Latest CVE Feed
-
7.3
CVSS31CVE-2024-33508
An improper neutralization of special elements used in a command ('Command Injection') vulnerability [CWE-77] in Fortinet FortiClientEMS 7.2.0 through 7.2.4, 7.0.0 through 7.0.12 may allow an unauthenticated attacker to execute limited and temporary opera... Read more
Affected Products :- Published: Sep. 10, 2024
- Modified: Sep. 10, 2024
-
8.8
CVSS31CVE-2024-45044
Bareos is open source software for backup, archiving, and recovery of data for operating systems. When a command ACL is in place and a user executes a command in bconsole using an abbreviation (i.e. "w" for "whoami") the ACL check did not apply to the ful... Read more
Affected Products : bareos- Published: Sep. 10, 2024
- Modified: Sep. 10, 2024
-
4.8
CVSS31CVE-2024-7955
The Starbox WordPress plugin before 3.5.2 does not sanitise and escape some of its settings, which could allow high privilege users such as admin to perform Stored Cross-Site Scripting attacks even when the unfiltered_html capability is disallowed (for e... Read more
Affected Products :- Published: Sep. 10, 2024
- Modified: Sep. 10, 2024
-
7.5
CVSS31CVE-2024-45845
nix 2.24 through 2.24.5 allows directory traversal via a symlink in a nar file, because of mishandling of a directory containing a symlink and a directory of the same name, aka GHSA-h4vv-h3jq-v493.... Read more
Affected Products :- Published: Sep. 10, 2024
- Modified: Sep. 10, 2024
-
9.8
CVSS31CVE-2024-40754
Heap-based Buffer Overflow vulnerability in Samsung Open Source Escargot JavaScript engine allows Overflow Buffers.This issue affects Escargot: 4.0.0.... Read more
Affected Products :- Published: Sep. 10, 2024
- Modified: Sep. 10, 2024
-
6.5
CVSS31CVE-2024-43391
A low privileged remote attacker can perform configuration changes of the firewall services, including packet filter, packet forwarding, network access control or NAT through the FW_PORTFORWARDING.SRC_IP environment variable which can lead to a DoS.... Read more
Affected Products : tc_mguard_rs4000_4g_vzw_vpn_firmware tc_mguard_rs4000_4g_att_vpn_firmware fl_mguard_rs4004_tx\/dtx_firmware fl_mguard_rs4004_tx\/dtx_vpn_firmware tc_mguard_rs4000_3g_vpn_firmware tc_mguard_rs4000_4g_vpn_firmware fl_mguard_centerport_vpn-1000_firmware fl_mguard_core_tx_firmware fl_mguard_core_tx_vpn_firmware fl_mguard_delta_tx\/tx_firmware +24 more products- Published: Sep. 10, 2024
- Modified: Sep. 10, 2024
-
6.5
CVSS31CVE-2024-43392
A low privileged remote attacker can perform configuration changes of the firewall services, including packet filter, packet forwarding, network access control or NAT through the FW_INCOMING.FROM_IP FW_INCOMING.IN_IP FW_OUTGOING.FROM_IP FW_OUTGOING.IN_IP ... Read more
Affected Products : tc_mguard_rs4000_4g_vzw_vpn_firmware tc_mguard_rs4000_4g_att_vpn_firmware fl_mguard_rs4004_tx\/dtx_firmware fl_mguard_rs4004_tx\/dtx_vpn_firmware tc_mguard_rs4000_3g_vpn_firmware tc_mguard_rs4000_4g_vpn_firmware fl_mguard_centerport_vpn-1000_firmware fl_mguard_core_tx_firmware fl_mguard_core_tx_vpn_firmware fl_mguard_delta_tx\/tx_firmware +24 more products- Published: Sep. 10, 2024
- Modified: Sep. 10, 2024
-
0.0
NONECVE-2024-8258
Improper Control of Generation of Code ('Code Injection') in Electron Fuses in Logitech Options Plus version 1.60.496306 on macOS allows attackers to execute arbitrary code via insecure Electron Fuses configuration.... Read more
Affected Products :- Published: Sep. 10, 2024
- Modified: Sep. 10, 2024
-
8.8
CVSS31CVE-2024-7699
An low privileged remote attacker can execute OS commands with root privileges due to improper neutralization of special elements in user data.... Read more
Affected Products : tc_mguard_rs4000_4g_vzw_vpn_firmware tc_mguard_rs4000_4g_att_vpn_firmware fl_mguard_rs4004_tx\/dtx_firmware fl_mguard_rs4004_tx\/dtx_vpn_firmware tc_mguard_rs4000_3g_vpn_firmware tc_mguard_rs4000_4g_vpn_firmware fl_mguard_centerport_vpn-1000_firmware fl_mguard_core_tx_firmware fl_mguard_core_tx_vpn_firmware fl_mguard_delta_tx\/tx_firmware +24 more products- Published: Sep. 10, 2024
- Modified: Sep. 10, 2024
-
5.7
CVSS31CVE-2024-7698
A low privileged remote attacker can get access to CSRF tokens of higher privileged users which can be abused to mount CSRF attacks.... Read more
Affected Products : tc_mguard_rs4000_4g_vzw_vpn_firmware tc_mguard_rs4000_4g_att_vpn_firmware fl_mguard_rs4004_tx\/dtx_firmware fl_mguard_rs4004_tx\/dtx_vpn_firmware tc_mguard_rs4000_3g_vpn_firmware tc_mguard_rs4000_4g_vpn_firmware fl_mguard_centerport_vpn-1000_firmware fl_mguard_core_tx_firmware fl_mguard_core_tx_vpn_firmware fl_mguard_delta_tx\/tx_firmware +24 more products- Published: Sep. 10, 2024
- Modified: Sep. 10, 2024
-
6.5
CVSS31CVE-2024-43393
A low privileged remote attacker can perform configuration changes of the firewall services, including packet filter, packet forwarding, network access control or NAT through the FW_INCOMING.FROM_IP FW_INCOMING.IN_IP FW_OUTGOING.FROM_IP FW_OUTGOING.IN_IP ... Read more
Affected Products : tc_mguard_rs4000_4g_vzw_vpn_firmware tc_mguard_rs4000_4g_att_vpn_firmware fl_mguard_rs4004_tx\/dtx_firmware fl_mguard_rs4004_tx\/dtx_vpn_firmware tc_mguard_rs4000_3g_vpn_firmware tc_mguard_rs4000_4g_vpn_firmware fl_mguard_centerport_vpn-1000_firmware fl_mguard_core_tx_firmware fl_mguard_core_tx_vpn_firmware fl_mguard_delta_tx\/tx_firmware +24 more products- Published: Sep. 10, 2024
- Modified: Sep. 10, 2024
-
8.8
CVSS31CVE-2024-43385
A low privileged remote attacker can trigger the execution of arbitrary OS commands as root due to improper neutralization of special elements in the variable PROXY_HTTP_PORT in mGuard devices.... Read more
Affected Products : tc_mguard_rs4000_4g_vzw_vpn_firmware tc_mguard_rs4000_4g_att_vpn_firmware fl_mguard_rs4004_tx\/dtx_firmware fl_mguard_rs4004_tx\/dtx_vpn_firmware tc_mguard_rs4000_3g_vpn_firmware tc_mguard_rs4000_4g_vpn_firmware fl_mguard_centerport_vpn-1000_firmware fl_mguard_core_tx_firmware fl_mguard_core_tx_vpn_firmware fl_mguard_delta_tx\/tx_firmware +24 more products- Published: Sep. 10, 2024
- Modified: Sep. 10, 2024
-
8.8
CVSS31CVE-2024-43386
A low privileged remote attacker can trigger the execution of arbitrary OS commands as root due to improper neutralization of special elements in the variable EMAIL_NOTIFICATION.TO in mGuard devices.... Read more
Affected Products : tc_mguard_rs4000_4g_vzw_vpn_firmware tc_mguard_rs4000_4g_att_vpn_firmware fl_mguard_rs4004_tx\/dtx_firmware fl_mguard_rs4004_tx\/dtx_vpn_firmware tc_mguard_rs4000_3g_vpn_firmware tc_mguard_rs4000_4g_vpn_firmware fl_mguard_centerport_vpn-1000_firmware fl_mguard_core_tx_firmware fl_mguard_core_tx_vpn_firmware fl_mguard_delta_tx\/tx_firmware +24 more products- Published: Sep. 10, 2024
- Modified: Sep. 10, 2024
-
6.5
CVSS31CVE-2024-43390
A low privileged remote attacker can perform configuration changes of the firewall services, including packet forwarding or NAT through the FW_NAT.IN_IP environment variable which can lead to a DoS.... Read more
Affected Products : tc_mguard_rs4000_4g_vzw_vpn_firmware tc_mguard_rs4000_4g_att_vpn_firmware fl_mguard_rs4004_tx\/dtx_firmware fl_mguard_rs4004_tx\/dtx_vpn_firmware tc_mguard_rs4000_3g_vpn_firmware tc_mguard_rs4000_4g_vpn_firmware fl_mguard_centerport_vpn-1000_firmware fl_mguard_core_tx_firmware fl_mguard_core_tx_vpn_firmware fl_mguard_delta_tx\/tx_firmware +24 more products- Published: Sep. 10, 2024
- Modified: Sep. 10, 2024
-
8.8
CVSS31CVE-2024-43388
A low privileged remote attacker with write permissions can reconfigure the SNMP service due to improper input validation.... Read more
Affected Products : tc_mguard_rs4000_4g_vzw_vpn_firmware tc_mguard_rs4000_4g_att_vpn_firmware fl_mguard_rs4004_tx\/dtx_firmware fl_mguard_rs4004_tx\/dtx_vpn_firmware tc_mguard_rs4000_3g_vpn_firmware tc_mguard_rs4000_4g_vpn_firmware fl_mguard_centerport_vpn-1000_firmware fl_mguard_core_tx_firmware fl_mguard_core_tx_vpn_firmware fl_mguard_delta_tx\/tx_firmware +24 more products- Published: Sep. 10, 2024
- Modified: Sep. 10, 2024
-
6.5
CVSS31CVE-2024-43389
A low privileged remote attacker can perform configuration changes of the ospf service through OSPF_INTERFACE.SIMPLE_KEY, OSPF_INTERFACE.DIGEST_KEY environment variables which can lead to a DoS.... Read more
Affected Products : tc_mguard_rs4000_4g_vzw_vpn_firmware tc_mguard_rs4000_4g_att_vpn_firmware fl_mguard_rs4004_tx\/dtx_firmware fl_mguard_rs4004_tx\/dtx_vpn_firmware tc_mguard_rs4000_3g_vpn_firmware tc_mguard_rs4000_4g_vpn_firmware fl_mguard_centerport_vpn-1000_firmware fl_mguard_core_tx_firmware fl_mguard_core_tx_vpn_firmware fl_mguard_delta_tx\/tx_firmware +24 more products- Published: Sep. 10, 2024
- Modified: Sep. 10, 2024
-
8.8
CVSS31CVE-2024-43387
A low privileged remote attacker can read and write files as root due to improper neutralization of special elements in the variable EMAIL_RELAY_PASSWORD in mGuard devices.... Read more
Affected Products : tc_mguard_rs4000_4g_vzw_vpn_firmware tc_mguard_rs4000_4g_att_vpn_firmware fl_mguard_rs4004_tx\/dtx_firmware fl_mguard_rs4004_tx\/dtx_vpn_firmware tc_mguard_rs4000_3g_vpn_firmware tc_mguard_rs4000_4g_vpn_firmware fl_mguard_centerport_vpn-1000_firmware fl_mguard_core_tx_firmware fl_mguard_core_tx_vpn_firmware fl_mguard_delta_tx\/tx_firmware +24 more products- Published: Sep. 10, 2024
- Modified: Sep. 10, 2024
-
6.7
CVSS31CVE-2024-39574
Dell PowerScale InsightIQ, version 5.1, contain an Improper Privilege Management vulnerability. A high privileged attacker with local access could potentially exploit this vulnerability, leading to Denial of service.... Read more
Affected Products :- Published: Sep. 10, 2024
- Modified: Sep. 10, 2024
-
2.3
CVSS31CVE-2024-39582
Dell PowerScale InsightIQ, version 5.0, contain a Use of hard coded Credentials vulnerability. A high privileged attacker with local access could potentially exploit this vulnerability, leading to Information disclosure.... Read more
Affected Products :- Published: Sep. 10, 2024
- Modified: Sep. 10, 2024
-
3.8
CVSS31CVE-2024-42425
Dell Precision Rack, 14G Intel BIOS versions prior to 2.22.2, contains an Access of Memory Location After End of Buffer vulnerability. A low privileged attacker with local access could potentially exploit this vulnerability, leading to Information disclos... Read more
Affected Products :- Published: Sep. 10, 2024
- Modified: Sep. 10, 2024