Vulnerabilities

DATE CVE VULNERABILITY TITLE RISK
2024-11-11 CVE-2024-51793 Unrestricted Upload of File with Dangerous Type vulnerability in Webfulcreations Computer Repair Shop
Unrestricted Upload of File with Dangerous Type vulnerability in Webful Creations Computer Repair Shop allows Upload a Web Shell to a Web Server.This issue affects Computer Repair Shop: from n/a through 3.8115.
network
low complexity
webfulcreations CWE-434
critical
9.8
2024-11-11 CVE-2024-51820 SQL Injection vulnerability in Lsquared L Squared HUB
Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in L Squared Support L Squared Hub WP allows SQL Injection.This issue affects L Squared Hub WP: from n/a through 1.0.
network
low complexity
lsquared CWE-89
6.5
2024-11-11 CVE-2024-51837 SQL Injection vulnerability in Andsonsdesign Wp-Contest 1.0.0
Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in SONS Creative Development WP Contest allows SQL Injection.This issue affects WP Contest: from n/a through 1.0.0.
network
low complexity
andsonsdesign CWE-89
6.5
2024-11-11 CVE-2024-51843 SQL Injection vulnerability in Olland Horsemanager
Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in Olland.Biz Horsemanager allows Blind SQL Injection.This issue affects Horsemanager: from n/a through 1.3.
network
low complexity
olland CWE-89
6.5
2024-11-11 CVE-2024-51882 SQL Injection vulnerability in Ehues Gboy Custom Google MAP
Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in Ehues Gboy Custom Google Map allows Blind SQL Injection.This issue affects Gboy Custom Google Map: from n/a through 1.2.
network
low complexity
ehues CWE-89
6.5
2024-11-11 CVE-2024-52356 Cross-site Scripting vulnerability in Webangon the Pack Elementor Addons
Improper Neutralization of Input During Web Page Generation (XSS or 'Cross-site Scripting') vulnerability in Webangon The Pack Elementor addons allows Stored XSS.This issue affects The Pack Elementor addons: from n/a through 2.1.0.
network
low complexity
webangon CWE-79
5.4
2024-11-11 CVE-2024-52357 Cross-site Scripting vulnerability in LQD Liquid Blocks
Improper Neutralization of Input During Web Page Generation (XSS or 'Cross-site Scripting') vulnerability in LIQUID DESIGN Ltd.
network
low complexity
lqd CWE-79
5.4
2024-11-11 CVE-2024-52358 Cross-site Scripting vulnerability in Cyberchimps Responsive Addons for Elementor
Improper Neutralization of Input During Web Page Generation (XSS or 'Cross-site Scripting') vulnerability in Cyberchimps Responsive Addons for Elementor allows DOM-Based XSS.This issue affects Responsive Addons for Elementor: from n/a through 1.5.4.
network
low complexity
cyberchimps CWE-79
5.4
2024-11-11 CVE-2024-11061 Stack-based Buffer Overflow vulnerability in Tenda Ac10 Firmware 16.03.10.13
A vulnerability classified as critical was found in Tenda AC10 16.03.10.13.
network
low complexity
tenda CWE-121
8.8
2024-11-11 CVE-2024-11059 SQL Injection vulnerability in Projectworlds Free Download Online Shopping System
A vulnerability was found in Project Worlds Free Download Online Shopping System up to 192.168.1.88.
network
low complexity
projectworlds CWE-89
critical
9.8