Show filters
12 Total Results
Displaying 1-10 of 12
Sort by:
Attacker Value
Unknown

CVE-2025-23684

Disclosure Date: January 22, 2025 (last updated January 23, 2025)
Missing Authorization vulnerability in Eugen Bobrowski Debug Tool allows Exploiting Incorrectly Configured Access Control Security Levels. This issue affects Debug Tool: from n/a through 2.2.
0
Attacker Value
Unknown

CVE-2024-52416

Disclosure Date: November 16, 2024 (last updated November 17, 2024)
Missing Authorization vulnerability in Eugen Bobrowski Debug Tool allows Upload a Web Shell to a Web Server.This issue affects Debug Tool: from n/a through 2.2.
0
Attacker Value
Unknown

CVE-2024-36253

Disclosure Date: November 13, 2024 (last updated February 05, 2025)
Uncontrolled search path in the Intel(R) SDP Tool for Windows software all version may allow an authenticated user to potentially enable escalation of privilege via local access.
Attacker Value
Unknown

CVE-2024-35201

Disclosure Date: November 13, 2024 (last updated February 05, 2025)
Incorrect default permissions in the Intel(R) SDP Tool for Windows software all versions may allow an authenticated user to enable escalation of privilege via local access.
Attacker Value
Unknown

CVE-2024-10588

Disclosure Date: November 09, 2024 (last updated November 09, 2024)
The Debug Tool plugin for WordPress is vulnerable to unauthorized access of data due to a missing capability check on the info() function in all versions up to, and including, 2.2. This makes it possible for authenticated attackers, with subscriber-level access and above, to obtain information from phpinfo(). When WP_DEBUG is enabled, this can be exploited by unauthenticated users as well.
Attacker Value
Unknown

CVE-2024-10586

Disclosure Date: November 09, 2024 (last updated January 06, 2025)
The Debug Tool plugin for WordPress is vulnerable to arbitrary file creation due to a missing capability check on the dbt_pull_image() function and missing file type validation in all versions up to, and including, 2.2. This makes it possible for unauthenticated attackers to to create arbitrary files such as .php files that can be leveraged for remote code execution.
0
Attacker Value
Unknown

CVE-2024-34798

Disclosure Date: June 03, 2024 (last updated June 03, 2024)
Insertion of Sensitive Information into Log File vulnerability in Lukman Nakib Debug Log – Manger Tool.This issue affects Debug Log – Manger Tool: from n/a through 1.4.5.
0
Attacker Value
Unknown

CVE-2023-31246

Disclosure Date: August 11, 2023 (last updated October 08, 2023)
Incorrect default permissions in some Intel(R) SDP Tool software before version 1.4 build 5 may allow an authenticated user to potentially enable escalation of privilege via local access.
Attacker Value
Unknown

CVE-2022-26508

Disclosure Date: November 11, 2022 (last updated February 24, 2025)
Improper authentication in the Intel(R) SDP Tool before version 3.0.0 may allow an unauthenticated user to potentially enable information disclosure via network access.
Attacker Value
Unknown

CVE-2021-30459

Disclosure Date: April 14, 2021 (last updated February 22, 2025)
A SQL Injection issue in the SQL Panel in Jazzband Django Debug Toolbar before 1.11.1, 2.x before 2.2.1, and 3.x before 3.2.1 allows attackers to execute SQL statements by changing the raw_sql input field of the SQL explain, analyze, or select form.