NA - CVE-2024-39586 - Dell AppSync Server, version 4.3 through 4.6,...
Dell AppSync Server, version 4.3 through 4.6, contains an XML External Entity Injection vulnerability. An adjacent high privileged attacker could potentially exploit this vulnerability, leading to...
Medium - CVE-2024-9449 - The Auto iFrame plugin for WordPress is...
The Auto iFrame plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the 'tag' parameter in all versions up to, and including, 1.7 due to insufficient input sanitization...
Medium - CVE-2024-9451 - The Embed PDF Viewer plugin for WordPress is...
The Embed PDF Viewer plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the 'height' and 'width' parameters in all versions up to, and including, 2.4.4 due to...
Medium - CVE-2024-20787 - Substance3D - Painter versions 10.0.1 and...
Substance3D - Painter versions 10.0.1 and earlier are affected by an out-of-bounds read vulnerability that could lead to disclosure of sensitive memory. An attacker could leverage this...
High - CVE-2024-45146 - Dimension versions 4.0.3 and earlier are...
Dimension versions 4.0.3 and earlier are affected by a Use After Free vulnerability that could result in arbitrary code execution in the context of the current user. Exploitation of this issue...
NA - CVE-2024-45150 - Dimension versions 4.0.3 and earlier are...
Dimension versions 4.0.3 and earlier are affected by an out-of-bounds write vulnerability that could result in arbitrary code execution in the context of the current user. Exploitation of this...
Medium - CVE-2024-45145 - Lightroom Desktop versions 7.4.1, 13.5, 12.5.1...
Lightroom Desktop versions 7.4.1, 13.5, 12.5.1 and earlier are affected by an out-of-bounds read vulnerability that could lead to disclosure of sensitive memory. An attacker could leverage this...
High - CVE-2024-47410 - Animate versions 23.0.7, 24.0.4 and earlier are...
Animate versions 23.0.7, 24.0.4 and earlier are affected by a Stack-based Buffer Overflow vulnerability that could result in arbitrary code execution in the context of the current user....
High - CVE-2024-47411 - Animate versions 23.0.7, 24.0.4 and earlier are...
Animate versions 23.0.7, 24.0.4 and earlier are affected by an Access of Uninitialized Pointer vulnerability that could result in arbitrary code execution in the context of the current user....
High - CVE-2024-47412 - Animate versions 23.0.7, 24.0.4 and earlier are...
Animate versions 23.0.7, 24.0.4 and earlier are affected by a Use After Free vulnerability that could result in arbitrary code execution in the context of the current user. Exploitation of this...