Show filters
266 Total Results
Displaying 11-20 of 266
Sort by:
Attacker Value
Unknown

CVE-2024-38643

Disclosure Date: November 22, 2024 (last updated January 05, 2025)
A missing authentication for critical function vulnerability has been reported to affect Notes Station 3. If exploited, the vulnerability could allow remote attackers to gain access to and execute certain functions. We have already fixed the vulnerability in the following version: Notes Station 3 3.9.7 and later
0
Attacker Value
Unknown

CVE-2022-4974

Disclosure Date: October 16, 2024 (last updated October 16, 2024)
The Freemius SDK, as used by hundreds of WordPress plugin and theme developers, was vulnerable to Cross-Site Request Forgery and Information disclosure due to missing capability checks and nonce protection on the _get_debug_log, _get_db_option, and the _set_db_option functions in versions up to, and including 2.4.2. Any WordPress plugin or theme running a version of Freemius less than 2.4.3 is vulnerable.
Attacker Value
Unknown

CVE-2024-27126

Disclosure Date: September 06, 2024 (last updated September 14, 2024)
A cross-site scripting (XSS) vulnerability has been reported to affect Notes Station 3. If exploited, the vulnerability could allow authenticated users to inject malicious code via a network. We have already fixed the vulnerability in the following versions: Notes Station 3 3.9.6 and later
Attacker Value
Unknown

CVE-2024-27122

Disclosure Date: September 06, 2024 (last updated September 14, 2024)
A cross-site scripting (XSS) vulnerability has been reported to affect Notes Station 3. If exploited, the vulnerability could allow authenticated users to inject malicious code via a network. We have already fixed the vulnerability in the following versions: Notes Station 3 3.9.6 and later
Attacker Value
Unknown

CVE-2024-34660

Disclosure Date: September 04, 2024 (last updated September 06, 2024)
Heap-based out-of-bounds write in Samsung Notes prior to version 4.4.21.62 allows local attackers to execute arbitrary code.
Attacker Value
Unknown

CVE-2024-34658

Disclosure Date: September 04, 2024 (last updated September 06, 2024)
Out-of-bounds read in Samsung Notes allows local attackers to bypass ASLR.
Attacker Value
Unknown

CVE-2024-34657

Disclosure Date: September 04, 2024 (last updated September 06, 2024)
Stack-based out-of-bounds write in Samsung Notes prior to version 4.4.21.62 allows remote attackers to execute arbitrary code.
Attacker Value
Unknown

CVE-2024-34656

Disclosure Date: September 04, 2024 (last updated September 07, 2024)
Path traversal in Samsung Notes prior to version 4.4.21.62 allows local attackers to execute arbitrary code.
Attacker Value
Unknown

CVE-2024-43326

Disclosure Date: August 19, 2024 (last updated August 20, 2024)
Missing Authorization vulnerability in Jamie Bergen Plugin Notes Plus allows Accessing Functionality Not Properly Constrained by ACLs.This issue affects Plugin Notes Plus: from n/a through 1.2.7.
0
Attacker Value
Unknown

CVE-2024-43226

Disclosure Date: August 12, 2024 (last updated August 13, 2024)
Improper Neutralization of Input During Web Page Generation (XSS or 'Cross-site Scripting') vulnerability in Jeroen Sormani WP Dashboard Notes allows Stored XSS.This issue affects WP Dashboard Notes: from n/a through 1.0.11.
0