NA - CVE-2024-46331 - ModStartCMS v8.8.0 was discovered to contain an...
ModStartCMS v8.8.0 was discovered to contain an open redirect vulnerability in the redirect parameter at /admin/login. This vulnerability allows attackers to redirect users to an arbitrary website...
NA - CVE-2024-46333 - An authenticated cross-site scripting (XSS)...
An authenticated cross-site scripting (XSS) vulnerability in Piwigo v14.5.0 allows attackers to execute arbitrary web scripts or HTML via a crafted payload injected into the Album Name parameter...
NA - CVE-2024-46470 - Cross Site Scripting vulnerability in CodeAstro...
Cross Site Scripting vulnerability in CodeAstro Membership Management System 1.0 allows attackers to run malicious JavaScript via the membership_type field in the edit-type.php component.
NA - CVE-2024-46471 - The Directory Listing in /uploads/ Folder in...
The Directory Listing in /uploads/ Folder in CodeAstro Membership Management System 1.0 exposes the structure and contents of directories, potentially revealing sensitive information.
NA - CVE-2024-45744 - TopQuadrant TopBraid EDG stores external...
TopQuadrant TopBraid EDG stores external credentials insecurely. An authenticated attacker with file system access can read edg-setup.properites and obtain the secret to decrypt external passwords...
NA - CVE-2024-45745 - TopQuadrant TopBraid EDG before version 8.0.1...
TopQuadrant TopBraid EDG before version 8.0.1 allows an authenticated attacker to upload an XML DTD file and execute JavaScript to read local files or access URLs (XXE). Fixed in 8.0.1 (bug fix:...