NA - CVE-2024-20488 - A vulnerability in the web-based management...
A vulnerability in the web-based management interface of Cisco Unified Communications Manager (Unified CM) and Cisco Unified Communications Manager Session Management Edition (Unified CM SME) could...
NA - CVE-2024-41572 - Learning with Texts (LWT) 2.0.3 is vulnerable...
Learning with Texts (LWT) 2.0.3 is vulnerable to Cross Site Scripting (XSS). The application has a specific function that does not filter special characters in URL parameters. Remote attackers can...
NA - CVE-2024-20417 - Multiple vulnerabilities in the REST API of...
Multiple vulnerabilities in the REST API of Cisco Identity Services Engine (ISE) could allow an authenticated, remote attacker to conduct blind SQL injection attacks. These vulnerabilities are...
NA - CVE-2024-20466 - A vulnerability in the web-based management...
A vulnerability in the web-based management interface of Cisco Identity Services Engine (ISE) could allow an authenticated, remote attacker to obtain sensitive information from an affected device....
NA - CVE-2024-20486 - A vulnerability in the web-based management...
A vulnerability in the web-based management interface of Cisco Identity Services Engine (ISE) could allow an unauthenticated, remote attacker to conduct a cross-site request forgery (CSRF) attack...
Critical - CVE-2024-6386 - The WPML plugin for WordPress is vulnerable to...
The WPML plugin for WordPress is vulnerable to Remote Code Execution in all versions up to, and including, 4.6.12 via the Twig Server-Side Template Injection. This is due to missing input...
NA - CVE-2024-7964 - Use after free in Passwords in Google Chrome on...
Use after free in Passwords in Google Chrome on Android prior to 128.0.6613.84 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML page. (Chromium security severity:...
NA - CVE-2024-7965 - Inappropriate implementation in V8 in Google...
Inappropriate implementation in V8 in Google Chrome prior to 128.0.6613.84 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML page. (Chromium security severity: High)
NA - CVE-2024-7966 - Out of bounds memory access in Skia in Google...
Out of bounds memory access in Skia in Google Chrome prior to 128.0.6613.84 allowed a remote attacker who had compromised the renderer process to perform out of bounds memory access via a crafted...
NA - CVE-2024-7967 - Heap buffer overflow in Fonts in Google Chrome...
Heap buffer overflow in Fonts in Google Chrome prior to 128.0.6613.84 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML page. (Chromium security severity: High)