Latest CVE Feed
-
7.8
HIGHCVE-2024-38153
Windows Kernel Elevation of Privilege Vulnerability... Read more
Affected Products : windows_server_2008 windows_server_2012 windows_server_2016 windows_server_2019 windows_10_1607 windows_10_1809 windows_10_21h2 windows_10_22h2 windows_server_2022 windows_11_21h2 +10 more products- Published: Aug. 13, 2024
- Modified: Aug. 14, 2024
-
7.8
HIGHCVE-2024-38152
Windows OLE Remote Code Execution Vulnerability... Read more
Affected Products : windows_server_2008 windows_server_2012 windows_server_2016 windows_server_2019 windows_10_1607 windows_10_1809 windows_10_21h2 windows_10_22h2 windows_server_2022 windows_11_21h2 +10 more products- Published: Aug. 13, 2024
- Modified: Aug. 14, 2024
-
5.5
MEDIUMCVE-2024-38151
Windows Kernel Information Disclosure Vulnerability... Read more
Affected Products : windows_server_2008 windows_server_2012 windows_server_2016 windows_server_2019 windows_10_1607 windows_10_1809 windows_10_21h2 windows_10_22h2 windows_server_2022 windows_11_21h2 +10 more products- Published: Aug. 13, 2024
- Modified: Aug. 14, 2024
-
7.8
HIGHCVE-2024-38150
Windows DWM Core Library Elevation of Privilege Vulnerability... Read more
- Published: Aug. 13, 2024
- Modified: Aug. 14, 2024
-
6.1
MEDIUMCVE-2024-41613
A Cross Site Scripting (XSS) vulnerability in Symphony CMS 2.7.10 allows remote attackers to inject arbitrary web script or HTML by editing note.... Read more
Affected Products : symphony_cms- Published: Aug. 13, 2024
- Modified: Aug. 14, 2024
-
5.3
MEDIUMCVE-2024-41941
A vulnerability has been identified in SINEC NMS (All versions < V3.0). The affected application does not properly enforce authorization checks. This could allow an authenticated attacker to bypass the checks and modify settings in the application without... Read more
Affected Products : sinec_nms- Published: Aug. 13, 2024
- Modified: Aug. 14, 2024
-
9.4
CRITICALCVE-2024-41940
A vulnerability has been identified in SINEC NMS (All versions < V3.0). The affected application does not properly validate user input to a privileged command queue. This could allow an authenticated attacker to execute OS commands with elevated privilege... Read more
Affected Products : sinec_nms- Published: Aug. 13, 2024
- Modified: Aug. 14, 2024
-
8.8
HIGHCVE-2024-41939
A vulnerability has been identified in SINEC NMS (All versions < V3.0). The affected application does not properly enforce authorization checks. This could allow an authenticated attacker to bypass the checks and elevate their privileges on the applicatio... Read more
Affected Products : sinec_nms- Published: Aug. 13, 2024
- Modified: Aug. 14, 2024
-
5.5
MEDIUMCVE-2024-41938
A vulnerability has been identified in SINEC NMS (All versions < V3.0). The importCertificate function of the SINEC NMS Control web application contains a path traversal vulnerability. This could allow an authenticated attacker it to delete arbitrary cert... Read more
Affected Products : sinec_nms- Published: Aug. 13, 2024
- Modified: Aug. 14, 2024
-
5.4
MEDIUMCVE-2024-41907
A vulnerability has been identified in SINEC Traffic Analyzer (6GK8822-1BG01-0BA0) (All versions < V2.0). The affected application is missing general HTTP security headers in the web server. This could allow an attacker to make the servers more prone to c... Read more
Affected Products : sinec_traffic_analyzer- Published: Aug. 13, 2024
- Modified: Aug. 14, 2024
-
6.5
MEDIUMCVE-2024-41906
A vulnerability has been identified in SINEC Traffic Analyzer (6GK8822-1BG01-0BA0) (All versions < V2.0). The affected application does not properly handle cacheable HTTP responses in the web service. This could allow an attacker to read and modify data s... Read more
Affected Products : sinec_traffic_analyzer- Published: Aug. 13, 2024
- Modified: Aug. 14, 2024
-
7.6
HIGHCVE-2024-41905
A vulnerability has been identified in SINEC Traffic Analyzer (6GK8822-1BG01-0BA0) (All versions < V2.0). The affected application do not have access control for accessing the files. This could allow an authenticated attacker with low privilege's to get a... Read more
Affected Products : sinec_traffic_analyzer- Published: Aug. 13, 2024
- Modified: Aug. 14, 2024
-
6.7
MEDIUMCVE-2024-23974
Incorrect default permissions in some Intel(R) ISH software installers may allow an authenticated user to potentially enable escalation of privilege via local access.... Read more
- Published: Aug. 14, 2024
- Modified: Aug. 14, 2024
-
6.9
MEDIUMCVE-2023-38655
Improper buffer restrictions in firmware for some Intel(R) AMT and Intel(R) Standard Manageability may allow a privileged user to potentially enable denial of service via network access.... Read more
Affected Products :- Published: Aug. 14, 2024
- Modified: Aug. 14, 2024
-
7.8
HIGHCVE-2023-42667
Improper isolation in the Intel(R) Core(TM) Ultra Processor stream cache mechanism may allow an authenticated user to potentially enable escalation of privilege via local access.... Read more
Affected Products :- Published: Aug. 14, 2024
- Modified: Aug. 14, 2024
-
7.3
HIGHCVE-2024-24853
Incorrect behavior order in transition between executive monitor and SMI transfer monitor (STM) in some Intel(R) Processor may allow a privileged user to potentially enable escalation of privilege via local access.... Read more
Affected Products :- Published: Aug. 14, 2024
- Modified: Aug. 14, 2024
-
8.1
HIGHCVE-2023-49144
Out of bounds read in OpenBMC Firmware for some Intel(R) Server Platforms before versions egs-1.15-0, bhs-0.27 may allow a privileged user to potentially enable information disclosure via local access.... Read more
Affected Products :- Published: Aug. 14, 2024
- Modified: Aug. 14, 2024
-
6.7
MEDIUMCVE-2023-34424
Improper input validation in firmware for some Intel(R) CSME may allow a privileged user to potentially enable denial of service via local access.... Read more
Affected Products :- Published: Aug. 14, 2024
- Modified: Aug. 14, 2024
-
6.7
MEDIUMCVE-2024-25939
Mirrored regions with different values in 3rd Generation Intel(R) Xeon(R) Scalable Processors may allow a privileged user to potentially enable denial of service via local access.... Read more
Affected Products :- Published: Aug. 14, 2024
- Modified: Aug. 14, 2024
-
5.9
MEDIUMCVE-2023-35123
Uncaught exception in OpenBMC Firmware for some Intel(R) Server Platforms before versions egs-1.14-0, bhs-0.27 may allow an authenticated user to potentially enable denial of service via network access.... Read more
Affected Products :- Published: Aug. 14, 2024
- Modified: Aug. 14, 2024