4.3

CVSS3.1

CVE-2024-8899 - Jeg Elementor Kit <= 2.6.9 - Authenticated (Contributor+) Sensitive Information Exposure via sg_con…

The Jeg Elementor Kit plugin for WordPress is vulnerable to Sensitive Information Exposure in all versions up to, and including, 2.6.9 via the render_content function in class/elements/views/class-tabs-view.php. This makes it possible for authenticated attackers, with Contributor-level access and a…

πŸ“… Published: Nov. 26, 2024, 11:04 a.m. πŸ”„ Last Modified: April 8, 2026, 4:51 p.m.

9.8

CVSS3.1

CVE-2024-11024 - AppPresser – Mobile App Framework <= 4.4.6 - Unauthenticated Privilege Escalation via Password Reset

The AppPresser – Mobile App Framework plugin for WordPress is vulnerable to privilege escalation via account takeover in all versions up to, and including, 4.4.6. This is due to the plugin not properly validating a user's password reset code prior to updating their password. This makes it possible …

πŸ“… Published: Nov. 26, 2024, 11:04 a.m. πŸ”„ Last Modified: April 8, 2026, 4:49 p.m.

6.5

CVSS3.1

CVE-2024-50377 -

A CWE-798 "Use of Hard-coded Credentials" was discovered affecting the following devices manufactured by Advantech: EKI-6333AC-2G (<= 1.6.3), EKI-6333AC-2GD (<= v1.6.3) and EKI-6333AC-1GPO (<= v1.2.1). The vulnerability is associated to the backup configuration functionality that by default encrypt…

πŸ“… Published: Nov. 26, 2024, 10:57 a.m. πŸ”„ Last Modified: Jan. 23, 2026, 6:01 p.m.

7.3

CVSS3.1

CVE-2024-50376 -

A CWE-79 "Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')" was discovered affecting the following devices manufactured by Advantech: EKI-6333AC-2G (<= 1.6.3), EKI-6333AC-2GD (<= v1.6.3) and EKI-6333AC-1GPO (<= v1.2.1). The vulnerability can be exploited remotely…

πŸ“… Published: Nov. 26, 2024, 10:57 a.m. πŸ”„ Last Modified: Jan. 23, 2026, 6:07 p.m.

9.8

CVSS3.1

CVE-2024-50375 -

A CWE-306 "Missing Authentication for Critical Function" was discovered affecting the following devices manufactured by Advantech: EKI-6333AC-2G (<= 1.6.3), EKI-6333AC-2GD (<= v1.6.3) and EKI-6333AC-1GPO (<= v1.2.1). The vulnerability can be exploited by remote unauthenticated users capable of inte…

πŸ“… Published: Nov. 26, 2024, 10:57 a.m. πŸ”„ Last Modified: Jan. 23, 2026, 6:09 p.m.

9.8

CVSS3.1

CVE-2024-50374 -

A CWE-78 "Improper Neutralization of Special Elements used in an OS Command ('OS Command Injection')" was discovered affecting the following devices manufactured by Advantech: EKI-6333AC-2G (<= 1.6.3), EKI-6333AC-2GD (<= v1.6.3) and EKI-6333AC-1GPO (<= v1.2.1). The vulnerability can be exploited by…

πŸ“… Published: Nov. 26, 2024, 10:56 a.m. πŸ”„ Last Modified: Jan. 23, 2026, 6:10 p.m.

9.8

CVSS3.1

CVE-2024-50373 -

A CWE-78 "Improper Neutralization of Special Elements used in an OS Command ('OS Command Injection')" was discovered affecting the following devices manufactured by Advantech: EKI-6333AC-2G (<= 1.6.3), EKI-6333AC-2GD (<= v1.6.3) and EKI-6333AC-1GPO (<= v1.2.1). The vulnerability can be exploited by…

πŸ“… Published: Nov. 26, 2024, 10:56 a.m. πŸ”„ Last Modified: Jan. 23, 2026, 6:12 p.m.

9.8

CVSS3.1

CVE-2024-50372 -

A CWE-78 "Improper Neutralization of Special Elements used in an OS Command ('OS Command Injection')" was discovered affecting the following devices manufactured by Advantech: EKI-6333AC-2G (<= 1.6.3), EKI-6333AC-2GD (<= v1.6.3) and EKI-6333AC-1GPO (<= v1.2.1). The vulnerability can be exploited by…

πŸ“… Published: Nov. 26, 2024, 10:56 a.m. πŸ”„ Last Modified: Jan. 23, 2026, 6:12 p.m.

9.8

CVSS3.1

CVE-2024-50371 -

A CWE-78 "Improper Neutralization of Special Elements used in an OS Command ('OS Command Injection')" was discovered affecting the following devices manufactured by Advantech: EKI-6333AC-2G (<= 1.6.3), EKI-6333AC-2GD (<= v1.6.3) and EKI-6333AC-1GPO (<= v1.2.1). The vulnerability can be exploited by…

πŸ“… Published: Nov. 26, 2024, 10:55 a.m. πŸ”„ Last Modified: Jan. 23, 2026, 6:13 p.m.

9.8

CVSS3.1

CVE-2024-50370 -

A CWE-78 "Improper Neutralization of Special Elements used in an OS Command ('OS Command Injection')" was discovered affecting the following devices manufactured by Advantech: EKI-6333AC-2G (<= 1.6.3), EKI-6333AC-2GD (<= v1.6.3) and EKI-6333AC-1GPO (<= v1.2.1). The vulnerability can be exploited by…

πŸ“… Published: Nov. 26, 2024, 10:55 a.m. πŸ”„ Last Modified: Jan. 23, 2026, 6:13 p.m.
Total resulsts: 344009
Page 7182 of 34,401
Β« previous page Β» next page
Filters