CVE Feed

    Dashboard / CVE

    6.5
    Medium

    CVE-2025-0473

    Last Modified: 7 May 2025

    Vulnerability in the PMB platform that allows an attacker to persist temporary files on the server, affecting versions 4.0.10 and above. This vulnerability exists in the file upload functionality on the ‘/pmb/authorities/import/iimport_authorities’ endpoint. When a file is uploaded via this resource, the server will create a temporary file that will be deleted after the client sends a POST request to ‘/pmb/authorities/import/iimport_authorities’. This workflow is automated by the web client, however an attacker can trap and launch the second POST request to prevent the temporary file from being deleted.

    Published: 16 Jan 2025
    7.5
    High

    CVE-2025-0472

    Last Modified: 7 May 2025

    Information exposure in the PMB platform affecting versions 4.2.13 and earlier. This vulnerability allows an attacker to upload a file to the environment and enumerate the internal files of a machine by looking at the request response.

    Published: 16 Jan 2025
    9.9
    Critical

    CVE-2025-0471

    Last Modified: 7 May 2025

    Unrestricted file upload vulnerability in the PMB platform, affecting versions 4.0.10 and above. This vulnerability could allow an attacker to upload a file to gain remote access to the machine, being able to access, modify and execute commands freely.

    Published: 16 Jan 2025
    7.5
    High

    CVE-2018-25108

    Last Modified: 15 Apr 2026

    An unauthenticated remote attacker can cause a DoS in the controller due to uncontrolled resource consumption.

    Published: 16 Jan 2025
    5.3
    Medium

    CVE-2024-12427

    Last Modified: 8 Apr 2026

    The Multi Step Form plugin for WordPress is vulnerable to unauthorized limited file upload due to a missing capability check on the fw_upload_file AJAX action in all versions up to, and including, 1.7.23. This makes it possible for unauthenticated attackers to upload limited file types such as images.

    Published: 16 Jan 2025
    7.5
    High

    CVE-2024-12613

    Last Modified: 8 Apr 2026

    The Passwords Manager plugin for WordPress is vulnerable to SQL Injection via the $wpdb->prefix value in several AJAX fuctions in all versions up to, and including, 1.4.8 due to insufficient escaping on the user supplied parameter and lack of sufficient preparation on the existing SQL query. This makes it possible for unauthenticated attackers to append additional SQL queries into already existing queries that can be used to extract sensitive information from the database.

    Published: 16 Jan 2025
    6.5
    Medium

    CVE-2024-12615

    Last Modified: 8 Apr 2026

    The Passwords Manager plugin for WordPress is vulnerable to SQL Injection via the $wpdb->prefix value in several AJAX actions in all versions up to, and including, 1.4.8 due to insufficient escaping on the user supplied parameter and lack of sufficient preparation on the existing SQL query. This makes it possible for authenticated attackers, with Subscriber-level access and above, to append additional SQL queries into already existing queries that can be used to extract sensitive information from the database.

    Published: 16 Jan 2025
    7.5
    High

    CVE-2024-12614

    Last Modified: 8 Apr 2026

    The Passwords Manager plugin for WordPress is vulnerable to unauthorized modification of data due to a missing capability check on the 'pms_save_setting' and 'post_new_pass' AJAX actions in all versions up to, and including, 1.4.8. This makes it possible for authenticated attackers, with Subscriber-level access and above, to update the plugins settings and add passwords.

    Published: 16 Jan 2025
    5.4
    Medium

    CVE-2024-13355

    Last Modified: 15 Apr 2026

    The Admin and Customer Messages After Order for WooCommerce: OrderConvo plugin for WordPress is vulnerable to limited file uploads due to insufficient file type validation in the upload_file() function in all versions up to, and including, 13.2. This makes it possible for authenticated attackers, with Subscriber-level access and above, to upload files on the affected site's server which may make remote code execution possible and is confirmed to make Cross-Site Scripting possible.

    Published: 16 Jan 2025
    6.4
    Medium

    CVE-2024-13387

    Last Modified: 15 Apr 2026

    The WP Responsive Tabs plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the plugin's 'wprtabs' shortcode in all versions up to, and including, 1.2.9 due to insufficient input sanitization and output escaping on user supplied attributes. This makes it possible for authenticated attackers, with contributor-level access and above, to inject arbitrary web scripts in pages that will execute whenever a user accesses an injected page.

    Published: 16 Jan 2025
    7.3
    High

    CVE-2024-50563

    Last Modified: 24 Sept 2025

    A weak authentication in Fortinet FortiManager Cloud, FortiAnalyzer versions 7.6.0 through 7.6.1, 7.4.1 through 7.4.3, FortiAnalyzer Cloud versions 7.4.1 through 7.4.3, FortiManager versions 7.6.0 through 7.6.1, 7.4.1 through 7.4.3, FortiManager Cloud versions 7.4.1 through 7.4.3 allows attacker to execute unauthorized code or commands via a brute-force attack.

    Published: 16 Jan 2025
    5.3
    Medium

    CVE-2024-48885

    Last Modified: 8 Jul 2026

    A improper limitation of a pathname to a restricted directory ('path traversal') vulnerability in Fortinet FortiRecorder 7.2.0 through 7.2.1, FortiRecorder 7.0.0 through 7.0.4, FortiVoice 7.0.0 through 7.0.4, FortiVoice 6.4.0 through 6.4.9, FortiVoice 6.0 all versions, FortiWeb 7.6.0, FortiWeb 7.4.0 through 7.4.4, FortiWeb 7.2 all versions, FortiWeb 7.0 all versions, FortiWeb 6.4 all versions allows attacker to escalate privilege via specially crafted packets.

    Published: 16 Jan 2025
    7.3
    High

    CVE-2024-45331

    Last Modified: 8 Jul 2026

    A incorrect privilege assignment vulnerability in Fortinet FortiAnalyzer 7.4.0 through 7.4.3, FortiAnalyzer 7.2.0 through 7.2.5, FortiAnalyzer 7.0 all versions, FortiAnalyzer 6.4 all versions, FortiAnalyzer Cloud 7.4.1 through 7.4.2, FortiAnalyzer Cloud 7.2.1 through 7.2.6, FortiAnalyzer Cloud 7.0 all versions, FortiAnalyzer Cloud 6.4 all versions, FortiManager 7.4.0 through 7.4.3, FortiManager 7.2.0 through 7.2.5, FortiManager 7.0 all versions, FortiManager 6.4 all versions allows attacker to escalate privilege via specific shell commands

    Published: 16 Jan 2025
    6.5
    Medium

    CVE-2024-12226

    Last Modified: 15 Apr 2026

    In affected versions of the Octopus Kubernetes worker or agent, sensitive variables could be written to the Kubernetes script pod log in clear-text. This was identified in Version 2 however it was determined that this could also be achieved in Version 1 and the fix was applied to both versions accordingly.

    Published: 16 Jan 2025
    —
    Unknown

    CVE-2025-20066

    Last Modified: 13 Feb 2026

    This CVE ID has been rejected or withdrawn by its CVE Numbering Authority because it is Unused

    Published: 16 Jan 2025
    4.3
    Medium

    CVE-2024-10789

    Last Modified: 15 Apr 2026

    The WP User Profile Avatar plugin for WordPress is vulnerable to Cross-Site Request Forgery in all versions up to, and including, 1.0.5. This is due to missing or incorrect nonce validation on the wpupa_user_admin() function. This makes it possible for unauthenticated attackers to update the plugins setting which controls access to the functionality via a forged request granted they can trick a site administrator into performing an action such as clicking on a link.

    Published: 16 Jan 2025
    6.4
    Medium

    CVE-2024-11452

    Last Modified: 15 Apr 2026

    The Chamber Dashboard Business Directory plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the plugin's 'business_categories' shortcode in all versions up to, and including, 3.3.8 due to insufficient input sanitization and output escaping on user supplied attributes. This makes it possible for authenticated attackers, with contributor-level access and above, to inject arbitrary web scripts in pages that will execute whenever a user accesses an injected page.

    Published: 16 Jan 2025
    5.4
    Medium

    CVE-2024-10970

    Last Modified: 8 Apr 2026

    The The Motors – Car Dealer, Classifieds & Listing plugin for WordPress is vulnerable to arbitrary shortcode execution in all versions up to, and including, 1.4.43. This is due to the software allowing users to execute an action that does not properly validate a value before running do_shortcode. This makes it possible for authenticated attackers, with Subscriber-level access and above, to execute arbitrary shortcodes.

    Published: 16 Jan 2025
    6.1
    Medium

    CVE-2025-0170

    Last Modified: 21 Apr 2026

    The DWT - Directory & Listing WordPress Theme is vulnerable to Reflected Cross-Site Scripting in versions up to, and including, 3.3.3 due to insufficient input sanitization and output escaping on the 'sort_by' and 'token' parameters. This makes it possible for unauthenticated attackers to inject arbitrary web scripts in pages that execute if they can successfully trick a user into performing an action such as clicking on a link.

    Published: 16 Jan 2025
    8.8
    High

    CVE-2025-0457

    Last Modified: 15 Apr 2026

    The airPASS from NetVision Information has an OS Command Injection vulnerability, allowing remote attackers with regular privileges to inject and execute arbitrary OS commands.

    Published: 16 Jan 2025
    9.8
    Critical

    CVE-2025-0456

    Last Modified: 15 Apr 2026

    The airPASS from NetVision Information has a Missing Authentication vulnerability, allowing unauthenticated remote attackers to access the specific administrative functionality to retrieve * all accounts and passwords.

    Published: 16 Jan 2025
    9.8
    Critical

    CVE-2025-0455

    Last Modified: 15 Apr 2026

    The airPASS from NetVision Information has a SQL Injection vulnerability, allowing unauthenticated remote attackers to inject arbitrary SQL commands to read, modify, and delete database contents.

    Published: 16 Jan 2025
    4.9
    Medium

    CVE-2024-57785

    Last Modified: 15 Apr 2026

    Zenitel AlphaWeb XE v11.2.3.10 was discovered to contain a local file inclusion vulnerability via the component amc_uploads.php.

    Published: 16 Jan 2025
    5.5
    Medium

    CVE-2024-57784

    Last Modified: 15 Apr 2026

    An issue in the component /php/script_uploads.php of Zenitel AlphaWeb XE v11.2.3.10 allows attackers to execute a directory traversal.

    Published: 16 Jan 2025
    9.8
    Critical

    CVE-2025-22916

    Last Modified: 9 Apr 2025

    RE11S v1.11 was discovered to contain a stack overflow via the pppUserName parameter in the formPPPoESetup function.

    Published: 16 Jan 2025
    9.8
    Critical

    CVE-2025-22913

    Last Modified: 9 Apr 2025

    RE11S v1.11 was discovered to contain a stack overflow via the rootAPmac parameter in the formStaDrvSetup function.

    Published: 16 Jan 2025
    9.8
    Critical

    CVE-2025-22912

    Last Modified: 9 Apr 2025

    RE11S v1.11 was discovered to contain a command injection vulnerability via the component /goform/formAccept.

    Published: 16 Jan 2025
    7.8
    High

    CVE-2024-55511

    Last Modified: 15 Apr 2026

    A null pointer dereference vulnerability in Macrium Reflect prior to 8.1.8017 allows a local attacker to cause a system crash or potentially elevate their privileges via executing a specially crafted executable.

    Published: 16 Jan 2025
    4.3
    Medium

    CVE-2024-57160

    Last Modified: 24 Feb 2025

    07FLYCMS V1.3.9 was discovered to contain a Cross-Site Request Forgery (CSRF) via /erp.07fly.net:80/oa/OaTask/edit.html.

    Published: 16 Jan 2025
    9.8
    Critical

    CVE-2024-57582

    Last Modified: 22 Mar 2025

    Tenda AC18 V15.03.05.19 was discovered to contain a stack overflow via the startIP parameter in the formSetPPTPServer function.

    Published: 16 Jan 2025
    6.5
    Medium

    CVE-2024-57677

    Last Modified: 2 May 2025

    An access control issue in the component form2Wan.cgi of D-Link 816A2_FWv1.10CNB05_R1B011D88210 allows unauthenticated attackers to set the wan service of the device via a crafted POST request.

    Published: 16 Jan 2025
    6.5
    Medium

    CVE-2024-57679

    Last Modified: 2 May 2025

    An access control issue in the component form2RepeaterSetup.cgi of D-Link 816A2_FWv1.10CNB05_R1B011D88210 allows unauthenticated attackers to set the 2.4G and 5G repeater service of the device via a crafted POST request.

    Published: 16 Jan 2025
    4.3
    Medium

    CVE-2024-57683

    Last Modified: 2 May 2025

    An access control issue in the component websURLFilterAddDel of D-Link 816A2_FWv1.10CNB05_R1B011D88210 allows unauthenticated attackers to set the filter settings of the device via a crafted POST request.

    Published: 16 Jan 2025
    4.8
    Medium

    CVE-2024-57772

    Last Modified: 17 May 2025

    A cross-site scripting (XSS) vulnerability in the /bumph/getDraftListPage?type interface of JFinalOA before v2025.01.01 allows attackers to execute arbitrary web scripts or HTML via a crafted payload.

    Published: 16 Jan 2025
    9.8
    Critical

    CVE-2025-22906

    Last Modified: 9 Apr 2025

    RE11S v1.11 was discovered to contain a command injection vulnerability via the L2TPUserName parameter at /goform/setWAN.

    Published: 16 Jan 2025
    4.6
    Medium

    CVE-2024-40514

    Last Modified: 30 Sept 2025

    Insecure Permissions vulnerability in themesebrand Chatvia v.5.3.2 allows a remote attacker to escalate privileges via the User profile name and image upload functions.

    Published: 16 Jan 2025
    4.6
    Medium

    CVE-2024-40513

    Last Modified: 30 Sept 2025

    An issue in themesebrand Chatvia v.5.3.2 allows a remote attacker to execute arbitrary code via the User profile Upload image function.

    Published: 16 Jan 2025
    8.1
    High

    CVE-2024-46450

    Last Modified: 7 Jul 2025

    Incorrect access control in Tenda AC1200 Smart Dual-Band WiFi Router Model AC6 v2.0 Firmware v15.03.06.50 allows attackers to bypass authentication via a crafted web request.

    Published: 16 Jan 2025
    4.3
    Medium

    CVE-2024-48460

    Last Modified: 15 Apr 2026

    An issue in Eugeny Tabby 1.0.213 allows a remote attacker to obtain sensitive information via the server and sends the SSH username and password even when the host key verification fails.

    Published: 16 Jan 2025
    0
    Low

    CVE-2024-50633

    Last Modified: 19 Sept 2025

    A Broken Object Level Authorization (BOLA) vulnerability in Indico through 3.3.5 allows attackers to read information by sending a crafted POST request to the component /api/principals. NOTE: this is disputed by the Supplier because the product intentionally lets all users retrieve certain information about other user accounts (this functionality is, in the current design, not restricted to any privileged roles such as event organizer).

    Published: 16 Jan 2025
    9.1
    Critical

    CVE-2024-53553

    Last Modified: 29 Oct 2025

    An issue in OPEXUS FOIAXPRESS PUBLIC ACCESS LINK v11.1.0 allows attackers to bypass authentication via crafted web requests.

    Published: 16 Jan 2025
    8.7
    High

    CVE-2024-54660

    Last Modified: 15 Apr 2026

    A JNDI injection issue was discovered in Cloudera JDBC Connector for Hive before 2.6.26 and JDBC Connector for Impala before 2.6.35. Attackers can inject malicious parameters into the JDBC URL, triggering JNDI injection during the process when the JDBC Driver uses this URL to connect to the database. This could lead to remote code execution. JNDI injection is possible via the JDBC connection property krbJAASFile for the Java Authentication and Authorization Service (JAAS). Using untrusted parameters in the krbJAASFile and/or remote host can trigger JNDI injection in the JDBC URL through the krbJAASFile.

    Published: 16 Jan 2025
    3.5
    Low

    CVE-2024-57159

    Last Modified: 15 Apr 2025

    07FLYCMS V1.3.9 was discovered to contain a Cross-Site Request Forgery (CSRF) via /erp.07fly.net:80/oa/OaWorkReport/add.html.

    Published: 16 Jan 2025
    4.3
    Medium

    CVE-2024-57161

    Last Modified: 24 Feb 2025

    07FLYCMS V1.3.9 was discovered to contain a Cross-Site Request Forgery (CSRF) via /erp.07fly.net:80/oa/OaWorkReport/edit.html

    Published: 16 Jan 2025
    7.2
    High

    CVE-2024-57162

    Last Modified: 19 Mar 2025

    Campcodes Cybercafe Management System v1.0 is vulnerable to SQL Injection in /ccms/view-user-detail.php.

    Published: 16 Jan 2025
    9.8
    Critical

    CVE-2024-57575

    Last Modified: 3 Feb 2025

    Tenda AC18 V15.03.05.19 was discovered to contain a stack overflow via the ssid parameter in the form_fast_setting_wifi_set function.

    Published: 16 Jan 2025
    5.7
    Medium

    CVE-2024-57577

    Last Modified: 17 Mar 2025

    Tenda AC18 V15.03.05.19 was discovered to contain a stack overflow via the speed_dir parameter in the formSetSpeedWan function.

    Published: 16 Jan 2025
    8.8
    High

    CVE-2024-57578

    Last Modified: 17 Mar 2025

    Tenda AC18 V15.03.05.19 was discovered to contain a stack overflow via the funcpara1 parameter in the formSetCfm function.

    Published: 16 Jan 2025
    9.8
    Critical

    CVE-2024-57579

    Last Modified: 19 Mar 2025

    Tenda AC18 V15.03.05.19 was discovered to contain a stack overflow via the limitSpeedUp parameter in the formSetClientState function.

    Published: 16 Jan 2025
    9.8
    Critical

    CVE-2024-57580

    Last Modified: 18 Mar 2025

    Tenda AC18 V15.03.05.19 was discovered to contain a stack overflow via the devName parameter in the formSetDeviceName function.

    Published: 16 Jan 2025