Total
396943 CVE
| CVE | Vendors | Products | Updated | CVSS v2 | CVSS v3 |
|---|---|---|---|---|---|
| CVE-2024-31012 | 1 Sem-cms | 1 Semcms | 2026-06-17 | N/A | 9.8 CRITICAL |
| An issue was discovered in SEMCMS v.4.8, allows remote attackers to execute arbitrary code, escalate privileges, and obtain sensitive information via the upload.php file. | |||||
| CVE-2024-31011 | 1 Beescms | 1 Beescms | 2026-06-17 | N/A | 9.8 CRITICAL |
| Arbitrary file write vulnerability in beescms v.4.0, allows a remote attacker to execute arbitrary code via a file path that was not isolated and the suffix was not verified in admin_template.php. | |||||
| CVE-2024-31010 | 1 Sem-cms | 1 Semcms | 2026-06-17 | N/A | 7.5 HIGH |
| SQL injection vulnerability in SEMCMS v.4.8, allows a remote attacker to obtain sensitive information via the ID parameter in Banner.php. | |||||
| CVE-2024-31009 | 1 Sem-cms | 1 Semcms | 2026-06-17 | N/A | 6.5 MEDIUM |
| SQL injection vulnerability in SEMCMS v.4.8, allows a remote attacker to obtain sensitive information via lgid parameter in Banner.php. | |||||
| CVE-2024-31008 | 1 Wuzhicms | 1 Wuzhicms | 2026-06-17 | N/A | 6.5 MEDIUM |
| An issue was discovered in WUZHICMS version 4.1.0, allows an attacker to execute arbitrary code and obtain sensitive information via the index.php file. | |||||
| CVE-2024-31007 | 2026-06-17 | N/A | 5.5 MEDIUM | ||
| Buffer Overflow vulnerability in IrfanView 32bit v.4.66 allows a local attacker to cause a denial of service via a crafted file. Affected component is IrfanView 32bit 4.66 with plugin formats.dll. | |||||
| CVE-2024-31005 | 1 Axiosys | 1 Bento4 | 2026-06-17 | N/A | 8.1 HIGH |
| An issue in Bento4 Bento v.1.6.0-641 allows a remote attacker to execute arbitrary code via the Ap4MdhdAtom.cpp,AP4_MdhdAtom::AP4_MdhdAtom,mp4fragment | |||||
| CVE-2024-31004 | 1 Axiosys | 1 Bento4 | 2026-06-17 | N/A | 9.8 CRITICAL |
| An issue in Bento4 Bento v.1.6.0-641 allows a remote attacker to execute arbitrary code via the Ap4StsdAtom.cpp,AP4_StsdAtom::AP4_StsdAtom,mp4fragment. | |||||
| CVE-2024-31003 | 1 Axiosys | 1 Bento4 | 2026-06-17 | N/A | 8.8 HIGH |
| Buffer Overflow vulnerability in Bento4 Bento v.1.6.0-641 allows a remote attacker to execute arbitrary code via the AP4_MemoryByteStream::WritePartial at Ap4ByteStream.cpp. | |||||
| CVE-2024-31002 | 1 Axiosys | 1 Bento4 | 2026-06-17 | N/A | 9.8 CRITICAL |
| Buffer Overflow vulnerability in Bento4 Bento v.1.6.0-641 allows a remote attacker to execute arbitrary code via the AP4 BitReader::ReadCache() at Ap4Utils.cpp component. | |||||
| CVE-2024-30998 | 1 Phpgurukul | 1 Men Salon Management System | 2026-06-17 | N/A | 9.8 CRITICAL |
| SQL Injection vulnerability in PHPGurukul Men Salon Management System v.2.0, allows remote attackers to execute arbitrary code and obtain sensitive information via the email parameter in the index.php component. | |||||
| CVE-2024-30990 | 1 Phpgurukul | 1 Client Management System | 2026-06-17 | N/A | 9.8 CRITICAL |
| SQL Injection vulnerability in the "Invoices" page in phpgurukul Client Management System using PHP & MySQL 1.1 allows attacker to execute arbitrary SQL commands via "searchdata" parameter. | |||||
| CVE-2024-30989 | 1 Phpgurukul | 1 Client Management System | 2026-06-17 | N/A | 5.4 MEDIUM |
| Cross Site Scripting vulnerability in /edit-client-details.php of phpgurukul Client Management System using PHP & MySQL 1.1 allows attackers to execute arbitrary code via the "cname", "comname", "state" and "city" parameter. | |||||
| CVE-2024-30988 | 1 Phpgurukul | 1 Client Management System | 2026-06-17 | N/A | 6.8 MEDIUM |
| Cross Site Scripting vulnerability in /search-invoices.php of phpgurukul Client Management System using PHP & MySQL 1.1 allows attackers to execute arbitrary code and obtain sensitive information via the Search bar. | |||||
| CVE-2024-30987 | 1 Phpgurukul | 1 Client Management System | 2026-06-17 | N/A | 6.8 MEDIUM |
| Cross Site Scripting vulnerability in /bwdates-reports-ds.php of phpgurukul Client Management System using PHP & MySQL 1.1 allows attackers to execute arbitrary code and obtain sensitive information via the fromdate and todate parameters. | |||||
| CVE-2024-30986 | 1 Phpgurukul | 1 Client Management System | 2026-06-17 | N/A | 6.5 MEDIUM |
| Cross Site Scripting vulnerability in /edit-services-details.php of phpgurukul Client Management System using PHP & MySQL 1.1 allows attackers to execute arbitrary code and via "price" and "sname" parameter. | |||||
| CVE-2024-30985 | 1 Phpgurukul | 1 Client Management System | 2026-06-17 | N/A | 9.8 CRITICAL |
| SQL Injection vulnerability in "B/W Dates Reports" page in phpgurukul Client Management System using PHP & MySQL 1.1 allows attacker to execute arbitrary SQL commands via "todate" and "fromdate" parameters. | |||||
| CVE-2024-30983 | 1 Phpgurukul | 1 Cyber Cafe Management System | 2026-06-17 | N/A | 7.3 HIGH |
| SQL Injection vulnerability in phpgurukul Cyber Cafe Management System Using PHP & MySQL 1.0 allows attackers to run arbitrary SQL commands via the compname parameter in /edit-computer-detail.php file. | |||||
| CVE-2024-30982 | 1 Phpgurukul | 1 Cyber Cafe Management System | 2026-06-17 | N/A | 9.8 CRITICAL |
| SQL Injection vulnerability in phpgurukul Cyber Cafe Management System Using PHP & MySQL 1.0 allows attackers to run arbitrary SQL commands via the upid parameter in the /view-user-detail.php file. | |||||
| CVE-2024-30981 | 1 Phpgurukul | 1 Cyber Cafe Management System | 2026-06-17 | N/A | 9.8 CRITICAL |
| SQL Injection vulnerability in /edit-computer-detail.php in phpgurukul Cyber Cafe Management System Using PHP & MySQL v1.0 allows attackers to run arbitrary SQL commands via editid in the application URL. | |||||
