VYPR

CVEs

38,095 total · page 316 of 762

  • CVE-2024-32113CriKEVMay 8, 2024
    risk 0.80cvss 9.8epss 1.00

    Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal') vulnerability in Apache OFBiz.This issue affects Apache OFBiz: before 18.12.13. Users are recommended to upgrade to version 18.12.13, which fixes the issue.

  • CVE-2024-26579CriMay 8, 2024
    risk 0.57cvss 9.8epss 0.01

    Deserialization of Untrusted Data vulnerability in Apache InLong.This issue affects Apache InLong: from 1.7.0 through 1.11.0,  the attackers can bypass using malicious parameters. Users are advised to upgrade to Apache InLong's 1.12.0 or cherry-pick [1], [2] to solve it. …

  • CVE-2024-25525CriMay 8, 2024
    risk 0.64cvss 9.8epss 0.01

    RuvarOA v6.01 and v12.01 were discovered to contain a SQL injection vulnerability via the filename parameter at /WorkFlow/OfficeFileDownload.aspx.

  • CVE-2024-25524CriMay 8, 2024
    risk 0.61cvss 9.4epss 0.01

    RuvarOA v6.01 and v12.01 were discovered to contain a SQL injection vulnerability via the sys_file_storage_id parameter at /WorkPlan/WorkPlanAttachDownLoad.aspx.

  • CVE-2024-25523CriMay 8, 2024
    risk 0.64cvss 9.8epss 0.01

    RuvarOA v6.01 and v12.01 were discovered to contain a SQL injection vulnerability via the file_id parameter at /filemanage/file_memo.aspx.

  • CVE-2024-25522CriMay 8, 2024
    risk 0.61cvss 9.4epss 0.01

    RuvarOA v6.01 and v12.01 were discovered to contain a SQL injection vulnerability via the office_missive_id parameter at /WorkFlow/wf_work_form_save.aspx.

  • CVE-2024-25521CriMay 8, 2024
    risk 0.61cvss 9.4epss 0.01

    RuvarOA v6.01 and v12.01 were discovered to contain a SQL injection vulnerability via the txt_keyword parameter at get_company.aspx.

  • CVE-2024-25520CriMay 8, 2024
    risk 0.64cvss 9.8epss 0.01

    RuvarOA v6.01 and v12.01 were discovered to contain a SQL injection vulnerability via the id parameter at /SysManage/sys_blogtemplate_new.aspx.

  • CVE-2024-25519CriMay 8, 2024
    risk 0.64cvss 9.8epss 0.01

    RuvarOA v6.01 and v12.01 were discovered to contain a SQL injection vulnerability via the idlist parameter at /WorkFlow/wf_work_print.aspx.

  • CVE-2024-25518CriMay 8, 2024
    risk 0.61cvss 9.4epss 0.01

    RuvarOA v6.01 and v12.01 were discovered to contain a SQL injection vulnerability via the template_id parameter at /WorkFlow/wf_get_fields_approve.aspx.

  • CVE-2024-25517CriMay 8, 2024
    risk 0.64cvss 9.8epss 0.01

    RuvarOA v6.01 and v12.01 were discovered to contain a SQL injection vulnerability via the tbTable argument at /WebUtility/MF.aspx.

  • CVE-2024-4393CriMay 8, 2024
    risk 0.64cvss 9.8epss 0.01

    The Social Connect plugin for WordPress is vulnerable to authentication bypass in versions up to, and including, 1.2. This is due to insufficient verification on the OpenID server being supplied during the social login through the plugin. This makes it possible for…

  • CVE-2024-4558CriMay 7, 2024
    risk 0.63cvss 9.6epss 0.02

    Use after free in ANGLE in Google Chrome prior to 124.0.6367.155 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML page. (Chromium security severity: High)

  • CVE-2024-25514CriMay 7, 2024
    risk 0.61cvss 9.4epss 0.01

    RuvarOA v6.01 and v12.01 were discovered to contain a SQL injection vulnerability via the template_id parameter at /SysManage/wf_template_child_field_list.aspx.

  • CVE-2024-25511CriMay 7, 2024
    risk 0.61cvss 9.4epss 0.01

    RuvarOA v6.01 and v12.01 were discovered to contain a SQL injection vulnerability via the id parameter at /AddressBook/address_public_new.aspx.

  • CVE-2024-25510CriMay 7, 2024
    risk 0.64cvss 9.8epss 0.01

    RuvarOA v6.01 and v12.01 were discovered to contain a SQL injection vulnerability via the id parameter at /AddressBook/address_public_show.aspx.

  • CVE-2024-25509CriMay 7, 2024
    risk 0.61cvss 9.4epss 0.01

    RuvarOA v6.01 and v12.01 were discovered to contain a SQL injection vulnerability via the sys_file_storage_id parameter at /WorkFlow/wf_file_download.aspx.

  • CVE-2024-25508CriMay 7, 2024
    risk 0.64cvss 9.8epss 0.01

    RuvarOA v6.01 and v12.01 were discovered to contain a SQL injection vulnerability via the id parameter at /bulletin/bulletin_template_show.aspx.

  • CVE-2024-25507CriMay 7, 2024
    risk 0.61cvss 9.4epss 0.01

    RuvarOA v6.01 and v12.01 were discovered to contain a SQL injection vulnerability via the email_attach_id parameter at /LHMail/AttachDown.aspx.

  • CVE-2024-33164CriMay 7, 2024
    risk 0.64cvss 9.8epss 0.01

    J2EEFAST v2.7.0 was discovered to contain a SQL injection vulnerability via the sql_filter parameter in the authUserList() function.

  • CVE-2024-33155CriMay 7, 2024
    risk 0.64cvss 9.8epss 0.01

    J2EEFAST v2.7.0 was discovered to contain a SQL injection vulnerability via the sql_filter parameter in the getDeptList() function.

  • CVE-2024-33153CriMay 7, 2024
    risk 0.64cvss 9.8epss 0.01

    J2EEFAST v2.7.0 was discovered to contain a SQL injection vulnerability via the sql_filter parameter in the commentList() function.

  • CVE-2024-33857CriMay 7, 2024
    risk 0.62cvss 9.6epss 0.00

    An issue was discovered in Logpoint before 7.4.0. Due to a lack of input validation on URLs in threat intelligence, an attacker with low-level access to the system can trigger Server Side Request Forgery.

  • CVE-2024-33146CriMay 7, 2024
    risk 0.59cvss 9.1epss 0.01

    J2EEFAST v2.7.0 was discovered to contain a SQL injection vulnerability via the sql_filter parameter in the export function.

  • CVE-2024-33124CriMay 7, 2024
    risk 0.64cvss 9.8epss 0.01

    Roothub v2.6 was discovered to contain a SQL injection vulnerability via the nodeTitle parameter in the parentNode() function..

  • CVE-2024-33120CriMay 7, 2024
    risk 0.64cvss 9.8epss 0.01

    Roothub v2.5 was discovered to contain an arbitrary file upload vulnerability via the customPath parameter in the upload() function. This vulnerability allows attackers to execute arbitrary code via a crafted JSP file.

  • CVE-2024-32370CriMay 7, 2024
    risk 0.64cvss 9.8epss 0.01

    An issue in HSC Cybersecurity HC Mailinspector 5.2.17-3 through 5.2.18 allows a remote attacker to obtain sensitive information via a crafted payload to the id parameter in the mliSystemUsers.php component.

  • CVE-2024-33434CriMay 7, 2024
    risk 0.57cvss 9.8epss 0.01

    An issue in tiagorlampert CHAOS v5.0.1 before 1b451cf62582295b7225caf5a7b506f0bad56f6b and 24c9e109b5be34df7b2bce8368eae669c481ed5e allows a remote attacker to execute arbitrary code via the unsafe concatenation of the `filename` argument into the `buildStr` string without any…

  • CVE-2023-46012CriMay 7, 2024
    risk 0.64cvss 9.8epss 0.02

    Buffer Overflow vulnerability LINKSYS EA7500 3.0.1.207964 allows a remote attacker to execute arbitrary code via an HTTP request to the IGD UPnP.

  • CVE-2024-4346CriMay 7, 2024
    risk 0.52cvss 9.1epss 0.02

    The Startklar Elementor Addons plugin for WordPress is vulnerable to arbitrary file deletion in all versions up to, and including, 1.7.13. This is due to the plugin not properly validating the path of an uploaded file prior to deleting it. This makes it possible for…

  • CVE-2024-4345CriMay 7, 2024
    risk 0.57cvss 9.8epss 0.01

    The Startklar Elementor Addons plugin for WordPress is vulnerable to arbitrary file uploads due to insufficient file type validation in the 'process' function in the 'startklarDropZoneUploadProcess' class in versions up to, and including, 1.7.13. This makes it possible for…

  • CVE-2024-4186CriMay 7, 2024
    risk 0.57cvss 9.8epss 0.01

    The Edwiser Bridge plugin for WordPress is vulnerable to authentication bypass in versions up to, and including, 3.0.5. This is due to the 'eb_user_email_verification_key' default value is empty, and the not empty check is missing in the 'eb_user_email_verify' function. This…

  • CVE-2024-34532CriMay 6, 2024
    risk 0.64cvss 9.8epss 0.01

    A SQL injection vulnerability in Yvan Dotet PostgreSQL Query Deluxe module (aka query_deluxe) 17.x before 17.0.0.4 allows a remote attacker to gain privileges via the query parameter to models/querydeluxe.py:QueryDeluxe::get_result_from_query.

  • CVE-2024-33411CriMay 6, 2024
    risk 0.64cvss 9.8epss 0.01

    A SQL injection vulnerability in /model/get_admin_profile.php in Campcodes Complete Web-Based School Management System 1.0 allows attacker to execute arbitrary SQL commands via the my_index parameter.

  • CVE-2024-33409CriMay 6, 2024
    risk 0.64cvss 9.8epss 0.01

    SQL injection vulnerability in index.php in campcodes Complete Web-Based School Management System 1.0 allows attacker to execute arbitrary SQL commands via the name parameter.

  • CVE-2024-33408CriMay 6, 2024
    risk 0.64cvss 9.8epss 0.01

    A SQL injection vulnerability in /model/get_classroom.php in campcodes Complete Web-Based School Management System 1.0 allows attacker to execute arbitrary SQL commands via the id parameter.

  • CVE-2024-33403CriMay 6, 2024
    risk 0.64cvss 9.8epss 0.01

    A SQL injection vulnerability in /model/get_events.php in campcodes Complete Web-Based School Management System 1.0 allows attacker to execute arbitrary SQL commands via the event_id parameter.

  • CVE-2024-34249CriMay 6, 2024
    risk 0.64cvss 9.8epss 0.01

    wasm3 v0.5.0 was discovered to contain a heap buffer overflow which leads to segmentation fault via the function "DeallocateSlot" in wasm3/source/m3_compile.c.

  • CVE-2024-33294CriMay 6, 2024
    risk 0.59cvss 9.1epss 0.01

    An issue in Library System using PHP/MySQli with Source Code V1.0 allows a remote attacker to execute arbitrary code via the _FAILE variable in the student_edit_photo.php component.

  • CVE-2024-33110CriMay 6, 2024
    risk 0.59cvss 9.1epss 0.01

    D-Link DIR-845L router v1.01KRb03 and before is vulnerable to Permission Bypass via the getcfg.php component.

  • CVE-2024-4548CriMay 6, 2024
    risk 0.69cvss 9.8epss 0.29

    An SQLi vulnerability exists in Delta Electronics DIAEnergie v1.10.1.8610 and prior when CEBC.exe processes a 'RecalculateHDMWYC' message, which is split into 4 fields using the '~' character as the separator. An unauthenticated remote attacker can perform SQLi via the fourth…

  • CVE-2024-4547CriMay 6, 2024
    risk 0.64cvss 9.8epss 0.02

    A SQLi vulnerability exists in Delta Electronics DIAEnergie v1.10.1.8610 and prior when CEBC.exe processes a 'RecalculateScript' message, which is splitted into 4 fields using the '~' character as the separator. An unauthenticated remote attacker can perform SQLi via the…

  • CVE-2024-33749CriMay 6, 2024
    risk 0.59cvss 9.1epss 0.01

    DedeCMS V5.7.114 is vulnerable to deletion of any file via mail_file_manage.php.

  • CVE-2024-34524CriMay 6, 2024
    risk 0.59cvss 9.1epss 0.01

    In XLANG OpenAgents through fe73ac4, the allowed_file protection mechanism can be bypassed by using an incorrect file extension for the nature of the file content.

  • CVE-2024-34502CriMay 5, 2024
    risk 0.57cvss 9.8epss 0.00

    An issue was discovered in WikibaseLexeme in MediaWiki before 1.39.6, 1.40.x before 1.40.2, and 1.41.x before 1.41.1. Loading Special:MergeLexemes will (attempt to) make an edit that merges the from-id to the to-id, even if the request was not a POST request, and even if it does…

  • CVE-2024-34461CriMay 4, 2024
    risk 0.57cvss 9.8epss 0.01

    Zenario before 9.5.60437 uses Twig filters insecurely in the Twig Snippet plugin, and in the site-wide HEAD and BODY elements, enabling code execution by a designer or an administrator.

  • CVE-2024-31673CriMay 3, 2024
    risk 0.64cvss 9.8epss 0.01

    Kliqqi-CMS 2.0.2 is vulnerable to SQL Injection in load_data.php via the userid parameter.

  • CVE-2024-33792CriMay 3, 2024
    risk 0.64cvss 9.8epss 0.01

    netis-systems MEX605 v2.00.06 allows attackers to execute arbitrary OS commands via a crafted payload to the tracert page.

  • CVE-2024-33789CriMay 3, 2024
    risk 0.64cvss 9.8epss 0.02

    Linksys E5600 v1.1.0.26 was discovered to contain a command injection vulnerability via the ipurl parameter at /API/info form endpoint.

  • CVE-2022-48697CriMay 3, 2024
    risk 0.64cvss 9.8epss 0.01

    In the Linux kernel, the following vulnerability has been resolved: nvmet: fix a use-after-free Fix the following use-after-free complaint triggered by blktests nvme/004: BUG: KASAN: user-memory-access in blk_mq_complete_request_remote+0xac/0x350 Read of size 4 at addr…