Vulnerabilities

DATE CVE VULNERABILITY TITLE RISK
2024-11-05 CVE-2023-29126 Unspecified vulnerability in Enelx Waybox PRO Firmware
The Waybox Enel X web management application contains a PHP-type juggling vulnerability that may allow a brute force process and under certain conditions bypass authentication.
low complexity
enelx
8.8
2024-11-05 CVE-2023-29115 Unspecified vulnerability in Enelx Waybox PRO Firmware
In certain conditions a request directed to the Waybox Enel X Web management application could cause a denial-of-service (e.g.
low complexity
enelx
6.5
2024-11-05 CVE-2024-10844 SQL Injection vulnerability in Bookstore Management System Project Bookstore Management System 1.0
A vulnerability, which was classified as critical, was found in 1000 Projects Bookstore Management System 1.0.
network
low complexity
bookstore-management-system-project CWE-89
critical
9.8
2024-11-05 CVE-2024-10845 SQL Injection vulnerability in Bookstore Management System Project Bookstore Management System 1.0
A vulnerability has been found in 1000 Projects Bookstore Management System 1.0 and classified as critical.
network
low complexity
bookstore-management-system-project CWE-89
critical
9.8
2024-11-05 CVE-2024-10329 Unspecified vulnerability in G5Plus Ultimate Bootstrap Elements for Elementor
The Ultimate Bootstrap Elements for Elementor plugin for WordPress is vulnerable to Sensitive Information Exposure in all versions up to, and including, 1.4.6 via the 'ube_get_page_templates' function.
network
low complexity
g5plus
4.3
2024-11-05 CVE-2024-10841 SQL Injection vulnerability in Romadebrian Web-Sekolah 1.0
A vulnerability classified as critical was found in romadebrian WEB-Sekolah 1.0.
network
low complexity
romadebrian CWE-89
8.0
2024-11-05 CVE-2024-10842 Cross-site Scripting vulnerability in Romadebrian Web-Sekolah 1.0
A vulnerability, which was classified as problematic, has been found in romadebrian WEB-Sekolah 1.0.
network
low complexity
romadebrian CWE-79
4.8
2024-11-05 CVE-2024-10263 Code Injection vulnerability in Tickera
The Tickera – WordPress Event Ticketing plugin for WordPress is vulnerable to arbitrary shortcode execution in all versions up to, and including, 3.5.4.4.
network
low complexity
tickera CWE-94
7.3
2024-11-05 CVE-2024-10840 Cross-site Scripting vulnerability in Romadebrian Web-Sekolah 1.0
A vulnerability classified as problematic has been found in romadebrian WEB-Sekolah 1.0.
network
low complexity
romadebrian CWE-79
4.8
2024-11-05 CVE-2024-51529 Unspecified vulnerability in Huawei Emui and Harmonyos
Data verification vulnerability in the battery module Impact: Successful exploitation of this vulnerability may affect function stability.
local
low complexity
huawei
5.5