Medium - CVE-2024-11807 - The NPS computy plugin for WordPress is...
The NPS computy plugin for WordPress is vulnerable to Reflected Cross-Site Scripting via the 'data1' and 'data2' parameters in all versions up to, and including, 2.8.0 due to...
Medium - CVE-2024-11813 - The Pulsating Chat Button plugin for WordPress...
The Pulsating Chat Button plugin for WordPress is vulnerable to Cross-Site Request Forgery in all versions up to, and including, 1.3.6. This is due to missing or incorrect nonce validation on the...
Medium - CVE-2024-11897 - The Contact Form, Survey & Form Builder –...
The Contact Form, Survey & Form Builder – MightyForms plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the plugin's 'mightyforms' shortcode in all versions up...
Medium - CVE-2024-10885 - The SearchIQ – The Search Solution plugin for...
The SearchIQ – The Search Solution plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the plugin's 'siq_searchbox' shortcode in all versions up to, and including,...
Medium - CVE-2024-12099 - The Dollie Hub – Build Your Own WordPress Cloud...
The Dollie Hub – Build Your Own WordPress Cloud Platform plugin for WordPress is vulnerable to Information Exposure in all versions up to, and including, 6.2.0 via the...
NA - CVE-2024-12123 - A hidden field manipulation vulnerability was...
A hidden field manipulation vulnerability was identified in Issuetrak version 17.1 that could be triggered by an authenticated user. When an authenticated user submits a ticket, the request can...
NA - CVE-2024-9404 - Moxa’s IP Cameras are affected by a...
Moxa’s IP Cameras are affected by a medium-severity vulnerability, CVE-2024-9404, which could lead to a denial-of-service condition or cause a service crash. This vulnerability allows attackers to...
NA - CVE-2024-54664 - An issue was discovered in Veritas NetBackup...
An issue was discovered in Veritas NetBackup before 10.5. This only applies to NetBackup components running on a Windows Operating System. If a user executes specific NetBackup commands or an...
NA - CVE-2023-52943 - Incorrect authorization vulnerability in...
Incorrect authorization vulnerability in Alert.Setting webapi component in Synology Surveillance Station before 9.2.0-11289 and 9.2.0-9289 allows remote authenticated users to to perform limited...