Vulnerabilities > High

DATE CVE VULNERABILITY TITLE RISK
2024-12-09 CVE-2024-45760 Missing Authorization vulnerability in Dell Openmanage Server Administrator
Dell OpenManage Server Administrator, versions 11.0.1.0 and prior, contains an improper access control vulnerability.
network
low complexity
dell CWE-862
8.8
2024-12-09 CVE-2024-45761 Unspecified vulnerability in Dell Openmanage Server Administrator
Dell OpenManage Server Administrator, versions 11.0.1.0 and prior, contains an improper input validation vulnerability.
network
low complexity
dell
8.1
2024-12-09 CVE-2024-54926 SQL Injection vulnerability in Lopalopa E-Learning Management System 1.0
A SQL Injection vulnerability was found in /search_class.php of kashipara E-learning Management System v1.0, which allows remote attackers to execute arbitrary SQL commands to get unauthorized database access via the school_year parameter.
network
low complexity
lopalopa CWE-89
8.8
2024-12-09 CVE-2024-49600 Unspecified vulnerability in Dell Power Manager
Dell Power Manager (DPM), versions prior to 3.17, contain an improper access control vulnerability.
local
low complexity
dell
7.8
2024-12-09 CVE-2024-54929 SQL Injection vulnerability in Lopalopa E-Learning Management System 1.0
KASHIPARA E-learning Management System v1.0 is vulnerable to SQL Injection in /admin/delete_subject.php.
network
low complexity
lopalopa CWE-89
7.2
2024-12-09 CVE-2023-23715 Missing Authorization vulnerability in Ultimatemember Jobboardwp
Missing Authorization vulnerability in JobBoardWP JobBoardWP – Job Board Listings and Submissions allows Exploiting Incorrectly Configured Access Control Security Levels.This issue affects JobBoardWP – Job Board Listings and Submissions: from n/a through 1.2.2.
network
low complexity
ultimatemember CWE-862
8.8
2024-12-09 CVE-2023-23825 Missing Authorization vulnerability in Brainstormforce Spectra
Missing Authorization vulnerability in Brainstorm Force Spectra allows Exploiting Incorrectly Configured Access Control Security Levels.This issue affects Spectra: from n/a through 2.3.0.
network
low complexity
brainstormforce CWE-862
8.8
2024-12-09 CVE-2023-23895 Missing Authorization vulnerability in Codepeople WP Time Slots Booking Form
Missing Authorization vulnerability in CodePeople WP Time Slots Booking Form allows Exploiting Incorrectly Configured Access Control Security Levels.This issue affects WP Time Slots Booking Form: from n/a through 1.1.82.
network
low complexity
codepeople CWE-862
7.2
2024-12-09 CVE-2023-24407 Missing Authorization vulnerability in Wpdevart Booking Calendar
Missing Authorization vulnerability in WpDevArt Booking calendar, Appointment Booking System allows Exploiting Incorrectly Configured Access Control Security Levels.This issue affects Booking calendar, Appointment Booking System: from n/a through 3.2.3.
network
low complexity
wpdevart CWE-862
8.8
2024-12-09 CVE-2023-30873 Missing Authorization vulnerability in Androidbubble WP Docs
Missing Authorization vulnerability in Fahad Mahmood WP Docs allows Exploiting Incorrectly Configured Access Control Security Levels.This issue affects WP Docs: from n/a through 1.9.8.
network
low complexity
androidbubble CWE-862
8.8