CVE-2024-49222 – Amento Tech Pvt Ltd WPGuppy Object Injection Vulnerability
The following table lists the changes that have been made to the CVE-2024-49222 vulnerability over time. Vulnerability history details can be useful for understanding the evolution of a vulnerability, and for identifying the most recent changes that may impact the vulnerability’s severity, exploitability, or other characteristics. New CVE Received by [email protected] Jan. 07, 2025 Action […]
CVE-2024-49249 – SMSA Express SMSA Shipping Path Traversal Vulnerability
The following table lists the changes that have been made to the CVE-2024-49249 vulnerability over time. Vulnerability history details can be useful for understanding the evolution of a vulnerability, and for identifying the most recent changes that may impact the vulnerability’s severity, exploitability, or other characteristics. New CVE Received by [email protected] Jan. 07, 2025 Action […]
CVE-2024-43243 – ThemeGlow JobBoard Unrestricted File Upload Vulnerability
The following table lists the changes that have been made to the CVE-2024-43243 vulnerability over time. Vulnerability history details can be useful for understanding the evolution of a vulnerability, and for identifying the most recent changes that may impact the vulnerability’s severity, exploitability, or other characteristics. New CVE Received by [email protected] Jan. 07, 2025 Action […]
CVE-2024-12719 – WordPress File Upload Plugin Directory Traversalromise
CVE ID : CVE-2024-12719 Published : Jan. 7, 2025, 10:15 a.m. | 34 minutes ago Description : The WordPress File Upload plugin for WordPress is vulnerable to unauthorized access of data due to a missing capability check on the ‘wfu_ajax_action_read_subfolders’ function in all versions up to, and including, 4.24.15. This makes it possible for authenticated attackers, […]
CVE-2024-12699 – WordPress Service Box Plugin Stored Cross-Site Scripting Vulnerability
CVE ID : CVE-2024-12699 Published : Jan. 7, 2025, 10:15 a.m. | 34 minutes ago Description : The Service Box plugin for WordPress is vulnerable to Stored Cross-Site Scripting in all versions up to, and including, 1.9 due to insufficient input sanitization and output escaping. This makes it possible for authenticated attackers, with Contributor-level access and […]
CVE-2024-12152 – MIPL WC Multisite Sync Directory Traversal Vulnerability
CVE ID : CVE-2024-12152 Published : Jan. 7, 2025, 10:15 a.m. | 34 minutes ago Description : The MIPL WC Multisite Sync plugin for WordPress is vulnerable to Directory Traversal in all versions up to, and including, 1.1.5 via the ‘mipl_wc_sync_download_log’ action. This makes it possible for unauthenticated attackers to read the contents of arbitrary files […]
New EAGERBEE Variant Targets ISPs and Governments with Advanced Backdoor Capabilities
New EAGERBEE Variant Targets ISPs and Governments with Advanced Backdoor Capabilities Internet service providers (ISPs) and governmental entities in the Middle East have been targeted using an updated variant of the EAGERBEE malware framework. The new variant of EAGERBEE (aka Thumtais) … Read more Published Date: Jan 07, 2025 (1 hour, 4 minutes ago) Vulnerabilities has been […]
The Overlooked Risks of Open-Source Software in Industrial Security
The Overlooked Risks of Open-Source Software in Industrial Security Open-source software (OSS) has become an indispensable component in many industrial environments. Just last year, 95% of companies said they increased or maintained their use of OSS. According to the … Read more Published Date: Jan 07, 2025 (1 hour, 9 minutes ago) Vulnerabilities has been mentioned in this […]
CISA: No Wider Federal Impact from Treasury Cyber Attack, Investigation Ongoing
CISA: No Wider Federal Impact from Treasury Cyber Attack, Investigation Ongoing The U.S. Cybersecurity and Infrastructure Security Agency (CISA) on Monday said there are no indications that the cyber attack targeting the Treasury Department impacted other federal agencies. The ag … Read more Published Date: Jan 07, 2025 (2 hours, 7 minutes ago) Vulnerabilities has been mentioned […]
CVE-2024-47398 – OpenHarmony Boot Problematic OUT-of-Bounds Write
The following table lists the changes that have been made to the CVE-2024-47398 vulnerability over time. Vulnerability history details can be useful for understanding the evolution of a vulnerability, and for identifying the most recent changes that may impact the vulnerability’s severity, exploitability, or other characteristics. New CVE Received by [email protected] Jan. 07, 2025 Action […]