A vulnerability, which was classified as critical, was found in LiquidVPN Client up to 1.37 on MacOS. Affected is the function kextload of the component XPC Service. The manipulation of the argument tun_path/tap_path leads to os command injection.
This vulnerability is traded as CVE-2018-18859. Attacking locally is a requirement. Furthermore, there is an exploit available.
A vulnerability classified as problematic has been found in Avada Builder Plugin up to 3.11.12 on WordPress. This affects an unknown part of the component Post Handler. The manipulation leads to information disclosure.
This vulnerability is uniquely identified as CVE-2024-12335. It is possible to initiate the attack remotely. There is no exploit available.
A vulnerability classified as problematic was found in WooCommerce Point of Sale Plugin up to 6.1.0 on WordPress. This vulnerability affects unknown code of the component Email Handler. The manipulation leads to improper control of resource identifiers.
This vulnerability was named CVE-2024-11281. The attack can be initiated remotely. There is no exploit available.
A vulnerability, which was classified as critical, has been found in NEX-Forms Plugin up to 8.7.13 on WordPress. This issue affects some unknown processing. The manipulation leads to sql injection.
The identification of this vulnerability is CVE-2024-10862. The attack may be initiated remotely. There is no exploit available.
A vulnerability, which was classified as problematic, has been found in Oracle JDeveloper 11.1.2.3.0/11.1.2.4.0/12.1.2.0.0. This issue affects some unknown processing of the component Java Server Faces. The manipulation leads to path traversal.
The identification of this vulnerability is CVE-2013-3827. The attack may be initiated remotely. Furthermore, there is an exploit available.
It is recommended to upgrade the affected component.
A vulnerability was found in Ethan Galstad Nagios 1.4.9. It has been declared as critical. This vulnerability affects unknown code. The manipulation leads to memory corruption.
This vulnerability was named CVE-2007-5198. The attack can be initiated remotely. Furthermore, there is an exploit available.
It is recommended to upgrade the affected component.
A vulnerability was found in Apple macOS up to 10.13.5. It has been rated as critical. This issue affects some unknown processing of the component Windows Server. The manipulation leads to memory corruption.
The identification of this vulnerability is CVE-2018-4193. Attacking locally is a requirement. Furthermore, there is an exploit available.
It is recommended to upgrade the affected component.