Medium - CVE-2024-53974 - Adobe Experience Manager versions 6.5.21 and...
Adobe Experience Manager versions 6.5.21 and earlier are affected by a stored Cross-Site Scripting (XSS) vulnerability that could be abused by a low privileged attacker to inject malicious scripts...
Medium - CVE-2025-1118 - A flaw was found in grub2. Grub's dump...
A flaw was found in grub2. Grub's dump command is not blocked when grub is in lockdown mode, which allows the user to read any memory information, and an attacker may leverage this in order to...
NA - CVE-2025-24806 - Authelia is an open-source authentication and...
Authelia is an open-source authentication and authorization server providing two-factor authentication and single sign-on (SSO) for applications via a web portal. If users are allowed to sign in...
NA - CVE-2023-46271 - Extreme Networks IQ Engine before 10.6r1a, and...
Extreme Networks IQ Engine before 10.6r1a, and through 10.6r4 before 10.6r5, has a buffer overflow. This issue arises from the ah_webui service, which listens on TCP port 3009 by default.
NA - CVE-2023-46272 - Buffer Overflow vulnerability in Extreme...
Buffer Overflow vulnerability in Extreme Networks IQ Engine before 10.6r1a, and through 10.6r4 before 10.6r5, allows an attacker to execute arbitrary code via the implementation of the ah_auth service
NA - CVE-2023-51293 - A lack of rate limiting in the 'Forgot...
A lack of rate limiting in the 'Forgot Password', 'Email Settings' feature of PHPJabbers Event Booking Calendar v4.0 allows attackers to send an excessive amount of email for a...
NA - CVE-2023-51296 - PHPJabbers Event Booking Calendar v4.0 is...
PHPJabbers Event Booking Calendar v4.0 is vulnerable to Cross-Site Scripting (XSS) in the "name, plugin_sms_api_key, plugin_sms_country_code, title, plugin_sms_api_key" parameters which allows...