6.1

CVSS3.1

CVE-2024-54123 -

Backdrop CMS before 1.28.4 and 1.29.x before 1.29.2 allows XSS via an SVG document, if the SVG tag is allowed for a text format.

πŸ“… Published: Nov. 29, 2024, midnight πŸ”„ Last Modified: April 6, 2026, 2:08 p.m.

7.8

CVSS3.1

CVE-2024-9852 - Malicious Code Execution Vulnerability in GENESIS64, ICONICS Suite, Hyper Historian, MC Works64, an…

Uncontrolled Search Path Element vulnerability in Mitsubishi Electric GENESIS64 versions 10.97.3 and prior, Mitsubishi Electric ICONICS Suite versions 10.97.3 and prior, Mitsubishi Electric Hyper Historian versions 10.97.3 and prior, Mitsubishi Electric GENESIS32 all versions, Mitsubishi Electric M…

πŸ“… Published: Nov. 28, 2024, 10:20 p.m. πŸ”„ Last Modified: April 8, 2026, 2:16 p.m.

7

CVSS3.1

CVE-2024-8300 - Malicious Code Execution Vulnerability in GENESIS64 and ICONICS Suite

Dead Code vulnerability in Mitsubishi Electric GENESIS64 Version 10.97.2, 10.97.2 CFR1, 10.97.2 CRF2 and 10.97.3, Mitsubishi Electric Iconics Digital Solutions GENESIS64 Version 10.97.2, 10.97.2 CFR1, 10.97.2 CRF2 and 10.97.3, Mitsubishi Electric ICONICS Suite Version 10.97.2, 10.97.2 CFR1, 10.97.2…

πŸ“… Published: Nov. 28, 2024, 10:18 p.m. πŸ”„ Last Modified: Jan. 9, 2026, 8:15 a.m.

7.8

CVSS3.1

CVE-2024-8299 - Malicious Code Execution Vulnerability in GENESIS64, ICONICS Suite, Hyper Historian, MC Works64, an…

Uncontrolled Search Path Element vulnerability in Mitsubishi Electric GENESIS64 versions 10.97.3 and prior, Mitsubishi Electric ICONICS Suite versions 10.97.3 and prior, Mitsubishi Electric Hyper Historian versions 10.97.3 and prior, Mitsubishi Electric GENESIS32 all versions, Mitsubishi Electric M…

πŸ“… Published: Nov. 28, 2024, 10:16 p.m. πŸ”„ Last Modified: April 8, 2026, 2:16 p.m.

5.3

CVSS4.0

CVE-2024-11971 - Guizhou Xiaoma Technology jpress Avatar upload cross site scripting

A vulnerability classified as problematic was found in Guizhou Xiaoma Technology jpress 5.1.2. Affected by this vulnerability is an unknown functionality of the file /commons/attachment/upload of the component Avatar Handler. The manipulation of the argument files leads to cross site scripting. The…

πŸ“… Published: Nov. 28, 2024, 10 p.m. πŸ”„ Last Modified: Dec. 3, 2024, 8:04 p.m.

6.9

CVSS4.0

CVE-2024-11970 - code-projects Concert Ticket Ordering System tour(cor).php sql injection

A vulnerability classified as critical has been found in code-projects Concert Ticket Ordering System 1.0. Affected is an unknown function of the file /tour(cor).php. The manipulation of the argument mai leads to sql injection. It is possible to launch the attack remotely. The exploit has been disc…

πŸ“… Published: Nov. 28, 2024, 10 p.m. πŸ”„ Last Modified: Dec. 2, 2024, 2:48 p.m.

5.3

CVSS4.0

CVE-2024-11968 - code-projects Farmacia pagamento.php sql injection

A vulnerability was found in code-projects Farmacia up to 1.0. It has been declared as critical. Affected by this vulnerability is an unknown functionality of the file pagamento.php. The manipulation of the argument notaFiscal leads to sql injection. The attack can be launched remotely.

πŸ“… Published: Nov. 28, 2024, 6 p.m. πŸ”„ Last Modified: Dec. 3, 2024, 8:12 p.m.

6.9

CVSS4.0

CVE-2024-11967 - PHPGurukul Complaint Management system reset-password.php sql injection

A vulnerability was found in PHPGurukul Complaint Management system 1.0. It has been classified as critical. Affected is an unknown function of the file /admin/reset-password.php. The manipulation of the argument email leads to sql injection. It is possible to launch the attack remotely. The exploi…

πŸ“… Published: Nov. 28, 2024, 6 p.m. πŸ”„ Last Modified: Dec. 3, 2024, 8:20 p.m.

6.9

CVSS4.0

CVE-2024-11966 - PHPGurukul Complaint Management system index.php sql injection

A vulnerability was found in PHPGurukul Complaint Management system 1.0 and classified as critical. This issue affects some unknown processing of the file /admin/index.php. The manipulation of the argument username leads to sql injection. The attack may be initiated remotely. The exploit has been d…

πŸ“… Published: Nov. 28, 2024, 5:31 p.m. πŸ”„ Last Modified: Dec. 4, 2024, 4:50 p.m.

6.9

CVSS4.0

CVE-2024-11965 - PHPGurukul Complaint Management system reset-password.php sql injection

A vulnerability has been found in PHPGurukul Complaint Management system 1.0 and classified as critical. This vulnerability affects unknown code of the file /user/reset-password.php. The manipulation of the argument email leads to sql injection. The attack can be initiated remotely. The exploit has…

πŸ“… Published: Nov. 28, 2024, 5 p.m. πŸ”„ Last Modified: Dec. 4, 2024, 4:50 p.m.
Total resulsts: 343968
Page 7154 of 34,397
Β« previous page Β» next page
Filters