Latest CVE Feed
-
9.4
CRITICALCVE-2024-41940
A vulnerability has been identified in SINEC NMS (All versions < V3.0). The affected application does not properly validate user input to a privileged command queue. This could allow an authenticated attacker to execute OS commands with elevated privilege... Read more
Affected Products : sinec_nms- Published: Aug. 13, 2024
- Modified: Aug. 14, 2024
-
8.8
HIGHCVE-2024-41939
A vulnerability has been identified in SINEC NMS (All versions < V3.0). The affected application does not properly enforce authorization checks. This could allow an authenticated attacker to bypass the checks and elevate their privileges on the applicatio... Read more
Affected Products : sinec_nms- Published: Aug. 13, 2024
- Modified: Aug. 14, 2024
-
5.5
MEDIUMCVE-2024-41938
A vulnerability has been identified in SINEC NMS (All versions < V3.0). The importCertificate function of the SINEC NMS Control web application contains a path traversal vulnerability. This could allow an authenticated attacker it to delete arbitrary cert... Read more
Affected Products : sinec_nms- Published: Aug. 13, 2024
- Modified: Aug. 14, 2024
-
5.4
MEDIUMCVE-2024-41907
A vulnerability has been identified in SINEC Traffic Analyzer (6GK8822-1BG01-0BA0) (All versions < V2.0). The affected application is missing general HTTP security headers in the web server. This could allow an attacker to make the servers more prone to c... Read more
Affected Products : sinec_traffic_analyzer- Published: Aug. 13, 2024
- Modified: Aug. 14, 2024
-
6.5
MEDIUMCVE-2024-41906
A vulnerability has been identified in SINEC Traffic Analyzer (6GK8822-1BG01-0BA0) (All versions < V2.0). The affected application does not properly handle cacheable HTTP responses in the web service. This could allow an attacker to read and modify data s... Read more
Affected Products : sinec_traffic_analyzer- Published: Aug. 13, 2024
- Modified: Aug. 14, 2024
-
7.6
HIGHCVE-2024-41905
A vulnerability has been identified in SINEC Traffic Analyzer (6GK8822-1BG01-0BA0) (All versions < V2.0). The affected application do not have access control for accessing the files. This could allow an authenticated attacker with low privilege's to get a... Read more
Affected Products : sinec_traffic_analyzer- Published: Aug. 13, 2024
- Modified: Aug. 14, 2024
-
4.6
MEDIUMCVE-2023-48361
Improper initialization in firmware for some Intel(R) CSME may allow a privileged user to potentially enable information disclosure via local access.... Read more
Affected Products :- Published: Aug. 14, 2024
- Modified: Aug. 14, 2024
-
6.8
MEDIUMCVE-2024-21806
Improper conditions check in Linux kernel mode driver for some Intel(R) Ethernet Network Controllers and Adapters E810 Series before version 28.3 may allow an authenticated user to potentially enable denial of service via local access.... Read more
Affected Products : ethernet_800_series_controllers_driver- Published: Aug. 14, 2024
- Modified: Aug. 14, 2024
-
6.7
MEDIUMCVE-2024-22378
Incorrect default permissions in some Intel Unite(R) Client Extended Display Plugin software installers before version 1.1.352.157 may allow an authenticated user to potentially enable escalation of privilege via local access.... Read more
Affected Products : unite- Published: Aug. 14, 2024
- Modified: Aug. 14, 2024
-
6.7
MEDIUMCVE-2024-28953
Uncontrolled search path in some EMON software before version 11.44 may allow an authenticated user to potentially enable escalation of privilege via local access.... Read more
Affected Products :- Published: Aug. 14, 2024
- Modified: Aug. 14, 2024
-
7.1
HIGHCVE-2024-21787
Inadequate encryption strength for some BMRA software before version 22.08 may allow an authenticated user to potentially enable escalation of privilege via local access.... Read more
Affected Products :- Published: Aug. 14, 2024
- Modified: Aug. 14, 2024
-
6.7
MEDIUMCVE-2024-25939
Mirrored regions with different values in 3rd Generation Intel(R) Xeon(R) Scalable Processors may allow a privileged user to potentially enable denial of service via local access.... Read more
Affected Products :- Published: Aug. 14, 2024
- Modified: Aug. 14, 2024
-
6.7
MEDIUMCVE-2023-34424
Improper input validation in firmware for some Intel(R) CSME may allow a privileged user to potentially enable denial of service via local access.... Read more
Affected Products :- Published: Aug. 14, 2024
- Modified: Aug. 14, 2024
-
6.7
MEDIUMCVE-2024-21769
Uncontrolled search path in some Intel(R) Ethernet Connection I219-LM install software may allow an authenticated user to potentially enable escalation of privilege via local access.... Read more
Affected Products :- Published: Aug. 14, 2024
- Modified: Aug. 14, 2024
-
6.7
MEDIUMCVE-2023-43747
Incorrect default permissions for some Intel(R) Connectivity Performance Suite software installers before version 2.0 may allow an authenticated user to potentially enable escalation of privilege via local access.... Read more
Affected Products : connectivity_performance_suite- Published: Aug. 14, 2024
- Modified: Aug. 14, 2024
-
5.7
MEDIUMCVE-2023-40067
Unchecked return value in firmware for some Intel(R) CSME may allow an unauthenticated user to potentially enable escalation of privilege via physical access.... Read more
- Published: Aug. 14, 2024
- Modified: Aug. 14, 2024
-
5.3
MEDIUMCVE-2024-21844
Integer overflow in firmware for some Intel(R) CSME may allow an unauthenticated user to potentially enable denial of service via adjacent access.... Read more
Affected Products :- Published: Aug. 14, 2024
- Modified: Aug. 14, 2024
-
6.7
MEDIUMCVE-2024-21784
Uncontrolled search path for some Intel(R) IPP Cryptography software before version 2021.11 may allow an authenticated user to potentially enable escalation of privilege via local access.... Read more
Affected Products : integrated_performance_primitives_cryptography- Published: Aug. 14, 2024
- Modified: Aug. 14, 2024
-
6.9
MEDIUMCVE-2023-38655
Improper buffer restrictions in firmware for some Intel(R) AMT and Intel(R) Standard Manageability may allow a privileged user to potentially enable denial of service via network access.... Read more
Affected Products :- Published: Aug. 14, 2024
- Modified: Aug. 14, 2024
-
6.7
MEDIUMCVE-2024-22376
Uncontrolled search path element in some installation software for Intel(R) Ethernet Adapter Driver Pack before version 28.3 may allow an authenticated user to potentially enable escalation of privilege via local access.... Read more
Affected Products :- Published: Aug. 14, 2024
- Modified: Aug. 14, 2024