NA - CVE-2024-8558 - A vulnerability classified as problematic was...
A vulnerability classified as problematic was found in SourceCodester Food Ordering Management System 1.0. This vulnerability affects unknown code of the file /foms/routers/place-order.php of the...
NA - CVE-2024-38651 - A code injection vulnerability can allow a...
A code injection vulnerability can allow a low-privileged user to overwrite files on that VSPC server, which can lead to remote code execution on VSPC server.
NA - CVE-2024-39714 - A code injection vulnerability that permits a...
A code injection vulnerability that permits a low-privileged user to upload arbitrary files to the server, leading to remote code execution on VSPC server.
NA - CVE-2024-39715 - A code injection vulnerability that allows a...
A code injection vulnerability that allows a low-privileged user with REST API access granted to remotely upload arbitrary files to the VSPC server using REST API, leading to remote code execution...
NA - CVE-2024-39718 - An improper input validation vulnerability that...
An improper input validation vulnerability that allows a low-privileged user to remotely remove files on the system with permissions equivalent to those of the service account.
NA - CVE-2024-40710 - A series of related high-severity...
A series of related high-severity vulnerabilities, the most notable enabling remote code execution (RCE) as the service account and extraction of sensitive information (savedcredentials and...
NA - CVE-2024-40712 - A path traversal vulnerability allows an...
A path traversal vulnerability allows an attacker with a low-privileged account and local access to the system to perform local privilege escalation (LPE).