CVE-2024-55529 |
Description: Z-BlogPHP 1.7.3 is vulnerable to arbitrary code execution via \zb_users\theme\shell\template.
EPSS Score: 0.04%
January 7th, 2025 (6 months ago)
|
CVE-2024-55408 |
Description: An issue in the AsusSAIO.sys component of ASUS System Analysis IO v1.0.0 allows attackers to perform arbitrary read and write actions via supplying crafted IOCTL requests.
EPSS Score: 0.04%
January 7th, 2025 (6 months ago)
|
CVE-2024-55407 |
Description: An issue in the DeviceloControl function of ITE Tech. Inc ITE IO Access v1.0.0.0 allows attackers to perform arbitrary port read and write actions via supplying crafted IOCTL requests.
EPSS Score: 0.04%
January 7th, 2025 (6 months ago)
|
CVE-2024-54880 |
Description: SeaCMS V13.1 is vulnerable to Incorrect Access Control. A logic flaw can be exploited by an attacker to allow any user to register accounts in bulk.
EPSS Score: 0.04%
January 7th, 2025 (6 months ago)
|
CVE-2024-54879 |
Description: SeaCMS V13.1 is vulnerable to Incorrect Access Control. A logic flaw can be exploited by an attacker to allow any user to recharge members indefinitely.
EPSS Score: 0.04%
January 7th, 2025 (6 months ago)
|
CVE-2024-54764 |
Description: An access control issue in the component /login/hostinfo2.cgi of ipTIME A2004 v12.17.0 allows attackers to obtain sensitive information without authentication.
EPSS Score: 0.04%
January 7th, 2025 (6 months ago)
|
CVE-2024-54763 |
Description: An access control issue in the component /login/hostinfo.cgi of ipTIME A2004 v12.17.0 allows attackers to obtain sensitive information without authentication.
EPSS Score: 0.04%
January 7th, 2025 (6 months ago)
|
CVE-2024-53936 |
Description: The com.asianmobile.callcolor (aka Color Phone Call Screen App) application through 24 for Android enables any application (with no permissions) to place phone calls without user interaction by sending a crafted intent via the com.asianmobile.callcolor.ui.component.call.CallActivity component.
EPSS Score: 0.04%
January 7th, 2025 (6 months ago)
|
CVE-2024-53934 |
Description: The com.windymob.callscreen.ringtone.callcolor.colorphone (aka Color Phone Call Screen Themes) application through 1.1.2 for Android enables any application (with no permissions) to place phone calls without user interaction by sending a crafted intent via the com.frovis.androidbase.call.DialerActivity component.
EPSS Score: 0.04%
January 7th, 2025 (6 months ago)
|
CVE-2024-53933 |
Description: The com.callerscreen.colorphone.themes.callflash (aka Color Call Theme & Call Screen) application through 1.0.7 for Android enables any application (with no permissions) to place phone calls without user interaction by sending a crafted intent via the com.android.call.color.app.activities.DialerActivity component.
EPSS Score: 0.04%
January 7th, 2025 (6 months ago)
|