Vulnerabilities

DATE CVE VULNERABILITY TITLE RISK
2024-11-12 CVE-2024-11101 SQL Injection vulnerability in 1000Projects Beauty Parlour Management System 1.0
A vulnerability was found in 1000 Projects Beauty Parlour Management System 1.0.
network
low complexity
1000projects CWE-89
critical
9.8
2024-11-12 CVE-2024-11102 Cross-site Scripting vulnerability in Mayurik Hospital Management System 1.0
A vulnerability was found in SourceCodester Hospital Management System 1.0.
network
low complexity
mayurik CWE-79
4.8
2024-11-12 CVE-2024-48837 Unspecified vulnerability in Dell Smartfabric Os10
Dell SmartFabric OS10 Software, version(s) 10.5.6.x, 10.5.5.x, 10.5.4.x, 10.5.3.x, contain(s) an Execution with Unnecessary Privileges vulnerability.
local
low complexity
dell
7.8
2024-11-12 CVE-2024-48838 Files or Directories Accessible to External Parties vulnerability in Dell Smartfabric Os10
Dell SmartFabric OS10 Software, version(s) 10.5.6.x, 10.5.5.x, 10.5.4.x, 10.5.3.x, contain(s) a Files or Directories Accessible to External Parties vulnerability.
local
low complexity
dell CWE-552
3.3
2024-11-12 CVE-2024-49557 Command Injection vulnerability in Dell Smartfabric Os10
Dell SmartFabric OS10 Software, version(s) 10.5.6.x, 10.5.5.x, 10.5.4.x, 10.5.3.x, contain(s) an Improper Neutralization of Special Elements used in a Command ('Command Injection') vulnerability.
local
low complexity
dell CWE-77
7.8
2024-11-12 CVE-2024-49558 Unspecified vulnerability in Dell Smartfabric Os10
Dell SmartFabric OS10 Software, version(s) 10.5.6.x, 10.5.5.x, 10.5.4.x, 10.5.3.x, contain(s) an Improper Privilege Management vulnerability.
local
low complexity
dell
7.8
2024-11-12 CVE-2024-49560 Command Injection vulnerability in Dell Smartfabric Os10
Dell SmartFabric OS10 Software, version(s) 10.5.6.x, 10.5.5.x, 10.5.4.x, 10.5.3.x, contain(s) a command injection vulnerability.
local
low complexity
dell CWE-77
7.8
2024-11-12 CVE-2024-49394 Improper Verification of Cryptographic Signature vulnerability in multiple products
In mutt and neomutt the In-Reply-To email header field is not protected by cryptographic signing which allows an attacker to reuse an unencrypted but signed email message to impersonate the original sender.
network
low complexity
neomutt mutt redhat CWE-347
5.3
2024-11-12 CVE-2024-49395 In mutt and neomutt, PGP encryption does not use the --hidden-recipient mode which may leak the Bcc email header field by inferring from the recipients info.
network
low complexity
neomutt mutt redhat
5.3
2024-11-12 CVE-2024-11097 Infinite Loop vulnerability in Razormist Student Record Management System 1.0
A vulnerability has been found in SourceCodester Student Record Management System 1.0 and classified as problematic.
local
low complexity
razormist CWE-835
5.5