0.0
CVE-2024-12101 -
** REJECT ** DO NOT USE THIS CANDIDATE NUMBER. Reason: This candidate was issued in error. Notes: All references and descriptions in this candidate have been removed to prevent accidental usage.
7.5
CVE-2024-11391 - Advanced File Manager <= 5.2.10 - Authenticated (Subscriber+) Arbitrary File Upload
The Advanced File Manager plugin for WordPress is vulnerable to arbitrary file uploads due to missing file type validation via the 'class_fma_connector.php' file in all versions up to, and including, 5.2.10. This makes it possible for authenticated attackers, with Subscriber-level access and above,β¦
6.1
CVE-2024-11200 - Goodlayers Core <= 2.0.7 - Reflected Cross-Site Scripting via 'font-family'
The Goodlayers Core plugin for WordPress is vulnerable to Reflected Cross-Site Scripting via the βfont-familyβ parameter in all versions up to, and including, 2.0.7 due to insufficient input sanitization and output escaping. This makes it possible for unauthenticated attackers to inject arbitrary wβ¦
0.0
CVE-2024-12095 -
This CVE ID has been rejected or withdrawn by its CVE Numbering Authority.
5.5
CVE-2024-9978 - Liteos_a has an out-of-bounds read vulnerability
in OpenHarmony v4.1.1 and prior versions allow a local attacker cause information leak through out-of-bounds Read.
8.3
CVE-2024-42422 -
Dell NetWorker, version(s) 19.10, contain(s) an Authorization Bypass Through User-Controlled Key vulnerability. An unauthenticated attacker with remote access could potentially exploit this vulnerability, leading to Information disclosure.
5.5
CVE-2024-12082 - Ability Runtime has an out-of-bounds read permission bypass vulnerability
in OpenHarmony v4.0.0 and prior versions allow a local attacker cause information leak through out-of-bounds Read.
8.8
CVE-2024-10074 - Liteos_a has an use after free vulnerability
in OpenHarmony v4.1.1 and prior versions allow a local attacker cause the common permission is upgraded to root through use after free.
6.1
CVE-2024-11326 - Campaign Monitor Forms by Optin Cat <= 2.5.7 - Reflected Cross-Site Scripting
The Campaign Monitor Forms by Optin Cat plugin for WordPress is vulnerable to Reflected Cross-Site Scripting due to the use of add_query_arg without appropriate escaping on the URL in all versions up to, and including, 2.5.7. This makes it possible for unauthenticated attackers to inject arbitrary β¦
7.8
CVE-2024-47476 -
Dell NetWorker Management Console, version(s) 19.11, contain(s) an Improper Verification of Cryptographic Signature vulnerability. An unauthenticated attacker with local access could potentially exploit this vulnerability, leading to Code execution.