NA - CVE-2024-42194 - An improper handling of insufficient...
An improper handling of insufficient permissions or privileges affects HCL BigFix Inventory. An attacker having access via a read-only account can possibly change certain configuration parameters...
Medium - CVE-2024-49816 - IBM Security Guardium Key Lifecycle Manager...
IBM Security Guardium Key Lifecycle Manager 4.1, 4.1.1, 4.2.0, and 4.2.1 stores potentially sensitive information in log files that could be read by a local privileged user.
Medium - CVE-2024-49817 - IBM Security Guardium Key Lifecycle Manager...
IBM Security Guardium Key Lifecycle Manager 4.1, 4.1.1, 4.2.0, and 4.2.1 stores user credentials in configuration files which can be read by a local privileged user.
Medium - CVE-2024-49818 - IBM Security Guardium Key Lifecycle Manager...
IBM Security Guardium Key Lifecycle Manager 4.1, 4.1.1, 4.2.0, and 4.2.1 could allow a remote attacker to obtain sensitive information when a detailed technical error message is returned in the...
Medium - CVE-2024-49819 - IBM Security Guardium Key Lifecycle Manager...
IBM Security Guardium Key Lifecycle Manager 4.1, 4.1.1, 4.2.0, and 4.2.1 could allow a remote attacker to obtain sensitive information in cleartext in a communication channel that can be sniffed by...
Low - CVE-2024-49820 - IBM Security Guardium Key Lifecycle Manager...
IBM Security Guardium Key Lifecycle Manager 4.1, 4.1.1, 4.2.0, and 4.2.1 could allow a remote attacker to obtain sensitive information, caused by the failure to properly enable HTTP Strict...
NA - CVE-2024-55496 - A vulnerability has been found in the...
A vulnerability has been found in the 1000projects Bookstore Management System PHP MySQL Project 1.0. This issue affects some unknown functionality of add_company.php. Actions on the delete...
NA - CVE-2024-51479 - Next.js is a React framework for building...
Next.js is a React framework for building full-stack web applications. In affected versions if a Next.js application is performing authorization in middleware based on pathname, it was possible for...
NA - CVE-2024-56139 - pdftools is a high level tools to convert PDF...
pdftools is a high level tools to convert PDF files to ePUB formats. In versions up to and including 0.5.0 maliciously crafted epub files can cause a stack overflow leading to a crash. This issue...