Show filters
463 Total Results
Displaying 71-80 of 463
Sort by:
Attacker Value
Unknown

CVE-2024-34761

Disclosure Date: June 10, 2024 (last updated June 11, 2024)
Vulnerability discovered by executing a planned security audit. Improper Control of Generation of Code ('Code Injection') vulnerability in WPENGINE INC Advanced Custom Fields PRO allows Code Injection.This issue affects Advanced Custom Fields PRO: from n/a before 6.2.10.
0
Attacker Value
Unknown

CVE-2024-32798

Disclosure Date: June 09, 2024 (last updated February 11, 2025)
Missing Authorization vulnerability in WP Travel Engine.This issue affects WP Travel Engine: from n/a through 5.8.0.
Attacker Value
Unknown

CVE-2024-5656

Disclosure Date: June 06, 2024 (last updated June 13, 2024)
** REJECT ** Accidental duplicate assignment of CVE-2024-4755. Please use CVE-2024-4755.
Attacker Value
Unknown

CVE-2021-44534

Disclosure Date: May 31, 2024 (last updated June 01, 2024)
Insufficient user input filtering leads to arbitrary file read by non-authenticated attacker, which results in sensitive information disclosure.
0
Attacker Value
Unknown

CVE-2024-36036

Disclosure Date: May 27, 2024 (last updated May 28, 2024)
Zoho ManageEngine ADAudit Plus versions 7260 and below allows unauthorized local agent machine users to access sensitive information and modifying the agent configuration.
0
Attacker Value
Unknown

CVE-2024-27314

Disclosure Date: May 27, 2024 (last updated May 30, 2024)
Zoho ManageEngine ServiceDesk Plus versions below 14730, ServiceDesk Plus MSP below 14720 and SupportCenter Plus below 14720 are vulnerable to stored XSS in the Custom Actions menu on the request details. This vulnerability can be exploited only by the SDAdmin role users.
0
Attacker Value
Unknown

CVE-2024-21791

Disclosure Date: May 22, 2024 (last updated May 23, 2024)
Zoho ManageEngine ADAudit Plus versions below 7271 allows SQL Injection in lockout history option. Note: Non-admin users cannot exploit this vulnerability.
0
Attacker Value
Unknown

CVE-2023-49335

Disclosure Date: May 20, 2024 (last updated May 21, 2024)
Zoho ManageEngine ADAudit Plus versions below 7271 allows SQL injection while getting file server details.
0
Attacker Value
Unknown

CVE-2023-49334

Disclosure Date: May 20, 2024 (last updated May 21, 2024)
Zoho ManageEngine ADAudit Plus versions below 7271 allows SQL Injection while exporting a full summary report.
0
Attacker Value
Unknown

CVE-2023-49333

Disclosure Date: May 20, 2024 (last updated May 21, 2024)
Zoho ManageEngine ADAudit Plus versions below 7271 allows SQL injection in the dashboard graph feature.
0