NA - CVE-2024-11075 - A vulnerability in the Incoming Goods Suite...
A vulnerability in the Incoming Goods Suite allows a user with unprivileged access to the underlying system (e.g. local or via SSH) a privilege escalation to the administrative level due to the...
NA - CVE-2024-10524 - Applications that use Wget to access a remote...
Applications that use Wget to access a remote resource using shorthand URLs and pass arbitrary user credentials in the URL are vulnerable. In these cases attackers can enter crafted credentials...
NA - CVE-2024-50803 - The mediapool feature of the Redaxo Core CMS...
The mediapool feature of the Redaxo Core CMS application v 5.17.1 is vulnerable to Cross Site Scripting(XSS) which allows a remote attacker to escalate privileges
NA - CVE-2024-52582 - Cachi2 is a command-line interface tool that...
Cachi2 is a command-line interface tool that pre-fetches a project's dependencies to aid in making the project's build process network-isolated. Prior to version 0.14.0, secrets may be...
NA - CVE-2024-48071 - An issue in the component...
An issue in the component /importmould/deletefolder of Weaver Ecology v9.* allows authenticated attackers to execute a directory traversal and arbitrarily delete files.
NA - CVE-2024-49689 - Missing Authorization vulnerability in Harmonic...
Missing Authorization vulnerability in Harmonic Design HD Quiz – Save Results Light allows Exploiting Incorrectly Configured Access Control Security Levels.This issue affects HD Quiz – Save Results...