Vulnerabilities

DATE CVE VULNERABILITY TITLE RISK
2025-01-15 CVE-2024-57727 Path Traversal vulnerability in Simple-Help Simplehelp
SimpleHelp remote support software v5.5.7 and before is vulnerable to multiple path traversal vulnerabilities that enable unauthenticated remote attackers to download arbitrary files from the SimpleHelp host via crafted HTTP requests.
network
low complexity
simple-help CWE-22
7.5
2025-01-15 CVE-2024-57728 Link Following vulnerability in Simple-Help Simplehelp
SimpleHelp remote support software v5.5.7 and before allows admin users to upload arbitrary files anywhere on the file system by uploading a crafted zip file (i.e.
network
low complexity
simple-help CWE-59
7.2
2025-01-15 CVE-2025-0215 The UpdraftPlus: WP Backup & Migration Plugin plugin for WordPress is vulnerable to Reflected Cross-Site Scripting via the showdata and initiate_restore parameters in all versions up to, and including, 1.24.12 due to insufficient input sanitization and output escaping.
network
low complexity
CWE-79
6.1
2025-01-15 CVE-2025-0491 SQL Injection vulnerability in Fanli2012 Native-PHP-Cms 1.0
A vulnerability, which was classified as critical, was found in Fanli2012 native-php-cms 1.0.
network
low complexity
fanli2012 CWE-89
critical
9.8
2025-01-15 CVE-2025-0486 SQL Injection vulnerability in Fanli2012 Native-PHP-Cms 1.0
A vulnerability was found in Fanli2012 native-php-cms 1.0.
network
low complexity
fanli2012 CWE-89
critical
9.8
2025-01-15 CVE-2025-0487 SQL Injection vulnerability in Fanli2012 Native-PHP-Cms 1.0
A vulnerability was found in Fanli2012 native-php-cms 1.0.
network
low complexity
fanli2012 CWE-89
critical
9.8
2025-01-15 CVE-2024-27856 Code Injection vulnerability in Apple products
The issue was addressed with improved checks.
local
low complexity
apple CWE-94
7.8
2025-01-15 CVE-2024-40771 Unspecified vulnerability in Apple products
The issue was addressed with improved memory handling.
local
low complexity
apple
7.8
2025-01-15 CVE-2024-40839 Missing Authorization vulnerability in Apple Ipados
This issue was addressed through improved state management.
low complexity
apple CWE-862
2.4
2025-01-15 CVE-2024-40854 Unspecified vulnerability in Apple Macos
A memory initialization issue was addressed with improved memory handling.
local
low complexity
apple
5.5