2.7
CVE-2022-4003 -
A denial-of-service vulnerability could allow an authenticated user to trigger an internal service restart via a specially crafted API request.
7.8
CVE-2023-1577 -
A path hijacking vulnerability was reported in Lenovo Driver Manager prior to version 3.1.1307.1308 that could allow a local user to execute code with elevated privileges.
2.1
CVE-2024-4187 - Stored XSS vulnerability has been discovered in OpenTextโข Filr. The vulnerability could cause usersโฆ
Stored XSS vulnerability has been discovered in OpenTextโข Filr product, affecting versions 24.1.1 and 24.2. The vulnerability could cause users to not be warned when clicking links to external sites.
9.8
CVE-2024-41660 - slpd-lite unauthenticated memory corruption
slpd-lite is a unicast SLP UDP server. Any OpenBMC system that includes the slpd-lite package is impacted. Installing this package is the default when building OpenBMC. Nefarious users can send slp packets to the BMC using UDP port 427 to cause memory overflow issues within the slpd-lite daemon on โฆ
8.5
CVE-2024-7325 - IObit Driver Booster BPL VCL120.BPL uncontrolled search path
A vulnerability was found in IObit Driver Booster 11.0.0.0. It has been rated as critical. Affected by this issue is some unknown functionality in the library VCL120.BPL of the component BPL Handler. The manipulation leads to uncontrolled search path. Attacking locally is a requirement. The identifโฆ
4.4
CVE-2024-41951 - PheonixAppAPI has visible Encoding Maps
Pheonix App is a Python application designed to streamline various tasks, from managing files to playing mini-games. The issue is that the map of encoding/decoding languages are visible in code. The Problem was patched in 0.2.4.
5.3
CVE-2024-41954 - FOG Weak file permissions
FOG is a cloning/imaging/rescue suite/inventory management system. The application stores plaintext service account credentials in the "/opt/fog/.fogsettings" file. This file is by default readable by all users on the host. By exploiting these credentials, a malicious user could create new accountsโฆ
5.2
CVE-2024-41955 - Mobile Security Framework (MobSF) has an Open Redirect in Login Redirect
Mobile Security Framework (MobSF) is a security research platform for mobile applications in Android, iOS and Windows Mobile. An open redirect vulnerability exist in MobSF authentication view. Update to MobSF v4.0.5.
7.5
CVE-2024-41108 - FOG Sensitive Information Disclosure
FOG is a free open-source cloning/imaging/rescue suite/inventory management system. The hostinfo page has missing/improper access control since only the host's mac address is required to obtain the configuration information. This data can only be retrieved if a task is pending on that host.ย Otherwiโฆ
8.8
CVE-2024-40645 - FOG Authenticated File Upload RCE
FOG is a cloning/imaging/rescue suite/inventory management system. An improperly restricted file upload feature allows authenticated users to execute arbitrary code on the fogproject server. The Rebranding feature has a check on the client banner image requiring it to be 650 pixels wide and 120 pixโฆ