7.5

CVSS3.1

CVE-2024-52881 -

An issue was discovered in AudioCodes One Voice Operations Center (OVOC) before 8.4.582. Due to the use of a hard-coded key, an attacker is able to decrypt sensitive data such as passwords extracted from the topology file.

πŸ“… Published: Feb. 7, 2025, midnight πŸ”„ Last Modified: May 1, 2025, 2:25 p.m.

6.1

CVSS3.1

CVE-2024-52882 -

An issue was discovered in AudioCodes One Voice Operations Center (OVOC) before 8.4.582. Due to improper neutralization of input via the devices API, an attacker can inject malicious JavaScript code (XSS) to attack logged-in administrator sessions.

πŸ“… Published: Feb. 7, 2025, midnight πŸ”„ Last Modified: May 1, 2025, 2:25 p.m.

7.5

CVSS3.1

CVE-2024-52883 -

An issue was discovered in AudioCodes One Voice Operations Center (OVOC) before 8.4.582. Due to a path traversal vulnerability, sensitive data can be read without any authentication.

πŸ“… Published: Feb. 7, 2025, midnight πŸ”„ Last Modified: May 1, 2025, 2:25 p.m.

9.8

CVSS3.1

CVE-2024-57707 -

An issue in DataEase v1 allows an attacker to execute arbitrary code via the user account and password components.

πŸ“… Published: Feb. 7, 2025, midnight πŸ”„ Last Modified: March 28, 2025, 5:24 p.m.

0.0

CVE-2025-25725 -

DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: CVE-2025-25724. Reason: This candidate is a reservation duplicate of CVE-2025-25724. Notes: All CVE users should reference CVE-2025-25724 instead of this candidate. All references and descriptions in this candidate have been removed to prevent accidenta…

πŸ“… Published: Feb. 7, 2025, midnight πŸ”„ Last Modified: March 2, 2025, 2:15 a.m.

0.0

CVE-2025-25726 -

DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: CVE-2024-53427. Reason: This candidate is a reservation duplicate of CVE-2024-53427. Notes: All CVE users should reference CVE-2024-53427 instead of this candidate. All references and descriptions in this candidate have been removed to prevent accidenta…

πŸ“… Published: Feb. 7, 2025, midnight πŸ”„ Last Modified: March 2, 2025, 2:15 a.m.

5.4

CVSS3.1

CVE-2024-57278 -

A reflected Cross-Site Scripting (XSS) vulnerability exists in /webscan/sqlmap/index.html in QingScan <=v1.8.0. The vulnerability is caused by improper input sanitization of the query parameter, allowing an attacker to inject malicious JavaScript payloads. When a victim accesses a crafted URL conta…

πŸ“… Published: Feb. 7, 2025, midnight πŸ”„ Last Modified: April 15, 2026, 12:35 a.m.

6.5

CVSS3.1

CVE-2024-57249 -

Incorrect Access Control in the Preview Function of Gleamtech FileVista 9.2.0.0 allows remote attackers to gain unauthorized access via exploiting a vulnerability in access control mechanisms by removing authentication-related HTTP headers, such as the Cookie header, in the request. This bypasses t…

πŸ“… Published: Feb. 7, 2025, midnight πŸ”„ Last Modified: Sept. 15, 2025, 6:02 p.m.

9.8

CVSS3.1

CVE-2024-55215 -

An issue in trojan v.2.0.0 through v.2.15.3 allows a remote attacker to escalate privileges via the initialization interface /auth/register.

πŸ“… Published: Feb. 7, 2025, midnight πŸ”„ Last Modified: July 3, 2025, 1:12 a.m.

7.5

CVSS3.1

CVE-2024-55272 -

An issue in Brainasoft Braina v2.8 allows a remote attacker to obtain sensitive information via the chat window function.

πŸ“… Published: Feb. 7, 2025, midnight πŸ”„ Last Modified: April 15, 2026, 12:35 a.m.
Total resulsts: 348490
Page 6755 of 34,849
Β« previous page Β» next page
Filters