CVE Catalog

Browse the latest Common Vulnerabilities and Exposures (CVEs) with CVSS scores, affected products, and next-gen risk scores.

Jan 22, 2025

NotFound dForms Plugin Reflected Cross-Site Scripting Vulnerability

A reflected cross-site scripting vulnerability has been identified in the NotFound dForms WordPress plugin, affecting versions through 1.0. This issue arises from improper input sanitization during web page generation, allowing attackers to inject malicious scripts that are executed when users visit the affected site.

2.0
Jan 22, 2025

NotFound WordPress Plugin ContentOptin Lite Reflected Cross-Site Scripting Vulnerability

A reflected cross-site scripting vulnerability has been identified in the NotFound WordPress plugin ContentOptin Lite, affecting versions through 1.1. This issue arises from improper input sanitization during web page generation, allowing attackers to inject malicious scripts that are executed when users visit the affected site.

2.0
Jan 22, 2025

Explara Membership Plugin Reflected Cross-Site Scripting Vulnerability

A reflected cross-site scripting vulnerability has been identified in the Explara Membership WordPress plugin, affecting versions through 0.0.7. This issue arises from improper input sanitization during web page generation, allowing attackers to inject malicious scripts that could be executed when users visit the affected site.

2.0
Jan 22, 2025

NotFound Custom CSS Addons Reflected Cross-Site Scripting Vulnerability

A reflected cross-site scripting vulnerability has been identified in the NotFound Custom CSS Addons plugin for WordPress, affecting versions through 1.9.1. This issue arises from improper input sanitization during web page generation, allowing attackers to inject malicious scripts that could be executed when users visit the affected site.

2.0
Jan 22, 2025

NotFound XLSXviewer Path Traversal Vulnerability Allowing Arbitrary File Deletion

A path traversal vulnerability has been identified in the NotFound XLSXviewer WordPress plugin, specifically in versions through 2.1.1. This vulnerability allows for improper limitation of file paths, enabling attackers to traverse directories and potentially delete arbitrary files from the server.

1.7
Jan 22, 2025

WordPress Responsivity Plugin Reflected Cross-Site Scripting Vulnerability

A reflected cross-site scripting vulnerability has been identified in the WordPress Responsivity plugin, specifically in versions through 0.0.6. This issue arises from improper input sanitization during web page generation, allowing attackers to inject malicious scripts that are executed when users visit the affected site.

2.0
Jan 22, 2025

WordPress REAL WordPress Sidebar Plugin Stored Cross-Site Scripting Vulnerability

A stored cross-site scripting vulnerability has been identified in the WordPress REAL WordPress Sidebar plugin, specifically in versions through 0.1. This issue arises from improper input sanitization during web page generation, allowing malicious scripts to be injected and executed when users visit the affected site.

2.5
Jan 22, 2025

Team 118GROUP Agent Missing Authorization Vulnerability Allowing Arbitrary Content Deletion

A missing authorization vulnerability has been identified in the Team 118GROUP Agent plugin for WordPress, affecting versions through 1.6.0. This vulnerability allows exploitation of improperly configured access control security levels, leading to unauthorized deletion of content such as images, posts, or pages.

2.5
Jan 22, 2025

WordPress HyperComments Plugin Reflected Cross-Site Scripting Vulnerability

A reflected cross-site scripting vulnerability has been identified in the WordPress HyperComments plugin, affecting versions through 0.9.6. This issue arises from improper input sanitization during web page generation, allowing attackers to inject malicious scripts that are executed when users visit the affected site.

2.0
Jan 22, 2025

Blrt WP Embed Plugin Reflected Cross-Site Scripting Vulnerability

A reflected cross-site scripting vulnerability has been identified in the Blrt WP Embed WordPress plugin, affecting versions through 1.6.9. This issue arises from improper input sanitization during web page generation, allowing attackers to inject malicious scripts that are executed when users visit the affected site.

2.9
Jan 22, 2025

WordPress WP IMAP Auth Plugin Reflected Cross-Site Scripting Vulnerability

A reflected cross-site scripting vulnerability has been identified in the WordPress WP IMAP Auth plugin, affecting versions through 4.0.1. This issue arises from improper input sanitization during web page generation, allowing attackers to inject malicious scripts that are executed when users visit the affected site.

2.0
Jan 22, 2025

NotFound Customizable Captcha and Contact Us Reflected Cross-Site Scripting Vulnerability

A reflected cross-site scripting vulnerability has been identified in the NotFound Customizable Captcha and Contact Us plugin for WordPress, affecting versions through 1.0.2. This vulnerability arises from improper input sanitization during web page generation, allowing attackers to inject malicious scripts that could be executed when users visit the affected site.

2.0
Jan 22, 2025

WordPress Simple Custom Post Type Custom Field Plugin Reflected Cross-Site Scripting Vulnerability

A reflected cross-site scripting vulnerability has been identified in the WordPress Simple Custom Post Type Custom Field Plugin, affecting versions through 1.0.3. This vulnerability allows for improper neutralization of input during web page generation, enabling the injection of malicious scripts that could be executed when visitors access the affected site.

2.5
Jan 22, 2025

NotFound Translation.Pro WordPress Plugin Reflected Cross-Site Scripting Vulnerability

A reflected cross-site scripting vulnerability has been identified in the NotFound Translation.Pro WordPress plugin, affecting versions through 1.0.0. This issue arises from improper input sanitization during web page generation, allowing attackers to inject malicious scripts that could be executed when users visit the affected site.

2.0
Jan 22, 2025

WordPress WooCommerce Order Search Reflected Cross-Site Scripting Vulnerability

A reflected cross-site scripting vulnerability has been identified in the WordPress WooCommerce Order Search plugin, affecting versions through 1.1.0. This issue arises from improper input sanitization during web page generation, allowing attackers to inject malicious scripts that are executed when users visit the affected page.

2.0
Jan 22, 2025

NotFound Database Sync Missing Authorization Vulnerability Allowing Sensitive Data Exposure

A missing authorization vulnerability in the NotFound Database Sync WordPress plugin, affecting versions through 0.5.1, allows exploitation of improperly configured access control levels. This vulnerability could lead to unauthorized exposure of sensitive data that regular users typically cannot access.

1.7
Jan 22, 2025

WordPress History Timeline Plugin Reflected Cross-Site Scripting Vulnerability

A reflected cross-site scripting vulnerability has been identified in the WordPress History Timeline plugin, affecting versions through 0.7.2. This issue arises from improper input neutralization during web page generation, allowing attackers to inject malicious scripts that could be executed when users visit the affected site.

2.0
Jan 22, 2025

NotFound FWD Slider Reflected Cross-Site Scripting Vulnerability

A reflected cross-site scripting vulnerability has been identified in the NotFound FWD Slider WordPress plugin, affecting versions through 1.0. This issue arises from improper input sanitization during web page generation, allowing attackers to inject malicious scripts that could be executed when users visit the affected site.

2.0
Jan 22, 2025

WordPress Simple Shortcode Buttons Reflected Cross-Site Scripting Vulnerability

A reflected cross-site scripting vulnerability has been identified in the WordPress Simple Shortcode Buttons plugin, affecting versions through 1.3.2. This issue arises from improper input sanitization during web page generation, allowing malicious actors to inject and execute harmful scripts on the site.

2.0
Jan 22, 2025

Senayan Library Management System SLiMS SQL Injection Vulnerability in Circulation Module

A SQL injection vulnerability has been identified in Senayan Library Management System (SLiMS) version 9 Bulian 9.6.1. The issue arises in the circulation module, specifically within the loan form on the admin loan management page. The vulnerability is linked to the tempLoanID parameter, which, if not properly validated, allows authenticated admin users to execute arbitrary SQL queries on the backend database. This could lead to unauthorized access or manipulation of sensitive data.

3.7
Jan 22, 2025

NotFound Mapbox for WP Advanced Reflected Cross-Site Scripting Vulnerability

A reflected cross-site scripting vulnerability has been identified in the NotFound Mapbox for WP Advanced plugin, affecting versions through 1.0.0. This issue arises from improper input sanitization during web page generation, allowing attackers to inject malicious scripts that are executed when users visit the affected site.

2.0
Jan 22, 2025

Keycloak Authentication Bypass Vulnerability Due to Missing LDAP Validation After Password Reset

An authentication bypass vulnerability has been identified in Keycloak. When an Active Directory (AD) user resets their password, Keycloak updates the password without validating the new credentials through an LDAP bind. This oversight allows users with expired or disabled AD accounts to regain access in Keycloak, circumventing AD restrictions. The vulnerability could lead to unauthorized access under certain conditions.

3.8
Jan 22, 2025

Open5GS MME Assertion Failure Vulnerability in S1AP Interface Allowing Denial-of-Service

A denial-of-service vulnerability has been identified in Open5GS MME versions through 2.6.4. The issue arises from an assertion failure that can be remotely triggered by sending a malformed ASN.1 packet over the S1AP interface. Specifically, an attacker can exploit this vulnerability by sending an 'Initial UE Message' that omits the required 'NAS_PDU' field. This exploitation causes the MME to crash repeatedly, disrupting service.

4.7
Jan 22, 2025

Open5GS Reachable Assertion Vulnerability in ogs_kdf_hash_mme Function Allowing Denial-of-Service

A reachable assertion vulnerability has been identified in the ogs_kdf_hash_mme function of Open5GS versions through 2.6.4. This vulnerability allows attackers to cause a denial-of-service (DoS) condition by sending a crafted NAS packet that exploits the assertion. The vulnerability arises because the function does not properly validate the length of the incoming message before processing it, particularly when the length is a multiple of 256 bytes. This oversight can lead to an assertion failure, causing the application to crash.

4.7
Jan 22, 2025

Open5GS Reachable Assertion Vulnerability in mme_ue_find_by_imsi Function Allowing Denial-of-Service

A reachable assertion vulnerability has been identified in the Open5GS 5G core implementation, specifically in versions through 2.6.4. The issue arises in the 'mme_ue_find_by_imsi' function, where a malformed NAS packet can lead to a denial-of-service condition. This vulnerability can be exploited by sending a crafted Initial UE Message that triggers the assertion failure, causing the server to crash.

4.7
Jan 22, 2025

Open5GS MME Reachable Assertion Vulnerability in Uplink NAS Transport Packet Handler

A denial-of-service vulnerability has been identified in Open5GS MME versions through 2.6.4. The issue arises from a reachable assertion in the 'Uplink NAS Transport' packet handler, where a packet lacking the 'MME_UE_S1AP_ID' field causes the application to crash. This vulnerability can be exploited by an attacker who repeatedly sends such packets, leading to a persistent disruption of service.

4.7
Jan 22, 2025

Open5GS MME Reachable Assertion Vulnerability in UE Context Release Request Packet Handling

A denial-of-service vulnerability has been identified in Open5GS MME versions through 2.6.4. The issue arises from a reachable assertion in the 'UE Context Release Request' packet handler. When a packet contains an invalid 'MME_UE_S1AP_ID' field, it triggers a crash in Open5GS. This vulnerability can be exploited by an attacker who repeatedly sends such packets, causing a persistent disruption of service.

3.9
Jan 22, 2025

Open5GS MME Assertion Failure Vulnerability in S1AP Interface Allowing Denial-of-Service

A denial-of-service vulnerability has been identified in Open5GS MME versions through 2.6.4. The issue arises from an assertion failure that can be remotely triggered by sending a malformed ASN.1 packet over the S1AP interface. Specifically, an attacker can send a 'UE Context Modification Failure' message that omits the required 'MME_UE_S1AP_ID' field, causing the MME to crash. This vulnerability disrupts all cellular communications managed by the MME, including voice calls, messaging, and data services.

4.7
Jan 22, 2025

Open5GS MME Assertion Failure Vulnerability via Malformed ASN.1 Packets

A denial-of-service vulnerability has been identified in Open5GS MME versions through 2.6.4. The issue arises from an assertion failure that can be remotely triggered by sending a malformed ASN.1 packet over the S1AP interface. Specifically, an attacker can send a 'UE Context Release Complete' message that omits the required 'MME_UE_S1AP_ID' field. This omission causes the MME to crash, leading to a persistent denial-of-service condition.

4.7
Jan 22, 2025

Open5GS MME Assertion Failure Vulnerability in S1AP Interface Allowing Denial-of-Service

A denial-of-service vulnerability has been identified in Open5GS MME versions through 2.6.4. The issue arises from an assertion failure that can be remotely triggered by sending a malformed ASN.1 packet over the S1AP interface. Specifically, an attacker can send an 'S1Setup Request' message that omits the required 'Supported TAs' field, causing the MME to crash. This vulnerability disrupts cellular communications and could persist until network operators apply a patch.

4.7
Jan 22, 2025

Open5GS MME Assertion Failure Vulnerability in S1AP Interface Allowing Denial-of-Service

A denial-of-service vulnerability has been identified in Open5GS MME versions through 2.6.4. The issue arises from an assertion failure that can be remotely triggered by sending a malformed ASN.1 packet over the S1AP interface. Specifically, an attacker can exploit this vulnerability by sending a 'UE Capability Info Indication' message that omits the required 'MME_UE_S1AP_ID' field. This exploitation causes the MME to crash repeatedly, leading to a persistent disruption of service.

4.7
Jan 22, 2025

Open5GS MME S1AP Interface Denial-of-Service Vulnerability

A denial-of-service vulnerability has been identified in Open5GS MME versions through 2.6.4. The issue arises from an assertion that can be remotely triggered by sending a malformed ASN.1 packet over the S1AP interface. Specifically, an attacker can send an 'S1Setup Request' message that omits the required 'Global eNB ID' field, causing the MME to crash. This exploitation can be repeated, leading to a persistent denial-of-service condition.

4.7
Jan 22, 2025

Open5GS MME Assertion-Related Denial-of-Service Vulnerability via Malformed ASN.1 Packets

A denial-of-service vulnerability has been identified in Open5GS MME versions through 2.6.4. The issue arises from an assertion that can be remotely triggered by sending a malformed 'UE Context Modification Response' message over the S1AP interface. The malformed message can omit a required 'MME_UE_S1AP_ID' field, causing the MME to crash. This vulnerability can be exploited repeatedly, leading to a persistent denial-of-service condition.

4.7
Jan 22, 2025

Open5GS MME Path Switch Request Vulnerability Leading to Denial-of-Service

A denial-of-service vulnerability has been identified in Open5GS MME versions through 2.6.4. The issue arises from an assertion that can be remotely triggered by sending a malformed ASN.1 packet over the S1AP interface. Specifically, an attacker can send a 'Path Switch Request' message that omits the required 'MME_UE_S1AP_ID' field, causing the MME to crash repeatedly.

4.7
Jan 22, 2025

Open5GS MME Assertion Failure Vulnerability in S1AP Interface Allowing Denial-of-Service

A denial-of-service vulnerability has been identified in Open5GS MME versions through 2.6.4. The issue arises from an assertion failure that can be remotely triggered by sending a malformed ASN.1 packet over the S1AP interface. Specifically, an attacker can exploit this vulnerability by sending a 'UE Context Release Request' message that omits the required 'MME_UE_S1AP_ID' field. This exploitation causes the MME to crash, disrupting service.

4.7
Jan 22, 2025

Open5GS MME Assertion Failure Vulnerability via Oversized ASN.1 Packets on S1AP Interface

A vulnerability exists in Open5GS MME versions through 2.6.4, where an assertion can be remotely triggered by sending a sufficiently large ASN.1 packet over the S1AP interface. This oversized packet causes the 'ogs_sctp_recvmsg' routine to enter an unexpected state, leading to a crash and a denial-of-service condition.

4.7
Jan 22, 2025

Open5GS MME Assertion Failure Vulnerability in S1AP Interface Allowing Denial-of-Service

A denial-of-service vulnerability has been identified in Open5GS MME versions through 2.6.4. The issue arises from an assertion failure that can be remotely triggered by sending a malformed ASN.1 packet over the S1AP interface. Specifically, an attacker can exploit this vulnerability by sending an 'Initial UE Message' that omits the required 'PLMN Identity' field. This exploitation causes the MME to crash repeatedly, leading to a persistent disruption of service.

4.7
Jan 22, 2025

Open5GS MME Buffer Overflow Vulnerability via Malformed ASN.1 Packets on S1AP Interface

A buffer overflow vulnerability has been identified in Open5GS MME versions through 2.6.4. This issue arises from an improper handling of ASN.1 packets on the S1AP interface, specifically in the processing of 'Handover Required' messages that lack a mandatory 'MME_UE_S1AP_ID' field. The vulnerability can be exploited remotely, leading to a denial-of-service condition by causing the MME to crash. This disruption can persist until the vulnerability is patched.

4.7
Jan 22, 2025

Open5GS MME Assertion Failure Vulnerability in S1AP Interface Allowing Denial-of-Service

A denial-of-service vulnerability has been identified in Open5GS MME versions through 2.6.4. The issue arises from an assertion failure that can be remotely triggered by sending a malformed ASN.1 packet over the S1AP interface. Specifically, an attacker can exploit this vulnerability by sending an 'eNB Status Transfer' message that omits the required 'MME_UE_S1AP_ID' field. This exploitation causes the MME to crash repeatedly, disrupting service.

4.7
Jan 22, 2025

Open5GS MME Assertion Failure Vulnerability in S1AP Handover Notification Handling

A vulnerability exists in Open5GS MME versions through 2.6.4, where an assertion can be remotely triggered by sending a malformed ASN.1 packet over the S1AP interface. The issue arises when a 'Handover Notification' message is sent without the required 'MME_UE_S1AP_ID' field, causing the MME to crash and leading to a denial-of-service condition.

4.7
Jan 22, 2025

Open5GS MME Buffer Overflow Vulnerability in S1AP ASN.1 Deserialization

A buffer overflow vulnerability has been identified in the Open5GS MME component, specifically in versions through 2.6.4. The issue arises within the S1AP handler's ASN.1 deserialization function, where improper handling of message lengths can lead to memory corruption. This vulnerability causes type confusion in the decoded fields, allowing for invalid parsing and manipulation of memory. An attacker could exploit this vulnerability to crash the MME or potentially execute arbitrary code under certain conditions.

4.8
Jan 22, 2025

Open5GS MME Assertion Failure Vulnerability in S1AP Handover Cancel Message

A denial-of-service vulnerability exists in Open5GS MME versions through 2.6.4. The issue arises from an assertion that can be remotely triggered by sending a malformed ASN.1 packet over the S1AP interface. Specifically, an attacker can send a 'Handover Cancel' message that omits the required 'MME_UE_S1AP_ID' field, causing the MME to crash. This vulnerability can be exploited repeatedly, leading to a persistent disruption of service.

4.7
Jan 22, 2025

Open5GS MME Assertion Failure Vulnerability in S1AP Interface Allowing Denial-of-Service

A denial-of-service vulnerability has been identified in Open5GS MME versions through 2.6.4. The issue arises from an assertion failure that can be remotely triggered by sending a malformed ASN.1 packet over the S1AP interface. Specifically, an attacker can send a 'Handover Request Ack' message that omits the required 'MME_UE_S1AP_ID' field, causing the MME to crash. This vulnerability disrupts cellular communications and could persist until network operators apply a patch.

4.7
Jan 22, 2025

Open5GS MME Assertion Failure Vulnerability in S1AP Interface Allowing Denial-of-Service

A denial-of-service vulnerability has been identified in Open5GS MME versions through 2.6.4. The issue arises from an assertion failure that can be remotely triggered by sending a malformed ASN.1 packet over the S1AP interface. Specifically, an attacker can exploit this vulnerability by sending an 'Initial Context Setup Failure' message that omits the required 'MME_UE_S1AP_ID' field. This exploitation causes the MME to crash, disrupting service.

4.3
Jan 22, 2025

Open5GS MME Assertion Failure Vulnerability in S1AP Interface Allowing Denial-of-Service

A denial-of-service vulnerability has been identified in Open5GS MME versions through 2.6.4. The issue arises from an assertion failure that can be remotely triggered by sending a malformed ASN.1 packet over the S1AP interface. Specifically, an attacker can exploit this vulnerability by sending an 'Initial Context Setup Response' message that omits the required 'MME_UE_S1AP_ID' field. This exploitation causes the MME to crash, disrupting service.

4.7
Jan 22, 2025

Open5GS MME Assertion Failure Vulnerability in S1AP Interface Allowing Denial-of-Service

A denial-of-service vulnerability has been identified in Open5GS MME versions through 2.6.4. The issue arises from an assertion failure that can be remotely triggered by sending a malformed ASN.1 packet over the S1AP interface. Specifically, an attacker can exploit this vulnerability by sending an 'E-RAB Setup Response' message that omits the required 'MME_UE_S1AP_ID' field. This exploitation causes the MME to crash, leading to a persistent disruption of service.

4.7
Jan 22, 2025

Open5GS MME Assertion Failure Vulnerability in S1AP Interface Allowing Denial-of-Service

A denial-of-service vulnerability has been identified in Open5GS MME versions through 2.6.4. The issue arises from an assertion failure that can be remotely triggered by sending a malformed ASN.1 packet over the S1AP interface. Specifically, an attacker can exploit this vulnerability by sending an 'E-RAB Modification Indication' message that omits the required 'MME_UE_S1AP_ID' field. This exploitation causes the MME to crash, disrupting service.

4.7
Jan 22, 2025

NextEPC MME Stack-Based Buffer Overflow Vulnerability in Emergency Number List Decoding

A stack-based buffer overflow vulnerability has been identified in the NextEPC MME version 1.0.1 and prior. This vulnerability arises in the Emergency Number List decoding method, where an attacker can send a NAS message with an oversized Emergency Number List value. The exploitation of this vulnerability allows the attacker to overwrite the stack with arbitrary bytes. Notably, this issue can be exploited by an attacker with a cellphone connection to any base station managed by the MME, without the need for authentication with the LTE core.

3.5
Jan 22, 2025

GNU C Library Buffer Overflow Vulnerability in assert() Function

A buffer overflow vulnerability has been identified in the GNU C Library (glibc) versions 2.13 through 2.40, specifically within the assert() function. When an assertion fails, the library does not allocate sufficient space for the failure message and associated size information. This oversight can lead to a buffer overflow, particularly if the message size aligns with the page size. The vulnerability can be exploited by local attackers, especially in setuid programs that contain reachable assertion failures.

5.5
Jan 22, 2025

GamiPress WordPress Plugin Unauthenticated Arbitrary Shortcode Execution Vulnerability

A vulnerability exists in the GamiPress WordPress plugin, specifically in versions through 7.2.1, allowing for unauthenticated arbitrary shortcode execution. This issue arises because the plugin's 'gamipress_do_shortcode()' function fails to properly validate shortcode arguments before processing them, enabling attackers to execute arbitrary shortcodes on the site.

5.2