4.3

CVSS3.1

CVE-2024-25270 -

An issue in Mirapolis LMS 4.6.XX allows authenticated users to exploit an Insecure Direct Object Reference (IDOR) vulnerability by manipulating the ID parameter and increment STEP parameter, leading to the exposure of sensitive user data.

๐Ÿ“… Published: Sept. 12, 2024, midnight ๐Ÿ”„ Last Modified: March 25, 2025, 5:15 p.m.

5.5

CVSS3.1

CVE-2024-45182 -

An issue was discovered in WibuKey64.sys in WIBU-SYSTEMS WibuKey before v6.70 and fixed in v.6.70 An improper bounds check allows specially crafted packets to cause an arbitrary address read, resulting in Denial of Service.

๐Ÿ“… Published: Sept. 12, 2024, midnight ๐Ÿ”„ Last Modified: Oct. 29, 2024, 9:35 p.m.

3.1

CVSS3.1

CVE-2024-36066 -

The CMP CLI client in KeyFactor EJBCA before 8.3.1 has only 6 octets of salt, and is thus not compliant with the security requirements of RFC 4211, and might make man-in-the-middle attacks easier. CMP includes password-based MAC as one of the options for message integrity and authentication (the otโ€ฆ

๐Ÿ“… Published: Sept. 12, 2024, midnight ๐Ÿ”„ Last Modified: March 25, 2025, 5:15 p.m.

5.4

CVSS3.1

CVE-2020-24061 -

Cross Site Scripting (XSS) Vulnerability in Firewall menu in Control Panel in KASDA KW5515 version 4.3.1.0, allows attackers to execute arbitrary code and steal cookies via a crafted script

๐Ÿ“… Published: Sept. 12, 2024, midnight ๐Ÿ”„ Last Modified: Sept. 13, 2024, 4:05 p.m.

7.5

CVSS3.1

CVE-2024-44460 -

An invalid read size in Nanomq v0.21.9 allows attackers to cause a Denial of Service (DoS).

๐Ÿ“… Published: Sept. 12, 2024, midnight ๐Ÿ”„ Last Modified: Oct. 30, 2024, 7:35 p.m.

8.8

CVSS3.1

CVE-2024-45181 -

An issue was discovered in WibuKey64.sys in WIBU-SYSTEMS WibuKey before v6.70 and fixed in v.6.70. An improper bounds check allows crafted packets to cause an arbitrary address write, resulting in kernel memory corruption.

๐Ÿ“… Published: Sept. 12, 2024, midnight ๐Ÿ”„ Last Modified: Sept. 18, 2024, 8:26 p.m.

6.6

CVSS3.1

CVE-2024-41629 -

An issue in Texas Instruments Fusion Digital Power Designer v.7.10.1 allows a local attacker to obtain sensitive information via the plaintext storage of credentials

๐Ÿ“… Published: Sept. 12, 2024, midnight ๐Ÿ”„ Last Modified: Nov. 21, 2024, 9:32 a.m.

6.1

CVSS3.1

CVE-2024-34335 -

ORDAT FOSS-Online before version 2.24.01 was discovered to contain a reflected cross-site scripting (XSS) vulnerability via the login page.

๐Ÿ“… Published: Sept. 12, 2024, midnight ๐Ÿ”„ Last Modified: Sept. 18, 2024, 8:32 p.m.

9.3

CVSS3.1

CVE-2024-34334 -

ORDAT FOSS-Online before v2.24.01 was discovered to contain a SQL injection vulnerability via the forgot password function.

๐Ÿ“… Published: Sept. 12, 2024, midnight ๐Ÿ”„ Last Modified: Sept. 18, 2024, 8:32 p.m.

7.5

CVSS3.1

CVE-2024-44459 -

A memory allocation issue in vernemq v2.0.1 allows attackers to cause a Denial of Service (DoS) via excessive memory consumption.

๐Ÿ“… Published: Sept. 12, 2024, midnight ๐Ÿ”„ Last Modified: Oct. 30, 2024, 8:35 p.m.
Total resulsts: 349182
Page 8592 of 34,919
ยซ previous page ยป next page
Filters