Medium - CVE-2024-13318 - The Essential WP Real Estate plugin for...
The Essential WP Real Estate plugin for WordPress is vulnerable to unauthorized access due to a missing capability check on the cl_delete_listing_func() function in all versions up to, and...
NA - CVE-2025-23016 - FastCGI fcgi2 (aka fcgi) 2.x through 2.4.4 has...
FastCGI fcgi2 (aka fcgi) 2.x through 2.4.4 has an integer overflow (and resultant heap-based buffer overflow) via crafted nameLen or valueLen values in data to the IPC socket. This occurs in...
NA - CVE-2024-57822 - In Raptor RDF Syntax Library through 2.0.16,...
In Raptor RDF Syntax Library through 2.0.16, there is a heap-based buffer over-read when parsing triples with the nquads parser in raptor_ntriples_parse_term_internal().
NA - CVE-2024-57823 - In Raptor RDF Syntax Library through 2.0.16,...
In Raptor RDF Syntax Library through 2.0.16, there is an integer underflow when normalizing a URI with the turtle parser in raptor_uri_normalize_path().
Critical - CVE-2024-41787 - IBM Engineering Requirements Management DOORS...
IBM Engineering Requirements Management DOORS Next 7.0.2 and 7.0.3 could allow a remote attacker to bypass security restrictions, caused by a race condition. By sending a specially crafted request,...
NA - CVE-2024-57686 - A Cross Site Scripting (XSS) vulnerability was...
A Cross Site Scripting (XSS) vulnerability was found in /landrecordsys/admin/contactus.php in PHPGurukul Land Record System v1.0, which allows remote attackers to execute arbitrary code via the...
NA - CVE-2024-57687 - An OS Command Injection vulnerability was found...
An OS Command Injection vulnerability was found in /landrecordsys/admin/dashboard.php in PHPGurukul Land Record System v1.0, which allows remote attackers to execute arbitrary code via the "Cookie"...
Tenda ac9 v1.0 firmware v15.03.05.19 contains a stack overflow vulnerability in /goform/SetOnlineDevName, which may lead to remote arbitrary code execution.