A vulnerability was found in Logo Slider Plugin up to 4.0.x on WordPress. It has been declared as problematic. Affected by this vulnerability is an unknown functionality of the component Attribute Handler. The manipulation leads to cross site scripting.
This vulnerability is known as CVE-2024-5429. The attack can be launched remotely. There is no exploit available.
It is recommended to upgrade the affected component.
A vulnerability classified as critical has been found in Adobe Acrobat Reader up to 11.0.17/15.006.30201/15.017.20053. Affected is an unknown function. The manipulation leads to memory corruption.
This vulnerability is traded as CVE-2016-6955. It is possible to launch the attack remotely. There is no exploit available.
It is recommended to upgrade the affected component.
VMware fixes a high-severity SQL injection flaw in HCX allowing non-admin users to remotely execute code on the HCX manager. VMWare warns to address a remote code execution vulnerability, tracked as CVE-2024-38814 (CVSS score of 8.8), in its HCX application mobility platform. The vulnerability is an authenticated SQL injection vulnerability in HCX, it was privately […]
A vulnerability was found in PHPOffice PhpSpreadsheet up to 1.29.1/2.1.0. It has been declared as problematic. This vulnerability affects unknown code of the component XLSX File Handler. The manipulation leads to absolute path traversal.
This vulnerability was named CVE-2024-45290. The attack can be initiated remotely. There is no exploit available.
It is recommended to upgrade the affected component.
A vulnerability was found in PHPOffice PhpSpreadsheet up to 1.29.1/2.1.0. It has been rated as problematic. This issue affects the function setEmbedImages of the component XLSX File Handler. The manipulation leads to absolute path traversal.
The identification of this vulnerability is CVE-2024-45291. The attack may be initiated remotely. There is no exploit available.
It is recommended to upgrade the affected component.
A vulnerability was found in Microsoft Windows Server 2022 23H2. It has been rated as critical. Affected by this issue is some unknown functionality of the component OpenSSH. The manipulation leads to file inclusion.
This vulnerability is handled as CVE-2024-38029. The attack may be launched remotely. There is no exploit available.
It is recommended to apply a patch to fix this issue.
A vulnerability classified as critical has been found in Microsoft Azure Monitor Agent. This affects an unknown part. The manipulation leads to link following.
This vulnerability is uniquely identified as CVE-2024-38097. Local access is required to approach this attack. There is no exploit available.
It is recommended to apply a patch to fix this issue.
A vulnerability was found in Microsoft Power BI Report Server and classified as critical. This issue affects some unknown processing. The manipulation leads to cross site scripting.
The identification of this vulnerability is CVE-2024-43481. The attack may be initiated remotely. There is no exploit available.
It is recommended to apply a patch to fix this issue.
A vulnerability classified as critical was found in Microsoft Windows up to Server 2022 23H2. Affected by this vulnerability is an unknown functionality of the component Secure Kernel Mode. The manipulation leads to heap-based buffer overflow.
This vulnerability is known as CVE-2024-43528. Attacking locally is a requirement. There is no exploit available.
It is recommended to apply a patch to fix this issue.