NA - CVE-2024-47208 - Server-Side Request Forgery (SSRF), Improper...
Server-Side Request Forgery (SSRF), Improper Control of Generation of Code ('Code Injection') vulnerability in Apache OFBiz. This issue affects Apache OFBiz: before 18.12.17. Users are...
NA - CVE-2024-48962 - Improper Control of Generation of Code...
Improper Control of Generation of Code ('Code Injection'), Cross-Site Request Forgery (CSRF), : Improper Neutralization of Special Elements Used in a Template Engine vulnerability in...
NA - CVE-2023-39176 - A flaw was found within the parsing of SMB2...
A flaw was found within the parsing of SMB2 requests that have a transform header in the kernel ksmbd module. The issue results from the lack of proper validation of user-supplied data, which can...
NA - CVE-2023-39179 - A flaw was found within the handling of SMB2...
A flaw was found within the handling of SMB2 read requests in the kernel ksmbd module. The issue results from the lack of proper validation of user-supplied data, which can result in a read past...
NA - CVE-2023-39180 - A flaw was found within the handling of...
A flaw was found within the handling of SMB2_READ commands in the kernel ksmbd module. The issue results from not releasing memory after its effective lifetime. An attacker can leverage this to...
High - CVE-2024-41974 - A low privileged remote attacker may modify the...
A low privileged remote attacker may modify the BACNet service properties due to incorrect permission assignment for critical resources which may lead to a DoS limited to BACNet communication.