Aggregator
CVE-2012-1661 | ESRI ArcMap 9.0 code injection (EDB-19138 / OSVDB-82986)
9 months ago
A vulnerability, which was classified as very critical, was found in ESRI ArcMap 9.0. Affected is an unknown function. The manipulation leads to code injection.
This vulnerability is traded as CVE-2012-1661. It is possible to launch the attack remotely. Furthermore, there is an exploit available.
vuldb.com
CVE-2021-41312 | Atlassian JIRA Server/Data Center up to 8.19.0 Jira Service Management Project /secure/ViewCollectors improper authentication
9 months ago
A vulnerability classified as critical has been found in Atlassian JIRA Server and Data Center up to 8.19.0. Affected is an unknown function of the file /secure/ViewCollectors of the component Jira Service Management Project Handler. The manipulation leads to improper authentication.
This vulnerability is traded as CVE-2021-41312. It is possible to launch the attack remotely. There is no exploit available.
It is recommended to upgrade the affected component.
vuldb.com
CVE-2021-41309 | Atlassian JIRA Server/Data Center up to 8.19.0 Service Management Project resource improper authentication
9 months ago
A vulnerability was found in Atlassian JIRA Server and Data Center up to 8.19.0 and classified as critical. Affected by this issue is some unknown functionality of the file /plugins/servlet/audit/resource of the component Service Management Project Handler. The manipulation leads to improper authentication.
This vulnerability is handled as CVE-2021-41309. The attack may be launched remotely. There is no exploit available.
It is recommended to upgrade the affected component.
vuldb.com
CVE-2021-41311 | Atlassian JIRA Server/Data Center up to 8.19.0 Roles Settings roles improper authentication
9 months ago
A vulnerability was found in Atlassian JIRA Server and Data Center up to 8.19.0. It has been classified as critical. This affects an unknown part of the file /plugins/servlet/project-config/PROJECT/roles of the component Roles Settings Handler. The manipulation leads to improper authentication.
This vulnerability is uniquely identified as CVE-2021-41311. It is possible to initiate the attack remotely. There is no exploit available.
It is recommended to upgrade the affected component.
vuldb.com
CVE-2023-46615 | KD Coming Soon Plugin up to 1.7 on WordPress cetitle code injection
9 months ago
A vulnerability was found in KD Coming Soon Plugin up to 1.7 on WordPress. It has been declared as critical. This vulnerability affects unknown code. The manipulation of the argument cetitle leads to code injection.
This vulnerability was named CVE-2023-46615. The attack can be initiated remotely. There is no exploit available.
vuldb.com
CVE-2024-21490 | angular 1.3.0 ng-srcset Directive redos (SNYK-JS-ANGULAR-6091113)
9 months ago
A vulnerability has been found in angular 1.3.0 and classified as problematic. This vulnerability affects unknown code of the component ng-srcset Directive Handler. The manipulation leads to inefficient regular expression complexity. NOTE: This vulnerability only affects products that are no longer supported by the maintainer.
This vulnerability was named CVE-2024-21490. The attack can be initiated remotely. There is no exploit available.
vuldb.com
CVE-2023-51370 | NinjaTeam WP Chat App Plugin up to 3.4.4 on WordPress cross site scripting
9 months ago
A vulnerability classified as problematic was found in NinjaTeam WP Chat App Plugin up to 3.4.4 on WordPress. This vulnerability affects unknown code. The manipulation leads to cross site scripting.
This vulnerability was named CVE-2023-51370. The attack can be initiated remotely. There is no exploit available.
vuldb.com
CVE-2024-1439 | Moodle LMS up to 4.2 access control
9 months ago
A vulnerability, which was classified as critical, was found in Moodle LMS up to 4.2. This affects an unknown part. The manipulation leads to improper access controls.
This vulnerability is uniquely identified as CVE-2024-1439. It is possible to initiate the attack remotely. There is no exploit available.
vuldb.com
CVE-2024-24875 | Yannick Lefebvre Link Library Plugin up to 7.5.13 on WordPress cross-site request forgery
9 months ago
A vulnerability has been found in Yannick Lefebvre Link Library Plugin up to 7.5.13 on WordPress and classified as problematic. This vulnerability affects unknown code. The manipulation leads to cross-site request forgery.
This vulnerability was named CVE-2024-24875. The attack can be initiated remotely. There is no exploit available.
vuldb.com
CVE-2024-24884 | ARI Soft Contact Form 7 Connector Plugin up to 1.2.2 on WordPress cross-site request forgery
9 months ago
A vulnerability was found in ARI Soft Contact Form 7 Connector Plugin up to 1.2.2 on WordPress. It has been classified as problematic. Affected is an unknown function. The manipulation leads to cross-site request forgery.
This vulnerability is traded as CVE-2024-24884. It is possible to launch the attack remotely. There is no exploit available.
vuldb.com
Sarcoma
9 months ago
cohenido
Sarcoma
9 months ago
cohenido
Sarcoma
9 months ago
cohenido
Sarcoma
9 months ago
cohenido
Sarcoma
9 months ago
cohenido
Sarcoma
9 months ago
cohenido
Sarcoma
9 months ago
cohenido
Palo Alto Expedition 多个漏洞(CVE-2024-5910 & CVE-2024-9464 & CVE-2024-9465 & CVE-2024-9463)
9 months ago
Palo Alto Expedition 多个漏洞(CVE-2024-5910 & CVE-2024-9464 & CVE-2024-9465 & CVE-2024-9463)
Modern Enterprise Network Success Is Driven by Pervasive Visibility
9 months ago
Pervasive network visibility is key to success in the modern enterprise network. It allows IT teams to see beyond technical borders across the entire network and its numerous interdependencies. This enables swifter, more efficient incident response for network performance and security issues to optimize user experience...
NETSCOUT