Show filters
731 Total Results
Displaying 51-60 of 731
Sort by:
Attacker Value
Unknown
CVE-2024-5486
Disclosure Date: July 30, 2024 (last updated September 12, 2024)
A vulnerability exists in ClearPass Policy Manager that allows for an attacker with administrative privileges to access sensitive information in a cleartext format. A successful exploit allows an attacker to retrieve information which could be used to potentially gain further access to network services supported by ClearPass Policy Manager
0
Attacker Value
Unknown
CVE-2024-41916
Disclosure Date: July 30, 2024 (last updated September 12, 2024)
A vulnerability exists in ClearPass Policy Manager that allows for an attacker with administrative privileges to access sensitive information in a cleartext format. A successful exploit allows an attacker to retrieve information which could be used to potentially gain further access to network services supported by ClearPass Policy Manager.
0
Attacker Value
Unknown
CVE-2024-41915
Disclosure Date: July 30, 2024 (last updated July 31, 2024)
A vulnerability in the web-based management interface of ClearPass Policy Manager could allow an authenticated remote attacker to conduct SQL injection attacks against the ClearPass Policy Manager instance. An attacker could exploit this vulnerability to obtain and modify sensitive information in the underlying database potentially leading to complete compromise of the ClearPass Policy Manager cluster.
0
Attacker Value
Unknown
CVE-2024-7069
Disclosure Date: July 24, 2024 (last updated September 08, 2024)
A vulnerability, which was classified as critical, has been found in SourceCodester Employee and Visitor Gate Pass Logging System 1.0. This issue affects some unknown processing of the file /employee_gatepass/classes/Master.php?f=delete_department. The manipulation of the argument id leads to sql injection. The attack may be initiated remotely. The exploit has been disclosed to the public and may be used. The associated identifier of this vulnerability is VDB-272351.
0
Attacker Value
Unknown
CVE-2024-6967
Disclosure Date: July 22, 2024 (last updated September 08, 2024)
A vulnerability was found in SourceCodester Employee and Visitor Gate Pass Logging System 1.0. It has been classified as critical. This affects an unknown part of the file /employee_gatepass/admin/?page=employee/manage_employee. The manipulation of the argument id leads to sql injection. It is possible to initiate the attack remotely. The exploit has been disclosed to the public and may be used. The identifier VDB-272121 was assigned to this vulnerability.
0
Attacker Value
Unknown
CVE-2024-6736
Disclosure Date: July 15, 2024 (last updated August 22, 2024)
A vulnerability was found in SourceCodester Employee and Visitor Gate Pass Logging System 1.0. It has been rated as critical. This issue affects some unknown processing of the file view_employee.php. The manipulation of the argument id leads to sql injection. The attack may be initiated remotely. The exploit has been disclosed to the public and may be used. The identifier VDB-271457 was assigned to this vulnerability.
0
Attacker Value
Unknown
CVE-2024-6650
Disclosure Date: July 10, 2024 (last updated August 31, 2024)
A vulnerability was found in SourceCodester Employee and Visitor Gate Pass Logging System 1.0 and classified as problematic. Affected by this issue is the function save_designation of the file /classes/Master.php. The manipulation leads to cross site scripting. The attack may be launched remotely. The exploit has been disclosed to the public and may be used. VDB-271058 is the identifier assigned to this vulnerability.
0
Attacker Value
Unknown
CVE-2024-6649
Disclosure Date: July 10, 2024 (last updated October 18, 2024)
A vulnerability has been found in SourceCodester Employee and Visitor Gate Pass Logging System 1.0 and classified as problematic. Affected by this vulnerability is the function save_users of the file Users.php. The manipulation leads to cross-site request forgery. The attack can be launched remotely. The exploit has been disclosed to the public and may be used. The identifier VDB-271057 was assigned to this vulnerability.
0
Attacker Value
Unknown
CVE-2024-6376
Disclosure Date: July 01, 2024 (last updated July 04, 2024)
MongoDB Compass may be susceptible to code injection due to insufficient sandbox protection settings with the usage of ejson shell parser in Compass' connection handling. This issue affects MongoDB Compass versions prior to version 1.42.2
0
Attacker Value
Unknown
CVE-2024-3123
Disclosure Date: July 01, 2024 (last updated January 05, 2025)
CHANGING Mobile One Time Password's uploading function in a hidden page does not filter file type properly. Remote attackers with administrator privilege can exploit this vulnerability to upload and run malicious file to execute system commands.
0