A vulnerability was found in Popular Posts Plugin up to 7.1.0 on WordPress. It has been classified as critical. Affected is an unknown function of the component Shortcode Handler. The manipulation leads to code injection.
This vulnerability is traded as CVE-2024-11733. It is possible to launch the attack remotely. There is no exploit available.
A vulnerability was found in Photo Gallery Slideshow & Masonry Tiled Gallery Plugin up to 1.0.15 on WordPress. It has been declared as critical. Affected by this vulnerability is an unknown functionality. The manipulation leads to server-side request forgery.
This vulnerability is known as CVE-2024-12237. The attack can be launched remotely. There is no exploit available.
A vulnerability was found in code-projects Student Management System 1.0. It has been declared as critical. This vulnerability affects the function showSubject1 of the file /config/DbFunction.php. The manipulation of the argument sid leads to sql injection.
This vulnerability was named CVE-2025-0203. The attack can be initiated remotely. Furthermore, there is an exploit available.
Other parameters might be affected as well.
A vulnerability was found in Roxy-WI up to 8.1.3. It has been declared as critical. Affected by this vulnerability is the function action_service of the file app/modules/roxywi/roxy.py. The manipulation of the argument action/service leads to os command injection.
This vulnerability is known as CVE-2024-13129. The attack can be launched remotely. Furthermore, there is an exploit available.
It is recommended to upgrade the affected component.
A vulnerability was found in O-dyn Collabtive. It has been rated as critical. Affected by this issue is some unknown functionality of the file managetimetracker.php. The manipulation of the argument id leads to sql injection.
This vulnerability is handled as CVE-2013-6872. The attack may be launched remotely. Furthermore, there is an exploit available.
It is recommended to upgrade the affected component.
A vulnerability has been found in Google Android and classified as critical. This vulnerability affects unknown code of the component Biometric. The manipulation leads to improper authentication.
This vulnerability was named CVE-2024-53835. The attack needs to be approached locally. There is no exploit available.
It is recommended to apply a patch to fix this issue.
A vulnerability was found in Google Android. It has been rated as critical. This issue affects the function wbrc_bt_dev_write of the file wb_regon_coordinator.c. The manipulation leads to out-of-bounds write.
The identification of this vulnerability is CVE-2024-53836. Attacking locally is a requirement. There is no exploit available.
It is recommended to apply a patch to fix this issue.
A vulnerability classified as critical has been found in Google Android. Affected is the function prepare_response of the file lwis_periodic_io.c. The manipulation leads to out-of-bounds write.
This vulnerability is traded as CVE-2024-53837. It is possible to launch the attack on the local host. There is no exploit available.
It is recommended to apply a patch to fix this issue.
A vulnerability classified as critical was found in Google Android. Affected by this vulnerability is the function Exynos_parsing_user_data_registered_itu_t_t35 of the file VendorVideoAPI.cpp. The manipulation leads to out-of-bounds write.
This vulnerability is known as CVE-2024-53838. The attack needs to be approached locally. There is no exploit available.
It is recommended to apply a patch to fix this issue.
A vulnerability was found in Google Android and classified as problematic. This issue affects the function GetCellInfoList of the file protocolnetadapter.cpp. The manipulation leads to out-of-bounds read.
The identification of this vulnerability is CVE-2024-53839. An attack has to be approached locally. There is no exploit available.
It is recommended to apply a patch to fix this issue.