5.3
CVE-2024-4790 - DedeCMS path traversal
A vulnerability classified as problematic has been found in DedeCMS 5.7.114. This affects an unknown part of the file /sys_verifies.php?action=view. The manipulation of the argument filename with the input ../../../../../etc/passwd leads to path traversal: '../filedir'. It is possible to initiate tโฆ
2.7
CVE-2023-47711 - IBM Security Guardium denial of service
IBM Security Guardium 11.3, 11.4, 11.5, and 12.0 could allow an authenticated user to upload files that would cause a denial of service. IBM X-Force ID: 271526.
7.8
CVE-2023-47712 - IBM Security Guardium privilege escalation
IBM Security Guardium 11.3, 11.4, 11.5, and 12.0 could allow a local user to gain elevated privileges on the system due to improper permissions control. IBM X-Force ID: 271527.
9.1
CVE-2023-47709 - IBM Security Guardium command injection
IBM Security Guardium 11.3, 11.4, 11.5, and 12.0 could allow a remote authenticated attacker to execute arbitrary commands on the system by sending a specially crafted request. IBM X-Force ID: 271524.
4.3
CVE-2024-28760 - IBM App Connect Enterprise denial of service
IBM App Connect Enterprise 11.0.0.1 through 11.0.0.25 and 12.0.1.0 through 12.0.12.0 dashboard is vulnerable to a denial of service due to improper restrictions of resource allocation. IBM X-Force ID: 285244.
5.4
CVE-2024-28761 - IBM App Connect Enterprise HTML injection
IBM App Connect Enterprise 11.0.0.1 through 11.0.0.25 and 12.0.1.0 through 12.0.12.0 is vulnerable to HTML injection. A remote attacker could inject malicious HTML code, which when viewed, would be executed in the victim's Web browser within the security context of the hosting site. IBM X-Force IDโฆ
6.2
CVE-2023-52721 -
The WindowManager module has a vulnerability in permission control. Impact: Successful exploitation of this vulnerability may affect confidentiality.
6.4
CVE-2024-4046 -
Cracking vulnerability in the OS security module Impact: Successful exploitation of this vulnerability will affect availability.
6.8
CVE-2024-32999 -
Cracking vulnerability in the OS security module Impact: Successful exploitation of this vulnerability will affect availability.
5.9
CVE-2024-32998 -
NULL pointer access vulnerability in the clock module Impact: Successful exploitation of this vulnerability will affect availability.