5.5

CVSS3.1

CVE-2024-21757 -

A unverified password change in Fortinet FortiManager versions 7.0.0 through 7.0.10, versions 7.2.0 through 7.2.4, and versions 7.4.0 through 7.4.1, as well as Fortinet FortiAnalyzer versions 7.0.0 through 7.0.10, versions 7.2.0 through 7.2.4, and versions 7.4.0 through 7.4.1, allows an attacker to…

πŸ“… Published: Aug. 13, 2024, 3:51 p.m. πŸ”„ Last Modified: Aug. 22, 2024, 2:34 p.m.

5.9

CVSS3.1

CVE-2022-27486 -

A improper neutralization of special elements used in an os command ('os command injection') in Fortinet FortiDDoS version 5.5.0 through 5.5.1, 5.4.2 through 5.4.0, 5.3.0 through 5.3.1, 5.2.0, 5.1.0, 5.0.0, 4.7.0, 4.6.0 and 4.5.0 and FortiDDoS-F version 6.3.0 through 6.3.1, 6.2.0 through 6.2.2, 6.1…

πŸ“… Published: Aug. 13, 2024, 3:51 p.m. πŸ”„ Last Modified: Aug. 22, 2024, 2:29 p.m.

3.5

CVSS3.1

CVE-2022-45862 -

An insufficient session expiration vulnerability [CWE-613] vulnerability in FortiOS 7.2.5 and below, 7.0 all versions, 6.4 all versions; FortiProxy 7.2 all versions, 7.0 all versions; FortiPAM 1.3 all versions, 1.2 all versions, 1.1 all versions, 1.0 all versions; FortiSwitchManager 7.2.1 and below…

πŸ“… Published: Aug. 13, 2024, 3:51 p.m. πŸ”„ Last Modified: Aug. 22, 2024, 2:32 p.m.

4.7

CVSS3.1

CVE-2024-36505 -

An improper access control vulnerability [CWE-284] in FortiOS 7.4.0 through 7.4.3, 7.2.5 through 7.2.7, 7.0.12 through 7.0.14 and 6.4.x may allow an attacker who has already successfully obtained write access to the underlying system (via another hypothetical exploit) to bypass the file integrity c…

πŸ“… Published: Aug. 13, 2024, 3:51 p.m. πŸ”„ Last Modified: Aug. 22, 2024, 2:36 p.m.

6.4

CVSS3.1

CVE-2023-26211 -

An improper neutralization of input during web page generation ('cross-site scripting') in Fortinet FortiSOAR 7.3.0 through 7.3.2 allows an authenticated, remote attacker to inject arbitrary web script or HTML via the Communications module.

πŸ“… Published: Aug. 13, 2024, 3:51 p.m. πŸ”„ Last Modified: Aug. 22, 2024, 2:33 p.m.

9.5

CVSS4.0

CVE-2024-7746 - Use of default credentials at Traccar fleet management solution

Use of Default Credentials vulnerability in Tananaev Solutions Traccar Server on Administrator Panel modules allows Authentication Abuse.This issue affects the privileged transactions implemented by the Traccar solution that should otherwise be protected by the authentication mechanism.Β  These tran…

πŸ“… Published: Aug. 13, 2024, 3:14 p.m. πŸ”„ Last Modified: Oct. 12, 2025, 12:59 p.m.

5.3

CVSS3.1

CVE-2024-6384 - Backup files may be downloaded by underprivileged users in MongoDB Enterprise Server

"Hot" backup files may be downloaded by underprivileged users, if they are capable of acquiring a unique backup identifier. This issue affects MongoDB Enterprise Server v6.0 versions prior to 6.0.16, MongoDB Enterprise Server v7.0 versions prior to 7.0.11 and MongoDB Enterprise Server v7.3 versions…

πŸ“… Published: Aug. 13, 2024, 2:22 p.m. πŸ”„ Last Modified: Nov. 21, 2024, 9:49 a.m.

8.6

CVSS3.1

CVE-2024-6788 - Phoenix Contact: update feature from CHARX controller can be used to reset a low privilege user pas…

A remote unauthenticated attacker can use the firmware update feature on the LAN interface of the device to reset the password for the predefined, low-privileged user β€œuser-app” to the default password.

πŸ“… Published: Aug. 13, 2024, 1:15 p.m. πŸ”„ Last Modified: Aug. 22, 2025, 11:15 a.m.

7.1

CVSS3.1

CVE-2024-38502 - Pepperl+Fuchs: Device Master ICDM-RX/* XSS vulnerability allows stored XSS

An unauthenticated remote attacker may use stored XSS vulnerability to obtain information from a user or reboot the affected device once.

πŸ“… Published: Aug. 13, 2024, 12:33 p.m. πŸ”„ Last Modified: Aug. 22, 2024, 1:35 p.m.

6.1

CVSS3.1

CVE-2024-38501 - Pepperl+Fuchs: Device Master ICDM-RX/* XSS vulnerability allows HTML injection

An unauthenticated remote attacker may use a HTML injection vulnerability with limited length to inject malicious HTML code and gain low-privileged access on the affected device.

πŸ“… Published: Aug. 13, 2024, 12:33 p.m. πŸ”„ Last Modified: Aug. 22, 2024, 1:34 p.m.
Total resulsts: 346533
Page 8614 of 34,654
Β« previous page Β» next page
Filters