NA - CVE-2024-7707 - A vulnerability was found in Tenda FH1206...
A vulnerability was found in Tenda FH1206 02.03.01.35 and classified as critical. Affected by this issue is the function formSafeEmailFilter of the file /goform/SafeEmailFilter of the component...
NA - CVE-2024-7709 - A vulnerability, which was classified as...
A vulnerability, which was classified as problematic, has been found in OcoMon 4.0. This issue affects some unknown processing of the file /includes/common/require_access_recovery.php of the...
NA - CVE-2022-38382 - IBM Cloud Pak for Security (CP4S) 1.10.0.0...
IBM Cloud Pak for Security (CP4S) 1.10.0.0 through 1.10.11.0 and IBM QRadar Suite Software 1.10.12.0 through 1.10.23.0 does not invalidate session after logout which could allow another user to...
NA - CVE-2024-7094 - The JS Help Desk – The Ultimate Help Desk &...
The JS Help Desk – The Ultimate Help Desk & Support Plugin plugin for WordPress is vulnerable to PHP Code Injection leading to Remote Code Execution in all versions up to, and including, 2.8.6 via...
Medium - CVE-2024-7388 - The WP Bannerize Pro plugin for WordPress is...
The WP Bannerize Pro plugin for WordPress is vulnerable to Stored Cross-Site Scripting via banner alt data in all versions up to, and including, 1.9.0 due to insufficient input sanitization and...
NA - CVE-2024-28166 - SAP BusinessObjects Business Intelligence...
SAP BusinessObjects Business Intelligence Platform allows an authenticated attacker to upload malicious code over the network, that could be executed by the application. On successful...
NA - CVE-2024-33003 - Some OCC API endpoints in SAP Commerce Cloud...
Some OCC API endpoints in SAP Commerce Cloud allows Personally Identifiable Information (PII) data, such as passwords, email addresses, mobile numbers, coupon codes, and voucher codes, to be...
NA - CVE-2024-33005 - Due to the missing authorization checks in the...
Due to the missing authorization checks in the local systems, the admin users of SAP Web Dispatcher, SAP NetWeaver Application Server (ABAP and Java), and SAP Content Server can impersonate other...
NA - CVE-2024-41730 - In SAP BusinessObjects Business Intelligence...
In SAP BusinessObjects Business Intelligence Platform, if Single Signed On is enabled on Enterprise authentication, an unauthorized user can get a logon token using a REST endpoint. The attacker...