2.9

CVSS3.1

CVE-2024-40640 - Usage of non-constant time base64 decoder could lead to leakage of secret key material in vodozemac

vodozemac is an open source implementation of Olm and Megolm in pure Rust. Versions before 0.7.0 of vodozemac use a non-constant time base64 implementation for importing key material for Megolm group sessions and `PkDecryption` Ed25519 secret keys. This flaw might allow an attacker to infer some i…

πŸ“… Published: July 17, 2024, 5:27 p.m. πŸ”„ Last Modified: April 15, 2026, 12:35 a.m.

3.1

CVSS3.1

CVE-2023-42010 - IBM Sterling B2B Integrator Standard Edition information disclosure

IBM Sterling B2B Integrator Standard Edition 6.0.0.0 through 6.1.2.5 and 6.2.0.0 through 6.2.0.2 could disclose sensitive information in the HTTP response using man in the middle techniques. IBM X-Force ID: 265507.

πŸ“… Published: July 17, 2024, 5:18 p.m. πŸ”„ Last Modified: Nov. 21, 2024, 8:22 a.m.

3.5

CVSS3.1

CVE-2024-38870 - Stored XSS

Zohocorp ManageEngine OpManager, OpManager Plus, OpManager MSP and OpManager Enterprise Edition versions before 128104, from 128151 before 128238, from 128247 before 128250 are vulnerable to Stored XSS vulnerability in reports module.

πŸ“… Published: July 17, 2024, 4:48 p.m. πŸ”„ Last Modified: April 15, 2026, 12:35 a.m.

5.3

CVSS3.1

CVE-2024-20396 -

A vulnerability in the protocol handlers of Cisco Webex App could allow an unauthenticated, remote attacker to gain access to sensitive information. This vulnerability exists because the affected application does not safely handle file protocol handlers. An attacker could exploit this vulnerabil…

πŸ“… Published: July 17, 2024, 4:33 p.m. πŸ”„ Last Modified: July 31, 2025, 4:07 p.m.

6.4

CVSS3.1

CVE-2024-20395 -

A vulnerability in the media retrieval functionality of Cisco Webex App could allow an unauthenticated, adjacent attacker to gain access to sensitive session information. This vulnerability is due to insecure transmission of requests to backend services when the app accesses embedded media, such…

πŸ“… Published: July 17, 2024, 4:32 p.m. πŸ”„ Last Modified: July 31, 2025, 4:04 p.m.

4.7

CVSS3.1

CVE-2024-20400 -

A vulnerability in the web-based management interface of Cisco Expressway Series could allow an unauthenticated, remote attacker to redirect a user to a malicious web page. This vulnerability is due to improper input validation of HTTP request parameters. An attacker could exploit this vulnerabi…

πŸ“… Published: July 17, 2024, 4:29 p.m. πŸ”„ Last Modified: July 31, 2025, 4:40 p.m.

6.5

CVSS3.1

CVE-2024-20429 -

A vulnerability in the web-based management interface of Cisco AsyncOS for Secure Email Gateway could allow an authenticated, remote attacker to execute arbitrary system commands on an affected device. This vulnerability is due to insufficient input validation in certain portions of the web-base…

πŸ“… Published: July 17, 2024, 4:29 p.m. πŸ”„ Last Modified: Aug. 8, 2025, 1:56 a.m.

6.5

CVSS3.1

CVE-2024-20416 -

A vulnerability in the upload module of Cisco RV340 and RV345 Dual WAN Gigabit VPN Routers could allow an authenticated, remote attacker to execute arbitrary code on an affected device. This vulnerability is due to insufficient boundary checks when processing specific HTTP requests. An attacker …

πŸ“… Published: July 17, 2024, 4:29 p.m. πŸ”„ Last Modified: April 15, 2026, 12:35 a.m.

7.5

CVSS3.1

CVE-2024-20323 -

A vulnerability in Cisco Intelligent Node (iNode) Software could allow an unauthenticated, remote attacker to hijack the TLS connection between Cisco iNode Manager and associated intelligent nodes and send arbitrary traffic to an affected device. This vulnerability is due to the presence of hard…

πŸ“… Published: July 17, 2024, 4:28 p.m. πŸ”„ Last Modified: Aug. 1, 2025, 8:43 p.m.

4.7

CVSS3.1

CVE-2024-20296 -

A vulnerability in the web-based management interface of Cisco Identity Services Engine (ISE) could allow an authenticated, remote attacker to upload arbitrary files to an affected device. To exploit this vulnerability, an attacker would need at least valid Policy Admin credentials on the affected …

πŸ“… Published: July 17, 2024, 4:28 p.m. πŸ”„ Last Modified: April 7, 2025, 5:37 p.m.
Total resulsts: 349182
Page 9112 of 34,919
Β« previous page Β» next page
Filters