0.0

CVE-2025-47892 -

Not used

πŸ“… Published: May 13, 2025, 12:23 p.m. πŸ”„ Last Modified: May 14, 2025, 4:16 a.m.

4.9

CVSS3.1

CVE-2025-4649 - ACL are not correctly taken into account in the display of the "event logs" page. This page requiri…

Improper Privilege Management vulnerability in Centreon web allows Privilege Escalation. ACL are not correctly taken into account in the display of the "event logs" page. This page requiring, high privileges, will display all available logs. This issue affects web: from 24.10.3 before 24.10.4, fr…

πŸ“… Published: May 13, 2025, 11:40 a.m. πŸ”„ Last Modified: May 13, 2025, 7:35 p.m.

5.2

CVSS4.0

CVE-2025-32917 - Privilege escalation in jar_signature

Privilege escalation in jar_signature agent plugin in Checkmk versions <2.4.0b7 (beta), <2.3.0p32, <2.2.0p42, and 2.1.0p49 (EOL) allow user with write access to JAVA_HOME/bin directory to escalate privileges.

πŸ“… Published: May 13, 2025, 10:45 a.m. πŸ”„ Last Modified: May 13, 2025, 7:35 p.m.

8.4

CVSS3.1

CVE-2025-4648 - A user with elevated privileges can inject XSS by altering the content of a SVG media during the su…

Download of Code Without Integrity Check vulnerability in Centreon web allows Reflected XSS. A user with elevated privileges can inject XSS by altering the content of a SVG media during the submit request. This issue affects web: from 24.10.0 before 24.10.5, from 24.04.0 before 24.04.11, from 23.10…

πŸ“… Published: May 13, 2025, 9:45 a.m. πŸ”„ Last Modified: May 13, 2025, 7:35 p.m.

6.7

CVSS4.0

CVE-2025-40583 -

A vulnerability has been identified in SCALANCE LPE9403 (6GK5998-3GS00-2AC2) (All versions with SINEMA Remote Connect Edge Client installed). Affected devices do transmit sensitive information in cleartext. This could allow a privileged local attacker to retrieve this sensitive information.

πŸ“… Published: May 13, 2025, 9:39 a.m. πŸ”„ Last Modified: May 13, 2025, 7:35 p.m.

8.5

CVSS4.0

CVE-2025-40582 -

A vulnerability has been identified in SCALANCE LPE9403 (6GK5998-3GS00-2AC2) (All versions with SINEMA Remote Connect Edge Client installed). Affected devices do not properly sanitize configuration parameters. This could allow a non-privileged local attacker to execute root commands on the device.

πŸ“… Published: May 13, 2025, 9:39 a.m. πŸ”„ Last Modified: May 13, 2025, 7:35 p.m.

8.4

CVSS4.0

CVE-2025-40581 -

A vulnerability has been identified in SCALANCE LPE9403 (6GK5998-3GS00-2AC2) (All versions with SINEMA Remote Connect Edge Client installed). Affected devices are vulnerable to an authentication bypass. This could allow a non-privileged local attacker to bypass the authentication of the SINEMA Rem…

πŸ“… Published: May 13, 2025, 9:39 a.m. πŸ”„ Last Modified: May 13, 2025, 7:35 p.m.

5.4

CVSS4.0

CVE-2025-40580 -

A vulnerability has been identified in SCALANCE LPE9403 (6GK5998-3GS00-2AC2) (All versions). Affected devices are vulnerable to a stack-based buffer overflow. This could allow a non-privileged local attacker to execute arbitrary code on the device or to cause a denial of service condition.

πŸ“… Published: May 13, 2025, 9:39 a.m. πŸ”„ Last Modified: May 13, 2025, 7:35 p.m.

5.4

CVSS4.0

CVE-2025-40579 -

A vulnerability has been identified in SCALANCE LPE9403 (6GK5998-3GS00-2AC2) (All versions). Affected devices are vulnerable to a stack-based buffer overflow. This could allow a non-privileged local attacker to execute arbitrary code on the device or to cause a denial of service condition.

πŸ“… Published: May 13, 2025, 9:39 a.m. πŸ”„ Last Modified: May 13, 2025, 7:35 p.m.

5.3

CVSS4.0

CVE-2025-40578 -

A vulnerability has been identified in SCALANCE LPE9403 (6GK5998-3GS00-2AC2) (All versions). Affected devices do not properly handle multiple incoming Profinet packets received in rapid succession. An unauthenticated remote attacker can exploit this flaw by sending multiple packets in a very short…

πŸ“… Published: May 13, 2025, 9:39 a.m. πŸ”„ Last Modified: May 13, 2025, 7:35 p.m.
Total resulsts: 293904
Page 24 of 29,391
Β« previous page Β» next page
Filters