8.5

CVSS4.0

CVE-2024-47783 -

A vulnerability has been identified in SIPORT (All versions < V3.4.0). The affected application improperly assigns file permissions to installation folders. This could allow a local attacker with an unprivileged account to override or modify the service executables and subsequently gain elevated…

πŸ“… Published: Nov. 12, 2024, 12:49 p.m. πŸ”„ Last Modified: Nov. 13, 2024, 11:13 p.m.

5.3

CVSS4.0

CVE-2024-46894 -

A vulnerability has been identified in SINEC INS (All versions < V1.0 SP2 Update 3). The affected application does not properly validate authorization of a user to query the "/api/sftp/users" endpoint. This could allow an authenticated remote attacker to gain knowledge about the list of configured …

πŸ“… Published: Nov. 12, 2024, 12:49 p.m. πŸ”„ Last Modified: Aug. 20, 2025, 7:09 p.m.

6.9

CVSS4.0

CVE-2024-46892 -

A vulnerability has been identified in SINEC INS (All versions < V1.0 SP2 Update 3). The affected application does not properly invalidate sessions when the associated user is deleted or disabled or their permissions are modified. This could allow an authenticated attacker to continue performing ma…

πŸ“… Published: Nov. 12, 2024, 12:49 p.m. πŸ”„ Last Modified: Nov. 13, 2024, 11:13 p.m.

6.9

CVSS4.0

CVE-2024-46891 -

A vulnerability has been identified in SINEC INS (All versions < V1.0 SP2 Update 3). The affected application does not properly restrict the size of generated log files. This could allow an unauthenticated remote attacker to trigger a large amount of logged events to exhaust the system's resources …

πŸ“… Published: Nov. 12, 2024, 12:49 p.m. πŸ”„ Last Modified: Aug. 20, 2025, 7:11 p.m.

9.4

CVSS4.0

CVE-2024-46890 -

A vulnerability has been identified in SINEC INS (All versions < V1.0 SP2 Update 3). The affected application does not properly validate input sent to specific endpoints of its web API. This could allow an authenticated remote attacker with high privileges on the application to execute arbitrary co…

πŸ“… Published: Nov. 12, 2024, 12:49 p.m. πŸ”„ Last Modified: Nov. 13, 2024, 11:12 p.m.

6.9

CVSS4.0

CVE-2024-46889 -

A vulnerability has been identified in SINEC INS (All versions < V1.0 SP2 Update 3). The affected application uses hard-coded cryptographic key material to obfuscate configuration files. This could allow an attacker to learn that cryptographic key material through reverse engineering of the applica…

πŸ“… Published: Nov. 12, 2024, 12:49 p.m. πŸ”„ Last Modified: Nov. 13, 2024, 11:11 p.m.

9.4

CVSS4.0

CVE-2024-46888 -

A vulnerability has been identified in SINEC INS (All versions < V1.0 SP2 Update 3). The affected application does not properly sanitize user provided paths for SFTP-based file up- and downloads. This could allow an authenticated remote attacker to manipulate arbitrary files on the filesystem and a…

πŸ“… Published: Nov. 12, 2024, 12:49 p.m. πŸ”„ Last Modified: Nov. 13, 2024, 11:11 p.m.

10

CVSS4.0

CVE-2024-44102 -

A vulnerability has been identified in PP TeleControl Server Basic 1000 to 5000 V3.1 (6NH9910-0AA31-0AE1) (All versions < V3.1.2.1 with redundancy configured), PP TeleControl Server Basic 256 to 1000 V3.1 (6NH9910-0AA31-0AD1) (All versions < V3.1.2.1 with redundancy configured), PP TeleControl Serv…

πŸ“… Published: Nov. 12, 2024, 12:49 p.m. πŸ”„ Last Modified: Nov. 15, 2024, 7:24 p.m.

8.2

CVSS4.0

CVE-2024-36140 -

A vulnerability has been identified in OZW672 (All versions < V5.2), OZW772 (All versions < V5.2). The user accounts tab of affected devices is vulnerable to stored cross-site scripting (XSS) attacks. This could allow an authenticated remote attacker to inject arbitrary JavaScript code that is l…

πŸ“… Published: Nov. 12, 2024, 12:49 p.m. πŸ”„ Last Modified: Nov. 15, 2024, 10:53 p.m.

8.5

CVSS4.0

CVE-2024-29119 -

A vulnerability has been identified in Spectrum Power 7 (All versions < V24Q3). The affected product contains several root-owned SUID binaries that could allow an authenticated local attacker to escalate privileges.

πŸ“… Published: Nov. 12, 2024, 12:49 p.m. πŸ”„ Last Modified: Nov. 15, 2024, 10:50 p.m.
Total resulsts: 345293
Page 7547 of 34,530
Β« previous page Β» next page
Filters