Latest CVE Feed
-
8.8
HIGHCVE-2024-36035
Zohocorp ManageEngine ADAudit Plus versions below 8003 are vulnerable to authenticated SQL Injection in user session recording.... Read more
Affected Products : manageengine_adaudit_plus- Published: Aug. 12, 2024
- Modified: Aug. 16, 2024
-
8.8
HIGHCVE-2024-5487
Zohocorp ManageEngine ADAudit Plus versions below 8110 are vulnerable to authenticated SQL Injection in attack surface analyzer's export option.... Read more
Affected Products : manageengine_adaudit_plus- Published: Aug. 12, 2024
- Modified: Aug. 16, 2024
-
8.8
HIGHCVE-2024-36034
Zohocorp ManageEngine ADAudit Plus versions below 8003 are vulnerable to authenticated SQL Injection in aggregate reports' search option.... Read more
Affected Products : manageengine_adaudit_plus- Published: Aug. 12, 2024
- Modified: Aug. 16, 2024
-
9.8
CRITICALCVE-2024-42360
SequenceServer lets you rapidly set up a BLAST+ server with an intuitive user interface for personal or group use. Several HTTP endpoints did not properly sanitize user input and/or query parameters. This could be exploited to inject and run unwanted shel... Read more
Affected Products : sequenceserver- Published: Aug. 14, 2024
- Modified: Aug. 16, 2024
-
8.8
HIGHCVE-2024-38180
Windows SmartScreen Security Feature Bypass Vulnerability... Read more
Affected Products : windows_server_2008 windows_server_2012 windows_server_2016 windows_server_2019 windows_10_1607 windows_10_1809 windows_10_21h2 windows_10_22h2 windows_server_2022 windows_11_21h2 +10 more products- Published: Aug. 13, 2024
- Modified: Aug. 16, 2024
-
7.8
HIGHCVE-2024-38177
Windows App Installer Spoofing Vulnerability... Read more
Affected Products : app_installer- Published: Aug. 13, 2024
- Modified: Aug. 16, 2024
-
6.7
MEDIUM- Published: Aug. 13, 2024
- Modified: Aug. 16, 2024
-
7.8
HIGH- Published: Aug. 13, 2024
- Modified: Aug. 16, 2024
-
7.8
HIGH- Published: Aug. 13, 2024
- Modified: Aug. 16, 2024
-
7.1
HIGH- Published: Aug. 13, 2024
- Modified: Aug. 16, 2024
-
7.8
HIGH- Published: Aug. 13, 2024
- Modified: Aug. 16, 2024
-
7.5
HIGH- Published: Aug. 13, 2024
- Modified: Aug. 16, 2024
-
6.5
MEDIUM- Published: Aug. 13, 2024
- Modified: Aug. 16, 2024
-
6.5
MEDIUM- Published: Aug. 13, 2024
- Modified: Aug. 16, 2024
-
7.8
HIGHCVE-2024-38215
Windows Cloud Files Mini Filter Driver Elevation of Privilege Vulnerability... Read more
Affected Products : windows_server_2019 windows_10_1809 windows_10_21h2 windows_10_22h2 windows_server_2022 windows_11_21h2 windows_11_22h2 windows windows_11_23h2 windows_server_2022_23h2 +2 more products- Published: Aug. 13, 2024
- Modified: Aug. 16, 2024
-
7.5
HIGHCVE-2024-42981
Tenda FH1206 v02.03.01.35 was discovered to contain a stack overflow via the delno parameter in the fromPptpUserSetting function. This vulnerability allows attackers to cause a Denial of Service (DoS) via a crafted POST request.... Read more
- Published: Aug. 15, 2024
- Modified: Aug. 16, 2024
-
7.5
HIGHCVE-2024-42980
Tenda FH1206 v02.03.01.35 was discovered to contain a stack overflow via the page parameter in the frmL7ImForm function. This vulnerability allows attackers to cause a Denial of Service (DoS) via a crafted POST request.... Read more
- Published: Aug. 15, 2024
- Modified: Aug. 16, 2024
-
7.5
HIGHCVE-2024-42969
Tenda FH1206 v02.03.01.35 was discovered to contain a stack overflow via the page parameter in the fromSafeUrlFilter function. This vulnerability allows attackers to cause a Denial of Service (DoS) via a crafted POST request.... Read more
- Published: Aug. 15, 2024
- Modified: Aug. 16, 2024
-
7.5
HIGHCVE-2024-42951
Tenda FH1201 v1.2.0.14 (408) was discovered to contain a stack overflow via the mit_pptpusrpw parameter in the fromWizardHandle function. This vulnerability allows attackers to cause a Denial of Service (DoS) via a crafted POST request.... Read more
- Published: Aug. 15, 2024
- Modified: Aug. 16, 2024
-
7.5
HIGHCVE-2024-42943
Tenda FH1201 v1.2.0.14 (408) was discovered to contain a stack overflow via the PPPOEPassword parameter in the fromAdvSetWan function. This vulnerability allows attackers to cause a Denial of Service (DoS) via a crafted POST request.... Read more
- Published: Aug. 15, 2024
- Modified: Aug. 16, 2024