8.6

CVSS4.0

CVE-2024-33606 - MicroDicom DICOM Viewer Improper Authorization in Handler for Custom URL Scheme

An attacker could retrieve sensitive files (medical images) as well as plant new medical images or overwrite existing medical images on a MicroDicom DICOM Viewer system. User interaction is required to exploit this vulnerability.

๐Ÿ“… Published: June 11, 2024, 8:17 p.m. ๐Ÿ”„ Last Modified: April 23, 2025, 6:43 p.m.

8.7

CVSS4.0

CVE-2024-28877 - MicroDicom DICOM Viewer Stack-based Buffer Overflow

MicroDicom DICOM Viewer is vulnerable to a stack-based buffer overflow, which may allow an attacker to execute arbitrary code on affected installations of DICOM Viewer. User interaction is required to exploit this vulnerability.

๐Ÿ“… Published: June 11, 2024, 8:15 p.m. ๐Ÿ”„ Last Modified: April 10, 2025, 8:20 p.m.

9

CVSS3.1

CVE-2024-35213 - Vulnerability in SGI Image Codec Impacts BlackBerry QNX Software Development Platform (SDP)

An improper input validation vulnerability in the SGI Image Codec of QNX SDP version(s) 6.6, 7.0, and 7.1 could allow an attacker to potentially cause a denial-of-service condition or execute code in the context of the image processing process.

๐Ÿ“… Published: June 11, 2024, 6:37 p.m. ๐Ÿ”„ Last Modified: Sept. 9, 2025, 3:15 p.m.

7.2

CVSS3.1

CVE-2024-37301 - document-merge-service vulnerable to Remote Code Execution via Server-Side Template Injection

Document Merge Service is a document template merge service providing an API to manage templates and merge them with given data. Versions 6.5.1 and prior are vulnerable to remote code execution via server-side template injection which, when executed as root, can result in full takeover of the affecโ€ฆ

๐Ÿ“… Published: June 11, 2024, 6:34 p.m. ๐Ÿ”„ Last Modified: April 15, 2026, 12:35 a.m.

8

CVSS3.1

CVE-2024-28020 -

A user/password reuse vulnerability exists in the FOXMAN-UN/UNEM application and server management. If exploited a malicious high-privileged user could use the passwords and login information through complex routines to extend access on the server and other services.

๐Ÿ“… Published: June 11, 2024, 6:20 p.m. ๐Ÿ”„ Last Modified: Nov. 21, 2024, 9:05 a.m.

4.1

CVSS3.1

CVE-2024-28024 -

A vulnerability exists in the FOXMAN-UN/UNEM in which sensitive information is stored in cleartext within a resource that might be accessible to another control sphere.

๐Ÿ“… Published: June 11, 2024, 6:17 p.m. ๐Ÿ”„ Last Modified: Nov. 21, 2024, 9:05 a.m.

6.5

CVSS3.1

CVE-2024-28022 -

A vulnerability exists in the UNEM server / APIGateway that if exploited allows a malicious user to perform an arbitrary number of authentication attempts using different passwords, and eventually gain access to other components in the same security realm using the targeted account.

๐Ÿ“… Published: June 11, 2024, 6:15 p.m. ๐Ÿ”„ Last Modified: May 20, 2025, 2 p.m.

8.4

CVSS4.0

CVE-2024-4190 - OpenText ArcSight Logger Stored XSS

Stored Cross-Site Scripting (XSS) vulnerabilities have been identified in OpenText ArcSight Logger. The vulnerabilities could be remotely exploited.

๐Ÿ“… Published: June 11, 2024, 5:48 p.m. ๐Ÿ”„ Last Modified: April 15, 2026, 12:35 a.m.

5.3

CVSS4.0

CVE-2024-5851 - playSMS SMS Schedule cross site scripting

A vulnerability classified as problematic has been found in playSMS up to 1.4.7. Affected is an unknown function of the file /index.php?app=main&inc=feature_schedule&op=list of the component SMS Schedule Handler. The manipulation of the argument name/message leads to basic cross site scripting. It โ€ฆ

๐Ÿ“… Published: June 11, 2024, 5:31 p.m. ๐Ÿ”„ Last Modified: April 15, 2026, 12:35 a.m.

4.3

CVSS3.1

CVE-2024-23518 - WordPress ACF Photo Gallery Field plugin <= 2.6 - Broken Access Control vulnerability

Missing Authorization vulnerability in Navneil Naicker ACF Photo Gallery Field.This issue affects ACF Photo Gallery Field: from n/a through 2.6.

๐Ÿ“… Published: June 11, 2024, 5:05 p.m. ๐Ÿ”„ Last Modified: April 15, 2026, 12:35 a.m.
Total resulsts: 349182
Page 9493 of 34,919
ยซ previous page ยป next page
Filters