NA - CVE-2023-26690 - File Upload vulnerability in CS-Cart...
File Upload vulnerability in CS-Cart MultiVendor 4.16.1 allows remote attackers to run arbitrary code via File Manager/Editor component in the vendor or admin menu.
NA - CVE-2023-26691 - Directory Traversal vulnerability in CS-Cart...
Directory Traversal vulnerability in CS-Cart MultiVendor 4.16.1 allows remote attackers to run arbitrary code via crafted zip file when installing a new add-on.
Low - CVE-2023-5359 - The W3 Total Cache plugin for WordPress is...
The W3 Total Cache plugin for WordPress is vulnerable to Sensitive Information Exposure in versions up to, and including, 2.7.5 via Google OAuth API secrets stored in plaintext in the publicly...
NA - CVE-2024-21545 - Proxmox Virtual Environment is an open-source...
Proxmox Virtual Environment is an open-source server management platform for enterprise virtualization. Insufficient safeguards against malicious API response values allow authenticated attackers...
Medium - CVE-2024-38324 - IBM Storage Defender 2.0.0 through 2.0.7...
IBM Storage Defender 2.0.0 through 2.0.7 on-prem defender-sensor-cmd CLI does not validate server name during registration and unregistration operations which could expose sensitive information to...
NA - CVE-2024-42505 - Command injection vulnerabilities in the...
Command injection vulnerabilities in the underlying CLI service could lead to unauthenticated remote code execution by sending specially crafted packets destined to the PAPI (Aruba's Access...
NA - CVE-2024-42506 - Command injection vulnerabilities in the...
Command injection vulnerabilities in the underlying CLI service could lead to unauthenticated remote code execution by sending specially crafted packets destined to the PAPI (Aruba's Access...