NA - CVE-2024-39300 - Missing authentication vulnerability exists in...
Missing authentication vulnerability exists in Telnet function of WAB-I1750-PS v1.5.10 and earlier. When Telnet function of the product is enabled, a remote attacker may login to the product...
NA - CVE-2024-42412 - Cross-site scripting vulnerability exists in...
Cross-site scripting vulnerability exists in WAB-I1750-PS and WAB-S1167-PS due to improper processing of input values in menu.cgi. If a user views a malicious web page while logged in to the...
Critical - CVE-2024-8016 - The Events Calendar Pro plugin for WordPress is...
The Events Calendar Pro plugin for WordPress is vulnerable to PHP Object Injection in all versions up to, and including, 7.0.2 via deserialization of untrusted input from the 'filters'...
NA - CVE-2024-44944 - In the Linux kernel, the following...
In the Linux kernel, the following vulnerability has been resolved: netfilter: ctnetlink: use helper function to calculate expect ID Delete expectation path is missing a call to the...
Medium - CVE-2024-8319 - The Tourfic plugin for WordPress is vulnerable...
The Tourfic plugin for WordPress is vulnerable to Cross-Site Request Forgery in all versions up to, and including, 2.11.20. This is due to missing or incorrect nonce validation on the...
Medium - CVE-2024-7122 - The Elementor Addon Elements plugin for...
The Elementor Addon Elements plugin for WordPress is vulnerable to Stored Cross-Site Scripting via multiple widgets in all versions up to, and including, 1.13.6 due to insufficient input...
Medium - CVE-2024-7858 - The Media Library Folders plugin for WordPress...
The Media Library Folders plugin for WordPress is vulnerable to unauthorized access due to missing capability checks on several AJAX functions in the media-library-plus.php file in all versions up...
NA - CVE-2024-8252 - The Clean Login plugin for WordPress is...
The Clean Login plugin for WordPress is vulnerable to Local File Inclusion in all versions up to, and including, 1.14.5 via the 'template' attribute of the clean-login-register shortcode....
Medium - CVE-2024-8274 - The WP Booking Calendar plugin for WordPress is...
The WP Booking Calendar plugin for WordPress is vulnerable to Reflected Cross-Site Scripting via several parameters from 'timeline_obj' in all versions up to, and including, 10.5 due to...
NA - CVE-2022-48944 - In the Linux kernel, the following...
In the Linux kernel, the following vulnerability has been resolved: sched: Fix yet more sched_fork() races Where commit 4ef0c5c6b5ba ("kernel/sched: Fix sched_fork() access an invalid...