Vulnerabilities

DATE CVE VULNERABILITY TITLE RISK
2024-11-11 CVE-2024-52350 Cross-site Scripting vulnerability in Crm2Go
Improper Neutralization of Input During Web Page Generation (XSS or 'Cross-site Scripting') vulnerability in CRM 2go allows DOM-Based XSS.This issue affects CRM 2go: from n/a through 1.0.
network
low complexity
crm2go CWE-79
5.4
2024-11-11 CVE-2024-52351 Cross-site Scripting vulnerability in BU Slideshow
Improper Neutralization of Input During Web Page Generation (XSS or 'Cross-site Scripting') vulnerability in Boston University (IS&T) BU Slideshow allows Stored XSS.This issue affects BU Slideshow: from n/a through 2.3.10.
network
low complexity
bu CWE-79
5.4
2024-11-11 CVE-2024-52352 Cross-site Scripting vulnerability in Miloco Postcasa Shortcode
Improper Neutralization of Input During Web Page Generation (XSS or 'Cross-site Scripting') vulnerability in Andrew Milo Postcasa Shortcode allows DOM-Based XSS.This issue affects Postcasa Shortcode: from n/a through 1.0.
network
low complexity
miloco CWE-79
5.4
2024-11-11 CVE-2024-52353 Cross-site Scripting vulnerability in Sharethepractice Christian Science Bible Lesson Subjects
Improper Neutralization of Input During Web Page Generation (XSS or 'Cross-site Scripting') vulnerability in Gabriel Serafini Christian Science Bible Lesson Subjects allows DOM-Based XSS.This issue affects Christian Science Bible Lesson Subjects: from n/a through 2.0.
network
low complexity
sharethepractice CWE-79
5.4
2024-11-11 CVE-2024-52354 Cross-site Scripting vulnerability in Coolplugins web Stories Widgets for Elementor
Improper Neutralization of Input During Web Page Generation (XSS or 'Cross-site Scripting') vulnerability in Cool Plugins Web Stories Widgets For Elementor allows Stored XSS.This issue affects Web Stories Widgets For Elementor: from n/a through 1.1.
network
low complexity
coolplugins CWE-79
5.4
2024-11-11 CVE-2024-52355 Cross-site Scripting vulnerability in Hyumika Openstreetmap
Improper Neutralization of Input During Web Page Generation (XSS or 'Cross-site Scripting') vulnerability in Hyumika OSM – OpenStreetMap allows Stored XSS.This issue affects OSM – OpenStreetMap: from n/a through 6.1.2.
network
low complexity
hyumika CWE-79
5.4
2024-11-11 CVE-2024-51793 Unrestricted Upload of File with Dangerous Type vulnerability in Webfulcreations Computer Repair Shop
Unrestricted Upload of File with Dangerous Type vulnerability in Webful Creations Computer Repair Shop allows Upload a Web Shell to a Web Server.This issue affects Computer Repair Shop: from n/a through 3.8115.
network
low complexity
webfulcreations CWE-434
critical
9.8
2024-11-11 CVE-2024-51820 SQL Injection vulnerability in Lsquared L Squared HUB
Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in L Squared Support L Squared Hub WP allows SQL Injection.This issue affects L Squared Hub WP: from n/a through 1.0.
network
low complexity
lsquared CWE-89
6.5
2024-11-11 CVE-2024-51837 SQL Injection vulnerability in Andsonsdesign Wp-Contest 1.0.0
Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in SONS Creative Development WP Contest allows SQL Injection.This issue affects WP Contest: from n/a through 1.0.0.
network
low complexity
andsonsdesign CWE-89
6.5
2024-11-11 CVE-2024-51843 SQL Injection vulnerability in Olland Horsemanager
Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in Olland.Biz Horsemanager allows Blind SQL Injection.This issue affects Horsemanager: from n/a through 1.3.
network
low complexity
olland CWE-89
6.5