Search Results (348705 CVEs found)

CVE Vendors Products Updated CVSS v3.1
CVE-2023-22586 1 Danfoss 2 Ak-em100, Ak-em100 Firmware 2025-01-09 7.7 High
The Danfoss AK-EM100 web applications allow for Local File Inclusion in the file parameter.
CVE-2023-22582 1 Danfoss 2 Ak-em100, Ak-em100 Firmware 2025-01-09 9 Critical
The Danfoss AK-EM100 web applications allow for Reflected Cross-Site Scripting.
CVE-2023-25913 1 Danfoss 2 Ak-sm 800a, Ak-sm 800a Firmware 2025-01-09 7.5 High
Because of an authentication flaw an attacker would be capable of generating a web report that discloses sensitive information such as internal IP addresses, usernames, store names and other sensitive information.
CVE-2024-5610 2025-01-08 N/A
loading template...
CVE-2023-34258 1 Bmc 1 Patrol 2025-01-08 7.5 High
An issue was discovered in BMC Patrol before 22.1.00. The agent's configuration can be remotely queried. This configuration contains the Patrol account password, encrypted with a default AES key. This account can then be used to achieve remote code execution.
CVE-2023-29551 1 Mozilla 2 Firefox, Focus 2025-01-08 8.8 High
Memory safety bugs present in Firefox 111. Some of these bugs showed evidence of memory corruption and we presume that with enough effort some of these could have been exploited to run arbitrary code. This vulnerability affects Firefox for Android < 112, Firefox < 112, and Focus for Android < 112.
CVE-2023-23824 1 Wp Topbar Project 1 Wp Topbar 2025-01-08 6.7 Medium
Auth. SQL Injection (SQLi) vulnerability in WP-TopBar <= 5.36 versions.
CVE-2022-47615 1 Thimpress 1 Learnpress 2025-01-08 9.3 Critical
Local File Inclusion vulnerability in LearnPress – WordPress LMS Plugin <= 4.1.7.3.2 versions.
CVE-2022-45808 1 Thimpress 1 Learnpress 2025-01-08 9.9 Critical
SQL Injection vulnerability in LearnPress – WordPress LMS Plugin <= 4.1.7.3.2 versions.
CVE-2022-47167 1 Crayon Syntax Highlighter Project 1 Crayon Syntax Highlighter 2025-01-08 5.4 Medium
Cross-Site Request Forgery (CSRF) vulnerability in Aram Kocharyan Crayon Syntax Highlighter plugin <= 2.8.4 versions.
CVE-2022-45376 1 Xootix 1 Side Cart Woocommerce 2025-01-08 4.3 Medium
Cross-Site Request Forgery (CSRF) vulnerability in XootiX Side Cart Woocommerce (Ajax) < 2.1 versions.
CVE-2022-45076 1 Webmat 1 Flexible Elementor Panel 2025-01-08 4.3 Medium
Cross-Site Request Forgery (CSRF) vulnerability in WebMat Flexible Elementor Panel plugin <= 2.3.8 versions.
CVE-2022-44739 1 Thingsforrestaurants 1 Quick Restaurant Reservations 2025-01-08 5.3 Medium
Cross-Site Request Forgery (CSRF) vulnerability in ThingsForRestaurants Quick Restaurant Reservations plugin <= 1.5.4 versions.
CVE-2022-41608 1 Asgaros 1 Asgaros Forum 2025-01-08 5.4 Medium
Cross-Site Request Forgery (CSRF) vulnerability in Thomas Belser Asgaros Forum plugin <= 2.2.0 versions.
CVE-2023-23797 1 Secondlinethemes 1 Auto Youtube Importer 2025-01-08 5.4 Medium
Cross-Site Request Forgery (CSRF) vulnerability in SecondLineThemes Auto YouTube Importer plugin <= 1.0.3 versions.
CVE-2023-25447 1 Inkthemes 1 Colorway 2025-01-08 4.3 Medium
Cross-Site Request Forgery (CSRF) vulnerability in Inkthemescom ColorWay theme <= 4.2.3 versions.
CVE-2023-25448 1 Archivist Project 1 Archivist 2025-01-08 5.4 Medium
Cross-Site Request Forgery (CSRF) vulnerability in Eric Teubert Archivist – Custom Archive Templates plugin <= 1.7.4 versions.
CVE-2023-25472 1 Podlove 1 Podlove Podcast Publisher 2025-01-08 4.3 Medium
Cross-Site Request Forgery (CSRF) vulnerability in Podlove Podlove Podcast Publisher plugin <= 3.8.3 versions.
CVE-2023-25707 1 Vikwp 1 Vikbooking Hotel Booking Engine \& Pms 2025-01-08 6.3 Medium
Cross-Site Request Forgery (CSRF) vulnerability in E4J s.R.L. VikBooking Hotel Booking Engine & PMS plugin <= 1.5.12 versions.
CVE-2023-23706 1 Miniorange 1 Wordpress Social Login And Register \(discord\, Google\, Twitter\, Linkedin\) 2025-01-08 4.3 Medium
Cross-Site Request Forgery (CSRF) vulnerability in miniOrange WordPress Social Login and Register (Discord, Google, Twitter, LinkedIn) plugin <= 7.5.14 versions.