Vulnerabilities

DATE CVE VULNERABILITY TITLE RISK
2024-09-22 CVE-2024-40703 Insufficiently Protected Credentials vulnerability in IBM Cognos Analytics and Cognos Analytics Reports
IBM Cognos Analytics 11.2.0, 11.2.1, 11.2.2, 11.2.3, 11.2.4, 12.0.0, 12.0.1, 12.0.2, 12.0.3, and IBM Cognos Analytics Reports for iOS 11.0.0.7 could allow a local attacker to obtain sensitive information in the form of an API key.
local
low complexity
ibm CWE-522
5.5
2024-09-22 CVE-2024-9083 Cross-site Scripting vulnerability in Razormist Employee Management System 1.0
A vulnerability classified as problematic has been found in SourceCodester Employee Management System 1.0.
network
low complexity
razormist CWE-79
4.8
2024-09-22 CVE-2024-9084 Cross-site Scripting vulnerability in Code-Projects Blood Bank System 1.0
A vulnerability classified as problematic was found in code-projects Blood Bank System 1.0.
network
low complexity
code-projects CWE-79
5.4
2024-09-22 CVE-2024-9082 Incorrect Authorization vulnerability in Oretnom23 Online Eyewear Shop 1.0
A vulnerability was found in SourceCodester Online Eyewear Shop 1.0.
network
low complexity
oretnom23 CWE-863
critical
9.8
2024-09-22 CVE-2024-9085 SQL Injection vulnerability in Code-Projects Restaurant Reservation System 1.0
A vulnerability was found in code-projects Restaurant Reservation System 1.0.
network
low complexity
code-projects CWE-89
critical
9.8
2024-09-22 CVE-2024-9080 SQL Injection vulnerability in Code-Projects Student Record System 1.0
A vulnerability was found in code-projects Student Record System 1.0.
network
low complexity
code-projects CWE-89
critical
9.8
2024-09-22 CVE-2024-9081 SQL Injection vulnerability in Oretnom23 Online Eyewear Shop 1.0
A vulnerability was found in SourceCodester Online Eyewear Shop 1.0.
network
low complexity
oretnom23 CWE-89
7.5
2024-09-22 CVE-2024-9079 SQL Injection vulnerability in Code-Projects Student Record System 1.0
A vulnerability was found in code-projects Student Record System 1.0 and classified as critical.
network
low complexity
code-projects CWE-89
critical
9.8
2024-09-22 CVE-2024-9078 SQL Injection vulnerability in Code-Projects Student Record System 1.0
A vulnerability has been found in code-projects Student Record System 1.0 and classified as critical.
network
low complexity
code-projects CWE-89
critical
9.8
2024-09-22 CVE-2024-9077 Cross-site Scripting vulnerability in Gitapp Dingfanzu
A vulnerability classified as problematic has been found in dingfangzu up to 29d67d9044f6f93378e6eb6ff92272217ff7225c.
network
low complexity
gitapp CWE-79
5.4