Böngésszen szolgáltatóknak szóló tartalmaink között.
2024. Júl. 28.
Riasztás
NA - CVE-2024-7169 - A vulnerability classified as problematic has...
A vulnerability classified as problematic has been found in SourceCodester School Fees Payment System 1.0. This affects an unknown part of the file /ajax.php. The manipulation leads to cross-site...
NA - CVE-2024-7170 - A vulnerability was found in TOTOLINK A3000RU...
A vulnerability was found in TOTOLINK A3000RU 5.9c.5185. It has been rated as problematic. This issue affects some unknown processing of the file /web_cste/cgi-bin/product.ini. The manipulation...
NA - CVE-2024-7171 - A vulnerability classified as critical has been...
A vulnerability classified as critical has been found in TOTOLINK A3600R 4.1.2cu.5182_B20201102. Affected is the function NTPSyncWithHost of the file /cgi-bin/cstecgi.cgi. The manipulation of the...
NA - CVE-2024-7172 - A vulnerability classified as critical was...
A vulnerability classified as critical was found in TOTOLINK A3600R 4.1.2cu.5182_B20201102. Affected by this vulnerability is the function getSaveConfig of the file...
Medium - CVE-2024-1798 - The Tutor LMS – Migration Tool plugin for...
The Tutor LMS – Migration Tool plugin for WordPress is vulnerable to unauthorized access of data due to a missing capability check on the tutor_lp_export_xml function in all versions up to, and...
Medium - CVE-2024-1804 - The Tutor LMS – Migration Tool plugin for...
The Tutor LMS – Migration Tool plugin for WordPress is vulnerable to unauthorized modification of data due to a missing capability check on the tutor_import_from_xml function in all versions up to,...
Medium - CVE-2024-4410 - The IgnitionDeck Crowdfunding Platform plugin...
The IgnitionDeck Crowdfunding Platform plugin for WordPress is vulnerable to Missing Authorization in versions up to, and including, 1.9.8. This is due to missing capability checks on various...
High - CVE-2024-6152 - The Flipbox Builder plugin for WordPress is...
The Flipbox Builder plugin for WordPress is vulnerable to PHP Object Injection in all versions up to, and including, 1.5 via deserialization of untrusted input in the...
High - CVE-2024-6431 - The Media.net Ads Manager plugin for WordPress...
The Media.net Ads Manager plugin for WordPress is vulnerable to arbitrary file uploads due to missing file type validation and missing capability check in the 'sendMail' function in all...