4

CVSS3.1

CVE-2024-42392 - Improper Neutralization of Delimiters in Mongoose Web Server library

Improper Neutralization of Delimiters vulnerability in Cesanta Mongoose Web Server v7.14 allows to trigger an infinite loop bug if the input string contains unexpected characters.

πŸ“… Published: Nov. 18, 2024, 9:07 a.m. πŸ”„ Last Modified: Nov. 19, 2024, 5:55 p.m.

4.3

CVSS3.1

CVE-2024-42391 - Use of Out-of-range Pointer Offset in Mongoose Web Server library

Use of Out-of-range Pointer Offset vulnerability in Cesanta Mongoose Web Server v7.14 allows an attacker to send an unexpected TLS packet and force the application to read unintended heap memory space.

πŸ“… Published: Nov. 18, 2024, 9:07 a.m. πŸ”„ Last Modified: Nov. 19, 2024, 5:50 p.m.

4.3

CVSS3.1

CVE-2024-42390 - Use of Out-of-range Pointer Offset in Mongoose Web Server library

Use of Out-of-range Pointer Offset vulnerability in Cesanta Mongoose Web Server v7.14 allows an attacker to send an unexpected TLS packet and force the application to read unintended heap memory space.

πŸ“… Published: Nov. 18, 2024, 9:06 a.m. πŸ”„ Last Modified: Nov. 19, 2024, 5:50 p.m.

5.3

CVSS3.1

CVE-2024-42389 - Use of Out-of-range Pointer Offset in Mongoose Web Server library

Use of Out-of-range Pointer Offset vulnerability in Cesanta Mongoose Web Server v7.14 allows an attacker to send an unexpected TLS packet and force the application to read unintended heap memory space.

πŸ“… Published: Nov. 18, 2024, 9:06 a.m. πŸ”„ Last Modified: Nov. 19, 2024, 5:51 p.m.

5.3

CVSS3.1

CVE-2024-42388 - Use of Out-of-range Pointer Offset in Mongoose Web Server library

Use of Out-of-range Pointer Offset vulnerability in Cesanta Mongoose Web Server v7.14 allows an attacker to send an unexpected TLS packet and force the application to read unintended heap memory space.

πŸ“… Published: Nov. 18, 2024, 9:06 a.m. πŸ”„ Last Modified: Nov. 19, 2024, 5:51 p.m.

5.3

CVSS3.1

CVE-2024-42387 - Use of Out-of-range Pointer Offset in Mongoose Web Server library

Use of Out-of-range Pointer Offset vulnerability in Cesanta Mongoose Web Server v7.14 allows an attacker to send an unexpected TLS packet and force the application to read unintended heap memory space.

πŸ“… Published: Nov. 18, 2024, 9:06 a.m. πŸ”„ Last Modified: Nov. 19, 2024, 5:51 p.m.

7.1

CVSS3.1

CVE-2024-41974 - WAGO: BACNet Service Property Modification Due to Permission Misconfiguration in Multiple Devices

A low privileged remote attackerΒ may modify the BACNet service properties due to incorrect permission assignment for critical resources which may lead to a DoS limited to BACNet communication.

πŸ“… Published: Nov. 18, 2024, 9:05 a.m. πŸ”„ Last Modified: April 15, 2026, 12:35 a.m.

8.2

CVSS3.1

CVE-2024-42386 - Use of Out-of-range Pointer Offset in Mongoose Web Server library

Use of Out-of-range Pointer Offset vulnerability in Cesanta Mongoose Web Server v7.14 allows an attacker to send an unexpected TLS packet and produce a segmentation fault on the application.

πŸ“… Published: Nov. 18, 2024, 9:05 a.m. πŸ”„ Last Modified: Nov. 19, 2024, 5:52 p.m.

8.1

CVSS3.1

CVE-2024-41973 - WAGO: Remote Arbitrary File Write with Root Privileges in multiple Devices

A low privileged remote attacker canΒ specify an arbitrary file on the filesystem whichΒ may lead to an arbitrary file writes with root privileges.

πŸ“… Published: Nov. 18, 2024, 9:05 a.m. πŸ”„ Last Modified: April 15, 2026, 12:35 a.m.

4

CVSS3.1

CVE-2024-42385 - Improper Neutralization of Delimiters in Mongoose Web Server library

Improper Neutralization of Delimiters vulnerability in Cesanta Mongoose Web Server v7.14 allows to trigger an out-of-bound memory write if the PEM certificate contains unexpected characters.

πŸ“… Published: Nov. 18, 2024, 9:05 a.m. πŸ”„ Last Modified: Nov. 19, 2024, 5:54 p.m.
Total resulsts: 345152
Page 7433 of 34,516
Β« previous page Β» next page
Filters