4.3

CVSS3.1

CVE-2024-55565 - nanoid: nanoid mishandles non-integer values

nanoid (aka Nano ID) before 5.0.9 mishandles non-integer values. 3.3.8 is also a fixed version.

๐Ÿ“… Published: Dec. 9, 2024, midnight ๐Ÿ”„ Last Modified: April 15, 2026, 12:35 a.m.

9.8

CVSS3.1

CVE-2022-38946 -

Arbitrary File Upload vulnerability in Doctor-Appointment version 1.0 in /Frontend/signup_com.php, allows attackers to execute arbitrary code.

๐Ÿ“… Published: Dec. 9, 2024, midnight ๐Ÿ”„ Last Modified: May 17, 2025, 1:58 a.m.

7.5

CVSS3.1

CVE-2024-40582 -

Pentaminds CuroVMS v2.0.1 was discovered to contain exposed sensitive information.

๐Ÿ“… Published: Dec. 9, 2024, midnight ๐Ÿ”„ Last Modified: April 17, 2025, 1:41 a.m.

8.8

CVSS3.1

CVE-2024-55579 -

An issue was discovered in Qlik Sense Enterprise for Windows before November 2024 IR. An unprivileged user with network access may be able to create connection objects that trigger execution of arbitrary EXE files. This is fixed in November 2024 IR, May 2024 Patch 10, February 2024 Patch 14, Novembโ€ฆ

๐Ÿ“… Published: Dec. 9, 2024, midnight ๐Ÿ”„ Last Modified: April 15, 2026, 12:35 a.m.

9.8

CVSS3.1

CVE-2024-54926 -

A SQL Injection vulnerability was found in /search_class.php of kashipara E-learning Management System v1.0, which allows remote attackers to execute arbitrary SQL commands to get unauthorized database access via the school_year parameter.

๐Ÿ“… Published: Dec. 9, 2024, midnight ๐Ÿ”„ Last Modified: Dec. 11, 2024, 5:24 p.m.

7.2

CVSS3.1

CVE-2024-54929 -

KASHIPARA E-learning Management System v1.0 is vulnerable to SQL Injection in /admin/delete_subject.php.

๐Ÿ“… Published: Dec. 9, 2024, midnight ๐Ÿ”„ Last Modified: March 18, 2025, 3:15 p.m.

9.8

CVSS3.1

CVE-2024-54923 -

A SQL Injection vulnerability was found in /admin/edit_teacher.php in kashipara E-learning Management System v1.0, which allows remote attackers to execute arbitrary SQL commands to get unauthorized database access via the department parameter.

๐Ÿ“… Published: Dec. 9, 2024, midnight ๐Ÿ”„ Last Modified: April 14, 2025, 3:15 p.m.

5.4

CVSS3.1

CVE-2024-54919 -

A Stored Cross Site Scripting (XSS ) was found in /teacher_avatar.php of kashipara E-learning Management System v1.0. This vulnerability allows remote attackers to execute arbitrary java script via the filename parameter.

๐Ÿ“… Published: Dec. 9, 2024, midnight ๐Ÿ”„ Last Modified: Dec. 10, 2024, 6:15 p.m.

9.8

CVSS3.1

CVE-2024-54918 -

Kashipara E-learning Management System v1.0 is vulnerable to Remote Code Execution via File Upload in /teacher_avatar.php.

๐Ÿ“… Published: Dec. 9, 2024, midnight ๐Ÿ”„ Last Modified: April 14, 2025, 3:14 p.m.

8.8

CVSS3.1

CVE-2024-50628 -

An issue was discovered in the web services of Digi ConnectPort LTS before 1.4.12. It allows an attacker on the local area network to achieve unauthorized manipulation of resources, which may lead to remote code execution when combined with other issues.

๐Ÿ“… Published: Dec. 9, 2024, midnight ๐Ÿ”„ Last Modified: June 27, 2025, 4:06 p.m.
Total resulsts: 348147
Page 7482 of 34,815
ยซ previous page ยป next page
Filters