Show filters
917 Total Results
Displaying 51-60 of 917
Sort by:
Attacker Value
Unknown
CVE-2024-49070
Disclosure Date: December 12, 2024 (last updated January 13, 2025)
Microsoft SharePoint Remote Code Execution Vulnerability
0
Attacker Value
Unknown
CVE-2024-49068
Disclosure Date: December 12, 2024 (last updated January 13, 2025)
Microsoft SharePoint Elevation of Privilege Vulnerability
0
Attacker Value
Unknown
CVE-2024-49065
Disclosure Date: December 12, 2024 (last updated January 13, 2025)
Microsoft Office Remote Code Execution Vulnerability
0
Attacker Value
Unknown
CVE-2024-49064
Disclosure Date: December 12, 2024 (last updated January 13, 2025)
Microsoft SharePoint Information Disclosure Vulnerability
0
Attacker Value
Unknown
CVE-2024-49062
Disclosure Date: December 12, 2024 (last updated January 13, 2025)
Microsoft SharePoint Information Disclosure Vulnerability
0
Attacker Value
Unknown
CVE-2024-49421
Disclosure Date: December 03, 2024 (last updated December 21, 2024)
Path traversal in Quick Share Agent prior to version 3.5.14.47 in Android 12, 3.5.19.41 in Android 13, and 3.5.19.42 in Android 14 allows adjacent attackers to write file in arbitrary location.
0
Attacker Value
Unknown
CVE-2024-53723
Disclosure Date: December 02, 2024 (last updated December 21, 2024)
Cross-Site Request Forgery (CSRF) vulnerability in A.Cihangir BALTACI Google Plus Share and +1 Button allows Stored XSS.This issue affects Google Plus Share and +1 Button: from n/a through 1.0.
0
Attacker Value
Unknown
CVE-2024-11252
Disclosure Date: November 30, 2024 (last updated December 21, 2024)
The Social Sharing Plugin – Sassy Social Share plugin for WordPress is vulnerable to Reflected Cross-Site Scripting via the heateor_mastodon_share parameter in all versions up to, and including, 3.3.69 due to insufficient input sanitization and output escaping. This makes it possible for unauthenticated attackers to inject arbitrary web scripts in pages that execute if they can successfully trick a user into performing an action such as clicking on a link.
0
Attacker Value
Unknown
CVE-2024-11103
Disclosure Date: November 28, 2024 (last updated December 21, 2024)
The Contest Gallery plugin for WordPress is vulnerable to privilege escalation via account takeover in all versions up to, and including, 24.0.7. This is due to the plugin not properly validating a user's identity prior to updating their password. This makes it possible for unauthenticated attackers to change arbitrary user's passwords, including administrators, and leverage that to gain access to their account.
0
Attacker Value
Unknown
CVE-2024-51865
Disclosure Date: November 19, 2024 (last updated November 20, 2024)
Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in N.O.U.S. Open Useful and Simple Simple Social Share Block allows Stored XSS.This issue affects Simple Social Share Block: from n/a through 1.0.0.
0