Show filters
1,945 Total Results
Displaying 91-100 of 1,945
Sort by:
Attacker Value
Unknown

CVE-2024-9841

Disclosure Date: November 08, 2024 (last updated November 14, 2024)
A Reflected Cross-Site Scripting (XSS) vulnerability has been identified in OpenText ArcSight Management Center and ArcSight Platform. The vulnerability could be remotely exploited.
Attacker Value
Unknown

CVE-2024-8615

Disclosure Date: November 06, 2024 (last updated November 09, 2024)
The JobSearch WP Job Board plugin for WordPress is vulnerable to arbitrary file uploads due to missing file type validation in the jobsearch_location_load_excel_file_callback() function in all versions up to, and including, 2.6.7. This makes it possible for unauthenticated attackers to upload arbitrary files on the affected site's server which may make remote code execution possible.
Attacker Value
Unknown

CVE-2024-8614

Disclosure Date: November 06, 2024 (last updated November 09, 2024)
The JobSearch WP Job Board plugin for WordPress is vulnerable to arbitrary file uploads due to missing file type validation in the jobsearch_wp_handle_upload() function in all versions up to, and including, 2.6.7. This makes it possible for authenticated attackers, with subscriber-level access and above, to upload arbitrary files on the affected site's server which may make remote code execution possible.
Attacker Value
Unknown

CVE-2024-10389

Disclosure Date: November 04, 2024 (last updated November 04, 2024)
There exists a Path Traversal vulnerability in Safearchive on Platforms with Case-Insensitive Filesystems (e.g., NTFS). This allows Attackers to Write Arbitrary Files via Archive Extraction containing symbolic links. We recommend upgrading past commit f7ce9d7b6f9c6ecd72d0b0f16216b046e55e44dc
0
Attacker Value
Unknown

CVE-2024-43929

Disclosure Date: November 01, 2024 (last updated November 13, 2024)
Missing Authorization vulnerability in eyecix JobSearch allows Accessing Functionality Not Properly Constrained by ACLs.This issue affects JobSearch: from n/a through 2.5.4.
Attacker Value
Unknown

CVE-2024-43928

Disclosure Date: November 01, 2024 (last updated November 13, 2024)
Missing Authorization vulnerability in eyecix JobSearch allows Exploiting Incorrectly Configured Access Control Security Levels.This issue affects JobSearch: from n/a through 2.5.4.
Attacker Value
Unknown

CVE-2024-43310

Disclosure Date: November 01, 2024 (last updated November 13, 2024)
Missing Authorization vulnerability in UkrSolution Print Barcode Labels for your WooCommerce allows Exploiting Incorrectly Configured Access Control Security Levels.This issue affects Print Barcode Labels for your WooCommerce products/orders: from n/a through 3.4.9.
Attacker Value
Unknown

CVE-2024-43229

Disclosure Date: November 01, 2024 (last updated November 02, 2024)
Missing Authorization vulnerability in Cornel Raiu WP Search Analytics allows Exploiting Incorrectly Configured Access Control Security Levels.This issue affects WP Search Analytics: from n/a through 1.4.9.
0
Attacker Value
Unknown

CVE-2024-38783

Disclosure Date: November 01, 2024 (last updated November 02, 2024)
Missing Authorization vulnerability in Tyche Softwares Arconix FAQ allows Accessing Functionality Not Properly Constrained by ACLs.This issue affects Arconix FAQ: from n/a through 1.9.4.
0
Attacker Value
Unknown

CVE-2024-38769

Disclosure Date: November 01, 2024 (last updated November 02, 2024)
Missing Authorization vulnerability in Tyche Softwares Arconix Shortcodes allows Accessing Functionality Not Properly Constrained by ACLs.This issue affects Arconix Shortcodes: from n/a through 2.1.11.
0