5.4

CVSS3.1

CVE-2024-52534 -

Dell ECS, version(s) prior to ECS 3.8.1.3, contain(s) an Authentication Bypass by Capture-replay vulnerability. A low privileged attacker with remote access could potentially exploit this vulnerability, leading to Session theft.

πŸ“… Published: Dec. 25, 2024, 4:04 p.m. πŸ”„ Last Modified: Jan. 21, 2025, 9:30 p.m.

6.5

CVSS3.1

CVE-2024-52543 -

Dell NativeEdge, version(s) 2.1.0.0, contain(s) a Creation of Temporary File With Insecure Permissions vulnerability. A high privileged attacker with local access could potentially exploit this vulnerability, leading to Information disclosure.

πŸ“… Published: Dec. 25, 2024, 3:13 p.m. πŸ”„ Last Modified: Jan. 29, 2025, 8:26 p.m.

7.5

CVSS3.1

CVE-2024-53291 -

Dell NativeEdge, version(s) 2.1.0.0, contain(s) an Exposure of Sensitive Information Through Metadata vulnerability. An unauthenticated attacker with remote access could potentially exploit this vulnerability, leading to Information disclosure.

πŸ“… Published: Dec. 25, 2024, 3:02 p.m. πŸ”„ Last Modified: Jan. 29, 2025, 8:26 p.m.

7.8

CVSS3.1

CVE-2024-47978 -

Dell NativeEdge, version(s) 2.1.0.0, contain(s) an Execution with Unnecessary Privileges vulnerability. A low privileged attacker with local access could potentially exploit this vulnerability, leading to Elevation of privileges.

πŸ“… Published: Dec. 25, 2024, 2:57 p.m. πŸ”„ Last Modified: Jan. 29, 2025, 8:40 p.m.

5.5

CVSS3.1

CVE-2024-52906 - IBM AIX denial of service

IBM AIXΒ 7.2, 7.3, VIOS 3.1, and 4.1 could allow a non-privileged local user to exploit a vulnerability in the TCP/IP kernel extension to cause a denial of service.

πŸ“… Published: Dec. 25, 2024, 2:48 p.m. πŸ”„ Last Modified: July 25, 2025, 9:13 p.m.

5.5

CVSS3.1

CVE-2024-47102 - IBM AIX denial of service

IBM AIXΒ 7.2, 7.3, VIOS 3.1, and 4.1 could allow a non-privileged local user to exploit a vulnerability in the AIX perfstat kernel extension to cause a denial of service.

πŸ“… Published: Dec. 25, 2024, 2:47 p.m. πŸ”„ Last Modified: Sept. 29, 2025, 4:15 p.m.

3.7

CVSS3.1

CVE-2023-5117 - Exposure of Sensitive Information Due to Incompatible Policies in GitLab

An issue was discovered in GitLab CE/EE affecting all versions before 17.6.0 in which users were unaware that files uploaded to comments on confidential issues and epics of public projects could be accessed without authentication via a direct link to the uploaded file URL.

πŸ“… Published: Dec. 25, 2024, 2:46 p.m. πŸ”„ Last Modified: July 11, 2025, 8:34 p.m.

7.1

CVSS3.1

CVE-2024-52535 -

Dell SupportAssist for Home PCs versions 4.6.1 and prior and Dell SupportAssist for Business PCs versions 4.5.0 and prior, contain a symbolic link (symlink) attack vulnerability in the software remediation component. A low-privileged authenticated user could potentially exploit this vulnerability, …

πŸ“… Published: Dec. 25, 2024, 2:41 p.m. πŸ”„ Last Modified: Jan. 29, 2025, 8:37 p.m.

6.1

CVSS3.1

CVE-2024-39727 - IBM Engineering Lifecycle Optimization - Engineering Insights tabnabbing

IBM Engineering Lifecycle Optimization - Engineering Insights 7.0.2 and 7.0.3Β uses a web link with untrusted references to an external site. A remote attacker could exploit this vulnerability to expose sensitive information or perform unauthorized actions on the victims’ web browser.

πŸ“… Published: Dec. 25, 2024, 1:59 p.m. πŸ”„ Last Modified: Jan. 10, 2025, 8:15 p.m.

5.3

CVSS3.1

CVE-2024-39725 - IBM Engineering Lifecycle Optimization - Engineering Insights information disclosure

IBM Engineering Lifecycle Optimization - Engineering Insights 7.0.2 and 7.0.3 could allow a remote attacker to obtain sensitive information when a detailed technical error message is returned in the browser. This information could be used in further attacks against the system.

πŸ“… Published: Dec. 25, 2024, 1:56 p.m. πŸ”„ Last Modified: Jan. 10, 2025, 8:14 p.m.
Total resulsts: 349182
Page 7382 of 34,919
Β« previous page Β» next page
Filters