Show filters
200 Total Results
Displaying 41-50 of 200
Sort by:
Attacker Value
Unknown

CVE-2023-51492

Disclosure Date: February 10, 2024 (last updated February 15, 2024)
Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in If So Plugin If-So Dynamic Content Personalization allows Stored XSS.This issue affects If-So Dynamic Content Personalization: from n/a through 1.6.3.1.
Attacker Value
Unknown

CVE-2022-40203

Disclosure Date: January 17, 2024 (last updated January 25, 2024)
Missing Authorization vulnerability in AlgolPlus Advanced Dynamic Pricing for WooCommerce.This issue affects Advanced Dynamic Pricing for WooCommerce: from n/a through 4.1.5.
Attacker Value
Unknown

CVE-2024-0307

Disclosure Date: January 08, 2024 (last updated January 12, 2024)
A vulnerability was found in Kashipara Dynamic Lab Management System up to 1.0. It has been declared as critical. This vulnerability affects unknown code of the file login_process.php. The manipulation of the argument password leads to sql injection. The attack can be initiated remotely. The exploit has been disclosed to the public and may be used. VDB-249874 is the identifier assigned to this vulnerability.
Attacker Value
Unknown

CVE-2024-0306

Disclosure Date: January 08, 2024 (last updated January 12, 2024)
A vulnerability was found in Kashipara Dynamic Lab Management System up to 1.0. It has been classified as critical. This affects an unknown part of the file /admin/admin_login_process.php. The manipulation of the argument admin_password leads to sql injection. It is possible to initiate the attack remotely. The exploit has been disclosed to the public and may be used. The identifier VDB-249873 was assigned to this vulnerability.
Attacker Value
Unknown

CVE-2023-52150

Disclosure Date: January 05, 2024 (last updated January 11, 2024)
Cross-Site Request Forgery (CSRF) vulnerability in Ovation S.R.L. Dynamic Content for Elementor.This issue affects Dynamic Content for Elementor: from n/a before 2.12.5.
Attacker Value
Unknown

CVE-2023-40954

Disclosure Date: December 15, 2023 (last updated December 21, 2023)
A SQL injection vulnerability in Grzegorz Marczynski Dynamic Progress Bar (aka web_progress) v. 11.0 through 11.0.2, v12.0 through v12.0.2, v.13.0 through v13.0.2, v.14.0 through v14.0.2.1, v.15.0 through v15.0.2, and v16.0 through v16.0.2.1 allows a remote attacker to gain privileges via the recency parameter in models/web_progress.py component.
Attacker Value
Unknown

CVE-2023-28527

Disclosure Date: December 09, 2023 (last updated December 13, 2023)
IBM Informix Dynamic Server 12.10 and 14.10 cdr is vulnerable to a heap buffer overflow, caused by improper bounds checking which could allow a local user to cause a segmentation fault. IBM X-Force ID: 251206.
Attacker Value
Unknown

CVE-2023-28526

Disclosure Date: December 09, 2023 (last updated December 13, 2023)
IBM Informix Dynamic Server 12.10 and 14.10 archecker is vulnerable to a heap buffer overflow, caused by improper bounds checking which could allow a local user to cause a segmentation fault. IBM X-Force ID: 251204.
Attacker Value
Unknown

CVE-2023-28523

Disclosure Date: December 09, 2023 (last updated December 13, 2023)
IBM Informix Dynamic Server 12.10 and 14.10 onsmsync is vulnerable to a heap buffer overflow, caused by improper bounds checking which could allow an attacker to execute arbitrary code. IBM X-Force ID: 250753.
Attacker Value
Unknown

CVE-2023-29504

Disclosure Date: November 14, 2023 (last updated November 22, 2023)
Uncontrolled search path element in some Intel(R) RealSense(TM) Dynamic Calibration software before version 2.13.1.0 may allow an authenticated user to potentially enable escalation of privilege via local access.