CVE Feed

    Dashboard / CVE

    6.1
    Medium

    CVE-2023-52045

    Last Modified: 17 Apr 2025

    Studio-42 eLfinder 2.1.62 contains a filename restriction bypass leading to a persistent Cross-site Scripting (XSS) vulnerability.

    Published: 31 Oct 2024
    9.8
    Critical

    CVE-2024-39332

    Last Modified: 10 Jul 2025

    Webswing 23.2.2 allows remote attackers to modify client-side JavaScript code to achieve path traversal, likely leading to remote code execution via modification of shell scripts on the server.

    Published: 31 Oct 2024
    7.5
    High

    CVE-2024-39719

    Last Modified: 13 May 2025

    An issue was discovered in Ollama through 0.3.14. File existence disclosure can occur via api/create. When calling the CreateModel route with a path parameter that does not exist, it reflects the "File does not exist" error message to the attacker, providing a primitive for file existence on the server.

    Published: 31 Oct 2024
    7.5
    High

    CVE-2024-39721

    Last Modified: 13 May 2025

    An issue was discovered in Ollama before 0.1.34. The CreateModelHandler function uses os.Open to read a file until completion. The req.Path parameter is user-controlled and can be set to /dev/random, which is blocking, causing the goroutine to run infinitely (even after the HTTP request is aborted by the client).

    Published: 31 Oct 2024
    7.5
    High

    CVE-2024-39722

    Last Modified: 13 May 2025

    An issue was discovered in Ollama before 0.1.46. It exposes which files exist on the server on which it is deployed via path traversal in the api/push route.

    Published: 31 Oct 2024
    9.8
    Critical

    CVE-2024-42835

    Last Modified: 27 Mar 2026

    langflow v1.0.12 was discovered to contain a remote code execution (RCE) vulnerability via the PythonCodeTool component.

    Published: 31 Oct 2024
    8.4
    High

    CVE-2024-48200

    Last Modified: 15 Apr 2026

    An issue in MobaXterm v24.2 allows a local attacker to escalate privileges and execute arbitrary code via the remove function of the MobaXterm MSI is spawning one Administrative cmd (conhost.exe)

    Published: 31 Oct 2024
    9.8
    Critical

    CVE-2024-48307

    Last Modified: 27 Jun 2025

    JeecgBoot v3.7.1 was discovered to contain a SQL injection vulnerability via the component /onlDragDatasetHead/getTotalData.

    Published: 31 Oct 2024
    9.8
    Critical

    CVE-2024-48359

    Last Modified: 1 Jul 2025

    Qualitor v8.24 was discovered to contain a remote code execution (RCE) vulnerability via the gridValoresPopHidden parameter.

    Published: 31 Oct 2024
    7.5
    High

    CVE-2024-48360

    Last Modified: 1 Jul 2025

    Qualitor v8.24 was discovered to contain a Server-Side Request Forgery (SSRF) via the component /request/viewValidacao.php.

    Published: 31 Oct 2024
    6
    Medium

    CVE-2024-50801

    Last Modified: 4 Sept 2025

    A SQL Injection vulnerability was discovered in AbanteCart 1.4.0 in the update() function in public_html/admin/controller/responses/listing_grid/collections.php. The vulnerability is exploitable via the id parameter.

    Published: 31 Oct 2024
    6
    Medium

    CVE-2024-50802

    Last Modified: 4 Sept 2025

    A SQL Injection vulnerability was discovered in AbanteCart 1.4.0 in the update() function in public_html/admin/controller/responses/listing_grid/email_templates.php. The vulnerability is exploitable via the id parameter.

    Published: 31 Oct 2024
    9.1
    Critical

    CVE-2024-51060

    Last Modified: 6 May 2025

    Projectworlds Online Admission System v1 is vulnerable to SQL Injection in index.php via the 'a_id' parameter.

    Published: 31 Oct 2024
    9.1
    Critical

    CVE-2024-51063

    Last Modified: 31 Mar 2025

    Phpgurukul Teachers Record Management System v2.1 is vulnerable to SQL Injection in add-teacher.php via the mobile number or email parameter.

    Published: 31 Oct 2024
    9.8
    Critical

    CVE-2024-51064

    Last Modified: 31 Mar 2025

    Phpgurukul Teachers Record Management System v2.1 is vulnerable to SQL Injection via the tid parameter to admin/queries.php.

    Published: 31 Oct 2024
    7.5
    High

    CVE-2024-51066

    Last Modified: 4 Apr 2025

    An Insecure Direct Object Reference (IDOR) vulnerability in appointment-detail.php in Phpgurukul's Beauty Parlour Management System v1.1 allows unauthorized access to the Personally Identifiable Information (PII) of other customers.

    Published: 31 Oct 2024
    8.8
    High

    CVE-2024-51254

    Last Modified: 10 Apr 2025

    DrayTek Vigor3900 1.5.1.3 allows attackers to inject malicious commands into mainfunction.cgi and execute arbitrary commands by calling the sign_cacertificate function.

    Published: 31 Oct 2024
    9.8
    Critical

    CVE-2024-51260

    Last Modified: 10 Apr 2025

    DrayTek Vigor3900 1.5.1.3 allows attackers to inject malicious commands into mainfunction.cgi and execute arbitrary commands by calling the acme_process function.

    Published: 31 Oct 2024
    6.9
    Medium

    CVE-2024-10561

    Last Modified: 1 Nov 2024

    A vulnerability was found in Codezips Pet Shop Management System 1.0. It has been classified as critical. This affects an unknown part of the file birdsupdate.php. The manipulation of the argument id leads to sql injection. It is possible to initiate the attack remotely. The exploit has been disclosed to the public and may be used.

    Published: 30 Oct 2024
    6.9
    Medium

    CVE-2024-10556

    Last Modified: 1 Nov 2024

    A vulnerability, which was classified as critical, was found in Codezips Pet Shop Management System 1.0. Affected is an unknown function of the file birdsadd.php. The manipulation of the argument id leads to sql injection. It is possible to launch the attack remotely. The exploit has been disclosed to the public and may be used.

    Published: 30 Oct 2024
    5.3
    Medium

    CVE-2024-10546

    Last Modified: 15 Apr 2026

    A vulnerability classified as critical was found in open-scratch Teaching 在线教学平台 up to 2.7. This vulnerability affects unknown code of the file /api/sys/ng-alain/getDictItemsByTable/ of the component URL Handler. The manipulation leads to sql injection. The attack can be initiated remotely. The exploit has been disclosed to the public and may be used. The vendor was contacted early about this disclosure but did not respond in any way.

    Published: 30 Oct 2024
    9.3
    Critical

    CVE-2024-10456

    Last Modified: 15 Apr 2026

    Delta Electronics InfraSuite Device Master versions prior to 1.0.12 are affected by a deserialization vulnerability that targets the Device-Gateway, which could allow deserialization of arbitrary .NET objects prior to authentication.

    Published: 30 Oct 2024
    7.8
    High

    CVE-2024-9419

    Last Modified: 26 Jan 2026

    Client / Server PCs with the HP Smart Universal Printing Driver installed are potentially vulnerable to Remote Code Execution and/or Elevation of Privilege. A client using the HP Smart Universal Printing Driver that sends a print job comprised of a malicious XPS file could potentially lead to Remote Code Execution and/or Elevation of Privilege on the PC.

    Published: 30 Oct 2024
    6.1
    Medium

    CVE-2024-10086

    Last Modified: 10 Jan 2025

    A vulnerability was identified in Consul and Consul Enterprise such that the server response did not explicitly set a Content-Type HTTP header, allowing user-provided inputs to be misinterpreted and lead to reflected XSS.

    Published: 30 Oct 2024
    8.3
    High

    CVE-2024-10006

    Last Modified: 10 Jan 2025

    A vulnerability was identified in Consul and Consul Enterprise (“Consul”) such that using Headers in L7 traffic intentions could bypass HTTP header based access rules.

    Published: 30 Oct 2024
    8.1
    High

    CVE-2024-10005

    Last Modified: 10 Jan 2025

    A vulnerability was identified in Consul and Consul Enterprise (“Consul”) such that using URL paths in L7 traffic intentions could bypass HTTP request path-based access rules.

    Published: 30 Oct 2024
    6.4
    Medium

    CVE-2024-9110

    Last Modified: 11 Feb 2025

    A medium severity vulnerability has been identified within Privileged Identity which can allow an attacker to perform reflected cross-site scripting attacks.

    Published: 30 Oct 2024
    4.6
    Medium

    CVE-2024-50344

    Last Modified: 15 Apr 2026

    I, Librarian is an open-source version of a PDF managing SaaS. Supplemental Files are allowed to be viewed in the browser, only if they have a white-listed MIME type. Unfortunately, this logic is broken, thus allowing unsafe files containing Javascript to be executed with the application context. An attacker can exploit this vulnerability by uploading a supplementary file that contains a malicious code or script. This code will then be executed when the file is loaded in the browser. The vulnerability was fixed in version 5.11.2.

    Published: 30 Oct 2024
    5.4
    Medium

    CVE-2024-50419

    Last Modified: 23 Apr 2026

    Incorrect Authorization vulnerability in wpsoul Greenshift greenshift-animation-and-page-builder-blocks allows Exploiting Incorrectly Configured Access Control Security Levels.This issue affects Greenshift: from n/a through <= 9.7.

    Published: 30 Oct 2024
    5.3
    Medium

    CVE-2024-50353

    Last Modified: 13 Nov 2024

    ICG.AspNetCore.Utilities.CloudStorage is a collection of cloud storage utilities to assist with the management of files for cloud upload. Users of this library that set a duration for a SAS Uri with a value other than 1 hour may have generated a URL with a duration that is longer, or shorter than desired. Users not implemented SAS Uri's are unaffected. This issue was resolved in version 8.0.0 of the library.

    Published: 30 Oct 2024
    8.1
    High

    CVE-2024-31151

    Last Modified: 3 Nov 2025

    A security flaw involving hard-coded credentials in LevelOne WBR-6012's web services allows attackers to gain unauthorized access during the first 30 seconds post-boot. Other vulnerabilities can force a reboot, circumventing the initial time restriction for exploitation.The password string can be found at addresses 0x 803cdd0f and 0x803da3e6: 803cdd0f 41 72 69 65 ds "AriesSerenaCairryNativitaMegan" 73 53 65 72 65 6e 61 43 ... It is referenced by the function at 0x800b78b0 and simplified in the pseudocode below: if (is_equal = strcmp(password,"AriesSerenaCairryNativitaMegan"){ ret = 3;} Where 3 is the return value to user-level access (0 being fail and 1 being admin/backdoor). While there's no legitimate functionality to change this password, once authenticated it is possible manually make a change by taking advantage of TALOS-2024-XXXXX using HTTP POST paramater "Pu" (new user password) in place of "Pa" (new admin password).

    Published: 30 Oct 2024
    8.1
    High

    CVE-2024-28875

    Last Modified: 3 Nov 2025

    A security flaw involving hard-coded credentials in LevelOne WBR-6012's web services allows attackers to gain unauthorized access during the first 30 seconds post-boot. Other vulnerabilities can force a reboot, circumventing the initial time restriction for exploitation.The backdoor string can be found at address 0x80100910 80100910 40 6d 21 74 ds "@m!t2K1" 32 4b 31 00 It is referenced by the function located at 0x800b78b0 and is used as shown in the pseudocode below: if ((SECOND_FROM_BOOT_TIME < 300) && (is_equal = strcmp(password,"@m!t2K1")) { return 1;} Where 1 is the return value to admin-level access (0 being fail and 3 being user).

    Published: 30 Oct 2024
    8.8
    High

    CVE-2024-24777

    Last Modified: 21 Nov 2024

    A cross-site request forgery (CSRF) vulnerability exists in the Web Application functionality of the LevelOne WBR-6012 R0.40e6. A specially crafted HTTP request can lead to unauthorized access. An attacker can stage a malicious web page to trigger this vulnerability.

    Published: 30 Oct 2024
    5.3
    Medium

    CVE-2024-31152

    Last Modified: 21 Nov 2024

    The LevelOne WBR-6012 router with firmware R0.40e6 is vulnerable to improper resource allocation within its web application, where a series of crafted HTTP requests can cause a reboot. This could lead to network service interruptions.

    Published: 30 Oct 2024
    5.9
    Medium

    CVE-2024-32946

    Last Modified: 21 Nov 2024

    A vulnerability in the LevelOne WBR-6012 router's firmware version R0.40e6 allows sensitive information to be transmitted in cleartext via Web and FTP services, exposing it to network sniffing attacks.

    Published: 30 Oct 2024
    9.9
    Critical

    CVE-2024-33699

    Last Modified: 21 Nov 2024

    The LevelOne WBR-6012 router's web application has a vulnerability in its firmware version R0.40e6, allowing attackers to change the administrator password and gain higher privileges without the current password.

    Published: 30 Oct 2024
    5.3
    Medium

    CVE-2024-33603

    Last Modified: 21 Nov 2024

    The LevelOne WBR-6012 router has an information disclosure vulnerability in its web application, which allows unauthenticated users to access a verbose system log page and obtain sensitive data, such as memory addresses and IP addresses for login attempts. This flaw could lead to session hijacking due to the device's reliance on IP address for authentication.

    Published: 30 Oct 2024
    5.3
    Medium

    CVE-2024-33626

    Last Modified: 21 Nov 2024

    The LevelOne WBR-6012 router contains a vulnerability within its web application that allows unauthenticated disclosure of sensitive information, such as the WiFi WPS PIN, through a hidden page accessible by an HTTP request. Disclosure of this information could enable attackers to connect to the device's WiFi network.

    Published: 30 Oct 2024
    9
    Critical

    CVE-2024-23309

    Last Modified: 21 Nov 2024

    The LevelOne WBR-6012 router with firmware R0.40e6 has an authentication bypass vulnerability in its web application due to reliance on client IP addresses for authentication. Attackers could spoof an IP address to gain unauthorized access without needing a session token.

    Published: 30 Oct 2024
    5.3
    Medium

    CVE-2024-28052

    Last Modified: 21 Nov 2024

    The WBR-6012 is a wireless SOHO router. It is a low-cost device which functions as an internet gateway for homes and small offices while aiming to be easy to configure and operate. In addition to providing a WiFi access point, the device serves as a 4-port wired router and implements a variety of common SOHO router capabilities such as port forwarding, quality-of-service, web-based administration, a DHCP server, a basic DMZ, and UPnP capabilities.

    Published: 30 Oct 2024
    7.5
    High

    CVE-2024-33700

    Last Modified: 21 Nov 2024

    The LevelOne WBR-6012 router firmware R0.40e6 suffers from an input validation vulnerability within its FTP functionality, enabling attackers to cause a denial of service through a series of malformed FTP commands. This can lead to device reboots and service disruption.

    Published: 30 Oct 2024
    3.7
    Low

    CVE-2024-33623

    Last Modified: 21 Nov 2024

    A denial of service vulnerability exists in the Web Application functionality of LevelOne WBR-6012 R0.40e6. A specially crafted HTTP request can lead to a reboot. An attacker can send an HTTP request to trigger this vulnerability.

    Published: 30 Oct 2024
    6
    Medium

    CVE-2024-3935

    Last Modified: 3 Nov 2025

    In Eclipse Mosquito, versions from 2.0.0 through 2.0.18, if a Mosquitto broker is configured to create an outgoing bridge connection, and that bridge connection has an incoming topic configured that makes use of topic remapping, then if the remote connection sends a crafted PUBLISH packet to the broker a double free will occur with a subsequent crash of the broker.

    Published: 30 Oct 2024
    7.2
    High

    CVE-2024-10525

    Last Modified: 3 Nov 2025

    In Eclipse Mosquitto, from version 1.3.2 through 2.0.18, if a malicious broker sends a crafted SUBACK packet with no reason codes, a client using libmosquitto may make out of bounds memory access when acting in its on_subscribe callback. This affects the mosquitto_sub and mosquitto_rr clients.

    Published: 30 Oct 2024
    6.4
    Medium

    CVE-2024-9388

    Last Modified: 8 Apr 2026

    The Black Widgets For Elementor plugin for WordPress is vulnerable to Stored Cross-Site Scripting via SVG File uploads in all versions up to, and including, 1.3.7 due to insufficient input sanitization and output escaping. This makes it possible for authenticated attackers, with Author-level access and above, to inject arbitrary web scripts in pages that will execute whenever a user accesses the SVG file.

    Published: 30 Oct 2024
    9.1
    Critical

    CVE-2024-8512

    Last Modified: 15 Apr 2026

    The W3SPEEDSTER plugin for WordPress is vulnerable to Remote Code Execution in all versions up to, and including, 7.26 via the 'script' parameter of the hookBeforeStartOptimization() function. This is due to the plugin passing user supplied input to eval(). This makes it possible for authenticated attackers, with Administrator-level access and above, to execute code on the server.

    Published: 30 Oct 2024
    —
    Unknown

    CVE-2024-10541

    Last Modified: 7 Jan 2025

    ** REJECT ** DO NOT USE THIS CANDIDATE NUMBER. Reason: This candidate was issued in error. This is not a valid vulnerability. Notes: All references and descriptions in this candidate have been removed to prevent accidental usage.

    Published: 30 Oct 2024
    8.8
    High

    CVE-2024-50504

    Last Modified: 23 Apr 2026

    Incorrect Privilege Assignment vulnerability in webxmedia Bulk Change Role bulk-role-change allows Privilege Escalation.This issue affects Bulk Change Role: from n/a through <= 1.1.

    Published: 30 Oct 2024
    8.8
    High

    CVE-2024-50506

    Last Modified: 23 Apr 2026

    Incorrect Privilege Assignment vulnerability in azexo Marketing Automation by AZEXO marketing-automation-by-azexo allows Privilege Escalation.This issue affects Marketing Automation by AZEXO: from n/a through <= 1.27.80.

    Published: 30 Oct 2024
    7.5
    High

    CVE-2024-50508

    Last Modified: 23 Apr 2026

    Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal') vulnerability in Chetan Khandla Woocommerce Product Design woo-product-design allows Path Traversal.This issue affects Woocommerce Product Design: from n/a through <= 1.0.0.

    Published: 30 Oct 2024