NA - CVE-2024-6051 - Cross Application Scripting vulnerability in...
Cross Application Scripting vulnerability in Vercom S.A. Redlink SDK in specific situations allows local code injection and to manipulate the view of a vulnerable application.This issue affects...
NA - CVE-2024-45792 - Mantis Bug Tracker (MantisBT) is an open source...
Mantis Bug Tracker (MantisBT) is an open source issue tracker. Using a crafted POST request, an unprivileged, registered user is able to retrieve information about other users' personal system...
NA - CVE-2024-46280 - PIX-LINK LV-WR22 RE3002-P1-01_V117.0 is...
PIX-LINK LV-WR22 RE3002-P1-01_V117.0 is vulnerable to Improper Access Control. The TELNET service is enabled with weak credentials for a root-level account, without the possibility of changing them.
NA - CVE-2024-46293 - Sourcecodester Online Medicine Ordering System...
Sourcecodester Online Medicine Ordering System 1.0 is vulnerable to Incorrect Access Control. There is a lack of authorization checks for admin operations. Specifically, an attacker can perform...
NA - CVE-2024-47063 - Computer Vision Annotation Tool (CVAT) is an...
Computer Vision Annotation Tool (CVAT) is an interactive video and image annotation tool for computer vision. If a malicious CVAT user with permissions to either create a task, or edit an existing...
NA - CVE-2024-47064 - Computer Vision Annotation Tool (CVAT) is an...
Computer Vision Annotation Tool (CVAT) is an interactive video and image annotation tool for computer vision. If an attacker can trick a logged-in CVAT user into visiting a maliciously-constructed...
NA - CVE-2024-47172 - Computer Vision Annotation Tool (CVAT) is an...
Computer Vision Annotation Tool (CVAT) is an interactive video and image annotation tool for computer vision. An attacker with a CVAT account may retrieve certain information about any project,...
NA - CVE-2024-46475 - A reflected cross-site scripting (XSS)...
A reflected cross-site scripting (XSS) vulnerability on the homepage of Metronic Admin Dashboard Template v2.0 allows attackers to execute arbitrary code in the context of a user's browser via...