9.8

CVSS3.1

CVE-2024-54920 -

A SQL Injection vulnerability was found in /teacher_signup.php of kashipara E-learning Management System v1.0, which allows remote attackers to execute arbitrary SQL command to get unauthorized database access via the firstname, lastname, and class_id parameters.

πŸ“… Published: Dec. 9, 2024, midnight πŸ”„ Last Modified: March 20, 2025, 9:15 p.m.

4.2

CVSS3.1

CVE-2024-12369 - Elytron-oidc-client: oidc authorization code injection

A vulnerability was found in OIDC-Client. When using the RH SSO OIDC adapter with EAP 7.x or when using the elytron-oidc-client subsystem with EAP 8.x, authorization code injection attacks can occur, allowing an attacker to inject a stolen authorization code into the attacker's own session with the…

πŸ“… Published: Dec. 9, 2024, midnight πŸ”„ Last Modified: April 15, 2026, 12:35 a.m.

7.5

CVSS3.1

CVE-2024-40582 -

Pentaminds CuroVMS v2.0.1 was discovered to contain exposed sensitive information.

πŸ“… Published: Dec. 9, 2024, midnight πŸ”„ Last Modified: April 17, 2025, 1:41 a.m.

5.3

CVSS3.1

CVE-2024-54937 -

A Directory Listing issue was found in Kashipara E-Learning Management System v1.0, which allows remote attackers to access sensitive files and directories via /admin/assets.

πŸ“… Published: Dec. 9, 2024, midnight πŸ”„ Last Modified: March 20, 2025, 9:15 p.m.

9.8

CVSS3.1

CVE-2022-38947 -

SQL Injection vulnerability in Flipkart-Clone-PHP version 1.0 in entry.php in product_title parameter, allows attackers to execute arbitrary code.

πŸ“… Published: Dec. 9, 2024, midnight πŸ”„ Last Modified: May 17, 2025, 1:57 a.m.

7.2

CVSS3.1

CVE-2024-54927 -

Kashipara E-learning Management System v1.0 is vulnerable to SQL Injection in /admin/delete_users.php.

πŸ“… Published: Dec. 9, 2024, midnight πŸ”„ Last Modified: April 24, 2025, 4:55 p.m.

4.3

CVSS3.1

CVE-2022-29974 -

AMI (aka American Megatrends) NTFS driver 1.0.0 (fixed in late 2021 or early 2022) has a buffer overflow. This driver is, for example, used in certain ASUS devices.

πŸ“… Published: Dec. 9, 2024, midnight πŸ”„ Last Modified: April 15, 2026, 12:35 a.m.

8.8

CVSS3.1

CVE-2024-55579 -

An issue was discovered in Qlik Sense Enterprise for Windows before November 2024 IR. An unprivileged user with network access may be able to create connection objects that trigger execution of arbitrary EXE files. This is fixed in November 2024 IR, May 2024 Patch 10, February 2024 Patch 14, Novemb…

πŸ“… Published: Dec. 9, 2024, midnight πŸ”„ Last Modified: Dec. 17, 2024, 4:55 a.m.

7.2

CVSS3.1

CVE-2024-54928 -

kashipara E-learning Management System v1.0 is vulnerable to SQL Injection in /admin/delete_teacher.php,

πŸ“… Published: Dec. 9, 2024, midnight πŸ”„ Last Modified: April 24, 2025, 4:51 p.m.

7.5

CVSS3.1

CVE-2024-55580 -

An issue was discovered in Qlik Sense Enterprise for Windows before November 2024 IR. Unprivileged users with network access may be able to execute remote commands that could cause high availability damages, including high integrity and confidentiality risks. This is fixed in November 2024 IR, May …

πŸ“… Published: Dec. 9, 2024, midnight πŸ”„ Last Modified: July 12, 2025, 10:23 p.m.
Total resulsts: 344680
Page 7135 of 34,468
Β« previous page Β» next page
Filters