Show filters
917 Total Results
Displaying 51-60 of 917
Sort by:
Attacker Value
Unknown

CVE-2024-49070

Disclosure Date: December 12, 2024 (last updated January 13, 2025)
Microsoft SharePoint Remote Code Execution Vulnerability
Attacker Value
Unknown

CVE-2024-49068

Disclosure Date: December 12, 2024 (last updated January 13, 2025)
Microsoft SharePoint Elevation of Privilege Vulnerability
Attacker Value
Unknown

CVE-2024-49065

Disclosure Date: December 12, 2024 (last updated January 13, 2025)
Microsoft Office Remote Code Execution Vulnerability
Attacker Value
Unknown

CVE-2024-49064

Disclosure Date: December 12, 2024 (last updated January 13, 2025)
Microsoft SharePoint Information Disclosure Vulnerability
Attacker Value
Unknown

CVE-2024-49062

Disclosure Date: December 12, 2024 (last updated January 13, 2025)
Microsoft SharePoint Information Disclosure Vulnerability
Attacker Value
Unknown

CVE-2024-49421

Disclosure Date: December 03, 2024 (last updated December 21, 2024)
Path traversal in Quick Share Agent prior to version 3.5.14.47 in Android 12, 3.5.19.41 in Android 13, and 3.5.19.42 in Android 14 allows adjacent attackers to write file in arbitrary location.
0
Attacker Value
Unknown

CVE-2024-53723

Disclosure Date: December 02, 2024 (last updated December 21, 2024)
Cross-Site Request Forgery (CSRF) vulnerability in A.Cihangir BALTACI Google Plus Share and +1 Button allows Stored XSS.This issue affects Google Plus Share and +1 Button: from n/a through 1.0.
0
Attacker Value
Unknown

CVE-2024-11252

Disclosure Date: November 30, 2024 (last updated December 21, 2024)
The Social Sharing Plugin – Sassy Social Share plugin for WordPress is vulnerable to Reflected Cross-Site Scripting via the heateor_mastodon_share parameter in all versions up to, and including, 3.3.69 due to insufficient input sanitization and output escaping. This makes it possible for unauthenticated attackers to inject arbitrary web scripts in pages that execute if they can successfully trick a user into performing an action such as clicking on a link.
Attacker Value
Unknown

CVE-2024-11103

Disclosure Date: November 28, 2024 (last updated December 21, 2024)
The Contest Gallery plugin for WordPress is vulnerable to privilege escalation via account takeover in all versions up to, and including, 24.0.7. This is due to the plugin not properly validating a user's identity prior to updating their password. This makes it possible for unauthenticated attackers to change arbitrary user's passwords, including administrators, and leverage that to gain access to their account.
0
Attacker Value
Unknown

CVE-2024-51865

Disclosure Date: November 19, 2024 (last updated November 20, 2024)
Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in N.O.U.S. Open Useful and Simple Simple Social Share Block allows Stored XSS.This issue affects Simple Social Share Block: from n/a through 1.0.0.
0