Vulnerabilities

DATE CVE VULNERABILITY TITLE RISK
2024-10-08 CVE-2024-9207 The BuddyPress Docs plugin for WordPress is vulnerable to Reflected Cross-Site Scripting due to the use of remove_query_arg without appropriate escaping on the URL in all versions up to, and including, 2.2.3.
network
low complexity
CWE-79
6.1
2024-10-08 CVE-2024-8422 Use After Free vulnerability in Schneider-Electric Zelio Soft 2
CWE-416: Use After Free vulnerability exists that could cause arbitrary code execution, denial of service and loss of confidentiality & integrity when application user opens a malicious Zelio Soft 2 project file.
local
low complexity
schneider-electric CWE-416
7.8
2024-10-08 CVE-2024-8433 The Easy Mega Menu Plugin for WordPress – ThemeHunk plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the ‘themehunk_megamenu_bg_image' parameter in all versions up to, and including, 1.1.0 due to insufficient input sanitization and output escaping.
network
low complexity
CWE-79
6.4
2024-10-08 CVE-2024-8629 The WooCommerce Multilingual & Multicurrency with WPML plugin for WordPress is vulnerable to Reflected Cross-Site Scripting due to the use of add_query_arg without appropriate escaping on the URL in all versions up to, and including, 5.3.7.
network
low complexity
CWE-79
6.1
2024-10-08 CVE-2022-4534 The Limit Login Attempts (Spam Protection) plugin for WordPress is vulnerable to IP Address Spoofing in versions up to, and including, 5.3.
network
low complexity
CWE-348
5.3
2024-10-08 CVE-2024-41902 Out-of-bounds Write vulnerability in Siemens Jt2Go
A vulnerability has been identified in JT2Go (All versions < V2406.0003).
local
low complexity
siemens CWE-787
7.8
2024-10-08 CVE-2024-45463 Out-of-bounds Read vulnerability in Siemens Tecnomatix Plant Simulation
A vulnerability has been identified in Tecnomatix Plant Simulation V2302 (All versions < V2302.0016), Tecnomatix Plant Simulation V2404 (All versions < V2404.0005).
local
low complexity
siemens CWE-125
7.8
2024-10-08 CVE-2024-45464 Out-of-bounds Read vulnerability in Siemens Tecnomatix Plant Simulation
A vulnerability has been identified in Tecnomatix Plant Simulation V2302 (All versions < V2302.0016), Tecnomatix Plant Simulation V2404 (All versions < V2404.0005).
local
low complexity
siemens CWE-125
7.8
2024-10-08 CVE-2024-45465 Out-of-bounds Read vulnerability in Siemens Tecnomatix Plant Simulation
A vulnerability has been identified in Tecnomatix Plant Simulation V2302 (All versions < V2302.0016), Tecnomatix Plant Simulation V2404 (All versions < V2404.0005).
local
low complexity
siemens CWE-125
7.8
2024-10-08 CVE-2024-45466 Out-of-bounds Read vulnerability in Siemens Tecnomatix Plant Simulation
A vulnerability has been identified in Tecnomatix Plant Simulation V2302 (All versions < V2302.0016), Tecnomatix Plant Simulation V2404 (All versions < V2404.0005).
local
low complexity
siemens CWE-125
7.8