VYPR

CVEs

114,857 total · page 916 of 2,298

  • CVE-2024-42747HigAug 12, 2024
    risk 0.57cvss 8.8epss 0.01

    In TOTOLINK X5000r v9.1.0cu.2350_b20230313, the file /cgi-bin/cstecgi.cgi contains an OS command injection vulnerability in setWanIeCfg. Authenticated Attackers can send malicious packet to execute arbitrary commands.

  • CVE-2024-42745HigAug 12, 2024
    risk 0.57cvss 8.8epss 0.02

    In TOTOLINK X5000r v9.1.0cu.2350_b20230313, the file /cgi-bin/cstecgi.cgi contains an OS command injection vulnerability in setUPnPCfg. Authenticated Attackers can send malicious packet to execute arbitrary commands.

  • CVE-2024-42744HigAug 12, 2024
    risk 0.57cvss 8.8epss 0.02

    In TOTOLINK X5000r v9.1.0cu.2350_b20230313, the file /cgi-bin/cstecgi.cgi contains an OS command injection vulnerability in setModifyVpnUser. Authenticated Attackers can send malicious packet to execute arbitrary commands.

  • CVE-2024-42743HigAug 12, 2024
    risk 0.57cvss 8.8epss 0.02

    In TOTOLINK X5000r v9.1.0cu.2350_b20230313, the file /cgi-bin/cstecgi.cgi contains an OS command injection vulnerability in setSyslogCfg . Authenticated Attackers can send malicious packet to execute arbitrary commands.

  • CVE-2024-42742HigAug 12, 2024
    risk 0.57cvss 8.8epss 0.02

    In TOTOLINK X5000r v9.1.0cu.2350_b20230313, the file /cgi-bin/cstecgi.cgi contains an OS command injection vulnerability in setUrlFilterRules. Authenticated Attackers can send malicious packet to execute arbitrary commands.

  • CVE-2024-42741HigAug 12, 2024
    risk 0.57cvss 8.8epss 0.01

    In TOTOLINK X5000r v9.1.0cu.2350_b20230313, the file /cgi-bin/cstecgi.cgi contains an OS command injection vulnerability in setL2tpServerCfg. Authenticated Attackers can send malicious packet to execute arbitrary commands.

  • CVE-2023-48171HigAug 12, 2024
    risk 0.57cvss 8.8epss 0.01

    An issue in OWASP DefectDojo before v.1.5.3.1 allows a remote attacker to escalate privileges via the user permissions component.

  • CVE-2023-41884HigAug 12, 2024
    risk 0.00cvss 7.1epss 0.01

    ZoneMinder is a free, open source Closed-circuit television software application. In WWW/AJAX/watch.php, Line: 51 takes a few parameter in sql query without sanitizing it which makes it vulnerable to sql injection. This vulnerability is fixed in 1.36.34.

  • CVE-2024-41710HigKEVAug 12, 2024
    risk 0.62cvss 7.2epss 0.42

    A vulnerability in the Mitel 6800 Series, 6900 Series, and 6900w Series SIP Phones, including the 6970 Conference Unit, through R6.4.0.HF1 (R6.4.0.136) could allow an authenticated attacker with administrative privilege to conduct an argument injection attack, due to…

  • CVE-2024-40892HigAug 12, 2024
    risk 0.46cvss 7.1epss 0.01

    A weak credential vulnerability exists in Firewalla Box Software versions before 1.979. This vulnerability allows a physically close attacker to use the license UUID for authentication and provision SSH credentials over the Bluetooth Low-Energy (BTLE) interface. Once an attacker…

  • CVE-2024-42627HigAug 12, 2024
    risk 0.57cvss 8.8epss 0.00

    FrogCMS v0.9.5 was discovered to contain a Cross-Site Request Forgery (CSRF) vulnerability via /admin/?/snippet/delete/3.

  • CVE-2024-42626HigAug 12, 2024
    risk 0.57cvss 8.8epss 0.00

    FrogCMS v0.9.5 was discovered to contain a Cross-Site Request Forgery (CSRF) vulnerability via /admin/?/snippet/add.

  • CVE-2024-42625HigAug 12, 2024
    risk 0.57cvss 8.8epss 0.00

    FrogCMS v0.9.5 was discovered to contain a Cross-Site Request Forgery (CSRF) vulnerability via /admin/?/layout/add

  • CVE-2024-42624HigAug 12, 2024
    risk 0.57cvss 8.8epss 0.00

    FrogCMS v0.9.5 was discovered to contain a Cross-Site Request Forgery (CSRF) vulnerability via /admin/?/page/delete/10.

  • CVE-2024-42623HigAug 12, 2024
    risk 0.57cvss 8.8epss 0.00

    FrogCMS v0.9.5 was discovered to contain a Cross-Site Request Forgery (CSRF) vulnerability via /admin/?/layout/delete/1

  • CVE-2024-41651HigAug 12, 2024
    risk 0.53cvss 8.1epss 0.01

    An issue in Prestashop v.8.1.7 and before allows a remote attacker to execute arbitrary code via the module upgrade functionality. NOTE: this is disputed by multiple parties, who report that exploitation requires that an attacker be able to hijack network requests made by an…

  • CVE-2024-41475HigAug 12, 2024
    risk 0.57cvss 8.8epss 0.00

    Gnuboard g6 6.0.7 is vulnerable to Session hijacking due to a CORS misconfiguration.

  • CVE-2024-40500HigAug 12, 2024
    risk 0.56cvss 8.6epss 0.01

    Cross Site Scripting vulnerability in Martin Kucej i-librarian v.5.11.0 and before allows a local attacker to execute arbitrary code via the search function in the import component.

  • CVE-2024-42632HigAug 12, 2024
    risk 0.57cvss 8.8epss 0.00

    FrogCMS v0.9.5 was discovered to contain a Cross-Site Request Forgery (CSRF) vulnerability via /admin/?/page/add.

  • CVE-2024-42631HigAug 12, 2024
    risk 0.57cvss 8.8epss 0.00

    FrogCMS v0.9.5 was discovered to contain a Cross-Site Request Forgery (CSRF) vulnerability via /admin/?/layout/edit/1.

  • CVE-2024-42630HigAug 12, 2024
    risk 0.57cvss 8.8epss 0.00

    FrogCMS v0.9.5 was discovered to contain a Cross-Site Request Forgery (CSRF) vulnerability via /admin/?/plugin/file_manager/create_file.

  • CVE-2024-42629HigAug 12, 2024
    risk 0.57cvss 8.8epss 0.00

    FrogCMS v0.9.5 was discovered to contain a Cross-Site Request Forgery (CSRF) vulnerability via /admin/?/page/edit/10.

  • CVE-2024-42628HigAug 12, 2024
    risk 0.57cvss 8.8epss 0.00

    FrogCMS v0.9.5 was discovered to contain a Cross-Site Request Forgery (CSRF) vulnerability via /admin/?/snippet/edit/3.

  • CVE-2024-42485HigAug 12, 2024
    risk 0.42cvss 7.5epss 0.01

    Filament Excel enables excel export for Filament admin resources. The export download route `/filament-excel/{path}` allowed downloading any file without login when the webserver allows `../` in the URL. Patched with Version v2.3.3.

  • CVE-2024-42481HigAug 12, 2024
    risk 0.49cvss 7.5epss 0.00

    Skyport Daemon (skyportd) is the daemon for the Skyport Panel. By making thousands of folders & files (easy due to skyport's lack of rate limiting on createFolder. createFile), skyportd in a lot of cases will cause 100% CPU usage and an OOM, probably crashing the system. This is…

  • CVE-2024-42480HigAug 12, 2024
    risk 0.46cvss 8.1epss 0.01

    Kamaji is the Hosted Control Plane Manager for Kubernetes. In versions 1.0.0 and earlier, Kamaji uses an "open at the top" range definition in RBAC for etcd roles leading to some TCPs API servers being able to read, write, and delete the data of other control planes. This…

  • CVE-2024-39091HigAug 12, 2024
    risk 0.57cvss 8.8epss 0.02

    An OS command injection vulnerability in the ccm_debug component of MIPC Camera firmware prior to v5.4.1.240424171021 allows attackers within the same network to execute arbitrary code via a crafted HTML request.

  • CVE-2024-36877HigAug 12, 2024
    risk 0.53cvss 8.2epss 0.01

    Micro-Star International Z-series motherboards (Z590, Z490, and Z790) and B-series motherboards (B760, B560, B660, and B460) with firmware 7D25v14, 7D25v17 to 7D25v19, and 7D25v1A to 7D25v1H was discovered to contain a write-what-where condition in the in the SW handler for SMI…

  • CVE-2024-42258HigAug 12, 2024
    risk 0.46cvss 7.1epss 0.00

    In the Linux kernel, the following vulnerability has been resolved: mm: huge_memory: use !CONFIG_64BIT to relax huge page alignment on 32 bit machines Yves-Alexis Perez reported commit 4ef9ad19e176 ("mm: huge_memory: don't force huge page alignment on 32 bit") didn't work for…

  • CVE-2024-33535HigAug 12, 2024
    risk 0.49cvss 7.5epss 0.01

    An issue was discovered in Zimbra Collaboration (ZCS) 9.0 and 10.0. The vulnerability involves unauthenticated local file inclusion (LFI) in a web application, specifically impacting the handling of the packages parameter. Attackers can exploit this flaw to include arbitrary…

  • CVE-2024-27442HigAug 12, 2024
    risk 0.51cvss 7.8epss 0.00

    An issue was discovered in Zimbra Collaboration (ZCS) 9.0 and 10.0. The zmmailboxdmgr binary, a component of ZCS, is intended to be executed by the zimbra user with root privileges for specific mailbox operations. However, an attacker can escalate privileges from the zimbra user…

  • CVE-2024-7697HigAug 12, 2024
    risk 0.49cvss 7.5epss 0.01

    Logical vulnerability in the mobile application (com.transsion.carlcare) may lead to user information leakage risks.

  • CVE-2024-7694HigKEVAug 12, 2024
    risk 0.59cvss 7.2epss 0.02

    ThreatSonar Anti-Ransomware from TeamT5 does not properly validate the content of uploaded files. Remote attackers with administrator privileges on the product platform can upload malicious files, which can be used to execute arbitrary system command on the server.

  • CVE-2024-7693HigAug 12, 2024
    risk 0.49cvss 7.5epss 0.01

    Raiden MAILD Remote Management System from Team Johnlong Software has a Relative Path Traversal vulnerability, allowing unauthenticated remote attackers to read arbitrary file on the remote server.

  • CVE-2024-7682HigAug 12, 2024
    risk 0.48cvss 7.3epss 0.01

    A vulnerability was found in code-projects Job Portal 1.0. It has been rated as critical. This issue affects some unknown processing of the file rw_i_nat.php. The manipulation of the argument id leads to sql injection. The attack may be initiated remotely. The exploit has been…

  • CVE-2024-7681HigAug 12, 2024
    risk 0.48cvss 7.3epss 0.01

    A vulnerability was found in code-projects College Management System 1.0. It has been declared as critical. This vulnerability affects unknown code of the file login.php of the component Login Page. The manipulation of the argument email/password leads to sql injection. The…

  • CVE-2024-7637HigAug 12, 2024
    risk 0.48cvss 7.3epss 0.01

    A vulnerability was found in code-projects Online Polling 1.0. It has been rated as critical. Affected by this issue is some unknown functionality of the file registeracc.php of the component Registration. The manipulation of the argument email leads to sql injection. The attack…

  • CVE-2024-7636HigAug 12, 2024
    risk 0.48cvss 7.3epss 0.01

    A vulnerability was found in code-projects Simple Ticket Booking 1.0. It has been declared as critical. Affected by this vulnerability is an unknown functionality of the file authenticate.php of the component Login. The manipulation of the argument email/password leads to sql…

  • CVE-2024-7635HigAug 12, 2024
    risk 0.48cvss 7.3epss 0.01

    A vulnerability was found in code-projects Simple Ticket Booking 1.0. It has been classified as critical. Affected is an unknown function of the file register_insert.php of the component Registration Handler. The manipulation of the argument name/email/dob/password/Gender/phone…

  • CVE-2024-7615HigAug 12, 2024
    risk 0.57cvss 8.8epss 0.01

    A vulnerability was found in Tenda FH1206 1.2.0.8. It has been declared as critical. Affected by this vulnerability is the function fromSafeClientFilter/fromSafeMacFilter/fromSafeUrlFilter. The manipulation leads to stack-based buffer overflow. The attack can be launched…

  • CVE-2024-7614HigAug 12, 2024
    risk 0.57cvss 8.8epss 0.01

    A vulnerability was found in Tenda FH1206 1.2.0.8(8155). It has been classified as critical. Affected is the function fromqossetting of the file /goform/qossetting. The manipulation of the argument page leads to stack-based buffer overflow. It is possible to launch the attack…

  • CVE-2024-7613HigAug 12, 2024
    risk 0.57cvss 8.8epss 0.01

    A vulnerability was found in Tenda FH1206 1.2.0.8(8155) and classified as critical. This issue affects the function fromGstDhcpSetSer of the file /goform/GstDhcpSetSer. The manipulation of the argument dips leads to buffer overflow. The attack may be initiated remotely. The…

  • CVE-2024-7589HigAug 12, 2024
    risk 0.53cvss 8.1epss 0.02

    A signal handler in sshd(8) may call a logging function that is not async-signal-safe. The signal handler is invoked when a client does not authenticate within the LoginGraceTime seconds (120 by default). This signal handler executes in the context of the sshd(8)'s privileged…

  • CVE-2024-7557HigAug 12, 2024
    risk 0.00cvss 8.8epss 0.01

    A vulnerability was found in OpenShift AI that allows for authentication bypass and privilege escalation across models within the same namespace. When deploying AI models, the UI provides the option to protect models with authentication. However, credentials from one model can…

  • CVE-2024-7399HigKEVAug 12, 2024
    risk 0.80cvss 8.8epss 0.92

    Improper limitation of a pathname to a restricted directory vulnerability in Samsung MagicINFO 9 Server version before 21.1050 allows attackers to write arbitrary file as system authority.

  • CVE-2024-7006HigAug 12, 2024
    risk 0.49cvss 7.5epss 0.02

    A null pointer dereference flaw was found in Libtiff via `tif_dirinfo.c`. This issue may allow an attacker to trigger memory allocation failures through certain means, such as restricting the heap space size or injecting faults, causing a segmentation fault. This can cause an…

  • CVE-2024-6760HigAug 12, 2024
    risk 0.49cvss 7.5epss 0.01

    A logic bug in the code which disables kernel tracing for setuid programs meant that tracing was not disabled when it should have, allowing unprivileged users to trace and inspect the behavior of setuid programs. The bug may be used by an unprivileged user to read the contents…

  • CVE-2024-5800HigAug 12, 2024
    risk 0.49cvss 7.5epss 0.00

    Diffie-Hellman groups with insufficient strength are used in the SSL/TLS stack of B&R Automation Runtime versions before 6.0.2, allowing a network attacker to decrypt the SSL/TLS communication.

  • CVE-2024-5651HigAug 12, 2024
    risk 0.57cvss 8.8epss 0.01

    A flaw was found in the Fence Agents Remediation operator. This vulnerability can allow a Remote Code Execution (RCE) primitive by supplying an arbitrary command to execute in the --ssh-path/--telnet-path arguments. A low-privilege user, for example, a user with developer…

  • CVE-2024-5527HigAug 12, 2024
    risk 0.54cvss 8.3epss 0.05

    Zohocorp ManageEngine ADAudit Plus versions below 8110 are vulnerable to authenticated SQL Injection in file auditing configuration.