NA - CVE-2024-37602 - An issue was discovered in Mercedes Benz NTG...
An issue was discovered in Mercedes Benz NTG (New Telematics Generation) 6 through 2021. A possible NULL pointer dereference in the Apple Car Play function affects NTG 6 head units. To perform this...
NA - CVE-2024-37603 - An issue was discovered in Mercedes Benz NTG...
An issue was discovered in Mercedes Benz NTG (New Telematics Generation) 6. A possible type confusion exists in the user data import/export function of NTG 6 head units. To perform this attack,...
NA - CVE-2024-53309 - A stack-based buffer overflow vulnerability...
A stack-based buffer overflow vulnerability exists in Effectmatrix Total Video Converter Command Line (TVCC) 2.50 when an overly long string is passed to the "-f" parameter. This can lead to memory...
NA - CVE-2024-53310 - A Structured Exception Handler based buffer...
A Structured Exception Handler based buffer overflow vulnerability exists in Effectmatrix Total Video Converter Command Line (TVCC) 2.50 when a specially crafted file is passed to the -ff...
NA - CVE-2024-53311 - A Stack buffer overflow in the arguments...
A Stack buffer overflow in the arguments parameter in Immunity Inc. Immunity Debugger v1.85 allows attackers to execute arbitrary code via a crafted input that exceeds the buffer size.
NA - CVE-2024-54951 - Monica 4.1.2 is vulnerable to Cross Site...
Monica 4.1.2 is vulnerable to Cross Site Scripting (XSS). A malicious user can create a malformed contact and use that contact in the "HOW YOU MET" customization options to trigger the XSS.
NA - CVE-2024-56908 - In Perfex Crm < 3.2.1, an authenticated...
In Perfex Crm < 3.2.1, an authenticated attacker can send a crafted HTTP POST request to the affected upload_sales_file endpoint. By providing malicious input in the rel_id parameter, combined with...
NA - CVE-2025-22960 - A session hijacking vulnerability exists in the...
A session hijacking vulnerability exists in the web-based management interface of GatesAir Maxiva UAXT, VAXT transmitters. Unauthenticated attackers can access exposed log files...
NA - CVE-2025-22961 - A critical information disclosure vulnerability...
A critical information disclosure vulnerability exists in the web-based management interface of GatesAir Maxiva UAXT, VAXT transmitters due to Incorrect Access Control (CWE-284). Unauthenticated...