7.2

CVSS3.1

CVE-2024-50324 -

Path traversal in Ivanti Endpoint Manager before 2024 November Security Update or 2022 SU6 November Security Updateย allows a remote authenticated attacker with admin privileges to achieve remote code execution.

๐Ÿ“… Published: Nov. 12, 2024, 3:37 p.m. ๐Ÿ”„ Last Modified: Nov. 19, 2024, 4:56 a.m.

7.8

CVSS3.1

CVE-2024-50323 -

SQL injection in Ivanti Endpoint Manager before 2024 November Security Update or 2022 SU6 November Security Updateย allows a local unauthenticated attacker to achieve code execution. User interaction is required.

๐Ÿ“… Published: Nov. 12, 2024, 3:37 p.m. ๐Ÿ”„ Last Modified: Nov. 19, 2024, 4:56 a.m.

7.8

CVSS3.1

CVE-2024-50322 -

Path traversal in Ivanti Endpoint Manager before 2024 November Security Update or 2022 SU6 November Security Updateย allows a local unauthenticated attacker to achieve code execution. User interaction is required.

๐Ÿ“… Published: Nov. 12, 2024, 3:36 p.m. ๐Ÿ”„ Last Modified: Nov. 19, 2024, 4:55 a.m.

7.5

CVSS3.1

CVE-2024-50331 -

An out-of-bounds read vulnerability in Ivanti Avalanche before 6.4.6 allows a remote unauthenticated attacker to leak sensitive information in memory.

๐Ÿ“… Published: Nov. 12, 2024, 3:34 p.m. ๐Ÿ”„ Last Modified: Dec. 18, 2024, 6:44 p.m.

7.5

CVSS3.1

CVE-2024-50321 -

An infinite loop in Ivanti Avalanche before 6.4.6 allows a remote unauthenticated attacker to cause a denial of service.

๐Ÿ“… Published: Nov. 12, 2024, 3:33 p.m. ๐Ÿ”„ Last Modified: Nov. 18, 2024, 3:06 p.m.

7.5

CVSS3.1

CVE-2024-50320 -

An infinite loop in Ivanti Avalanche before 6.4.6 allows a remote unauthenticated attacker to cause a denial of service.

๐Ÿ“… Published: Nov. 12, 2024, 3:32 p.m. ๐Ÿ”„ Last Modified: Nov. 18, 2024, 3:06 p.m.

7.5

CVSS3.1

CVE-2024-50319 -

An infinite loop in Ivanti Avalanche before 6.4.6 allows a remote unauthenticated attacker to cause a denial of service.

๐Ÿ“… Published: Nov. 12, 2024, 3:32 p.m. ๐Ÿ”„ Last Modified: Nov. 18, 2024, 3:06 p.m.

7.5

CVSS3.1

CVE-2024-50318 -

A null pointer dereference in Ivanti Avalanche before 6.4.6 allows a remote unauthenticated attacker to cause a denial of service.

๐Ÿ“… Published: Nov. 12, 2024, 3:30 p.m. ๐Ÿ”„ Last Modified: Nov. 18, 2024, 3:06 p.m.

7.5

CVSS3.1

CVE-2024-50317 -

A null pointer dereference in Ivanti Avalanche before 6.4.6 allows a remote unauthenticated attacker to cause a denial of service.

๐Ÿ“… Published: Nov. 12, 2024, 3:29 p.m. ๐Ÿ”„ Last Modified: Nov. 18, 2024, 3:06 p.m.

7.5

CVSS3.1

CVE-2024-45289 - Unbounded allocation in ctl(4) CAM Target Layer

The fetch(3) library uses environment variables for passing certain information, including the revocation file pathname. The environment variable name used by fetch(1) to pass the filename to the library was incorrect, in effect ignoring the option. Fetch would still connect to a host presenting โ€ฆ

๐Ÿ“… Published: Nov. 12, 2024, 3:06 p.m. ๐Ÿ”„ Last Modified: Jan. 10, 2025, 1:15 p.m.
Total resulsts: 343923
Page 7406 of 34,393
ยซ previous page ยป next page
Filters