VYPR

CVEs

8,988 total · page 95 of 180

  • CVE-2023-25581CriOct 10, 2024
    risk 0.54cvss epss 0.14

    pac4j is a security framework for Java. `pac4j-core` prior to version 4.0.0 is affected by a Java deserialization vulnerability. The vulnerability affects systems that store externally controlled values in attributes of the `UserProfile` class from pac4j-core. It can be…

  • CVE-2024-45746CriOct 9, 2024
    risk 0.64cvss 9.8epss 0.09

    An issue was discovered in Trusted Firmware-M through 2.1.0. User provided (and controlled) mailbox messages contain a pointer to a list of input arguments (in_vec) and output arguments (out_vec). These list pointers are never validated. Each argument list contains a buffer…

  • CVE-2024-25825CriOct 9, 2024
    risk 0.64cvss 9.8epss 0.00

    FydeOS for PC 17.1 R114, FydeOS for VMware 17.0 R114, FydeOS for You 17.1 R114, and OpenFyde R114 were discovered to be configured with the root password saved as a wildcard. This allows attackers to gain root access without a password.

  • CVE-2023-46586CriOct 9, 2024
    risk 0.52cvss 9.1epss 0.00

    cgi.c in weborf .0.17, 0.18, 0.19, and 0.20 (before 1.0) lacks '\0' termination of the path for CGI scripts because strncpy is misused.

  • CVE-2024-45160CriOct 9, 2024
    risk 0.52cvss 9.1epss 0.00

    Incorrect credential validation in LemonLDAP::NG 2.18.x and 2.19.x before 2.19.2 allows attackers to bypass OAuth2 client authentication via an empty client_password parameter (client secret).

  • CVE-2024-45918CriOct 8, 2024
    risk 0.64cvss 9.8epss 0.00

    Fujian Kelixin Communication Command and Dispatch Platform <=7.6.6.4391 is vulnerable to SQL Injection via /client/get_gis_fence.php.

  • CVE-2024-44349CriOct 8, 2024
    risk 0.70cvss 9.8epss 0.77

    A SQL injection vulnerability in login portal in AnteeoWMS before v4.7.34 allows unauthenticated attackers to execute arbitrary SQL commands via the username parameter and disclosure of some data in the underlying DB.

  • CVE-2024-3057CriOct 8, 2024
    risk 0.64cvss 9.8epss 0.00

    A flaw exists whereby a user can make a specific call to a FlashArray endpoint allowing privilege escalation.

  • CVE-2024-8884CriOct 8, 2024
    risk 0.64cvss 9.8epss 0.00

    CWE-200: Exposure of Sensitive Information to an Unauthorized Actor vulnerability exists that could cause exposure of credentials when attacker has access to application on network over http

  • CVE-2024-41798CriOct 8, 2024
    risk 0.64cvss 9.8epss 0.00

    A vulnerability has been identified in SENTRON 7KM PAC3200 (All versions). Affected devices only provide a 4-digit PIN to protect from administrative access via Modbus TCP interface. Attackers with access to the Modbus TCP interface could easily bypass this protection by…

  • CVE-2024-45874CriOct 7, 2024
    risk 0.64cvss 9.8epss 0.00

    A DLL hijacking vulnerability in VegaBird Vooki 5.2.9 allows attackers to execute arbitrary code / maintain persistence via placing a crafted DLL file in the same directory as Vooki.exe.

  • CVE-2024-45873CriOct 7, 2024
    risk 0.64cvss 9.8epss 0.01

    A DLL hijacking vulnerability in VegaBird Yaazhini 2.0.2 allows attackers to execute arbitrary code / maintain persistence via placing a crafted DLL file in the same directory as Yaazhini.exe.

  • CVE-2024-47350CriOct 6, 2024
    risk 0.60cvss 9.3epss 0.00

    Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in YITHEMES YITH WooCommerce Ajax Search yith-woocommerce-ajax-search.This issue affects YITH WooCommerce Ajax Search: from n/a through <= 2.8.0.

  • CVE-2024-45252CriOct 6, 2024
    risk 0.64cvss 9.8epss 0.01

    Elsight – CWE-78: Improper Neutralization of Special Elements used in an OS Command ('OS Command Injection')

  • CVE-2024-45251CriOct 6, 2024
    risk 0.64cvss 9.8epss 0.01

    Elsight – CWE-78: Improper Neutralization of Special Elements used in an OS Command ('OS Command Injection')

  • CVE-2024-44014CriOct 5, 2024
    risk 0.62cvss 9.6epss 0.01

    Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal') vulnerability in Vmax Studio Vmax Project Manager vmax-project-manager allows PHP Local File Inclusion.This issue affects Vmax Project Manager: from n/a through <= 1.0.

  • CVE-2024-45367CriOct 3, 2024
    risk 0.59cvss 9.1epss 0.00

    The web server for ONS-S8 - Spectra Aggregation Switch includes an incomplete authentication process, which can lead to an attacker authenticating without a password.

  • CVE-2024-41925CriOct 3, 2024
    risk 0.64cvss 9.8epss 0.00

    The web service for ONS-S8 - Spectra Aggregation Switch includes functions which do not properly validate user input, allowing an attacker to traverse directories, bypass authentication, and execute remote code.

  • CVE-2024-41988CriOct 3, 2024
    risk 0.60cvss epss 0.00

    TEM Opera Plus FM Family Transmitter allows access to an unprotected endpoint that allows MPFS File System binary image upload without authentication. This file system serves as the basis for the HTTP2 web server module but is also used by the SNMP module and is available to…

  • CVE-2024-9441CriOct 2, 2024
    risk 0.69cvss 9.8epss 0.68

    The Linear eMerge e3-Series through version 1.00-07 is vulnerable to an OS command injection vulnerability. A remote and unauthenticated attacker can execute arbitrary OS commands via the login_id parameter when invoking the forgot_password functionality over HTTP.

  • CVE-2024-35293CriOct 2, 2024
    risk 0.59cvss 9.1epss 0.02

    An unauthenticated remote attacker may use a missing authentication for critical function vulnerability to reboot or erase the affected devices resulting in data loss and/or a DoS.

  • CVE-2024-45186CriOct 2, 2024
    risk 0.64cvss 9.8epss 0.00

    FileSender before 2.49 allows server-side template injection (SSTI) for retrieving credentials.

  • CVE-2024-41276CriOct 1, 2024
    risk 0.65cvss 9.8epss 0.14

    A vulnerability in Kaiten version 57.131.12 and earlier allows attackers to bypass the PIN code authentication mechanism. The application requires users to input a 6-digit PIN code sent to their email for authorization after entering their login credentials. However, the request…

  • CVE-2024-9108CriOct 1, 2024
    risk 0.64cvss 9.8epss 0.08

    The Wechat Social login plugin for WordPress is vulnerable to arbitrary file uploads due to insufficient file type validation in the 'convert_remoteimage_to_local' function in versions up to, and including, 1.3.0. This makes it possible for unauthenticated attackers to upload…

  • CVE-2024-9106CriOct 1, 2024
    risk 0.67cvss 9.8epss 0.41

    The Wechat Social login plugin for WordPress is vulnerable to authentication bypass in versions up to, and including, 1.3.0. This is due to insufficient verification on the user being supplied during the social login. This makes it possible for unauthenticated attackers to log…

  • CVE-2024-42017CriSep 30, 2024
    risk 0.65cvss 10.0epss 0.00

    An issue was discovered in Atos Eviden iCare 2.7.1 through 2.7.11. The application exposes a web interface locally. In the worst-case scenario, if the application is remotely accessible, it allows an attacker to execute arbitrary commands with system privilege on the endpoint…

  • CVE-2024-8353CriSep 28, 2024
    risk 0.67cvss 9.8epss 0.92

    The GiveWP – Donation Plugin and Fundraising Platform plugin for WordPress is vulnerable to PHP Object Injection in all versions up to, and including, 3.16.1 via deserialization of untrusted input via several parameters like 'give_title' and 'card_address'. This makes it…

  • CVE-2024-8310CriSep 27, 2024
    risk 0.64cvss 9.8epss 0.00

    OPW Fuel Management Systems SiteSentinel could allow an attacker to bypass authentication to the server and obtain full admin privileges.

  • CVE-2024-6981CriSep 27, 2024
    risk 0.64cvss 9.8epss 0.00

    OMNTEC Proteus Tank Monitoring OEL8000III Series could allow an attacker to perform administrative actions without proper authentication.

  • CVE-2024-22170CriSep 27, 2024
    risk 0.60cvss epss 0.00

    Improper Restriction of Operations within the Bounds of a Memory Buffer vulnerability in Western Digital My Cloud ddns-start on Linux allows Overflow Buffers.This issue affects My Cloud: before 5.29.102.

  • CVE-2024-3373CriSep 27, 2024
    risk 0.60cvss epss 0.00

    Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in RSM Design Website Template allows SQL Injection. This issue affects Website Template: before 1.2.

  • CVE-2024-8643CriSep 27, 2024
    risk 0.64cvss 9.8epss 0.00

    Session Fixation vulnerability in Oceanic Software ValeApp allows Brute Force, Session Hijacking. This issue affects ValeApp: before v2.0.0.

  • CVE-2024-8607CriSep 27, 2024
    risk 0.64cvss 9.8epss 0.00

    Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in Oceanic Software ValeApp allows SQL Injection. This issue affects ValeApp: before v2.0.0.

  • CVE-2024-9166CriSep 26, 2024
    risk 0.61cvss epss 0.04

    The device enables an unauthorized attacker to execute system commands with elevated privileges. This exploit is facilitated through the use of the 'getcommand' query within the application, allowing the attacker to gain root access.

  • CVE-2024-46627CriSep 26, 2024
    risk 0.66cvss 9.1epss 0.91

    Incorrect access control in BECN DATAGERRY v2.2 allows attackers to execute arbitrary commands via crafted web requests.

  • CVE-2024-7108CriSep 26, 2024
    risk 0.64cvss 9.8epss 0.00

    Incorrect Authorization vulnerability in National Keep Cyber Security Services CyberMath allows Accessing Functionality Not Properly Constrained by ACLs. This issue affects CyberMath: before CYBM.240816253.

  • CVE-2024-4657CriSep 25, 2024
    risk 0.60cvss epss 0.00

    Improper Neutralization of Input During Web Page Generation (XSS or 'Cross-site Scripting') vulnerability in Talent Software BAP Automation allows Stored XSS. This issue affects BAP Automation: before 30840.

  • CVE-2024-8485CriSep 25, 2024
    risk 0.64cvss 9.8epss 0.00

    The REST API TO MiniProgram plugin for WordPress is vulnerable to privilege escalation via account takeovr in all versions up to, and including, 4.7.1 via the updateUserInfo() due to missing validation on the 'openid' user controlled key that determines what user will be…

  • CVE-2024-9142CriSep 25, 2024
    risk 0.64cvss 9.8epss 0.00

    External Control of File Name or Path, : Incorrect Permission Assignment for Critical Resource vulnerability in Olgu Computer Systems e-Belediye allows Manipulating Web Input to File System Calls. This issue affects e-Belediye: before 2.0.642.

  • CVE-2024-46957CriSep 25, 2024
    risk 0.64cvss 9.8epss 0.00

    Mellium mellium.im/xmpp 0.0.1 through 0.21.4 allows response spoofing if the implementation uses predictable IDs because the stanza type is not checked. This is fixed in 0.22.0.

  • CVE-2024-42507CriSep 25, 2024
    risk 0.64cvss 9.8epss 0.02

    Command injection vulnerabilities in the underlying CLI service could lead to unauthenticated remote code execution by sending specially crafted packets destined to the PAPI (Aruba's Access Point management protocol) UDP port (8211). Successful exploitation of these…

  • CVE-2024-42506CriSep 25, 2024
    risk 0.64cvss 9.8epss 0.02

    Command injection vulnerabilities in the underlying CLI service could lead to unauthenticated remote code execution by sending specially crafted packets destined to the PAPI (Aruba's Access Point management protocol) UDP port (8211). Successful exploitation of these…

  • CVE-2024-42505CriSep 25, 2024
    risk 0.64cvss 9.8epss 0.01

    Command injection vulnerabilities in the underlying CLI service could lead to unauthenticated remote code execution by sending specially crafted packets destined to the PAPI (Aruba's Access Point management protocol) UDP port (8211). Successful exploitation of these…

  • CVE-2024-34331CriSep 23, 2024
    risk 0.64cvss 9.8epss 0.01

    A lack of code signature verification in Parallels Desktop for Mac v19.3.0 and below allows attackers to escalate privileges via a crafted macOS installer, because Parallels Service is setuid root.

  • CVE-2024-7735CriSep 23, 2024
    risk 0.60cvss epss 0.00

    Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in Exnet Informatics Software Ferry Reservation System allows SQL Injection. This issue affects Ferry Reservation System: before 240805-002.

  • CVE-2024-45489CriSep 20, 2024
    risk 0.64cvss 9.8epss 0.08

    Arc before 2024-08-26 allows remote code execution in JavaScript boosts. Boosts that run JavaScript cannot be shared by default; however (because of misconfigured Firebase ACLs), it is possible to create or update a boost using another user's ID. This installs the boost in the…

  • CVE-2024-7785CriSep 19, 2024
    risk 0.60cvss epss 0.00

    Improper Neutralization of Input During Web Page Generation (XSS or 'Cross-site Scripting') vulnerability in Ece Software Electronic Ticket System allows Reflected XSS, Cross-Site Scripting (XSS). This issue affects Electronic Ticket System: before 2024.08.

  • CVE-2024-8986CriSep 19, 2024
    risk 0.52cvss epss 0.00

    The grafana plugin SDK bundles build metadata into the binaries it compiles; this metadata includes the repository URI for the plugin being built, as retrieved by running `git remote get-url origin`. If credentials are included in the repository URI (for instance, to allow for…

  • CVE-2024-40568CriSep 18, 2024
    risk 0.64cvss 9.8epss 0.02

    Buffer Overflow vulnerability in btstack mesh commit before v.864e2f2b6b7878c8fab3cf5ee84ae566e3380c58 allows a remote attacker to execute arbitrary code via the pb_adv_handle_tranaction_cont function in the src/mesh/pb_adv.c component

  • CVE-2024-45523CriSep 18, 2024
    risk 0.59cvss 9.1epss 0.00

    An issue was discovered in Bravura Security Fabric versions 12.3.x before 12.3.5.32784, 12.4.x before 12.4.3.35110, 12.5.x before 12.5.2.35950, 12.6.x before 12.6.2.37183, and 12.7.x before 12.7.1.38241. An unauthenticated attacker can cause a resource leak by issuing multiple…