CVE Database

CVE ID Description Severity Published Date Actions
CVE-2024-47943 The firmware upgrade function in the admin web interface of the Rittal IoT Interface & CMC III Proc... 2024-10-15 View Details
CVE-2024-21258 Vulnerability in the Oracle Installed Base product of Oracle E-Business Suite (component: User Inter... MEDIUM 2024-10-15 View Details
CVE-2024-48278 Phpgurukul User Registration & Login and User Management System 3.2 is vulnerable to Cross Site Requ... 2024-10-15 View Details
CVE-2024-21213 Vulnerability in the MySQL Server product of Oracle MySQL (component: InnoDB). Supported versions t... MEDIUM 2024-10-15 View Details
CVE-2024-38139 Improper authentication in Microsoft Dataverse allows an authorized attacker to elevate privileges o... HIGH 2024-10-15 View Details
CVE-2024-9982 AIM LINE Marketing Platform from Esi Technology does not properly validate a specific query paramete... CRITICAL 2024-10-15 View Details
CVE-2024-21257 Vulnerability in the Oracle Hyperion BI+ product of Oracle Hyperion (component: UI and Visualization... LOW 2024-10-15 View Details
CVE-2024-48279 A HTML Injection vulnerability was found in /search-result.php of PHPGurukul User Registration & Log... 2024-10-15 View Details
CVE-2024-21214 Vulnerability in the PeopleSoft Enterprise PeopleTools product of Oracle PeopleSoft (component: Quer... HIGH 2024-10-15 View Details
CVE-2024-45085 IBM WebSphere Application Server 8.5 is vulnerable to a denial of service, under certain configurati... MEDIUM 2024-10-15 View Details
CVE-2024-9981 The ee-class from FormosaSoft does not properly validate a specific page parameter, allowing remote ... 2024-10-15 View Details
CVE-2024-21255 Vulnerability in the PeopleSoft Enterprise PeopleTools product of Oracle PeopleSoft (component: XMLP... 2024-10-15 View Details
CVE-2024-48280 A SQL Injection vulnerability was found in /search-result.php of PHPGurukul User Registration & Logi... 2024-10-15 View Details
CVE-2024-21215 Vulnerability in the Oracle WebLogic Server product of Oracle Fusion Middleware (component: Core). ... HIGH 2024-10-15 View Details
CVE-2024-10004 Opening an external link to an HTTP website when Firefox iOS was previously closed and had an HTTPS ... 2024-10-15 View Details
CVE-2024-9980 The ee-class from FormosaSoft does not properly validate a specific page parameter, allowing remote ... HIGH 2024-10-15 View Details
CVE-2024-21254 Vulnerability in the Oracle BI Publisher product of Oracle Analytics (component: Web Server). Suppo... HIGH 2024-10-15 View Details
CVE-2024-48282 A SQL Injection vulnerability was found in /password-recovery.php of PHPGurukul User Registration & ... 2024-10-15 View Details
CVE-2024-21216 Vulnerability in the Oracle WebLogic Server product of Oracle Fusion Middleware (component: Core). ... 2024-10-15 View Details
CVE-2024-9966 Inappropriate implementation in Navigations in Google Chrome prior to 130.0.6723.58 allowed a remote... 2024-10-15 View Details
CVE-2024-9837 The The AADMY – Add Auto Date Month Year Into Posts plugin for WordPress is vulnerable to arbitrar... HIGH 2024-10-15 View Details
CVE-2024-21253 Vulnerability in the Oracle VM VirtualBox product of Oracle Virtualization (component: Core). Suppo... LOW 2024-10-15 View Details
CVE-2024-48283 Phpgurukul User Registration & Login and User Management System 3.2 is vulnerable to SQL Injection i... 2024-10-15 View Details
CVE-2024-21217 Vulnerability in the Oracle Java SE, Oracle GraalVM for JDK, Oracle GraalVM Enterprise Edition produ... LOW 2024-10-15 View Details
CVE-2024-9965 Insufficient data validation in DevTools in Google Chrome on Windows prior to 130.0.6723.58 allowed ... 2024-10-15 View Details
CVE-2024-9972 Property Management System from ChanGate has a SQL Injection vulnerability, allowing unauthenticated... CRITICAL 2024-10-15 View Details
CVE-2024-21252 Vulnerability in the Oracle Product Hub product of Oracle E-Business Suite (component: Item Catalog)... HIGH 2024-10-15 View Details
CVE-2024-21218 Vulnerability in the MySQL Server product of Oracle MySQL (component: InnoDB). Supported versions t... MEDIUM 2024-10-15 View Details
CVE-2024-9964 Inappropriate implementation in Payments in Google Chrome prior to 130.0.6723.58 allowed a remote at... 2024-10-15 View Details
CVE-2024-46898 SHIRASAGI prior to v1.19.1 processes URLs in HTTP requests improperly, resulting in a path traversal... 2024-10-15 View Details
CVE-2024-21251 Vulnerability in the Java VM component of Oracle Database Server. Supported versions that are affec... LOW 2024-10-15 View Details
CVE-2024-21219 Vulnerability in the MySQL Server product of Oracle MySQL (component: Server: DML). Supported versi... 2024-10-15 View Details
CVE-2024-9963 Insufficient data validation in Downloads in Google Chrome prior to 130.0.6723.58 allowed a remote a... 2024-10-15 View Details
CVE-2024-9944 The WooCommerce plugin for WordPress is vulnerable to HTML Injection in all versions up to, and incl... 2024-10-15 View Details
CVE-2024-21250 Vulnerability in the Oracle Process Manufacturing Product Development product of Oracle E-Business S... HIGH 2024-10-15 View Details
CVE-2024-9962 Inappropriate implementation in Permissions in Google Chrome prior to 130.0.6723.58 allowed a remote... 2024-10-15 View Details
CVE-2024-0129 NVIDIA NeMo contains a vulnerability in SaveRestoreConnector where a user may cause a path traversal... 2024-10-15 View Details
CVE-2024-21249 Vulnerability in the PeopleSoft Enterprise FIN Expenses product of Oracle PeopleSoft (component: Exp... MEDIUM 2024-10-15 View Details
CVE-2024-9961 Use after free in ParcelTracking in Google Chrome on iOS prior to 130.0.6723.58 allowed a remote att... 2024-10-15 View Details
CVE-2024-21535 Versions of the package markdown-to-jsx before 7.4.0 are vulnerable to Cross-site Scripting (XSS) vi... 2024-10-15 View Details
CVE-2024-21248 Vulnerability in the Oracle VM VirtualBox product of Oracle Virtualization (component: Core). Suppo... MEDIUM 2024-10-15 View Details
CVE-2024-21230 Vulnerability in the MySQL Server product of Oracle MySQL (component: Server: Optimizer). Supported... MEDIUM 2024-10-15 View Details
CVE-2024-9960 Use after free in Dawn in Google Chrome prior to 130.0.6723.58 allowed a remote attacker to potentia... 2024-10-15 View Details
CVE-2024-9971 The specific query functionality in the FlowMaster BPM Plus from NewType does not properly restrict ... HIGH 2024-10-15 View Details
CVE-2024-21247 Vulnerability in the MySQL Client product of Oracle MySQL (component: Client: mysqldump). Supported... LOW 2024-10-15 View Details
CVE-2024-21231 Vulnerability in the MySQL Server product of Oracle MySQL (component: Client programs). Supported v... LOW 2024-10-15 View Details
CVE-2024-9959 Use after free in DevTools in Google Chrome prior to 130.0.6723.58 allowed a remote attacker who had... 2024-10-15 View Details
CVE-2024-9970 The FlowMaster BPM Plus system from NewType has a privilege escalation vulnerability. Remote attacke... HIGH 2024-10-15 View Details
CVE-2024-21246 Vulnerability in the Oracle Service Bus product of Oracle Fusion Middleware (component: OSB Core Fun... 2024-10-15 View Details
CVE-2024-21232 Vulnerability in the MySQL Server product of Oracle MySQL (component: Server: Components Services). ... LOW 2024-10-15 View Details