CVE-2025-24984 - Insertion of sensitive information into log file in Windows NTFS allows an unauthorized attacker to disclose information with a physical attack. ...
4 months ago CVE-2025-24991
CVE-2022-24983 - Forms generated by JQueryForm.com before 2022-02-05 allow remote attackers to obtain the URI to any uploaded file by capturing the POST response. When chained with CVE-2022-24984, this could lead to unauthenticated remote code execution on the ...
3 years ago
CVE-2021-24984 - The WPFront User Role Editor WordPress plugin before 3.2.1.11184 does not sanitise and escape the changes-saved parameter before outputting it back in the admin dashboard, leading to a Reflected Cross-Site Scripting ...
3 years ago
CVE-2020-24984 - An issue was discovered in Quadbase EspressReports ES 7 Update 9. It allows CSRF, whereby an attacker may be able to trick an authenticated admin level user into uploading malicious files to the web server. ...
4 years ago
CVE-2022-24984 - Forms generated by JQueryForm.com before 2022-02-05 (if file-upload capability is enabled) allow remote unauthenticated attackers to upload executable files and achieve remote code execution. This occurs because file-extension checks occur on the ...
3 years ago
CVE-2023-24984 - A vulnerability has been identified in Tecnomatix Plant Simulation (All versions < V2201.0006). The affected application contains an out of bounds write past the end of an allocated buffer while parsing a specially crafted SPP file. This could ...
2 years ago
CVE-2024-24984 - Improper input validation for some Intel(R) Wireless Bluetooth(R) products for Windows before version 23.40 may allow an unauthenticated user to potentially enable denial of service via adjacent access. ...
8 months ago Tenable.com