-
CVE-2025-22519 – eDoc Easy Tables SQL Injection
CVE ID : CVE-2025-22519 Published : Jan. 7, 2025, 4:15 p.m. | 3 hours, 29 minutes ago Description : Improper Neutralization of Special Elements used in an SQL Command (‘SQL Injection’) vulnerability in eDoc Intelligence LLC eDoc Easy Tables allows SQL Injection.This issue affects eDoc Easy Tables: from n/a through 1.29. Severity: 8.5 | HIGH Visit the…
-
CVE-2024-53800 – Rezgo PHP RFI Vulnerability
CVE ID : CVE-2024-53800 Published : Jan. 7, 2025, 4:15 p.m. | 3 hours, 30 minutes ago Description : Improper Control of Filename for Include/Require Statement in PHP Program (‘PHP Remote File Inclusion’) vulnerability in Rezgo Rezgo allows PHP Local File Inclusion.This issue affects Rezgo: from n/a through 4.15. Severity: 8.1 | HIGH Visit the link for…
-
CVE-2025-21624 – ClipBucket PHP File Upload Web Shell Trick Vulnerability
CVE ID : CVE-2025-21624 Published : Jan. 7, 2025, 4:15 p.m. | 3 hours, 29 minutes ago Description : ClipBucket V5 provides open source video hosting with PHP. Prior to 5.5.1 – 239, a file upload vulnerability exists in the Manage Playlist functionality of the application, specifically surrounding the uploading of playlist cover images. Without proper checks,…
-
CVE-2025-22348 – RTO GmbH DynamicTags SQL Injection
CVE ID : CVE-2025-22348 Published : Jan. 7, 2025, 11:15 a.m. | 8 hours, 30 minutes ago Description : Improper Neutralization of Special Elements used in an SQL Command (‘SQL Injection’) vulnerability in RTO GmbH DynamicTags allows Blind SQL Injection.This issue affects DynamicTags: from n/a through 1.4.0. Severity: 8.5 | HIGH Visit the link for more details,…
-
CVE-2024-40702 – IBM Cognos Controller TLS Certificate Validation Vulnerability
CVE ID : CVE-2024-40702 Published : Jan. 7, 2025, 4:15 p.m. | 3 hours, 30 minutes ago Description : IBM Cognos Controller 11.0.0 through 11.0.1 and IBM Controller 11.1.0 could allow an unauthorized user to obtain valid tokens to gain access to protected resources due to improper certificate validation. Severity: 8.2 | HIGH Visit the link for…
-
CVE-2024-56291 – Plainware PlainInventory Object Injection Vulnerability
CVE ID : CVE-2024-56291 Published : Jan. 7, 2025, 11:15 a.m. | 8 hours, 30 minutes ago Description : Deserialization of Untrusted Data vulnerability in plainware.com PlainInventory allows Object Injection.This issue affects PlainInventory: from n/a through 3.1.6. Severity: 8.1 | HIGH Visit the link for more details, such as CVSS details, affected products, timeline, and more… Go…
-
CVE-2025-22347 – BannerSky BSK Forms Blacklist CSRF/Blind SQL Injection Vulnerability
CVE ID : CVE-2025-22347 Published : Jan. 7, 2025, 11:15 a.m. | 8 hours, 30 minutes ago Description : Cross-Site Request Forgery (CSRF) vulnerability in BannerSky.com BSK Forms Blacklist allows Blind SQL Injection.This issue affects BSK Forms Blacklist: from n/a through 3.9. Severity: 8.2 | HIGH Visit the link for more details, such as CVSS details, affected…
-
CVE-2024-56284 – SSL Wireless SQL Injection Vulnerability
CVE ID : CVE-2024-56284 Published : Jan. 7, 2025, 11:15 a.m. | 8 hours, 30 minutes ago Description : Improper Neutralization of Special Elements used in an SQL Command (‘SQL Injection’) vulnerability in SSL Wireless SSL Wireless SMS Notification allows SQL Injection.This issue affects SSL Wireless SMS Notification: from n/a through 3.5.0. Severity: 9.3 | CRITICAL Visit…
-
CVE-2024-56290 – Silverplugins217 Multiple Shipping And Billing Address For Woocommerce SQL Injection
CVE ID : CVE-2024-56290 Published : Jan. 7, 2025, 11:15 a.m. | 8 hours, 30 minutes ago Description : Improper Neutralization of Special Elements used in an SQL Command (‘SQL Injection’) vulnerability in silverplugins217 Multiple Shipping And Billing Address For Woocommerce allows SQL Injection.This issue affects Multiple Shipping And Billing Address For Woocommerce: from n/a through 1.2.…
-
CVE-2024-56283 – plainware.com Locatoraid Store Locator Object Injection Vulnerability
CVE ID : CVE-2024-56283 Published : Jan. 7, 2025, 11:15 a.m. | 8 hours, 30 minutes ago Description : Deserialization of Untrusted Data vulnerability in plainware.com Locatoraid Store Locator allows Object Injection.This issue affects Locatoraid Store Locator: from n/a through 3.9.50. Severity: 8.1 | HIGH Visit the link for more details, such as CVSS details, affected products,…