CVE-2024-13000 to CVE-2024-13999
240 CVEs with public proof-of-concept exploits.
- CVE-2024-130021 PoC1000 Projects Bookstore Management System order_process.php sql injection
- CVE-2024-130031 PoC1000 Projects Portfolio Management System MCA update_ed.php sql injection
- CVE-2024-130041 PoCPHPGurukul Complaint Management System category.php sql injection
- CVE-2024-130051 PoC1000 Projects Attendance Tracking Management System attendance_action.php sql injection
- CVE-2024-130061 PoC1000 Projects Human Resource Management System employeeview.php sql injection
- CVE-2024-130071 PoCCodezips Event Management System contact.php sql injection
- CVE-2024-130082 PoCscode-projects Responsive Hotel Site newsletter.php sql injection
- CVE-2024-130211 PoCSourceCodester Road Accident Map Marker add-mark.php cross site scripting
- CVE-2024-130221 PoCtaisan tarzan-cms Article Management UploadController.java UploadResponse unrestricted upload
- CVE-2024-130241 PoCCodezips Blood Bank Management System campaign.php sql injection
- CVE-2024-130251 PoCCodezips College Management System faculty.php sql injection
- CVE-2024-130281 PoCAntabot White-Jotter login observable response discrepancy
- CVE-2024-130291 PoCAntabot White-Jotter Edit Book book server-side request forgery
- CVE-2024-130301 PoCD-Link DIR-823G Web Management Interface HNAP1 SetVirtualServerSettings access control
- CVE-2024-130311 PoCAntabot White-Jotter Article Content Editor editor cross site scripting
- CVE-2024-130321 PoCAntabot White-Jotter Article Editor editor server-side request forgery
- CVE-2024-130371 PoC1000 Projects Attendance Tracking Management System report.php attendance_report sql injection
- CVE-2024-130381 PoCCodeAstro Simple Loan Management System Login index.php sql injection
- CVE-2024-130391 PoCcode-projects Simple Chat System add_user.php sql injection
- CVE-2024-130421 PoCTsinghua Unigroup Electronic Archives Management System download.html download information disclosure
- CVE-2024-130521 PoCDental Optimizer Patient Generator App <= 1.0 - Reflected XSS
- CVE-2024-130531 PoCForm Maker by 10Web < 1.15.33 - Admin+ Stored XSS via Theme Title
- CVE-2024-130541 PoCAllocation of Resources Without Limits or Throttling in GitLab
- CVE-2024-130552 PoCsDyn Business Panel <= 1.0.0 - Reflected XSS
- CVE-2024-130561 PoCDyn Business Panel <= 1.0.0 - Reflected XSS
- CVE-2024-130571 PoCDyn Business Panel <= 1.0.0 - Stored XSS via CSRF
- CVE-2024-130671 PoCCodeAstro Online Food Ordering System All Users Page all_users.php access control
- CVE-2024-130691 PoCSourceCodester Multi Role Login System add-user.php cross site scripting
- CVE-2024-130701 PoCCodeAstro Online Food Ordering System Update User Page update_users.php sql injection
- CVE-2024-130721 PoC1000 Projects Beauty Parlour Management System Customer Detail add-customer-services.php sql injection
- CVE-2024-130921 PoCcode-projects Job Recruitment Job Post search_ajax.php sql injection
- CVE-2024-130931 PoCcode-projects Job Recruitment Seeker Profile _call_main_search_ajax.php sql injection
- CVE-2024-130942 PoCsWP Triggers Lite <= 2.5.3 - Reflected XSS
- CVE-2024-130951 PoCWP Triggers Lite <= 2.5.3 - Admin+ SQL Injection
- CVE-2024-130961 PoCWP Finance <= 1.3.6 - Stored XSS via CSRF
- CVE-2024-130972 PoCsWP Finance <= 1.3.6 - Reflected XSS
- CVE-2024-130982 PoCsWP Email Newsletter <= 1.1 - Reflected XSS
- CVE-2024-130992 PoCsWidget4call <= 1.0.7 - Reflected XSS
- CVE-2024-131001 PoCWoo UPS Pickup <= 2.6.3 - Reflected XSS
- CVE-2024-131011 PoCWP MediaTagger <= 4.1.1 - Contributor+ Stored XSS
- CVE-2024-131021 PoCD-Link DIR-816 A2 DDNS Service access control
- CVE-2024-131031 PoCD-Link DIR-816 A2 Virtual Service form2AddVrtsrv.cgi access control
- CVE-2024-131041 PoCD-Link DIR-816 A2 WiFi Settings form2AdvanceSetup.cgi access control
- CVE-2024-131051 PoCD-Link DIR-816 A2 DHCPD Setting form2Dhcpd.cgi access control
- CVE-2024-131061 PoCD-Link DIR-816 A2 IP QoS form2IPQoSTcAdd access control
- CVE-2024-131071 PoCD-Link DIR-816 A2 ACL form2LocalAclEditcfg.cgi access control
- CVE-2024-131081 PoCD-Link DIR-816 A2 form2NetSniper.cgi access control
- CVE-2024-131091 PoCBeijing Yunfan Internet Technology Yunfan Learning Examination System doc.html improper authorization
- CVE-2024-131101 PoCBeijing Yunfan Internet Technology Yunfan Learning Examination System Exam Answer PaperController.java, information disclosure
- CVE-2024-131111 PoCBeijing Yunfan Internet Technology Yunfan Learning Examination System JWT Token SysUserControl improper authentication
- CVE-2024-131122 PoCsWP MediaTagger <= 4.1.1 - Reflected XSS
- CVE-2024-131131 PoCCountdown Timer for Elementor < 1.3.7 - Contributor+ Stored XSS
- CVE-2024-131142 PoCsWP Projects Portfolio with Client Testimonials <= 3.0 - Reflected XSS
- CVE-2024-131151 PoCWP Projects Portfolio with Client Testimonials <= 3.0 - Stored XSS via CSRF
- CVE-2024-131161 PoCCrelly Slider < 1.4.7 - Admin+ Stored XSS
- CVE-2024-131171 PoCSocial Share Buttons for WordPress <= 2.7 - Unauthenticated Image Upload & Path Traversal
- CVE-2024-131181 PoCIP Based Login < 2.4.1 - Log Deletion via CSRF
- CVE-2024-131191 PoCProfilePress < 4.15.20 - Admin+ Stored XSS
- CVE-2024-131201 PoCProfilePress < 4.15.20 - Admin+ Stored XSS
- CVE-2024-131211 PoCPaid Membership Plugin < 4.15.20 - Admin+ Stored XSS
- CVE-2024-131221 PoCAFI < 1.100.0 - Admin+ Stored XSS
- CVE-2024-131231 PoCAFI < 1.100.0 - Admin+ Stored XSS
- CVE-2024-131241 PoCPhoto Gallery by 10Web < 1.8.33 - Admin+ Stored XSS
- CVE-2024-131251 PoCEverest Forms < 3.0.8.1 - Admin+ Stored XSS
- CVE-2024-131262 PoCsDownload Manager < 3.3.07 - Unauthenticated Data Exposure
- CVE-2024-131271 PoCLearnPress – WordPress LMS Plugin < 4.2.7.5.1 - Admin+ Stored XSS
- CVE-2024-131281 PoCLearnPress – WordPress LMS Plugin < 4.2.7.5.1 - Admin+ Stored XSS
- CVE-2024-131291 PoCRoxy-WI roxy.py action_service os command injection
- CVE-2024-131301 PoCDahua IPC-HFW1200S Web Interface Sha1Account1 path traversal
- CVE-2024-131321 PoCEmlog Pro Subpage article.php cross site scripting
- CVE-2024-131331 PoCZeroWdd studentmanager StudentController. java editStudent unrestricted upload
- CVE-2024-131341 PoCZeroWdd studentmanager TeacherController. java editTeacher unrestricted upload
- CVE-2024-131351 PoCEmlog Pro Subpage twitter.php cross site scripting
- CVE-2024-131361 PoCwangl1989 mysiteforme ShiroConfig.java rememberMeManager deserialization
- CVE-2024-131371 PoCwangl1989 mysiteforme SiteController RestResponse cross site scripting
- CVE-2024-131381 PoCwangl1989 mysiteforme LocalUploadServiceImpl upload unrestricted upload
- CVE-2024-131391 PoCwangl1989 mysiteforme FileController doContent server-side request forgery
- CVE-2024-131401 PoCEmlog Pro Cover Upload article.php cross site scripting
- CVE-2024-131411 PoCosuuu LightPicture SVG File Upload upload cross site scripting
- CVE-2024-131431 PoCZeroWdd studentmanager PermissionController. java submitAddPermission cross site scripting
- CVE-2024-131441 PoCzhenfeng13 My-Blog BlogController.java uploadFileByEditomd unrestricted upload
- CVE-2024-131451 PoCzhenfeng13 My-Blog uploadController. java upload unrestricted upload
- CVE-2024-131461 PoCBooknetic < 4.1.5 - Staff Creation via CSRF
- CVE-2024-131593 PoCsKEVAbsolute path traversal in Ivanti EPM before the 2024 January-2025 Security Update and 2022 SU6 January-2025 Security Update allows a…
- CVE-2024-131602 PoCsKEVAbsolute path traversal in Ivanti EPM before the 2024 January-2025 Security Update and 2022 SU6 January-2025 Security Update allows a…
- CVE-2024-131612 PoCsKEVAbsolute path traversal in Ivanti EPM before the 2024 January-2025 Security Update and 2022 SU6 January-2025 Security Update allows a…
- CVE-2024-131841 PoCThe Ultimate WordPress Toolkit – WP Extended <= 3.0.12 - Unauthenticated SQL Injection via Login Attempts Module
- CVE-2024-131871 PoCKingsoft WPS Office TCC code injection
- CVE-2024-131881 PoCMicroWorld eScan Antivirus Installation var default permission
- CVE-2024-131891 PoCZeroWdd myblog MyBlogMvcConfig.java permission
- CVE-2024-131901 PoCZeroWdd myblog BlogMapper.xml xml injection
- CVE-2024-131911 PoCZeroWdd myblog uploadController.java upload unrestricted upload
- CVE-2024-131921 PoCZeroWdd myblog BlogController.java update cross site scripting
- CVE-2024-131931 PoCSEMCMS Image Library Management Page SEMCMS_Images.php sql injection
- CVE-2024-131941 PoCSucms admin_members.php sql injection
- CVE-2024-131951 PoCdonglight bookstore电商书城系统说明 HttpUtil.java getHtml server-side request forgery
- CVE-2024-131961 PoCdonglight bookstore电商书城系统说明 BookInfoController.java BookSearchList cross site scripting
- CVE-2024-131971 PoCdonglight bookstore电商书城系统说明 AdminUserControlle.java updateUser cross site scripting
- CVE-2024-131981 PoClanghsu Mblog Blog System login observable response discrepancy
- CVE-2024-131991 PoClanghsu Mblog Blog System Search Bar search cross site scripting
- CVE-2024-132001 PoCwander-chu SpringBoot-Blog HTTP POST Request BaseInterceptor.java preHandle access control
- CVE-2024-132011 PoCwander-chu SpringBoot-Blog Admin Attachment AttachtController.java upload unrestricted upload
- CVE-2024-132021 PoCwander-chu SpringBoot-Blog Blog Article PageController.java modifiyArticle cross site scripting
- CVE-2024-132031 PoCkurniaramadhan E-Commerce-PHP cross-site request forgery
- CVE-2024-132041 PoCkurniaramadhan E-Commerce-PHP blog-details.php sql injection
- CVE-2024-132051 PoCkurniaramadhan E-Commerce-PHP Create Product Page create_product.php cross site scripting
- CVE-2024-132061 PoCREVE Antivirus reveinstall default permission
- CVE-2024-132071 PoCWidget for Social Page Feeds < 6.4.2 - Admin+ Stored XSS
- CVE-2024-132081 PoCWP Google Map < 1.9.4 - Admin+ Stored XSS
- CVE-2024-132091 PoCRedaxo CMS Structure Management Page index.php cross site scripting
- CVE-2024-132101 PoCdonglight bookstore电商书城系统说明 AdminBookController. java uploadPicture unrestricted upload
- CVE-2024-132111 PoCSingMR HouseRent AdminController.java access control
- CVE-2024-132121 PoCSingMR HouseRent AddHouseController.java upload unrestricted upload
- CVE-2024-132131 PoCSingMR HouseRent toAdminUpdateHousePage cross site scripting
- CVE-2024-132181 PoCFast Tube <= 2.3.1 - Reflected XSS
- CVE-2024-132192 PoCsPolicy Genius <= 2.0.4 - Reflected XSS
- CVE-2024-132202 PoCsGoogle Map Professional <= 1.0 - Reflected XSS
- CVE-2024-132212 PoCsFantastic Elasticsearch <= 4.1.0 - Reflected XSS
- CVE-2024-132222 PoCsUser Messages <= 1.2.4 - Reflected XSS
- CVE-2024-132231 PoCTabulate <= 2.10.3 - Reflected XSS
- CVE-2024-132242 PoCsSlideDeck 1 Lite Content Slider <= 1.4.8 - Reflected XSS
- CVE-2024-132252 PoCsECT Home Page Products <= 1.9 - Reflected XSS
- CVE-2024-132262 PoCsA5 Custom Login Page <= 2.8.1 - Reflected XSS
- CVE-2024-133061 PoCWP Google Map < 1.9.4 - Admin+ Stored XSS
- CVE-2024-133131 PoCAWeber <= 7.3.20 - Admin+ Stored XSS
- CVE-2024-133141 PoCCarousel, Slider, Gallery by WP Carousel < 2.7.4 - Admin+ Stored XSS
- CVE-2024-133221 PoCAds Pro Plugin - Multi-Purpose WordPress Advertising Manager <= 4.88 - Unauthenticated SQL Injection
- CVE-2024-133252 PoCsGlossy <= 2.3.5 - Reflected XSS
- CVE-2024-133262 PoCsiBuildApp <= 0.2.0 - Reflected XSS
- CVE-2024-133272 PoCsMusicbox <= 2.0.3 - Reflected XSS
- CVE-2024-133282 PoCsGiga Messenger Bots <= 2.3.1 - Reflected XSS
- CVE-2024-133291 PoCSolidres <= 0.9.4 - Reflected XSS
- CVE-2024-133302 PoCsJustrows Free <= 0.2 - Reflected XSS
- CVE-2024-133312 PoCsWP Dream Carousel <= 1.0.1b - Reflected XSS
- CVE-2024-133321 PoCTransFinanz <= 1.0.0 - Reflected XSS
- CVE-2024-133451 PoCAvada Builder <= 3.11.13 - Unauthenticated Arbitrary Shortcode Execution
- CVE-2024-133461 PoCAvada Theme <= 7.11.13 - Unauthenticated Arbitrary Shortcode Execution
- CVE-2024-133471 PoCEssential WP Real Estate <= 1.1.3 - Reflected XSS
- CVE-2024-133522 PoCsLegull <= 1.2.2 - Reflected XSS
- CVE-2024-133571 PoCDitty – Responsive News Tickers, Sliders, and Lists < 3.1.52 - Author+ Stored XSS
- CVE-2024-133811 PoCCalculated Fields Form < 5.2.62 - Admin+ Stored XSS
- CVE-2024-133821 PoCCalculated Fields Form < 5.2.64 - Admin+ Stored XSS
- CVE-2024-133831 PoCHD Quiz < 2.0.0 - Editor+ Stored XSS
- CVE-2024-133841 PoCPhoto Gallery, Images, Slider in Rbs Image Gallery < 3.2.24 - Admin+ Stored XSS
- CVE-2024-134781 PoCLTL Freight Quotes – TForce Edition <= 3.6.4 - Unauthenticated SQL Injection
- CVE-2024-134791 PoCLTL Freight Quotes – SEFL Edition <= 3.2.4 - Unauthenticated SQL Injection
- CVE-2024-134811 PoCLTL Freight Quotes – R+L Carriers Edition <= 3.3.4 - Unauthenticated SQL Injection
- CVE-2024-134821 PoCIcegram Engage < 3.1.32 - Admin+ Stored XSS
- CVE-2024-134831 PoCLTL Freight Quotes – SAIA Edition <= 2.2.10 - Unauthenticated SQL Injection
- CVE-2024-134851 PoCLTL Freight Quotes – ABF Freight Edition <= 3.3.7 - Unauthenticated SQL Injection
- CVE-2024-134861 PoCIcegram Engage < 3.1.32 - Admin+ Stored XSS
- CVE-2024-134881 PoCLTL Freight Quotes – Estes Edition <= 3.3.7 - Unauthenticated SQL Injection
- CVE-2024-134891 PoCLTL Freight Quotes – Old Dominion Edition <= 4.2.10 - Unauthenticated SQL Injection
- CVE-2024-134922 PoCsGuten Free Options <= 0.9.5 - Reflected XSS
- CVE-2024-134931 PoCSensly Online Presence <= 0.6 - Admin+ Stored XSS
- CVE-2024-134961 PoCGamiPress <= 7.3.1 - Unauthenticated SQL Injection via orderby Parameter
- CVE-2024-135132 PoCsOliver POS – A WooCommerce Point of Sale (POS) <= 2.4.2.3 - Sensitive Information Exposure to Privilege Escalation
- CVE-2024-135391 PoCAForms Eats <= 1.3.1 - Unauthenticated Full Path Disclosure
- CVE-2024-135432 PoCsZarinpal Paid Downloads <= 2.3 - Reflected XSS
- CVE-2024-135441 PoCZarinpal Paid Downloads <= 2.3 - Admin+ Arbitrary File Upload
- CVE-2024-135692 PoCsFront End Users <= 3.2.32 - Reflected XSS
- CVE-2024-135702 PoCsStray Random Quotes <= 1.9.9 - Reflected XSS
- CVE-2024-135711 PoCPost Timeline < 2.3.10 - Reflected XSS
- CVE-2024-135741 PoCXV Random Quotes <= 1.40 - Reflected XSS
- CVE-2024-135801 PoCXV Random Quotes <= 1.40 - Settings Reset via CSRF
- CVE-2024-135851 PoCAjax Search Lite < 4.12.5 - Admin+ Stored XSS
- CVE-2024-136021 PoCPoll Maker < 5.5.4 - Admin+ Stored XSS
- CVE-2024-136031 PoCWise Forms <= 1.2.0 - Unauthenticated Stored XSS
- CVE-2024-136051 PoCForm Maker by 10Web < 1.15.33 - Admin+ Stored XSS
- CVE-2024-136081 PoCTrack Logins <= 1.0 - Admin+ SQL Injection
- CVE-2024-136091 PoC1 Click WordPress Migration Plugin – 100% FREE for a limited time <= 2.2 - Unauthenticated Sensitive Information Exposure via Database…
- CVE-2024-136101 PoCSimple Social Media Share Buttons < 6.0.0 - Admin+ Stored XSS
- CVE-2024-136151 PoCSocial Media Plugin by Social Snap <= 1.3.6 - Admin+ Stored XSS
- CVE-2024-136161 PoCVikBooking < 1.7.2 - Admin+ Stored XSS
- CVE-2024-136171 PoCDownloable by American Osteopathic Association <= 0.1.0 - Unauthenticated Arbitrary File Download
- CVE-2024-136181 PoCDownloable by American Osteopathic Association <= 0.1.0 - Unauthenticated SSRF
- CVE-2024-136192 PoCsLifterLMS – WP LMS for eLearning, Online Courses, & Quizzes < 8.0.1 - Reflected XSS
- CVE-2024-136211 PoCThe GDPR Framework By Data443 < 2.2.0 - Admin+ Stored XSS
- CVE-2024-136242 PoCsWPMovieLibrary <= 2.1.4.8 - Reflected XSS
- CVE-2024-136252 PoCsTube Video Ads Lite <= 1.5.7 - Reflected XSS
- CVE-2024-136261 PoCVR Frases <= 3.0.1 - Reflected XSS
- CVE-2024-136272 PoCsWP Touch Slider <= 2.2 - Reflected XSS
- CVE-2024-136282 PoCsWP Pricing Table <= 1.1 - Reflected XSS
- CVE-2024-136291 PoCPushbiz <= 1.0 - Reflected XSS
- CVE-2024-136302 PoCsNews List <= 1.0 - Reflected XSS
- CVE-2024-136311 PoCOM Stripe <= 02.00.00 - Reflected XSS
- CVE-2024-136321 PoCWP Extra Fields <= 1.0.1 - Reflected XSS
- CVE-2024-136331 PoCSimple Catalogue <= 1.0.2 - Reflected XSS
- CVE-2024-136342 PoCsPost Sync <= 1.1 - Reflected XSS
- CVE-2024-136681 PoCWordPress Activity O Meter <= 1 - Reflected XSS
- CVE-2024-136691 PoCCalendApp <= 1.1 - Reflected XSS
- CVE-2024-136781 PoCR3W Instafeed <= 1.0 - Reflected XSS
- CVE-2024-136851 PoCAdmin and Site Enhancements (ASE) < 7.6.10 - Limit Login Attempt Bypass via IP Spoofing
- CVE-2024-136881 PoCAdmin and Site Enhancements (ASE) < 7.6.10 - Password Protection Bypass
- CVE-2024-137262 PoCsThemes Coder <= 1.3.4 - Unauthenticated SQLi
- CVE-2024-137272 PoCsMemberSpace – Membership Plugin and Paid Subscriptions < 2.1.14 - Reflected XSS
- CVE-2024-137291 PoCPodlove Podcast Publisher < 4.1.24 - Admin+ Stored XSS
- CVE-2024-137301 PoCPodlove Podcast Publisher < 4.2.1 - Admin+ Stored XSS
- CVE-2024-138001 PoCPopup Plugin For WordPress - ConvertPlus <= 3.5.30 - Missing Authorization to Authenticated (Subscriber+) Limited Options Update
- CVE-2024-138221 PoCTotal Contest Lite <= 2.8.1 - Reflected XSS
- CVE-2024-138231 PoC360 Product Rotation <= 1.5.8 - Reflected XSS
- CVE-2024-138251 PoCEmail Keep <= 1.1 - Reflected XSS
- CVE-2024-138261 PoCEmail Keep <= 1.1 - Email Deletion via CSRF
- CVE-2024-138281 PoCBadgearoo <= 1.0.14 - Reflected XSS
- CVE-2024-138361 PoCWP Login Control <= 2.0.0 - Reflected XSS
- CVE-2024-138532 PoCsSEO Tools <= 4.0.7 - Reflected XSS
- CVE-2024-138621 PoCS3Bubble Media Streaming <= 8.0 - Reflected XSS
- CVE-2024-138631 PoCStylish Google Sheet Reader < 4.1 - Reflected XSS
- CVE-2024-138641 PoCCountdown Timer <= 1.0 - Reflected XSS
- CVE-2024-138651 PoCdrm-protected-video-streaming <= 4.2.1 - Reflected XSS
- CVE-2024-138681 PoCEasy Broken Link Checker <= 9.0.2 - Reflected XSS
- CVE-2024-138692 PoCsMigration, Backup, Staging – WPvivid <= 0.9.112 - Authenticated (Admin+) Arbitrary File Upload via wpvivid_upload_file
- CVE-2024-138741 PoCFeedify – Web Push Notifications < 2.4.6 - Reflected XSS
- CVE-2024-138751 PoCWP Programmmanager <= 1.2 - Reflected XSS
- CVE-2024-138761 PoCMeintopf <= 0.2.1 - Reflected XSS
- CVE-2024-138771 PoCPassbeemedia Web Push Notifications <= 1.0.0 - Reflected XSS
- CVE-2024-138781 PoCSpotBot <= 0.1.8 - Reflected XSS
- CVE-2024-138801 PoCMy Quota <= 1.0.8 - Reflected XSS
- CVE-2024-138811 PoCLinkMyPosts <= 1.0 - Reflected XSS
- CVE-2024-138841 PoCLimit Bio <= 1.0 - Reflected XSS
- CVE-2024-138851 PoCWP E Customers <= 0.0.1 - Reflected XSS
- CVE-2024-138881 PoCWPMobile.App <= 11.56 - Open Redirect via 'redirect' Parameter
- CVE-2024-138911 PoCSchedule <= 1.0.0 - Reflected XSS
- CVE-2024-138961 PoCWP-GeSHi-Highlight <= 1.4.3 - Author+ ReDoS
- CVE-2024-139021 PoChuang-yk student-manage Edit a Student Information Page cross site scripting
- CVE-2024-139182 PoCsLaravel Reflected XSS via Request Parameter in Debug-Mode Error Page
- CVE-2024-139191 PoCLaravel Reflected XSS via Route Parameter in Debug-Mode Error Page
- CVE-2024-139251 PoCKlarna Checkout for WooCommerce < 2.13.5 - DoS via Excessive Logging
- CVE-2024-139261 PoCWP-Syntax <= 1.2 - Author+ Potential ReDoS
- CVE-2024-139411 PoCouch-org ouch zip.rs convert_zip_date_time memory corruption
- CVE-2024-139461 PoCBinary Planting / LoadLibrary DLL's not Signed
- CVE-2024-139793 PoCsSt. Joe ERP System SingleRowQueryConverter SQL Injection
- CVE-2024-139804 PoCsH3C Intelligent Management Center (iMC) /byod/index.xhtml RCE
- CVE-2024-139815 PoCsLiveBos UploadFile.do Arbitrary File Upload
- CVE-2024-139821 PoCSPON IP Network Intercom System rj_get_token.php Arbitrary File Read
- CVE-2024-139842 PoCsQi'anxin TianQing Management Center rptsvr Arbitrary File Upload
- CVE-2024-139855 PoCsDahua EIMS capture_handle.action RCE
- CVE-2024-139861 PoCNagios XI < 2024R1.3.2 Authenticated Arbitrary File Upload Path Traversal RCE
- CVE-2024-139901 PoCMicroWorld eScan AV Insecure Update Mechanism Allows Man-in-the-Middle Replacement of Updates
- CVE-2024-139911 PoCHuijietong Cloud Video Platform fileDownload Arbitrary File Read