Order Status Batch Change Plug-In on EC-CUBE cross site scripting

A vulnerability was found in Order Status Batch Change Plug-In on EC-CUBE (unknown version). It has been rated as problematic. This issue affects an unknown part. There is no information about possible countermeasures known. It may be suggested to replace the affected object with an alternative product.

Common Vulnerabilityies and Exposures

Contact us to get started

CVE-2024-47248 : APACHE NIMBLE UP TO 1.7.0 MESH MESSAGE BUFFER OVERFLOW

CVE-2024-47248 : APACHE NIMBLE UP TO 1.7.0 MESH MESSAGE BUFFER OVERFLOW

Description Buffer Copy without Checking Size of Input (‘Classic Buffer Overflow’) vulnerability in Apache NimBLE. Specially crafted MESH message could

CVE-2024-49353 : IBM WATSON SPEECH SERVICES CARTRIDGE FOR CLOUD PAK FOR DATA RACE CONDITION

CVE-2024-49353 : IBM WATSON SPEECH SERVICES CARTRIDGE FOR CLOUD PAK FOR DATA RACE CONDITION

Description IBM Watson Speech Services Cartridge for IBM Cloud Pak for Data 4.0.0 through 5.0.2 does not properly check inputs

CVE-2024-53098 : LINUX KERNEL UP TO 6.11.8 UFENCE ACCESS_OK BUFFER OVERFLOW

CVE-2024-53098 : LINUX KERNEL UP TO 6.11.8 UFENCE ACCESS_OK BUFFER OVERFLOW

Description In the Linux kernel, the following vulnerability has been resolved: drm/xe/ufence: Prefetch ufence addr to catch bogus address access_ok()