Medium - CVE-2024-11133 - The Eventer plugin for WordPress is vulnerable...
The Eventer plugin for WordPress is vulnerable to unauthorized access of data due to a missing capability check on the 'handle_pdf_download_request' function in all versions up to, and...
Medium - CVE-2024-11134 - The Eventer plugin for WordPress is vulnerable...
The Eventer plugin for WordPress is vulnerable to unauthorized access of data due to a missing capability check on the 'eventer_export_bookings_csv' function in all versions up to, and...
NA - CVE-2024-12511 - With address book access, SMB/FTP settings...
With address book access, SMB/FTP settings could be modified, redirecting scans and possibly capturing credentials. This requires enabled scan functions and printer access.
High - CVE-2024-12859 - The BoomBox Theme Extensions plugin for...
The BoomBox Theme Extensions plugin for WordPress is vulnerable to Local File Inclusion in all versions up to, and including, 1.8.0 via the 'boombox_listing' shortcode 'type'...
NA - CVE-2024-56921 - An issue was discovered in Open5gs v2.7.2....
An issue was discovered in Open5gs v2.7.2. InitialUEMessage, Registration request sent at a specific time can crash AMF due to incorrect error handling of gmm_state_exception() function upon...
NA - CVE-2024-57099 - ClassCMS v4.8 has a code execution...
ClassCMS v4.8 has a code execution vulnerability. Attackers can exploit this vulnerability by constructing a payload in the classview parameter of the model management feature, allowing them to...