CVE-2024-46433 – Tenda W18E Default Credentials Vulnerability
The following table lists the changes that have been made to the CVE-2024-46433 vulnerability over time. Vulnerability history details can be useful for understanding the evolution of a vulnerability, and for identifying the most recent changes that may impact the vulnerability’s severity, exploitability, or other characteristics. New CVE Received by [email protected] Feb. 10, 2025 Action […]
CVE-2024-46432 – Tenda W18E Authentication Bypass
The following table lists the changes that have been made to the CVE-2024-46432 vulnerability over time. Vulnerability history details can be useful for understanding the evolution of a vulnerability, and for identifying the most recent changes that may impact the vulnerability’s severity, exploitability, or other characteristics. New CVE Received by [email protected] Feb. 10, 2025 Action […]
CVE-2024-46431 – Tenda W18E Buffer Overflow Vulnerability
The following table lists the changes that have been made to the CVE-2024-46431 vulnerability over time. Vulnerability history details can be useful for understanding the evolution of a vulnerability, and for identifying the most recent changes that may impact the vulnerability’s severity, exploitability, or other characteristics. New CVE Received by [email protected] Feb. 10, 2025 Action […]
CVE-2024-46430 – Tenda W18E Authentication Bypass
The following table lists the changes that have been made to the CVE-2024-46430 vulnerability over time. Vulnerability history details can be useful for understanding the evolution of a vulnerability, and for identifying the most recent changes that may impact the vulnerability’s severity, exploitability, or other characteristics. New CVE Received by [email protected] Feb. 10, 2025 Action […]
CVE-2024-42512 – OPC UA .NET Standard Stack Authentication Bypass
The following table lists the changes that have been made to the CVE-2024-42512 vulnerability over time. Vulnerability history details can be useful for understanding the evolution of a vulnerability, and for identifying the most recent changes that may impact the vulnerability’s severity, exploitability, or other characteristics. New CVE Received by [email protected] Feb. 10, 2025 Action […]
CVE-2024-27859 – Apple Web Content Arbitrary Code Execution Vulnerability
The following table lists the changes that have been made to the CVE-2024-27859 vulnerability over time. Vulnerability history details can be useful for understanding the evolution of a vulnerability, and for identifying the most recent changes that may impact the vulnerability’s severity, exploitability, or other characteristics. New CVE Received by [email protected] Feb. 10, 2025 Action […]
CVE-2024-13059 – Apache Anything-LLM Path Traversal RCE
The following table lists the changes that have been made to the CVE-2024-13059 vulnerability over time. Vulnerability history details can be useful for understanding the evolution of a vulnerability, and for identifying the most recent changes that may impact the vulnerability’s severity, exploitability, or other characteristics. New CVE Received by [email protected] Feb. 10, 2025 Action […]
CVE-2024-10649 – Wandb OpenUI Unauthenticated File Upload/Download Vulnerability
wandb/openui latest commit c945bb859979659add5f490a874140ad17c56a5d contains a vulnerability where unauthenticated endpoints allow file uploads and downloads from an AWS S3 bucket. This can lead to multiple security issues including denial of service, stored XSS, and information disclosure. The affected endpoints are ‘/v1/share/{id:str}’ for uploading and ‘/v1/share/{id:str}’ for downloading JSON files. The lack of authentication allows any […]
CVE-2024-13011 – “Apache WP Foodbakery Remote Code Execution Vulnerability”
CVE ID : CVE-2024-13011 Published : Feb. 10, 2025, 7:15 p.m. | 59 minutes ago Description : The WP Foodbakery plugin for WordPress is vulnerable to arbitrary file uploads due to insufficient file type validation in the ‘upload_publisher_profile_image’ function in versions up to, and including, 4.7. This makes it possible for unauthenticated attackers to upload arbitrary […]
CVE-2024-13010 – WordPress Foodbakery Cross-Site Scripting Vulnerability
CVE ID : CVE-2024-13010 Published : Feb. 10, 2025, 7:15 p.m. | 59 minutes ago Description : The WP Foodbakery plugin for WordPress is vulnerable to Reflected Cross-Site Scripting in versions up to, and including, 4.7 due to insufficient input sanitization and output escaping on the ‘search_type’ parameter. This makes it possible for unauthenticated attackers to […]