 - WordPress Brandy theme <= 1.1.6 - Cross Site Scripting (XSS) vulnerability

Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in yaycommerce Brand brand allows Stored XSS.This issue affects Brand: from n/a through <= 1.1.6.

πŸ“… Published: Dec. 16, 2024, 3:51 p.m. πŸ”„ Last Modified: April 1, 2026, 4:21 p.m.

9.1

CVSS3.1

CVE-2024-54285 - WordPress SeedProd Pro plugin <= 6.18.10 - Remote Code Execution (RCE) vulnerability

Unrestricted Upload of File with Dangerous Type vulnerability in SeedProd LLC SeedProd Pro allows Upload a Web Shell to a Web Server.This issue affects SeedProd Pro: from n/a through 6.18.10.

πŸ“… Published: Dec. 16, 2024, 3:50 p.m. πŸ”„ Last Modified: July 12, 2025, 4:01 p.m.
Total resulsts: 343944
Page 6919 of 34,395
Β« previous page Β» next page
Filters