NA - CVE-2024-50838 - A Stored Cross-Site Scripting (XSS)...
A Stored Cross-Site Scripting (XSS) vulnerability was found in /admin/department.php in KASHIPARA E-learning Management System Project 1.0. This vulnerability allows remote attackers to execute...
NA - CVE-2024-7124 - Improper Neutralization of Input During Web...
Improper Neutralization of Input During Web Page Generation vulnerability in DInGO dLibra software in the parameter 'filter' in the endpoint 'indexsearch' allows a Reflected...
NA - CVE-2024-10921 - An authorized user may trigger crashes or...
An authorized user may trigger crashes or receive the contents of buffer over-reads of Server memory by issuing specially crafted requests that construct malformed BSON in the MongoDB Server. This...
NA - CVE-2024-11136 - The default TCL Camera application exposes a...
The default TCL Camera application exposes a provider vulnerable to path traversal vulnerability. Malicious application can supply malicious URI path and delete arbitrary files from user’s external...
NA - CVE-2024-11213 - A vulnerability, which was classified as...
A vulnerability, which was classified as critical, was found in SourceCodester Best Employee Management System 1.0. This affects an unknown part of the file /admin/edit_role.php. The manipulation...
NA - CVE-2024-11214 - A vulnerability has been found in...
A vulnerability has been found in SourceCodester Best Employee Management System 1.0 and classified as critical. This vulnerability affects unknown code of the file /admin/profile.php. The...
NA - CVE-2024-52302 - common-user-management is a robust Spring Boot...
common-user-management is a robust Spring Boot application featuring user management services designed to control user access dynamically. There is a critical security vulnerability in the...
NA - CVE-2024-52505 - matrix-appservice-irc is a Node.js IRC bridge...
matrix-appservice-irc is a Node.js IRC bridge for the Matrix messaging protocol. The provisioning API of the matrix-appservice-irc bridge up to version 3.0.2 contains a vulnerability which can lead...
NA - CVE-2024-37285 - A deserialization issue in Kibana can lead to...
A deserialization issue in Kibana can lead to arbitrary code execution when Kibana attempts to parse a YAML document containing a crafted payload. A successful attack requires a malicious user to...