Lista CVE 2024/32xxx

CVE nel gruppo: 32xxx

CVE-2024-32086 (Clicca per dettagli)

CVE-2024-32087 (WordPress Citadela Listing plugin <= 5.18.1 - Unauth. Sensitive Data Exposure vulnerability)

CVE-2024-32088 (WordPress Product Feed on WooCommerce for Google, Awin, Shareasale, Bing, and More plugin <= 3.5.7 - Auth. SQL Injection (SQLi) vulnerability)

CVE-2024-32089 (WordPress Website Builder plugin <= 6.15.20 - Cross Site Request Forgery (CSRF) vulnerability)

CVE-2024-32090 (WordPress Digital Publications by Supsystic plugin <= 1.7.7 - Cross Site Request Forgery (CSRF) vulnerability)

CVE-2024-32091 (WordPress Church Admin plugin <= 4.0.27 - Cross Site Request Forgery (CSRF) vulnerability)

CVE-2024-32092 (WordPress Sangar Slider plugin <= 1.3.2 - Cross Site Request Forgery (CSRF) vulnerability)

CVE-2024-32093 (WordPress Kimili Flash Embed plugin <= 2.5.3 - Cross Site Request Forgery (CSRF) vulnerability)

CVE-2024-32094 (WordPress Novelist plugin <= 1.2.2 - Cross Site Request Forgery (CSRF) vulnerability)

CVE-2024-32095 (WordPress Church Content plugin <= 2.6 - Cross Site Request Forgery (CSRF) vulnerability)

CVE-2024-32096 (WordPress MultiParcels Shipping For WooCommerce plugin < 1.16.9 - Cross Site Request Forgery (CSRF) vulnerability)

CVE-2024-32097 (WordPress WP Synchro plugin <= 1.11.2 - Cross Site Request Forgery (CSRF) vulnerability)

CVE-2024-32098 (WordPress GEO my WordPress plugin <= 4.1 - Cross Site Request Forgery (CSRF) vulnerability)

CVE-2024-32099 (WordPress Advanced Page Visit Counter plugin <= 8.0.6 - Auth. SQL Injection (SQLi) vulnerability)

CVE-2024-32100 (WordPress WP Mail Catcher plugin <= 2.1.6 - Cross Site Request Forgery vulnerability)

CVE-2024-32101 (WordPress Easy Digital Downloads plugin <= 3.2.11 - Sensitive Data Exposure vulnerability)

CVE-2024-32102 (WordPress Email Marketing for WooCommerce plugin <= 1.14.3 - Cross Site Request Forgery (CSRF) vulnerability)

CVE-2024-32103 (WordPress Crony Cronjob Manager plugin <= 0.5.0 - Cross Site Request Forgery (CSRF) vulnerability)

CVE-2024-32104 (WordPress Siteimprove plugin <= 2.0.6 - Cross Site Request Forgery (CSRF) vulnerability)

CVE-2024-32105 (WordPress NextMove Lite plugin <= 2.18.1 - Cross Site Request Forgery (CSRF) vulnerability)

CVE-2024-32106 (WordPress ELEX WooCommerce Dynamic Pricing and Discounts plugin <= 2.1.2 - Cross Site Request Forgery (CSRF) vulnerability)

CVE-2024-32107 (WordPress WP Compress plugin <= 6.10.35 - Cross Site Request Forgery (CSRF) vulnerability)

CVE-2024-32108 (WordPress Finale Lite plugin <= 2.18.0 - Cross Site Request Forgery (CSRF) vulnerability)

CVE-2024-32109 (WordPress Convert Post Types plugin <= 1.4 - Cross Site Request Forgery (CSRF) vulnerability)

CVE-2024-32111 (WordPress WP Matterport Shortcode plugin <= 2.1.9 - Cross Site Request Forgery (CSRF) vulnerability)

CVE-2024-32112 (WordPress core < 6.5.5 - Auth. Arbitrary .html File Read (Windows Only) vulnerability)

CVE-2024-32113 (WordPress Leadinfo plugin <= 1.0 - Cross Site Request Forgery (CSRF) vulnerability)

CVE-2024-32114 (Apache OFBiz: Path traversal leading to RCE)

CVE-2024-32115 (Apache ActiveMQ: Jolokia and REST API were not secured with default configuration)

CVE-2024-32116 (Clicca per dettagli)

CVE-2024-32117 (Clicca per dettagli)

CVE-2024-32118 (Clicca per dettagli)

CVE-2024-32123 (Clicca per dettagli)

CVE-2024-32125 (Clicca per dettagli)

CVE-2024-32126 (WordPress BA Book Everything plugin <= 1.6.4 - Auth. SQL Injection vulnerability)

CVE-2024-32127 (WordPress Navigation menu as dropdown Widget plugin <= 1.3.4 - Cross Site Scripting (XSS) vulnerability)

CVE-2024-32128 (WordPress Find Duplicates plugin <= 1.4.6 - Auth. SQL Injection vulnerability)

CVE-2024-32129 (WordPress Realtyna Organic IDX plugin + WPL Real Estate plugin <= 4.14.4 - Unauthenticated SQL Injection vulnerability)

CVE-2024-32130 (WordPress Freshdesk (official) plugin <= 2.3.6 - Open Redirection vulnerability)

CVE-2024-32131 (WordPress Payment Forms for Paystack plugin <= 3.4.1 - Cross Site Scripting (XSS) vulnerability)

CVE-2024-32132 (WordPress Download Manager plugin <= 3.2.82 - File Password Lock Bypass vulnerability)

CVE-2024-32133 (WordPress CBX Bookmark & Favorite plugin <= 1.7.20 - SQL Injection vulnerability)

CVE-2024-32134 (WordPress EZ Form Calculator plugin <= 2.14.0.3 - Reflected Cross Site Scripting (XSS) vulnerability)

CVE-2024-32135 (WordPress Forms to Zapier plugin <= 1.1.12 - Auth. SQL Injection vulnerability)

CVE-2024-32136 (WordPress Disable Comments | WPZest plugin <= 1.51 - SQL Injection vulnerability)

CVE-2024-32137 (WordPress BWL Advanced FAQ Manager plugin <= 2.0.3 - Auth. SQL Injection vulnerability)

CVE-2024-32138 (WordPress User Activity Log Pro plugin <= 2.3.4 - Auth. SQL Injection vulnerability)

CVE-2024-32139 (WordPress Short URL plugin <= 1.6.8 - Cross Site Scripting (XSS) vulnerability)

CVE-2024-32140 (WordPress Podlove Podcast Publisher plugin <= 4.0.12 - SQL Injection vulnerability)

CVE-2024-32141 (WordPress Libsyn Publisher Hub plugin <= 1.4.4 - Cross Site Scripting (XSS) vulnerability)

CVE-2024-32142 (WordPress Libsyn Publisher Hub plugin <= 1.4.4 - Cross Site Request Forgery (CSRF) vulnerability)

CVE-2024-32143 (WordPress Ovic Responsive WPBakery plugin <= 1.3.0 - Broken Access Control vulnerability)

CVE-2024-32144 (WordPress Podlove Podcast Publisher plugin <= 4.1.0 - Broken Access Control vulnerability)

CVE-2024-32145 (WordPress Welcart e-Commerce plugin <= 2.9.14 - Broken Access Control vulnerability)

CVE-2024-32146 (WordPress WP Google Analytics Events – No-Code Custom Event Tracking for Google Analytics plugin <= 2.8.0 - Reflected Cross-Site Scripting vulnerability)

CVE-2024-32147 (WordPress Aspose.Words – Import and Export word documents plugin <= 6.3.1 - Broken Access Control vulnerability)

CVE-2024-32148 (WordPress Contact Form Plugin plugin <= 1.1.23 - Cross Site Scripting (XSS) vulnerability)

CVE-2024-32149 (WordPress Pardot plugin <= 2.1.0 - Broken Access Control vulnerability)

CVE-2024-32151 (WordPress Jobs for WordPress plugin <= 2.7.5 - Cross Site Scripting (XSS) vulnerability)

CVE-2024-32152 (Clicca per dettagli)

CVE-2024-32161 (Clicca per dettagli)

CVE-2024-32162 (Clicca per dettagli)

CVE-2024-32163 (Clicca per dettagli)

CVE-2024-32166 (Clicca per dettagli)

CVE-2024-32167 (Clicca per dettagli)

CVE-2024-32205 (Clicca per dettagli)

CVE-2024-32206 (Clicca per dettagli)

CVE-2024-32210 (Clicca per dettagli)

CVE-2024-32211 (Clicca per dettagli)

CVE-2024-32212 (Clicca per dettagli)

CVE-2024-32213 (Clicca per dettagli)

CVE-2024-32228 (Clicca per dettagli)

CVE-2024-32229 (Clicca per dettagli)

CVE-2024-32230 (Clicca per dettagli)

CVE-2024-32231 (Clicca per dettagli)

CVE-2024-32236 (Clicca per dettagli)

CVE-2024-32238 (Clicca per dettagli)

CVE-2024-32254 (Clicca per dettagli)

CVE-2024-32256 (Clicca per dettagli)

CVE-2024-32258 (Clicca per dettagli)