NA - CVE-2024-45190 - Mage AI allows remote users with the "Viewer"...
Mage AI allows remote users with the "Viewer" role to leak arbitrary files from the Mage server due to a path traversal in the "Pipeline Interaction" request
NA - CVE-2024-37392 - A stored Cross-Site Scripting (XSS)...
A stored Cross-Site Scripting (XSS) vulnerability has been identified in SMSEagle software version < 6.0. The vulnerability arises because the application did not properly sanitize user input in...
NA - CVE-2024-40111 - A persistent (stored) cross-site scripting...
A persistent (stored) cross-site scripting (XSS) vulnerability has been identified in Automad 2.0.0-alpha.4. This vulnerability enables an attacker to inject malicious JavaScript code into the...
NA - CVE-2024-36515 - Zohocorp ManageEngine ADAudit Plus versions...
Zohocorp ManageEngine ADAudit Plus versions below 8000 are vulnerable to the authenticated SQL injection in dashboard. Note: This vulnerability is different from another vulnerability...
NA - CVE-2024-36516 - Zohocorp ManageEngine ADAudit Plus versions...
Zohocorp ManageEngine ADAudit Plus versions below 8000 are vulnerable to the authenticated SQL injection in dashboard. Note: This vulnerability is different from another vulnerability...
NA - CVE-2024-5466 - Zohocorp ManageEngine OpManager and Remote...
Zohocorp ManageEngine OpManager and Remote Monitoring and Management versions 128329 and below are vulnerable to the authenticated remote code execution in the deploy agent option.