Show filters
1,948 Total Results
Displaying 71-80 of 1,948
Sort by:
Attacker Value
Unknown
CVE-2024-8475
Disclosure Date: December 17, 2024 (last updated December 18, 2024)
Authentication Bypass by Assumed-Immutable Data vulnerability in Digital Operation Services WiFiBurada allows Manipulating User-Controlled Variables.This issue affects WiFiBurada: before 1.0.5.
0
Attacker Value
Unknown
CVE-2024-8429
Disclosure Date: December 17, 2024 (last updated December 18, 2024)
Improper Restriction of Excessive Authentication Attempts vulnerability in Digital Operation Services WiFiBurada allows Use of Known Domain Credentials.This issue affects WiFiBurada: before 1.0.5.
0
Attacker Value
Unknown
CVE-2024-8650
Disclosure Date: December 16, 2024 (last updated December 18, 2024)
An issue was discovered in GitLab CE/EE affecting all versions from 15.0 prior to 17.4.6, 17.5 prior to 17.5.4, and 17.6 prior to 17.6.2 that allowed non-member users to view unresolved threads marked as internal notes in public projects merge requests.
0
Attacker Value
Unknown
CVE-2024-8116
Disclosure Date: December 16, 2024 (last updated December 18, 2024)
An issue has been discovered in GitLab CE/EE affecting all versions from 16.9 before 17.4.6, 17.5 before 17.5.4, and 17.6 before 17.6.2. By using a specific GraphQL query, under specific conditions an unauthorized user can retrieve branch names.
0
Attacker Value
Unknown
CVE-2024-54261
Disclosure Date: December 13, 2024 (last updated December 18, 2024)
Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in HK Digital Agency LLC TAX SERVICE Electronic HDM allows SQL Injection.This issue affects TAX SERVICE Electronic HDM: from n/a through 1.1.2.
0
Attacker Value
Unknown
CVE-2023-41688
Disclosure Date: December 13, 2024 (last updated December 18, 2024)
Missing Authorization vulnerability in Mad Fish Digital Bulk NoIndex & NoFollow Toolkit allows Exploiting Incorrectly Configured Access Control Security Levels.This issue affects Bulk NoIndex & NoFollow Toolkit: from n/a through 1.5.
0
Attacker Value
Unknown
CVE-2024-9387
Disclosure Date: December 12, 2024 (last updated December 21, 2024)
An issue was discovered in GitLab CE/EE affecting all versions from 11.8 before 17.4.6, 17.5 before 17.5.4, and 17.6 before 17.6.2. An attacker could potentially perform an open redirect against a given releases API endpoint.
0
Attacker Value
Unknown
CVE-2024-9367
Disclosure Date: December 12, 2024 (last updated December 21, 2024)
An issue was discovered in GitLab CE/EE affecting all versions starting from 13.9 before 17.4.6, 17.5 before 17.5.4, and 17.6 before 17.6.2, that allows an attacker to cause uncontrolled CPU consumption, potentially leading to a Denial of Service (DoS) condition while parsing templates to generate changelogs.
0
Attacker Value
Unknown
CVE-2024-8647
Disclosure Date: December 12, 2024 (last updated December 21, 2024)
An issue was discovered in GitLab affecting all versions starting 15.2 to 17.4.6, 17.5 prior to 17.5.4, and 17.6 prior to 17.6.2. On self hosted installs, it was possible to leak the anti-CSRF-token to an external site while the Harbor integration was enabled.
0
Attacker Value
Unknown
CVE-2024-8233
Disclosure Date: December 12, 2024 (last updated December 21, 2024)
An issue has been discovered in GitLab CE/EE affecting all versions from 9.4 before 17.4.6, 17.5 before 17.5.4, and 17.6 before 17.6.2. An attacker could cause a denial of service with requests for diff files on a commit or merge request.
0