8.8

CVSS3.1

CVE-2024-48177 -

MRCMS 3.1.2 contains a SQL injection vulnerability via the RID parameter in /admin/article/delete.do.

๐Ÿ“… Published: Oct. 28, 2024, midnight ๐Ÿ”„ Last Modified: April 18, 2025, 1:23 a.m.

6.3

CVSS3.1

CVE-2024-48191 -

dingfanzu CMS 1.0 was discovered to contain a Cross-Site Request Forgery (CSRF) via the component /admin/doAdminAction.php?act=delAdmin&id=17

๐Ÿ“… Published: Oct. 28, 2024, midnight ๐Ÿ”„ Last Modified: May 27, 2025, 8:36 p.m.

8

CVSS3.1

CVE-2024-48826 -

Tenda AC7 v.15.03.06.44 ate_iwpriv_set has pre-authentication command injection allowing remote attackers to execute arbitrary code.

๐Ÿ“… Published: Oct. 28, 2024, midnight ๐Ÿ”„ Last Modified: March 17, 2025, 2:41 p.m.

5

CVSS3.1

CVE-2024-48936 -

SchedMD Slurm before 24.05.4 has Incorrect Authorization. A mistake in authentication handling in stepmgr could permit an attacker to execute processes under other users' jobs. This is limited to jobs explicitly running with --stepmgr, or on systems that have globally enabled stepmgr via SlurmctldPโ€ฆ

๐Ÿ“… Published: Oct. 28, 2024, midnight ๐Ÿ”„ Last Modified: April 17, 2025, 6:52 p.m.

4.8

CVSS3.1

CVE-2024-51509 -

Tiki through 27.0 allows users who have certain permissions to insert a "Modules" (aka tiki-admin_modules.php) stored XSS payload in the Name.

๐Ÿ“… Published: Oct. 28, 2024, midnight ๐Ÿ”„ Last Modified: June 3, 2025, 2:57 p.m.

7.5

CVSS3.1

CVE-2024-48196 -

An issue in eyouCMS v.1.6.7 allows a remote attacker to obtain sensitive information via a crafted script to the post parameter.

๐Ÿ“… Published: Oct. 28, 2024, midnight ๐Ÿ”„ Last Modified: April 18, 2025, 1:15 a.m.

4.8

CVSS3.1

CVE-2024-51507 -

Tiki through 27.0 allows users who have certain permissions to insert a "Create/Edit External Wiki" stored XSS payload in the Name.

๐Ÿ“… Published: Oct. 28, 2024, midnight ๐Ÿ”„ Last Modified: June 3, 2025, 2:55 p.m.

4.8

CVSS3.1

CVE-2024-51508 -

Tiki through 27.0 allows users who have certain permissions to insert a "Create/Edit External Wiki" stored XSS payload in the Index.

๐Ÿ“… Published: Oct. 28, 2024, midnight ๐Ÿ”„ Last Modified: June 3, 2025, 2:57 p.m.

8

CVSS3.1

CVE-2024-48825 -

Tenda AC7 v.15.03.06.44 ate_ifconfig_set has pre-authentication command injection allowing remote attackers to execute arbitrary code.

๐Ÿ“… Published: Oct. 28, 2024, midnight ๐Ÿ”„ Last Modified: March 17, 2025, 2:40 p.m.

9.8

CVSS3.1

CVE-2024-48357 -

LyLme Spage 1.2.0 through 1.6.0 is vulnerable to SQL Injection via /admin/apply.php.

๐Ÿ“… Published: Oct. 28, 2024, midnight ๐Ÿ”„ Last Modified: April 28, 2025, 5:37 p.m.
Total resulsts: 343944
Page 7604 of 34,395
ยซ previous page ยป next page
Filters