Vulnerabilities

DATE CVE VULNERABILITY TITLE RISK
2024-11-05 CVE-2024-51522 Unspecified vulnerability in Huawei Harmonyos 5.0.0
Vulnerability of improper device information processing in the device management module Impact: Successful exploitation of this vulnerability may affect availability.
local
low complexity
huawei
5.5
2024-11-05 CVE-2024-51523 Unspecified vulnerability in Huawei Harmonyos 5.0.0
Information management vulnerability in the Gallery module Impact: Successful exploitation of this vulnerability may affect service confidentiality.
network
low complexity
huawei
7.5
2024-11-05 CVE-2024-51524 Unspecified vulnerability in Huawei Harmonyos 5.0.0
Permission control vulnerability in the Wi-Fi module Impact: Successful exploitation of this vulnerability may affect service confidentiality.
local
low complexity
huawei
5.5
2024-11-05 CVE-2024-51525 Unspecified vulnerability in Huawei Harmonyos 5.0.0
Permission control vulnerability in the clipboard module Impact: Successful exploitation of this vulnerability may affect service confidentiality.
local
low complexity
huawei
5.5
2024-11-05 CVE-2024-51526 Unspecified vulnerability in Huawei Harmonyos 5.0.0
Permission control vulnerability in the hidebug module Impact: Successful exploitation of this vulnerability may affect service confidentiality.
local
low complexity
huawei
5.5
2024-11-05 CVE-2024-51527 Unspecified vulnerability in Huawei Emui and Harmonyos
Permission control vulnerability in the Gallery app Impact: Successful exploitation of this vulnerability may affect service confidentiality.
local
low complexity
huawei
5.5
2024-11-05 CVE-2024-51528 Information Exposure Through Log Files vulnerability in Huawei Emui and Harmonyos
Vulnerability of improper log printing in the Super Home Screen module Impact: Successful exploitation of this vulnerability may affect service confidentiality.
local
low complexity
huawei CWE-532
5.5
2024-11-05 CVE-2024-7429 Missing Authorization vulnerability in Katieseaborn Zotpress
The Zotpress plugin for WordPress is vulnerable to unauthorized modification of data due to a missing capability check on the Zotpress_process_accounts_AJAX function in all versions up to, and including, 7.3.12.
network
low complexity
katieseaborn CWE-862
4.3
2024-11-05 CVE-2024-9878 Cross-site Scripting vulnerability in 10Web Photo Gallery
The Photo Gallery by 10Web – Mobile-Friendly Image Gallery plugin for WordPress is vulnerable to Stored Cross-Site Scripting via admin settings in all versions up to, and including, 1.8.30 due to insufficient input sanitization and output escaping.
network
low complexity
10web CWE-79
4.8
2024-11-05 CVE-2024-47253 Path Traversal vulnerability in 2N Access Commander
In 2N Access Commander versions 3.1.1.2 and prior, a Path Traversal vulnerability could allow an attacker with administrative privileges to write files on the filesystem and potentially achieve arbitrary remote code execution.
network
low complexity
2n CWE-22
7.2