Vulnerabilities

DATE CVE VULNERABILITY TITLE RISK
2025-01-05 CVE-2024-13140 Cross-site Scripting vulnerability in Emlog
A vulnerability classified as problematic has been found in Emlog Pro up to 2.4.3.
network
low complexity
emlog CWE-79
5.4
2025-01-05 CVE-2024-13138 Unrestricted Upload of File with Dangerous Type vulnerability in Wangl1989 Mysiteforme 1.0
A vulnerability was found in wangl1989 mysiteforme 1.0.
network
low complexity
wangl1989 CWE-434
8.8
2025-01-05 CVE-2024-13139 Server-Side Request Forgery (SSRF) vulnerability in Wangl1989 Mysiteforme 1.0
A vulnerability was found in wangl1989 mysiteforme 1.0.
network
low complexity
wangl1989 CWE-918
8.8
2025-01-05 CVE-2024-13137 Cross-site Scripting vulnerability in Wangl1989 Mysiteforme 1.0
A vulnerability was found in wangl1989 mysiteforme 1.0.
network
low complexity
wangl1989 CWE-79
5.4
2025-01-05 CVE-2024-13136 Deserialization of Untrusted Data vulnerability in Wangl1989 Mysiteforme 1.0
A vulnerability was found in wangl1989 mysiteforme 1.0 and classified as critical.
network
low complexity
wangl1989 CWE-502
critical
9.8
2025-01-04 CVE-2025-0213 Unrestricted Upload of File with Dangerous Type vulnerability in Campcodes Project Management System 1.0
A vulnerability was found in Campcodes Project Management System 1.0.
network
low complexity
campcodes CWE-434
critical
9.8
2025-01-04 CVE-2025-0212 SQL Injection vulnerability in Campcodes Student Grading System 1.0
A vulnerability was found in Campcodes Student Grading System 1.0.
network
low complexity
campcodes CWE-89
critical
9.8
2025-01-04 CVE-2024-41763 IBM Engineering Lifecycle Optimization - Publishing 7.0.2 and 7.0.3 uses weaker than expected cryptographic algorithms that could allow an attacker to decrypt highly sensitive information.
network
high complexity
CWE-327
5.9
2025-01-04 CVE-2024-41765 IBM Engineering Lifecycle Optimization - Publishing 7.0.2 and 7.0.3 could allow a remote attacker to traverse directories on the system.
network
low complexity
CWE-22
6.5
2025-01-04 CVE-2024-41766 IBM Engineering Lifecycle Optimization - Publishing 7.0.2 and 7.0.3 could allow a remote attacker to cause a denial of service using a complex regular expression.
network
low complexity
7.5