Medium - CVE-2024-12622 - The WordPress Simple Shopping Cart plugin for...
The WordPress Simple Shopping Cart plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the plugin's 'wp_cart_button' and 'wp_cart_display_product'...
NA - CVE-2024-41882 - Team ENVY, a Security Research TEAM has found a...
Team ENVY, a Security Research TEAM has found a flaw that allows for a remote code execution on the NVR. An attacker can cause a stack overflow by entering large data into URL parameters, which...
NA - CVE-2024-41883 - Team ENVY, a Security Research TEAM has found a...
Team ENVY, a Security Research TEAM has found a flaw that allows for a remote code execution on the NVR . An attacker enters a special value for a specific URL parameter, resulting in a NULL...
NA - CVE-2024-41884 - Team ENVY, a Security Research TEAM has found a...
Team ENVY, a Security Research TEAM has found a flaw that allows for a remote code execution on the NVR. If an attacker does not enter any value for a specific URL parameter, NULL pointer...
NA - CVE-2024-41885 - Team ENVY, a Security Research TEAM has found a...
Team ENVY, a Security Research TEAM has found a flaw that allows for a remote code execution on the NVR. The seed string for the encrypt key was hardcoding. The manufacturer has released patch...
NA - CVE-2024-41886 - Team ENVY, a Security Research TEAM has found a...
Team ENVY, a Security Research TEAM has found a flaw that allows for a remote code execution on the NVR. An attacker could inject malformed data into url input parameters to reboot the NVR. The...
NA - CVE-2024-41887 - Team ENVY, a Security Research TEAM has found a...
Team ENVY, a Security Research TEAM has found a flaw that allows for a remote code execution on the NVR. An attacker can create an NVR log file in a directory one level higher on the system, which...
Medium - CVE-2024-12814 - The Loan Comparison plugin for WordPress is...
The Loan Comparison plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the plugin's 'loancomparison' shortcode in all versions up to, and including, 2.0 due to...
Medium - CVE-2024-11896 - The Text Prompter – Unlimited chatgpt text...
The Text Prompter – Unlimited chatgpt text prompts for openai tasks plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the plugin's 'text_prompter' shortcode in...