Autore: Angelo Barbosa

CVE-2024-2792 | Elementor Addon Elements Plugin up to 1.13.2 on WordPress Text Separator/Image Compare cross site scripting

A vulnerability, which was classified as problematic, was found in Elementor Addon Elements Plugin up to 1.13.2 on WordPress. This affects an unknown part of the component Text Separator/Image Compare. The manipulation leads to cross site scripting. This vulnerability is uniquely identified as CVE-2024-2792. It is possible to initiate the attack remotely. There is no exploit...

Per saperne di più

CVE-2024-3015 | SourceCodester Simple Subscription Website 1.0 manage_plan.php id sql injection

A vulnerability classified as critical was found in SourceCodester Simple Subscription Website 1.0. Affected by this vulnerability is an unknown functionality of the file manage_plan.php. The manipulation of the argument id leads to sql injection. This vulnerability is known as CVE-2024-3015. The attack can be launched remotely. Furthermore, there is an exploit...

Per saperne di più

CVE-2024-3014 | SourceCodester Simple Subscription Website 1.0 Actions.php title sql injection

A vulnerability classified as critical has been found in SourceCodester Simple Subscription Website 1.0. Affected is an unknown function of the file Actions.php. The manipulation of the argument title leads to sql injection. This vulnerability is traded as CVE-2024-3014. It is possible to launch the attack remotely. Furthermore, there is an exploit...

Per saperne di più

CVE-2024-3013 | FLIR AX8 up to 1.46.16 User Registration test_login.php improper authorization

A vulnerability was found in FLIR AX8 up to 1.46.16. It has been rated as critical. This issue affects some unknown processing of the file /tools/test_login.php?action=register of the component User Registration. The manipulation leads to improper authorization. The identification of this vulnerability is CVE-2024-3013. The attack may be initiated remotely. Furthermore, there is an exploit available. The vendor was contacted early about this disclosure but did not respond in any...

Per saperne di più