Show filters
666 Total Results
Displaying 81-90 of 666
Sort by:
Attacker Value
Unknown
CVE-2024-1104
Disclosure Date: February 22, 2024 (last updated January 04, 2025)
An unauthenticated remote attacker can bypass the brute force prevention mechanism and disturb the webservice for all users.
0
Attacker Value
Unknown
CVE-2023-50357
Disclosure Date: January 31, 2024 (last updated February 15, 2024)
A cross site scripting vulnerability in the AREAL SAS Websrv1 ASP website allows a remote low-privileged attacker to gain escalated privileges of other non-admin users.
0
Attacker Value
Unknown
CVE-2023-50356
Disclosure Date: January 31, 2024 (last updated February 15, 2024)
SSL connections to some LDAP servers are vulnerable to a man-in-the-middle attack due to improper certificate validation in AREAL Topkapi Vision (Server). This allows a remote unauthenticated attacker to gather sensitive information and prevent valid users from login.
0
Attacker Value
Unknown
CVE-2024-0788
Disclosure Date: January 29, 2024 (last updated February 09, 2024)
SUPERAntiSpyware Pro X v10.0.1260 is vulnerable to kernel-level API parameters manipulation and Denial of Service vulnerabilities by triggering the 0x9C402140 IOCTL code of the saskutil64.sys driver.
0
Attacker Value
Unknown
CVE-2023-6498
Disclosure Date: January 04, 2024 (last updated January 11, 2024)
The Complianz – GDPR/CCPA Cookie Consent plugin for WordPress is vulnerable to Stored Cross-Site Scripting via admin settings in all versions up to and including 6.5.5 due to insufficient input sanitization and output escaping. This makes it possible for authenticated attackers, with administrator-level permissions and above, to inject arbitrary web scripts in pages that will execute whenever a user accesses an injected page. This only affects multi-site installations and installations where unfiltered_html has been disabled.
0
Attacker Value
Unknown
CVE-2023-52180
Disclosure Date: December 31, 2023 (last updated January 09, 2024)
Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in Really Simple Plugins Recipe Maker For Your Food Blog from Zip Recipes.This issue affects Recipe Maker For Your Food Blog from Zip Recipes: from n/a through 8.1.0.
0
Attacker Value
Unknown
CVE-2023-50784
Disclosure Date: December 16, 2023 (last updated December 22, 2023)
A buffer overflow in websockets in UnrealIRCd 6.1.0 through 6.1.3 before 6.1.4 allows an unauthenticated remote attacker to crash the server by sending an oversized packet (if a websocket port is open). Remote code execution might be possible on some uncommon, older platforms.
0
Attacker Value
Unknown
CVE-2023-49165
Disclosure Date: December 15, 2023 (last updated December 20, 2023)
Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in Real Big Plugins Client Dash allows Stored XSS.This issue affects Client Dash: from n/a through 2.2.1.
0
Attacker Value
Unknown
CVE-2023-34030
Disclosure Date: November 30, 2023 (last updated December 06, 2023)
Cross-Site Request Forgery (CSRF) vulnerability in Really Simple Plugins Complianz, Really Simple Plugins Complianz Premium allows Cross-Site Request Forgery.This issue affects Complianz: from n/a through 6.4.5; Complianz Premium: from n/a through 6.4.7.
0
Attacker Value
Unknown
CVE-2023-33333
Disclosure Date: November 30, 2023 (last updated December 05, 2023)
Cross-Site Request Forgery (CSRF) vulnerability in Really Simple Plugins Complianz, Really Simple Plugins Complianz Premium allows Cross-Site Scripting (XSS).This issue affects Complianz: from n/a through 6.4.4; Complianz Premium: from n/a through 6.4.6.1.
0