CVE Catalog
Browse the latest Common Vulnerabilities and Exposures (CVEs) with CVSS scores, affected products, and next-gen risk scores.
PHPGurukul Online Shopping Portal SQL Injection Vulnerability in Track Orders Component
A SQL injection vulnerability has been identified in the PHPGurukul Online Shopping Portal version 2.1, specifically within the track-orders.php file. This vulnerability allows remote attackers to execute arbitrary SQL commands by injecting payloads into the orderid POST request parameter. The issue arises from inadequate input validation, enabling attackers to manipulate SQL queries and potentially execute malicious code on the server.
FeMiner WMS Directory Traversal Vulnerability in databak.php Component
A directory traversal vulnerability has been identified in FeMiner WMS version 1.0. This vulnerability allows remote attackers to access sensitive information by exploiting the databak.php component. The issue arises from improper handling of file paths, enabling attackers to traverse directories and read arbitrary files, such as the passwd file.
FeMiner WMS SQL Injection Vulnerability
A SQL injection vulnerability has been identified in FeMiner WMS version 1.0. This vulnerability allows remote attackers to access sensitive information by injecting malicious SQL into the 'date1', 'date2', and 'id' parameters of the 'inquire_inout_receipt.php' script.
FeMiner WMS SQL Injection Vulnerability in inquire_storage_item.php
A SQL injection vulnerability has been identified in FeMiner WMS version 1.0. This vulnerability allows remote attackers to access sensitive information by injecting malicious SQL into the 'itemid' parameter of the 'inquire_storage_item.php' file.
FeMiner WMS SQL Injection Vulnerability in inquire_inout_item.php Component
A SQL injection vulnerability has been identified in FeMiner WMS version 1.0. This vulnerability allows remote attackers to access sensitive information by injecting malicious SQL into the 'id' parameter of the 'inquire_inout_item.php' component. The vulnerability arises from improper input validation, which allows attackers to manipulate SQL queries and potentially extract data from the database.
Hoosk CMS SQL Injection Vulnerability in Install Component
A SQL injection vulnerability exists in Hoosk CMS version 1.7.1, specifically within the install index.php component. This vulnerability allows remote attackers to manipulate SQL queries and potentially access sensitive information from the database. The issue arises because the siteName parameter is directly appended to the SQL statement without proper validation or sanitization.
Hoosk CMS Cross-Site Scripting Vulnerability
A cross-site scripting (XSS) vulnerability exists in Hoosk CMS version 1.7.1, specifically within the '/install/index.php' component. This issue allows remote attackers to inject malicious scripts that could be executed in the context of the user's browser.
HooskCMS Cross-Site Scripting Vulnerability Allowing Denial-of-Service
A cross-site scripting (XSS) vulnerability has been identified in HooskCMS version 1.8. This vulnerability allows remote attackers to cause a denial-of-service by exploiting the custom Link title and Title parameters. The issue occurs on the editing navigation page when creating or modifying navigation items.
Label Studio SDK Path Traversal Vulnerability Allowing Arbitrary File Reads
A path traversal vulnerability has been identified in Label Studio SDK versions prior to 1.0.10. This vulnerability allows unauthorized access to files outside the intended directory structure, particularly during the export of projects in VOC, COCO, and YOLO formats. The issue arises because the export functionalities do not properly validate file paths when processing image references, enabling attackers to exploit the vulnerability by injecting path traversal sequences. This vulnerability requires authentication and could lead to the exposure of sensitive information such as configuration files, credentials, and other confidential data.
eLabFTW Incorrect Input Validation Vulnerability Leading to Sensitive Information Disclosure and Potential Privilege Escalation
A vulnerability in eLabFTW, an open-source electronic lab notebook, prior to version 5.1.15, allows authenticated users to read sensitive information from the database, including login tokens. This incorrect input validation could lead to privilege escalation, especially if cookies are enabled, which is the default setting. Users are advised to upgrade to eLabFTW version 5.1.15, the first version containing the patch. No workarounds are available.
GitHub CLI Artifact Attestation Verification Exit Code Mismanagement Vulnerability
A vulnerability exists in GitHub CLI's artifact attestation verification command, specifically in versions 2.49.0 prior to 2.67.0. Under certain conditions, the command `gh attestation verify` incorrectly returns a zero exit status when no matching attestations are found. This misrepresentation can lead users to believe that an attestation has been successfully verified, when in fact it has not. The issue arises when an artifact's attestation predicate type differs from the one specified in the command. Users relying on the exit code for verification may inadvertently deploy malicious artifacts in systems that use these exit codes to control deployment processes.
GoodWe GW1500-XS Hard-Coded Credentials Vulnerability Allowing Unauthorized Web Interface Access
A vulnerability exists in the GoodWe GW1500-XS inverter, specifically in version 1.1.2.1, due to hard-coded credentials in the Wi-Fi BOX. This flaw allows anyone in physical proximity to the device to access the inverter's web interface over Wi-Fi. Through this interface, an individual could modify the inverter's network settings or restart the device.
IXON IXrouter IX2400 Hardcoded Root Credentials Vulnerability
A vulnerability exists in the IXON B.V. IXrouter IX2400 Industrial Edge Gateway running version 3.0, due to hardcoded root credentials embedded in the non-volatile flash memory. This issue allows physically proximate attackers to extract the credentials and gain root access via UART or an undocumented SSH service.
IBM QRadar SIEM Cross-Site Scripting Vulnerability
A cross-site scripting vulnerability has been identified in IBM QRadar SIEM version 7.5 prior to 7.5.0 UP11. This issue allows a privileged user to inject arbitrary JavaScript into the Web UI, potentially altering functionality and leading to credential disclosure within a trusted session.
D-Link DIR-853 Stack-Based Buffer Overflow Vulnerability in QuickVPN Settings Module
A stack-based buffer overflow vulnerability has been identified in the D-Link DIR-853 A1 router running firmware 1.20B07. The issue arises in the SetQuickVPNSettings module, specifically through the Password parameter.
Orbe ONetView Roteador Privilege Escalation Vulnerability
A privilege escalation vulnerability has been identified in the Orbe ONetView Roteador Onet-1200, specifically in the version Orbe 1680210096. This vulnerability allows remote attackers to escalate privileges by manipulating the server's response from a status code 500 to a status code 200.
Arcadyan Livebox Fibra GPON Link Manipulation Vulnerability
A vulnerability exists in the Arcadyan Livebox Fibra PRV3399B_B_LT router, allowing remote or local attackers to unauthenticated modify the GPON link value via the /firstconnection.cgi endpoint. This manipulation disrupts internet service by causing a denial-of-service condition. The vulnerability can be exploited by accessing the /cgi/cgi_authpage.js endpoint to extract the GPON password, which is then used to craft a request that alters the GPON link, disconnecting the router from the internet.
Alvaria Unified IP Unified Director Unauthenticated File Upload Vulnerability Allowing Arbitrary Code Execution
A vulnerability allowing insecure file uploads has been identified in Alvaria Unified IP Unified Director versions prior to 7.4 SP2. This issue allows remote attackers to upload arbitrary files, including malicious JSP files, to the server without authentication. The vulnerability is present in the ProcessUploadFromURL.jsp component, where the source and filename parameters can be exploited to execute arbitrary code.
D-Link DIR-853 A1 Stack-Based Buffer Overflow Vulnerability in QuickVPN Settings Module
A stack-based buffer overflow vulnerability has been identified in the D-Link DIR-853 A1 router, specifically in firmware version 1.20B07. The vulnerability arises in the SetQuickVPNSettings module, where the PSK parameter is processed.
IBM Power Hardware Management Console Directory Traversal Vulnerability
A directory traversal vulnerability has been identified in IBM Power Hardware Management Console (HMC) version 10.3.1050.0. This vulnerability could allow an authenticated user to traverse directories on the system. By sending a specially crafted URL request that includes 'dot dot' sequences, an attacker could potentially access arbitrary files on the system.
IBM i Database Access Denial-of-Service Vulnerability
A denial-of-service vulnerability has been identified in IBM i versions 7.4 and 7.5. This issue arises from a bypass of database capabilities restriction checks, allowing a privileged actor to remove or disrupt database infrastructure files. Such actions can cause incorrect behavior in software products that depend on the database.
WatchGuard Fireware OS Stored Cross-Site Scripting Vulnerability in Blocked Sites List
A stored cross-site scripting vulnerability has been identified in WatchGuard Fireware OS. This issue allows an authenticated administrator to inject and execute arbitrary JavaScript in the management interface of another user. The vulnerability arises from improper input neutralization during web page generation, specifically via the Blocked Sites list. It affects Fireware OS versions 12.0 prior to 12.5.12+701324, as well as versions 12.6 through 12.11.
WatchGuard Fireware OS Stored Cross-Site Scripting Vulnerability in SpamBlocker Module
A stored cross-site scripting vulnerability has been identified in WatchGuard Fireware OS versions 12.0 prior to 12.5.12+701324 and 12.6 prior to 12.11. This vulnerability allows an authenticated administrator to inject and execute arbitrary JavaScript in the management interface, potentially affecting other users.
WatchGuard Fireware OS Host Header Injection Vulnerability
A vulnerability allowing improper input validation has been identified in WatchGuard Fireware OS versions 12.0 through 12.11. This vulnerability enables an attacker with network access to manipulate the HTTP Host header in requests to the Web UI. Exploitation could lead to redirecting users to malicious websites, poisoning the web cache, or injecting harmful JavaScript into responses from the Web UI.
Apache EventMesh Hessian Deserialization Vulnerability in eventmesh-meta-raft Plugin Allowing Remote Code Execution
A deserialization vulnerability has been identified in the eventmesh-meta-raft plugin of Apache EventMesh, specifically in the master branch without a released version. This vulnerability is present on Windows, Linux, and macOS platforms. It allows attackers to send controlled messages that can be executed remotely, exploiting Hessian deserialization through the RPC protocol.
PTT Inc. HGS Mobile App Exposed Dangerous Method Vulnerability Allowing User Variable Manipulation
A vulnerability allowing the manipulation of user-controlled variables has been identified in the PTT Inc. HGS Mobile App, affecting versions prior to 6.5.0. This issue is categorized as an Exposed Dangerous Method or Function vulnerability.
Xylus Themes WP Event Aggregator Reflected Cross-Site Scripting Vulnerability
A reflected cross-site scripting vulnerability has been identified in the Xylus Themes WP Event Aggregator plugin, affecting versions through 1.8.2. This vulnerability arises from improper input sanitization during web page generation, allowing attackers to inject malicious scripts that could be executed when users visit the affected site.
Wow-Company WP Coder Plugin Cross-Site Request Forgery Vulnerability Allowing Cross-Site Scripting
A Cross-Site Request Forgery (CSRF) vulnerability has been identified in the Wow-Company WP Coder plugin, affecting versions through 3.6. This vulnerability allows for Cross-Site Scripting (XSS) attacks. The issue arises from the plugin's insufficient protection against CSRF, which could enable attackers to manipulate users with higher privileges into performing actions that could lead to XSS vulnerabilities.
WordPress Bulk Menu Edit Plugin Missing Authorization Vulnerability Allowing Access Control Bypass
A missing authorization vulnerability has been identified in the WordPress Bulk Menu Edit plugin, specifically in versions through 1.3. This vulnerability allows unprivileged users to exploit incorrectly configured access control security levels, potentially leading to unauthorized actions.
WP Mailster Reflected Cross-Site Scripting Vulnerability
A reflected cross-site scripting vulnerability has been identified in the WP Mailster WordPress plugin, affecting versions through 1.8.20.0. This issue arises from improper input sanitization during web page generation, allowing attackers to inject malicious scripts that could be executed when users visit the affected site.
WordPress Better WishList API Stored Cross-Site Scripting Vulnerability
A stored cross-site scripting vulnerability has been identified in the WordPress Better WishList API plugin, affecting versions through 1.1.3. This issue arises from improper input sanitization during web page generation, allowing malicious scripts to be injected and executed when users visit the site.
AcyMailing SMTP Newsletter Reflected Cross-Site Scripting Vulnerability
A reflected cross-site scripting vulnerability has been identified in the AcyMailing SMTP Newsletter plugin for WordPress, affecting versions prior to 9.11.1. This vulnerability allows for improper neutralization of input during web page generation, enabling attackers to inject malicious scripts that could be executed when users visit the affected site.
UIUX Lab Uix Page Builder Reflected Cross-Site Scripting Vulnerability
A reflected cross-site scripting vulnerability has been identified in the UIUX Lab Uix Page Builder WordPress plugin, affecting versions through 1.7.3. This vulnerability arises from improper input sanitization during web page generation, allowing attackers to inject malicious scripts that are executed when users visit the affected page.
Fatcatapps Analytics Cat Reflected Cross-Site Scripting Vulnerability
A reflected cross-site scripting vulnerability has been identified in the Fatcatapps Analytics Cat WordPress plugin, affecting versions through 1.1.2. This issue allows attackers to inject malicious scripts that could be executed when users visit the affected site.
agileLogix Post Timeline Reflected Cross-Site Scripting Vulnerability
A reflected cross-site scripting vulnerability has been identified in the agileLogix Post Timeline WordPress plugin, affecting versions through 2.3.9. This issue arises from improper input sanitization during web page generation, allowing attackers to inject malicious scripts that could be executed when users visit the affected page.
Northern Beaches Websites IdeaPush Missing Authorization Vulnerability Allowing Access Control Exploitation
A broken access control vulnerability has been identified in the Northern Beaches Websites IdeaPush plugin for WordPress, affecting versions through 8.71. This vulnerability arises from missing authorization checks, which can be exploited to manipulate access control security levels improperly.
SysBasics Customize My Account for WooCommerce Reflected Cross-Site Scripting Vulnerability
A reflected cross-site scripting vulnerability has been identified in the SysBasics Customize My Account for WooCommerce plugin, affecting versions through 2.8.22. This vulnerability arises from improper input sanitization during web page generation, allowing attackers to inject malicious scripts that could be executed when users visit the affected site.
WP Mailster Sensitive Data Exposure Vulnerability
A vulnerability allowing the insertion of sensitive information into sent data has been identified in the WP Mailster plugin for WordPress. This issue affects versions through 1.8.16.0. The vulnerability could allow unauthorized retrieval of embedded sensitive data, which is typically not accessible to regular users.
WordPress Intro Tour Tutorial DeepPresentation Reflected Cross-Site Scripting Vulnerability
A reflected cross-site scripting vulnerability has been identified in the WordPress Intro Tour Tutorial DeepPresentation plugin, affecting versions through 6.5.2. This issue arises from improper input sanitization during web page generation, allowing attackers to inject malicious scripts that could be executed when users visit the affected site.
Saleswonder WP2LEADS Plugin Reflected Cross-Site Scripting Vulnerability
A reflected cross-site scripting vulnerability has been identified in the Saleswonder WP2LEADS WordPress plugin, affecting versions through 3.3.3. This vulnerability arises from improper input sanitization during web page generation, allowing attackers to inject malicious scripts that are executed when users visit the affected page.
WordPress Contact Form With Shortcode Reflected Cross-Site Scripting Vulnerability
A reflected cross-site scripting vulnerability has been identified in the WordPress Contact Form With Shortcode plugin, affecting versions through 4.2.5. This vulnerability arises from improper input sanitization during web page generation, allowing attackers to inject malicious scripts that are executed when users visit the affected site.
CRM Perks Reflected Cross-Site Scripting Vulnerability
A reflected cross-site scripting vulnerability has been identified in the CRM Perks WordPress plugin, affecting versions through 1.1.5. This issue allows attackers to inject malicious scripts that are executed when users visit the affected site.
AWcode Toolkit Reflected Cross-Site Scripting Vulnerability
A reflected cross-site scripting vulnerability has been identified in the AWcode Toolkit WordPress plugin, affecting versions through 1.0.14. This issue allows attackers to inject malicious scripts that are executed when users visit the affected site.
WordPress Admin Options Pages Plugin Reflected Cross-Site Scripting Vulnerability
A reflected cross-site scripting vulnerability has been identified in the WordPress Admin Options Pages plugin, affecting versions through 0.9.7. This issue arises from improper input sanitization during web page generation, allowing attackers to inject malicious scripts that could be executed when users visit the affected page.
NotFound Essential WP Real Estate Reflected Cross-Site Scripting Vulnerability
A reflected cross-site scripting vulnerability has been identified in the NotFound Essential WP Real Estate plugin, affecting versions through 1.1.3. This issue arises from improper input sanitization during web page generation, allowing attackers to inject malicious scripts that could be executed when users visit the affected site.
WordPress NoFollow Free Plugin Reflected Cross-Site Scripting Vulnerability
A reflected cross-site scripting vulnerability has been identified in the WordPress NoFollow Free plugin, affecting versions through 1.6.3. This issue arises from improper input sanitization during web page generation, allowing attackers to inject malicious scripts that could be executed when users visit the affected site.
NotFound WordPress Plugin Coronavirus Data Widgets Reflected Cross-Site Scripting Vulnerability
A reflected cross-site scripting vulnerability has been identified in the NotFound WordPress plugin 'Coronavirus (COVID-19) Outbreak Data Widgets', affecting versions through 1.1.1. This vulnerability arises from improper input sanitization during web page generation, allowing attackers to inject malicious scripts that could be executed when users visit the affected site.
WordPress Easy Code Placement Plugin Reflected Cross-Site Scripting Vulnerability
A reflected cross-site scripting vulnerability has been identified in the WordPress Easy Code Placement plugin, affecting versions through 18.11. This issue arises from improper input sanitization during web page generation, allowing attackers to inject malicious scripts that are executed when users visit the affected site.
WordPress URL Shortener WooCommerce Plugin Reflected Cross-Site Scripting Vulnerability
A reflected cross-site scripting vulnerability has been identified in the WordPress URL Shortener, Conversion Tracking, AB Testing, and WooCommerce plugin, affecting versions through 9.0.2. This vulnerability allows for improper neutralization of input during web page generation, enabling the injection of malicious scripts that could be executed when guests visit the site.
NotFound Easy Filter WordPress Plugin Reflected Cross-Site Scripting Vulnerability
A reflected cross-site scripting vulnerability has been identified in the NotFound Easy Filter WordPress plugin, affecting versions through 1.10. This issue arises from improper input sanitization during web page generation, allowing attackers to inject malicious scripts that are executed when users visit the affected site.
