NA - CVE-2024-8256 - In Teltonika Networks RUTOS devices, running on...
In Teltonika Networks RUTOS devices, running on versions 7.0 to 7.8 (excluding) and TSWOS devices running on versions 1.0 to 1.3 (excluding), due to incorrect permission handling a vulnerability...
Medium - CVE-2024-11945 - The Email Reminders plugin for WordPress is...
The Email Reminders plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the ‘id’ parameter in all versions up to, and including, 2.0.4 due to insufficient input sanitization and...
Medium - CVE-2024-11973 - The Quran multilanguage Text & Audio plugin for...
The Quran multilanguage Text & Audio plugin for WordPress is vulnerable to Reflected Cross-Site Scripting via the 'sourate' and 'lang' parameter in all versions up to, and...
High - CVE-2024-10959 - The The Active Products Tables for WooCommerce....
The The Active Products Tables for WooCommerce. Use constructor to create tables plugin for WordPress is vulnerable to arbitrary shortcode execution via woot_get_smth AJAX action in all versions up...
Medium - CVE-2024-11106 - The Simple Restrict plugin for WordPress is...
The Simple Restrict plugin for WordPress is vulnerable to Sensitive Information Exposure in all versions up to, and including, 1.2.7 via the WordPress core search feature. This makes it possible...
Medium - CVE-2024-11928 - The iChart – Easy Charts and Graphs plugin for...
The iChart – Easy Charts and Graphs plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the ‘width’ parameter in all versions up to, and including, 2.1.0 due to insufficient input...
NA - CVE-2024-47484 - Dell Avamar, version(s) 19.9, contain(s) an...
Dell Avamar, version(s) 19.9, contain(s) an Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability. An unauthenticated attacker with remote...
NA - CVE-2024-47977 - Dell Avamar, version(s) 19.9, contain(s) an...
Dell Avamar, version(s) 19.9, contain(s) an Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability. A low privileged attacker with remote...
NA - CVE-2024-52538 - Dell Avamar, version(s) 19.9, contain(s) an...
Dell Avamar, version(s) 19.9, contain(s) an Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability. A low privileged attacker with remote...
Medium - CVE-2024-11868 - The LearnPress – WordPress LMS Plugin plugin...
The LearnPress – WordPress LMS Plugin plugin for WordPress is vulnerable to Sensitive Information Exposure in all versions up to, and including, 4.2.7.3 via class-lp-rest-material-controller.php....