Vulnerabilities > High

DATE CVE VULNERABILITY TITLE RISK
2024-10-14 CVE-2024-47831 Uncontrolled Recursion vulnerability in Vercel Next.Js
Next.js is a React Framework for the Web.
network
low complexity
vercel CWE-674
7.5
2024-10-14 CVE-2024-45731 Path Traversal vulnerability in Splunk
In Splunk Enterprise for Windows versions below 9.3.1, 9.2.3, and 9.1.6, a low-privileged user that does not hold the "admin" or "power" Splunk roles could write a file to the Windows system root directory, which has a default location in the Windows System32 folder, when Splunk Enterprise for Windows is installed on a separate drive.
network
low complexity
splunk CWE-22
8.0
2024-10-14 CVE-2024-45733 Deserialization of Untrusted Data vulnerability in Splunk
In Splunk Enterprise for Windows versions below 9.2.3 and 9.1.6, a low-privileged user that does not hold the "admin" or "power" Splunk roles could perform a Remote Code Execution (RCE) due to an insecure session storage configuration.
network
low complexity
splunk CWE-502
8.8
2024-10-14 CVE-2023-50780 Unspecified vulnerability in Apache Activemq Artemis
Apache ActiveMQ Artemis allows access to diagnostic information and controls through MBeans, which are also exposed through the authenticated Jolokia endpoint.
network
low complexity
apache
8.8
2024-10-14 CVE-2024-38863 Unspecified vulnerability in Checkmk 2.1.0/2.2.0
Exposure of CSRF tokens in query parameters on specific requests in Checkmk GmbH's Checkmk versions <2.3.0p18, <2.2.0p35 and <2.1.0p48 could lead to a leak of the token to facilitate targeted phishing attacks.
network
low complexity
checkmk
7.5
2024-10-14 CVE-2024-9922 Unspecified vulnerability in Teamplus Team+ PRO
The Team+ from TEAMPLUS TECHNOLOGY does not properly validate a specific page parameter, allowing unauthenticated remote attackers to exploit this vulnerability to read arbitrary system files.
network
low complexity
teamplus
7.5
2024-10-13 CVE-2024-9918 SQL Injection vulnerability in Usualtool Usualtoolcms 9.0
A vulnerability has been found in HuangDou UTCMS V9 and classified as critical.
network
low complexity
usualtool CWE-89
7.2
2024-10-13 CVE-2024-9915 Classic Buffer Overflow vulnerability in Dlink Dir-619L Firmware 2.06B1
A vulnerability classified as critical was found in D-Link DIR-619L B1 2.06.
network
low complexity
dlink CWE-120
8.8
2024-10-13 CVE-2024-9913 Classic Buffer Overflow vulnerability in Dlink Dir-619L Firmware 2.06B1
A vulnerability was found in D-Link DIR-619L B1 2.06.
network
low complexity
dlink CWE-120
8.8
2024-10-13 CVE-2024-9914 Classic Buffer Overflow vulnerability in Dlink Dir-619L Firmware 2.06B1
A vulnerability classified as critical has been found in D-Link DIR-619L B1 2.06.
network
low complexity
dlink CWE-120
8.8