Search Results (Refine Search)
Vuln ID | Summary | CVSS Severity |
---|---|---|
CVE-2024-25654 |
Insecure permissions for log files of AVSystem Unified Management Platform (UMP) 23.07.0.16567~LTS allow members (with local access to the UMP application server) to access credentials to authenticate to all services, and to decrypt sensitive data stored in the database. Published: March 18, 2024; 4:15:08 PM -0400 |
V3.x:(not available) V2.0:(not available) |
CVE-2024-21662 |
Argo CD is a declarative, GitOps continuous delivery tool for Kubernetes. Prior to versions 2.8.13, 2.9.9, and 2.10.4, an attacker can effectively bypass the rate limit and brute force protections by exploiting the application's weak cache-based mechanism. This loophole in security can be combined with other vulnerabilities to attack the default admin account. This flaw undermines a patch for CVE-2020-8827 intended to protect against brute-force attacks. The application's brute force protection relies on a cache mechanism that tracks login attempts for each user. This cache is limited to a `defaultMaxCacheSize` of 1000 entries. An attacker can overflow this cache by bombarding it with login attempts for different users, thereby pushing out the admin account's failed attempts and effectively resetting the rate limit for that account. This is a severe vulnerability that enables attackers to perform brute force attacks at an accelerated rate, especially targeting the default admin account. Users should upgrade to version 2.8.13, 2.9.9, or 2.10.4 to receive a patch. Published: March 18, 2024; 3:15:06 PM -0400 |
V3.x:(not available) V2.0:(not available) |
CVE-2024-21661 |
Argo CD is a declarative, GitOps continuous delivery tool for Kubernetes. Prior to versions 2.8.13, 2.9.9, and 2.10.4, an attacker can exploit a critical flaw in the application to initiate a Denial of Service (DoS) attack, rendering the application inoperable and affecting all users. The issue arises from unsafe manipulation of an array in a multi-threaded environment. The vulnerability is rooted in the application's code, where an array is being modified while it is being iterated over. This is a classic programming error but becomes critically unsafe when executed in a multi-threaded environment. When two threads interact with the same array simultaneously, the application crashes. This is a Denial of Service (DoS) vulnerability. Any attacker can crash the application continuously, making it impossible for legitimate users to access the service. The issue is exacerbated because it does not require authentication, widening the pool of potential attackers. Versions 2.8.13, 2.9.9, and 2.10.4 contain a patch for this issue. Published: March 18, 2024; 3:15:06 PM -0400 |
V3.x:(not available) V2.0:(not available) |
CVE-2024-0973 |
The Widget for Social Page Feeds WordPress plugin before 6.4 does not sanitise and escape some of its settings, which could allow high privilege users such as admin to perform Stored Cross-Site Scripting attacks even when the unfiltered_html capability is disallowed (for example in multisite setup) Published: March 18, 2024; 3:15:06 PM -0400 |
V3.x:(not available) V2.0:(not available) |
CVE-2024-0951 |
The Advanced Social Feeds Widget & Shortcode WordPress plugin through 1.7 does not sanitise and escape some of its settings, which could allow high privilege users such as admin to perform Stored Cross-Site Scripting attacks even when the unfiltered_html capability is disallowed (for example in multisite setup) Published: March 18, 2024; 3:15:06 PM -0400 |
V3.x:(not available) V2.0:(not available) |
CVE-2024-0858 |
The Innovs HR WordPress plugin through 1.0.3.4 does not have CSRF checks in some places, which could allow attackers to make logged in users perform unwanted actions via CSRF attacks such as adding them as employees. Published: March 18, 2024; 3:15:06 PM -0400 |
V3.x:(not available) V2.0:(not available) |
CVE-2024-0820 |
The Jobs for WordPress plugin before 2.7.4 does not sanitise and escape some parameters, which could allow users with a role as low as contributor to perform Stored Cross-Site Scripting attacks Published: March 18, 2024; 3:15:06 PM -0400 |
V3.x:(not available) V2.0:(not available) |
CVE-2024-0780 |
The Enjoy Social Feed plugin for WordPress website WordPress plugin through 6.2.2 does not have authorisation when resetting its database, allowing any authenticated users, such as subscriber to perform such action Published: March 18, 2024; 3:15:06 PM -0400 |
V3.x:(not available) V2.0:(not available) |
CVE-2024-0779 |
The Enjoy Social Feed plugin for WordPress website WordPress plugin through 6.2.2 does not have authorisation and CSRF in various function hooked to admin_init, allowing unauthenticated users to call them and unlink arbitrary users Instagram Account for example Published: March 18, 2024; 3:15:06 PM -0400 |
V3.x:(not available) V2.0:(not available) |
CVE-2024-0719 |
The Tabs Shortcode and Widget WordPress plugin through 1.17 does not validate and escape some of its shortcode attributes before outputting them back in a page/post where the shortcode is embed, which could allow users with the contributor role and above to perform Stored Cross-Site Scripting attacks Published: March 18, 2024; 3:15:06 PM -0400 |
V3.x:(not available) V2.0:(not available) |
CVE-2024-0711 |
The Buttons Shortcode and Widget WordPress plugin through 1.16 does not validate and escape some of its shortcode attributes before outputting them back in a page/post where the shortcode is embed, which could allow users with the contributor role and above to perform Stored Cross-Site Scripting attacks. Published: March 18, 2024; 3:15:06 PM -0400 |
V3.x:(not available) V2.0:(not available) |
CVE-2024-0365 |
The Fancy Product Designer WordPress plugin before 6.1.5 does not properly sanitise and escape a parameter before using it in a SQL statement, leading to a SQL injection exploitable by adminstrators. Published: March 18, 2024; 3:15:06 PM -0400 |
V3.x:(not available) V2.0:(not available) |
CVE-2023-7236 |
The Backup Bolt WordPress plugin through 1.3.0 is vulnerable to Information Exposure via the unprotected access of debug logs. This makes it possible for unauthenticated attackers to retrieve the debug log which may contain information like system errors which could contain sensitive information. Published: March 18, 2024; 3:15:06 PM -0400 |
V3.x:(not available) V2.0:(not available) |
CVE-2023-7085 |
The Scalable Vector Graphics (SVG) WordPress plugin through 3.4 does not sanitize uploaded SVG files, which could allow users with a role as low as Author to upload a malicious SVG containing XSS payloads. Published: March 18, 2024; 3:15:06 PM -0400 |
V3.x:(not available) V2.0:(not available) |
CVE-2023-6821 |
The Error Log Viewer by BestWebSoft WordPress plugin before 1.1.3 contains a vulnerability that allows you to read and download PHP logs without authorization Published: March 18, 2024; 3:15:06 PM -0400 |
V3.x:(not available) V2.0:(not available) |
CVE-2023-41334 |
Astropy is a project for astronomy in Python that fosters interoperability between Python astronomy packages. Version 5.3.2 of the Astropy core package is vulnerable to remote code execution due to improper input validation in the `TranformGraph().to_dot_graph` function. A malicious user can provide a command or a script file as a value to the `savelayout` argument, which will be placed as the first value in a list of arguments passed to `subprocess.Popen`. Although an error will be raised, the command or script will be executed successfully. Version 5.3.3 fixes this issue. Published: March 18, 2024; 3:15:05 PM -0400 |
V3.x:(not available) V2.0:(not available) |
CVE-2024-26125 |
Adobe Experience Manager versions 6.5.19 and earlier are affected by a stored Cross-Site Scripting (XSS) vulnerability that could be abused by an attacker to inject malicious scripts into vulnerable form fields. Malicious JavaScript may be executed in a victim’s browser when they browse to the page containing the vulnerable field. Published: March 18, 2024; 2:15:19 PM -0400 |
V3.1: 5.4 MEDIUM V2.0:(not available) |
CVE-2024-26124 |
Adobe Experience Manager versions 6.5.19 and earlier are affected by a stored Cross-Site Scripting (XSS) vulnerability that could be abused by an attacker to inject malicious scripts into vulnerable form fields. Malicious JavaScript may be executed in a victim’s browser when they browse to the page containing the vulnerable field. Published: March 18, 2024; 2:15:19 PM -0400 |
V3.1: 5.4 MEDIUM V2.0:(not available) |
CVE-2024-26120 |
Adobe Experience Manager versions 6.5.19 and earlier are affected by a stored Cross-Site Scripting (XSS) vulnerability that could be abused by an attacker to inject malicious scripts into vulnerable form fields. Malicious JavaScript may be executed in a victim’s browser when they browse to the page containing the vulnerable field. Published: March 18, 2024; 2:15:19 PM -0400 |
V3.1: 5.4 MEDIUM V2.0:(not available) |
CVE-2024-26119 |
Adobe Experience Manager versions 6.5.19 and earlier are affected by an Improper Access Control vulnerability that could result in a Security feature bypass. An attacker could leverage this vulnerability to bypass security measures and gain unauthorized access. Exploitation of this issue does not require user interaction. Published: March 18, 2024; 2:15:19 PM -0400 |
V3.1: 5.3 MEDIUM V2.0:(not available) |