Show filters
2,402 Total Results
Displaying 201-210 of 2,402
Sort by:
Attacker Value
Unknown

CVE-2024-6883

Disclosure Date: August 21, 2024 (last updated February 26, 2025)
The Event Espresso 4 Decaf – Event Registration Event Ticketing plugin for WordPress is vulnerable to limited unauthorized plugin settings modification due to a missing capability check on the saveTimezoneString and some other functions in all versions up to, and including, 5.0.22.decaf. This makes it possible for authenticated attackers, with Subscriber-level access and above, to modify some of the plugin settings.
Attacker Value
Unknown

CVE-2024-43324

Disclosure Date: August 18, 2024 (last updated February 26, 2025)
Improper Neutralization of Input During Web Page Generation (XSS or 'Cross-site Scripting') vulnerability in CleverSoft Clever Addons for Elementor allows Stored XSS.This issue affects Clever Addons for Elementor: from n/a through 2.2.0.
Attacker Value
Unknown

CVE-2024-42441

Disclosure Date: August 14, 2024 (last updated February 26, 2025)
Improper privilege management in the installer for Zoom Workplace Desktop App for macOS, Zoom Meeting SDK for macOS and Zoom Rooms Client for macOS before 6.1.5 may allow a privileged user to conduct an escalation of privilege via local access.
Attacker Value
Unknown

CVE-2024-42440

Disclosure Date: August 14, 2024 (last updated February 26, 2025)
Improper privilege management in the installer for Zoom Workplace Desktop App for macOS, Zoom Meeting SDK for macOS and Zoom Rooms Client for macOS before 6.1.5 may allow a privileged user to conduct an escalation of privilege via local access.
Attacker Value
Unknown

CVE-2024-42439

Disclosure Date: August 14, 2024 (last updated February 26, 2025)
Untrusted search path in the installer for Zoom Workplace Desktop App for macOS and Zoom Meeting SDK for macOS before 6.1.0 may allow a privileged user to conduct an escalation of privilege via local access.
Attacker Value
Unknown

CVE-2024-42438

Disclosure Date: August 14, 2024 (last updated February 26, 2025)
Buffer overflow in some Zoom Workplace Apps, SDKs, Rooms Clients, and Rooms Controllers may allow an authenticated user to conduct a denial of service via network access.
Attacker Value
Unknown

CVE-2024-42437

Disclosure Date: August 14, 2024 (last updated February 26, 2025)
Buffer overflow in some Zoom Workplace Apps, SDKs, Rooms Clients, and Rooms Controllers may allow an authenticated user to conduct a denial of service via network access.
Attacker Value
Unknown

CVE-2024-42436

Disclosure Date: August 14, 2024 (last updated February 26, 2025)
Buffer overflow in some Zoom Workplace Apps, SDKs, Rooms Clients, and Rooms Controllers may allow an authenticated user to conduct a denial of service via network access.
Attacker Value
Unknown

CVE-2024-42435

Disclosure Date: August 14, 2024 (last updated February 26, 2025)
Sensitive information disclosure in some Zoom Workplace Apps, SDKs, Rooms Clients, and Rooms Controllers may allow a privileged user to conduct an information disclosure via network access.
Attacker Value
Unknown

CVE-2024-42434

Disclosure Date: August 14, 2024 (last updated February 26, 2025)
Sensitive information disclosure in some Zoom Workplace Apps, SDKs, Rooms Clients, and Rooms Controllers may allow a privileged user to conduct an information disclosure via network access.