NA - CVE-2024-50381 - A vulnerability exists in Snap One OVRC cloud...
A vulnerability exists in Snap One OVRC cloud where an attacker can impersonate a Hub device and send requests to claim and unclaim devices. The attacker only needs to provide the MAC address of...
NA - CVE-2024-52596 - SimpleSAMLphp xml-common is a common classes...
SimpleSAMLphp xml-common is a common classes for handling XML-structures. When loading an (untrusted) XML document, for example the SAMLResponse, it's possible to induce an XXE. This...
NA - CVE-2024-52806 - SimpleSAMLphp SAML2 library is a PHP library...
SimpleSAMLphp SAML2 library is a PHP library for SAML2 related functionality. When loading an (untrusted) XML document, for example the SAMLResponse, it's possible to induce an XXE. This...
NA - CVE-2024-53259 - quic-go is an implementation of the QUIC...
quic-go is an implementation of the QUIC protocol in Go. An off-path attacker can inject an ICMP Packet Too Large packet. Since affected quic-go versions used IP_PMTUDISC_DO, the kernel would then...
NA - CVE-2024-53364 - A SQL injection vulnerability was found in...
A SQL injection vulnerability was found in PHPGURUKUL Vehicle Parking Management System v1.13 in /users/view-detail.php. This vulnerability affects the viewid parameter, where improper input...
NA - CVE-2024-53992 - unzip-bot is a Telegram bot to extract various...
unzip-bot is a Telegram bot to extract various types of archives. Users could exploit unsanitized inputs to inject malicious commands that are executed through subprocess.Popen with shell=True....
NA - CVE-2024-53564 - An authenticated arbitrary file upload...
An authenticated arbitrary file upload vulnerability in the component /module_admin/upload.php of freepbx v17.0.19.17 allows attackers to execute arbitrary code via uploading a crafted file.
NA - CVE-2024-53566 - An issue in the action_listcategories()...
An issue in the action_listcategories() function of Sangoma Asterisk v22/22.0.0/22.0.0-rc1/22.0.0-rc2/22.0.0-pre1 allows attackers to execute a path traversal.
NA - CVE-2024-53990 - The AsyncHttpClient (AHC) library allows Java...
The AsyncHttpClient (AHC) library allows Java applications to easily execute HTTP requests and asynchronously process HTTP responses. When making any HTTP request, the automatically enabled and...