Search Results (369514 CVEs found)

CVE Vendors Products Updated CVSS v3.1
CVE-2023-27844 1 Litextension 1 Leurlrewrite 2025-02-06 9.8 Critical
SQL injection vulnerability found in PrestaShopleurlrewrite v.1.0 and before allow a remote attacker to gain privileges via the Dispatcher::getController component.
CVE-2023-27755 1 71note 1 Go-bbs 2025-02-06 8.8 High
go-bbs v1 was discovered to contain an arbitrary file download vulnerability via the component /api/v1/download.
CVE-2023-27733 1 Dedecms 1 Dedecms 2025-02-06 7.2 High
DedeCMS v5.7.106 was discovered to contain a SQL injection vulnerability via the component /dede/sys_sql_query.php.
CVE-2023-27705 1 Apng Optimizer Project 1 Apng Optimizer 2025-02-06 7.5 High
APNG_Optimizer v1.4 was discovered to contain a buffer overflow via the component /apngopt/ubuntu.png.
CVE-2023-27092 1 Jbootfly Project 1 Jbootfly 2025-02-06 6.1 Medium
Cross Site Scripting vulnerability found in Jbootfly allows attackers to obtain sensitive information via the username parameter.
CVE-2023-25010 1 Autodesk 1 Maya Usd 2025-02-06 7.8 High
A malicious actor may convince a victim to open a malicious USD file that may trigger an uninitialized variable which may result in code execution.
CVE-2023-24503 1 Electra-air 1 Smart Kit For Split Ac 2025-02-06 7.5 High
Electra Central AC unit – Adjacent attacker may cause the unit to load unauthorized FW.
CVE-2023-24502 1 Electra-air 2 Central Ac Unit, Central Ac Unit Firmware 2025-02-06 7.5 High
Electra Central AC unit – The unit opens an AP with an easily calculated password.
CVE-2023-24500 1 Electra-air 2 Central Ac Unit, Central Ac Unit Firmware 2025-02-06 7.5 High
Electra Central AC unit – Adjacent attacker may cause the unit to load unauthorized FW.
CVE-2023-1473 1 Metaslider 1 Slider\, Gallery\, And Carousel 2025-02-06 6.1 Medium
The Slider, Gallery, and Carousel by MetaSlider WordPress plugin 3.29.0 does not sanitise and escape a parameter before outputting it back in the page, leading to a Reflected Cross-Site Scripting which could be used against high privilege users such as admin
CVE-2023-1427 1 10web 1 Photo Gallery 2025-02-06 4.9 Medium
- The Photo Gallery by 10Web WordPress plugin before 1.8.15 did not ensure that uploaded files are kept inside its uploads folder, allowing high privilege users to put images anywhere in the filesystem via a path traversal vector.
CVE-2023-1371 1 W4 Post List Project 1 W4 Post List 2025-02-06 6.5 Medium
The W4 Post List WordPress plugin before 2.4.6 does not ensure that password protected posts can be accessed before displaying their content, which could allow any authenticated users to access them
CVE-2023-1282 1 Codedropz 1 Drag And Drop Multiple File Upload - Contact Form 7 2025-02-06 6.1 Medium
The Drag and Drop Multiple File Upload PRO - Contact Form 7 Standard WordPress plugin before 2.11.1 and Drag and Drop Multiple File Upload PRO - Contact Form 7 with Remote Storage Integrations WordPress plugin before 5.0.6.4 do not sanitise and escape a parameter before outputting it back in the page, leading to a Reflected Cross-Site Scripting which could be used against high-privilege users such as admins.
CVE-2023-0889 1 Metagauss 1 Themeflection Numbers 2025-02-06 6.5 Medium
Themeflection Numbers WordPress plugin before 2.0.1 does not have authorisation and CSRF check in an AJAX action, and does not ensure that the options to be updated belong to the plugin. As a result, it could allow any authenticated users, such as subscriber, to update arbitrary blog options, such as enabling registration and set the default role to administrator
CVE-2023-0277 1 Wc Fields Factory Project 1 Wc Fields Factory 2025-02-06 7.2 High
The WC Fields Factory WordPress plugin through 4.1.5 does not properly sanitise and escape a parameter before using it in a SQL statement, leading to a SQL injection exploitable by high privilege users such as admin
CVE-2022-47522 2 Ieee, Sonicwall 59 Ieee 802.11, Soho 250, Soho 250 Firmware and 56 more 2025-02-06 7.5 High
The IEEE 802.11 specifications through 802.11ax allow physically proximate attackers to intercept (possibly cleartext) target-destined frames by spoofing a target's MAC address, sending Power Save frames to the access point, and then sending other frames to the access point (such as authentication frames or re-association frames) to remove the target's original security context. This behavior occurs because the specifications do not require an access point to purge its transmit queue before removing a client's pairwise encryption key.
CVE-2022-46640 1 Nanoleaf 1 Nanoleaf Desktop 2025-02-06 9.8 Critical
Nanoleaf Desktop App before v1.3.1 was discovered to contain a command injection vulnerability which is exploited via a crafted HTTP request.
CVE-2022-45030 1 Rconfig 1 Rconfig 2025-02-06 8.8 High
A SQL injection vulnerability in rConfig 3.9.7 exists via lib/ajaxHandlers/ajaxCompareGetCmdDates.php?command= (this may interact with secure-file-priv).
CVE-2022-43696 1 Open-xchange 1 Ox App Suite 2025-02-06 6.1 Medium
OX App Suite before 7.10.6-rev20 allows XSS via upsell ads.
CVE-2022-2525 1 Janeczku 1 Calibre-web 2025-02-06 9.8 Critical
Improper Restriction of Excessive Authentication Attempts in GitHub repository janeczku/calibre-web prior to 0.6.20.