NA - CVE-2024-11671 - Improper authentication in SQL data source MFA...
Improper authentication in SQL data source MFA validation in Devolutions Remote Desktop Manager 2024.3.17 and earlier on Windows allows an authenticated user to bypass the MFA validation via data...
NA - CVE-2024-11672 - Incorrect authorization in the add permission...
Incorrect authorization in the add permission component in Devolutions Remote Desktop Manager 2024.2.21 and earlier on Windows allows an authenticated malicious user to bypass the "Add" permission...
NA - CVE-2023-26280 - IBM Jazz Foundation 7.0.2 and 7.0.3 could allow...
IBM Jazz Foundation 7.0.2 and 7.0.3 could allow a user to change their dashboard using a specially crafted HTTP request due to improper access control.
Medium - CVE-2023-45181 - IBM Jazz Foundation 7.0.2 and below are...
IBM Jazz Foundation 7.0.2 and below are vulnerable to cross-site scripting. This vulnerability allows users to embed arbitrary JavaScript code in the Web UI thus altering the intended functionality...
NA - CVE-2024-45755 - An issue was discovered in Centreon...
An issue was discovered in Centreon centreon-dsm-server 24.10.x before 24.10.0, 24.04.x before 24.04.3, 23.10.x before 23.10.1, 23.04.x before 23.04.3, and 22.10.x before 22.10.2. SQL injection can...
NA - CVE-2024-45756 - An issue was discovered in Centreon...
An issue was discovered in Centreon centreon-open-tickets 24.10.x before 24.10.0, 24.04.x before 24.04.2, 23.10.x before 23.10.1, 23.04.x before 23.04.3, and 22.10.x before 22.10.2. SQL injection...
NA - CVE-2024-52787 - An issue in the upload_documents method of...
An issue in the upload_documents method of libre-chat v0.0.6 allows attackers to execute a path traversal via supplying a crafted filename in an uploaded file.
NA - CVE-2024-7915 - The application Sensei Mac Cleaner contains a...
The application Sensei Mac Cleaner contains a local privilege escalation vulnerability, allowing an attacker to perform multiple operations as the root user. These operations include arbitrary file...
NA - CVE-2024-8272 - The com.uaudio.bsd.helper service, responsible...
The com.uaudio.bsd.helper service, responsible for handling privileged operations, fails to implement critical client validation during XPC inter-process communication (IPC). Specifically, the...
NA - CVE-2024-11403 - There exists an out of bounds read/write in...
There exists an out of bounds read/write in LibJXL versions prior to commit 9cc451b91b74ba470fd72bd48c121e9f33d24c99. The JPEG decoder used by the JPEG XL encoder when doing JPEG recompression...