NA - CVE-2024-10575 - CWE-862: Missing Authorization vulnerability...
CWE-862: Missing Authorization vulnerability exists that could cause unauthorized access when enabled on the network and potentially impacting connected devices.
High - CVE-2024-10800 - The WordPress User Extra Fields plugin for...
The WordPress User Extra Fields plugin for WordPress is vulnerable to privilege escalation due to a missing capability check on the ajax_save_fields() function in all versions up to, and including,...
Critical - CVE-2024-11150 - The WordPress User Extra Fields plugin for...
The WordPress User Extra Fields plugin for WordPress is vulnerable to arbitrary file deletion due to insufficient file path validation in the delete_tmp_uploaded_file() function in all versions up...
NA - CVE-2024-21541 - All versions of the package dom-iterator are...
All versions of the package dom-iterator are vulnerable to Arbitrary Code Execution due to use of the Function constructor without complete input sanitization. Function generates a new function...
NA - CVE-2024-8935 - CWE-290: Authentication Bypass by Spoofing...
CWE-290: Authentication Bypass by Spoofing vulnerability exists that could cause a denial of service and loss of confidentiality and integrity of controllers when conducting a Man-In-The-Middle...
NA - CVE-2024-8936 - CWE-20: Improper Input Validation vulnerability...
CWE-20: Improper Input Validation vulnerability exists that could lead to loss of confidentiality of controller memory after a successful Man-In-The-Middle attack followed by sending a crafted...
NA - CVE-2024-8937 - CWE-119: Improper Restriction of Operations...
CWE-119: Improper Restriction of Operations within the Bounds of a Memory Buffer vulnerability exists that could cause a potential arbitrary code execution after a successful Man-In-The Middle...
NA - CVE-2024-8938 - CWE-119: Improper Restriction of Operations...
CWE-119: Improper Restriction of Operations within the Bounds of a Memory Buffer vulnerability exists that could cause a potential arbitrary code execution after a successful Man-In-The-Middle...
NA - CVE-2024-9409 - CWE-400: An Uncontrolled Resource Consumption...
CWE-400: An Uncontrolled Resource Consumption vulnerability exists that could cause the device to become unresponsive resulting in communication loss when a large amount of IGMP packets is present...