Page(s) : 1 ... 1432 1433 1434 1435 1436 1437 1438 1439 1440 1441 [1442] 1443 1444 1445 1446 1447 1448 1449 1450 1451 1452 ... | Result(s) : 328771 |
Alerts
DATE | NAME | CATEGORIES | DETAIL | |
---|---|---|---|---|
N/A | 2024-12-20 | CVE-2024-55509 | cve | SQL injection vulnerability in CodeAstro Complaint Management System v.1.0 allows a remote attacker to execute arbitrary code and escalate privileges via the id parameter of the... |
N/A | 2024-12-20 | CVE-2024-56334 | cve | systeminformation is a System and OS information library for node.js. In affected versions SSIDs are not sanitized when before they are passed as a parameter to cmd.exe in the `... |
N/A | 2024-12-20 | CVE-2024-56335 | cve | vaultwarden is an unofficial Bitwarden compatible server written in Rust, formerly known as bitwarden_rs. In affected versions an attacker is capable of updating or deleting gro... |
6.1 | 2024-12-20 | CVE-2024-56357 | cve | grist-core is a spreadsheet hosting server. A user visiting a malicious document or submitting a malicious form could have their account compromised, because it was possible to ... |
6.1 | 2024-12-20 | CVE-2024-56358 | cve | grist-core is a spreadsheet hosting server. A user visiting a malicious document and previewing an attachment could have their account compromised, because JavaScript in an SVG ... |
6.1 | 2024-12-20 | CVE-2024-56359 | cve | grist-core is a spreadsheet hosting server. A user visiting a malicious document and clicking on a link in a HyperLink cell using a control modifier (meaning for example Ctrl+cl... |
N/A | 2024-12-20 | CVE-2020-13712 | cve | A command injection is possible through the user interface, allowing arbitrary command execution as the root user. oMG2000 running MGOS 3.15.1 or earlier is affected. MG90 ru... |
N/A | 2024-12-20 | CVE-2021-40959 | cve | A reflected cross-site scripting vulnerability in MONITORAPP Application Insight Web Application Firewall (AIWAF) |
6.1 | 2024-12-20 | CVE-2024-12845 | cve | A vulnerability classified as problematic was found in Emlog Pro up to 2.4.1. Affected by this vulnerability is an unknown functionality in the library /include/lib/common.php. ... |
4.3 | 2024-12-20 | CVE-2024-56348 | cve | In JetBrains TeamCity before 2024.12 improper access control allowed viewing details of unauthorized agents |
5.3 | 2024-12-20 | CVE-2024-56349 | cve | In JetBrains TeamCity before 2024.12 improper access control allowed unauthorized users to modify build logs |
4.3 | 2024-12-20 | CVE-2024-56350 | cve | In JetBrains TeamCity before 2024.12 build credentials allowed unauthorized viewing of projects |
8.8 | 2024-12-20 | CVE-2024-56351 | cve | In JetBrains TeamCity before 2024.12 access tokens were not revoked after removing user roles |
5.4 | 2024-12-20 | CVE-2024-56352 | cve | In JetBrains TeamCity before 2024.12 stored XSS was possible via image name on the agent details page |
6.5 | 2024-12-20 | CVE-2024-56353 | cve | In JetBrains TeamCity before 2024.12 backup file exposed user credentials and session cookies |
4.9 | 2024-12-20 | CVE-2024-56354 | cve | In JetBrains TeamCity before 2024.12 password field value were accessible to users with view settings permission |
5.4 | 2024-12-20 | CVE-2024-56355 | cve | In JetBrains TeamCity before 2024.12 missing Content-Type header in RemoteBuildLogController response could lead to XSS |
7.1 | 2024-12-20 | CVE-2024-56356 | cve | In JetBrains TeamCity before 2024.12 insecure XMLParser configuration could lead to potential XXE attack |
N/A | 2024-12-20 | CVE-2024-10385 | cve | Ticket management system in DirectAdmin Evolution Skin is vulnerable to XSS (Cross-site Scripting), which allows a low-privileged user to inject and store malicious JavaScript c... |
N/A | 2024-12-20 | CVE-2024-12840 | cve | Rejected reason: Red Hat Product Security has come to the conclusion that this CVE is not needed. The problem described was inteded behavior and therefore not a bug. |
Page(s) : 1 ... 1432 1433 1434 1435 1436 1437 1438 1439 1440 1441 [1442] 1443 1444 1445 1446 1447 1448 1449 1450 1451 1452 ... | Result(s) : 328771 |