Vulmon
Recent Vulnerabilities
Research Posts
Trends
Blog
About
Contact
Vulmon Alerts
By Relevance
By Risk Score
By Publish Date
vulnerabilities and exploits
(subscribe to this query)
NA
CVE-2023-51633
This vulnerability allows remote attackers to execute arbitrary code on affected installations of Centreon. User interaction is required to exploit this vulnerability. The specific flaw exists within the processing of the sysName OID in SNMP. The issue results from the lack of p...
NA
CVE-2024-27518
An issue in SUPERAntiSyware Professional X 10.0.1262 and 10.0.1264 allows unprivileged malicious users to escalate privileges via a restore of a crafted DLL file into the C:\Program Files\SUPERAntiSpyware folder.
1 Github repository
NA
CVE-2023-46566
Buffer Overflow vulnerability in msoulier tftpy commit 467017b844bf6e31745138a30e2509145b0c529c allows a remote malicious user to cause a denial of service via the parse function in the TftpPacketFactory class.
NA
CVE-2024-28294
Limbas up to v5.2.14 exists to contain a SQL injection vulnerability via the ftid parameter.
NA
CVE-2023-31889
An issue discovered in httpd in ASUS RT-AC51U with firmware version up to and including 3.0.0.4.380.8591 allows local malicious users to cause a denial of service via crafted GET request.
NA
CVE-2024-33350
Directory Traversal vulnerability in TaoCMS v.3.0.2 allows a remote malicious user to execute arbitrary code and obtain sensitive information via the include/model/file.php component.
NA
CVE-2023-46960
Buffer Overflow vulnerability in PyPXE v.1.8.4 allows a remote malicious user to cause a denial of service via the handle function in the tftp module.
NA
CVE-2024-33269
SQL Injection vulnerability in Prestaddons flashsales 1.9.7 and before allows an malicious user to run arbitrary SQL commands via the FsModel::getFlashSales method.
NA
CVE-2024-33272
SQL injection vulnerability in KnowBand for PrestaShop autosuggest prior to 2.0.0 allows an malicious user to run arbitrary SQL commands via the AutosuggestSearchModuleFrontController::initContent(), and AutosuggestSearchModuleFrontController::getKbProducts() components.
NA
CVE-2024-33271
An issue in FME Modules eventsmanager prior to 4.4.0 allows an malicious user to obtain sensitive information from the ps_customer component.
CVSSv2
CVSSv2
CVSSv3
VMScore
Recommendations:
CVE-2022-48654
CVE-2024-2757
authentication bypass
CVE-2024-3194
CVE-2024-33640
CVE-2024-21111
dos
insecure direct object reference
CVE-2024-21345
Vulnerability Notification Service
You don’t have to wait for vulnerability scanning results
Get Started
1
2
3
4
5
6
NEXT »