5.3

CVSS3.1

CVE-2024-7128 - Openshift-console: unauthenticated data exposure

A flaw was found in the OpenShift console. Several endpoints in the application use the authHandler() and authHandlerWithUser() middleware functions. When the default authentication provider ("openShiftAuth") is set, these functions do not perform any authentication checks, relying instead on the t…

πŸ“… Published: July 26, 2024, midnight πŸ”„ Last Modified: April 15, 2026, 12:35 a.m.

7.1

CVSS3.1

CVE-2024-41357 -

phpipam 1.6 is vulnerable to Cross Site Scripting (XSS) via /app/admin/powerDNS/record-edit.php.

πŸ“… Published: July 26, 2024, midnight πŸ”„ Last Modified: April 23, 2025, 6:34 p.m.

5.8

CVSS3.1

CVE-2024-27357 -

An issue was discovered in WithSecure Elements Agent through 23.x for macOS, WithSecure Elements Client Security through 23.x for macOS, and WithSecure MDR through 23.x for macOS. Local Privilege Escalation can occur during installations or updates by admins.

πŸ“… Published: July 26, 2024, midnight πŸ”„ Last Modified: April 15, 2026, 12:35 a.m.

6.3

CVSS3.1

CVE-2024-41373 -

ICEcoder 8.1 contains a Path Traversal vulnerability via lib/backup-versions-preview-loader.php.

πŸ“… Published: July 26, 2024, midnight πŸ”„ Last Modified: April 22, 2025, 1:59 p.m.

3.3

CVSS3.1

CVE-2024-27358 -

An issue was discovered in WithSecure Elements Agent through 23.x for macOS and WithSecure Elements Client Security through 23.x for macOS. Local users can block an admin from completing an installation, aka a Denial-of-Service (DoS).

πŸ“… Published: July 26, 2024, midnight πŸ”„ Last Modified: April 15, 2026, 12:35 a.m.

7.8

CVSS3.1

CVE-2023-50700 - dde-file-manager: Insecure Permissions vulnerability in Deepin dde-file-manager

Insecure Permissions vulnerability in Deepin dde-file-manager 6.0.54 and earlier allows privileged operations to be called by unprivileged users via the D-Bus method.

πŸ“… Published: July 26, 2024, midnight πŸ”„ Last Modified: April 15, 2026, 12:35 a.m.

9.8

CVSS3.1

CVE-2024-26520 -

An issue in Hangzhou Xiongwei Technology Development Co., Ltd. Restaurant Digital Comprehensive Management platform v1 allows an attacker to bypass authentication and perform arbitrary password resets.

πŸ“… Published: July 26, 2024, midnight πŸ”„ Last Modified: April 15, 2026, 12:35 a.m.

5.9

CVSS3.1

CVE-2024-37034 -

An issue was discovered in Couchbase Server before 7.2.5 and 7.6.0 before 7.6.1. It does not ensure that credentials are negotiated with the Key-Value (KV) service using SCRAM-SHA when remote link encryption is configured for Half-Secure.

πŸ“… Published: July 26, 2024, midnight πŸ”„ Last Modified: March 14, 2025, 4:15 p.m.

7

CVSS3.1

CVE-2024-40897 - orc: Stack-based buffer overflow vulnerability in ORC

Stack-based buffer overflow vulnerability exists in orcparse.c of ORC versions prior to 0.4.39. If a developer is tricked to process a specially crafted file with the affected ORC compiler, an arbitrary code may be executed on the developer's build environment. This may lead to compromise of develo…

πŸ“… Published: July 26, 2024, midnight πŸ”„ Last Modified: Feb. 13, 2025, 5:53 p.m.

6.1

CVSS3.1

CVE-2024-41375 -

ICEcoder 8.1 is vulnerable to Cross Site Scripting (XSS) via lib/terminal-xhr.php

πŸ“… Published: July 26, 2024, midnight πŸ”„ Last Modified: April 22, 2025, 1:59 p.m.
Total resulsts: 349182
Page 9051 of 34,919
Β« previous page Β» next page
Filters