Vulnerabilities

DATE CVE VULNERABILITY TITLE RISK
2024-11-29 CVE-2024-49805 Use of Hard-coded Credentials vulnerability in IBM Security Verify Access
IBM Security Verify Access Appliance 10.0.0 through 10.0.8 contains hard-coded credentials, such as a password or cryptographic key, which it uses for its own inbound authentication, outbound communication to external components, or encryption of internal data.
network
low complexity
ibm CWE-798
critical
9.8
2024-11-29 CVE-2024-49806 Use of Hard-coded Credentials vulnerability in IBM Security Verify Access
IBM Security Verify Access Appliance 10.0.0 through 10.0.8 contains hard-coded credentials, such as a password or cryptographic key, which it uses for its own inbound authentication, outbound communication to external components, or encryption of internal data.
network
low complexity
ibm CWE-798
critical
9.8
2024-11-29 CVE-2024-47094 Information Exposure Through Log Files vulnerability in Checkmk 2.1.0/2.2.0/2.3.0
Insertion of Sensitive Information into Log File in Checkmk GmbH's Checkmk versions <2.3.0p22, <2.2.0p37, <2.1.0p50 (EOL) causes remote site secrets to be written to web log files accessible to local site users.
local
low complexity
checkmk CWE-532
5.5
2024-11-28 CVE-2024-11970 SQL Injection vulnerability in Anisha Concert Ticket Ordering System 1.0
A vulnerability classified as critical has been found in code-projects Concert Ticket Ordering System 1.0.
network
low complexity
anisha CWE-89
critical
9.8
2024-11-28 CVE-2024-11971 Unrestricted Upload of File with Dangerous Type vulnerability in Jpress 5.1.2
A vulnerability classified as problematic was found in Guizhou Xiaoma Technology jpress 5.1.2.
network
low complexity
jpress CWE-434
5.4
2024-11-28 CVE-2024-11966 SQL Injection vulnerability in PHPgurukul Complaint Management System 1.0
A vulnerability was found in PHPGurukul Complaint Management system 1.0 and classified as critical.
network
low complexity
phpgurukul CWE-89
critical
9.8
2024-11-28 CVE-2024-11967 SQL Injection vulnerability in PHPgurukul Complaint Management System 1.0
A vulnerability was found in PHPGurukul Complaint Management system 1.0.
network
low complexity
phpgurukul CWE-89
critical
9.8
2024-11-28 CVE-2024-11968 SQL Injection vulnerability in Anisha Farmacia 1.0
A vulnerability was found in code-projects Farmacia up to 1.0.
network
low complexity
anisha CWE-89
7.5
2024-11-28 CVE-2024-11964 SQL Injection vulnerability in PHPgurukul Complaint Management System 1.0
A vulnerability, which was classified as critical, was found in PHPGurukul Complaint Management system 1.0.
network
low complexity
phpgurukul CWE-89
critical
9.8
2024-11-28 CVE-2024-11965 SQL Injection vulnerability in PHPgurukul Complaint Management System 1.0
A vulnerability has been found in PHPGurukul Complaint Management system 1.0 and classified as critical.
network
low complexity
phpgurukul CWE-89
critical
9.8