4.3

CVSS3.1

CVE-2024-45767 -

Dell OpenManage Enterprise, version(s) OME 4.1 and prior, contain(s) an Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability. A low privileged attacker with remote access could potentially exploit this vulnerability, leading to Information disclosure.

πŸ“… Published: Oct. 17, 2024, 2:05 a.m. πŸ”„ Last Modified: Dec. 2, 2024, 2:32 p.m.

8

CVSS3.1

CVE-2024-45766 -

Dell OpenManage Enterprise, version(s) OME 4.1 and prior, contain(s) an Improper Control of Generation of Code ('Code Injection') vulnerability. A low privileged attacker with remote access could potentially exploit this vulnerability, leading to Code execution.

πŸ“… Published: Oct. 17, 2024, 1:59 a.m. πŸ”„ Last Modified: Dec. 2, 2024, 2:37 p.m.

8.1

CVSS3.1

CVE-2024-33453 -

Buffer Overflow vulnerability in esp-idf v.5.1 allows a remote attacker to obtain sensitive information via the externalId component.

πŸ“… Published: Oct. 17, 2024, midnight πŸ”„ Last Modified: Dec. 31, 2025, 1:16 a.m.

8

CVSS3.1

CVE-2024-48636 -

D-Link DIR_882_FW130B06 and DIR_878 DIR_878_FW130B08 were discovered to contain a command injection vulnerability via the VLANID:0/VID parameter in the SetVLANSettings function. This vulnerability allows attackers to execute arbitrary OS commands via a crafted POST request.

πŸ“… Published: Oct. 17, 2024, midnight πŸ”„ Last Modified: May 7, 2025, 4:06 p.m.

8

CVSS3.1

CVE-2024-48192 -

Tenda G3 v15.01.0.5(2848_755)_EN was discovered to contain a hardcoded password vulnerability in /etc_ro/shadow, which allows attackers to log in as root

πŸ“… Published: Oct. 17, 2024, midnight πŸ”„ Last Modified: July 7, 2025, 4:20 p.m.

8

CVSS3.1

CVE-2024-48635 -

D-Link DIR_882_FW130B06 and DIR_878 DIR_878_FW130B08 were discovered to contain a command injection vulnerability via the VLANID:2/VID parameter in the SetVLANSettings function. This vulnerability allows attackers to execute arbitrary OS commands via a crafted POST request.

πŸ“… Published: Oct. 17, 2024, midnight πŸ”„ Last Modified: May 7, 2025, 4:06 p.m.

8

CVSS3.1

CVE-2024-48633 -

D-Link DIR_882_FW130B06 and DIR_878 DIR_878_FW130B08 were discovered to contain multiple command injection vulnerabilities via the ExternalPort, InternalPort, ProtocolNumber, and LocalIPAddress parameters in the SetVirtualServerSettings function. This vulnerability allows attackers to execute arbit…

πŸ“… Published: Oct. 17, 2024, midnight πŸ”„ Last Modified: May 7, 2025, 4:06 p.m.

8

CVSS3.1

CVE-2024-48632 -

D-Link DIR_882_FW130B06 and DIR_878 DIR_878_FW130B08 were discovered to contain multiple command injection vulnerabilities via the LocalIPAddress, TCPPorts, and UDPPorts parameters in the SetPortForwardingSettings function. This vulnerability allows attackers to execute arbitrary OS commands via a …

πŸ“… Published: Oct. 17, 2024, midnight πŸ”„ Last Modified: May 7, 2025, 4:06 p.m.

8

CVSS3.1

CVE-2024-48630 -

D-Link DIR_882_FW130B06 and DIR_878 DIR_878_FW130B08 were discovered to contain a command injection vulnerability via the MacAddress parameter in the SetMACFilters2 function. This vulnerability allows attackers to execute arbitrary OS commands via a crafted POST request.

πŸ“… Published: Oct. 17, 2024, midnight πŸ”„ Last Modified: May 7, 2025, 4:07 p.m.

8

CVSS3.1

CVE-2024-48634 -

D-Link DIR_882_FW130B06 and DIR_878 DIR_878_FW130B08 were discovered to contain a command injection vulnerability via the key parameter in the SetWLanRadioSecurity function. This vulnerability allows attackers to execute arbitrary OS commands via a crafted POST request.

πŸ“… Published: Oct. 17, 2024, midnight πŸ”„ Last Modified: May 7, 2025, 4:06 p.m.
Total resulsts: 349182
Page 8258 of 34,919
Β« previous page Β» next page
Filters