Medium - CVE-2024-49536 - Audition versions 23.6.9, 24.4.6 and earlier...
Audition versions 23.6.9, 24.4.6 and earlier are affected by an out-of-bounds read vulnerability that could lead to disclosure of sensitive memory. An attacker could leverage this vulnerability to...
NA - CVE-2017-13309 - In readEncryptedData of ConscryptEngine.java,...
In readEncryptedData of ConscryptEngine.java, there is a possible plaintext leak due to improperly used crypto. This could lead to local information disclosure with no additional execution...
Medium - CVE-2024-11217 - A vulnerability was found in the OAuth-server....
A vulnerability was found in the OAuth-server. OAuth-server logs the OAuth2 client secret when the logLevel is Debug higher for OIDC/GitHub/GitLab/Google IDPs login options.
NA - CVE-2024-44758 - An arbitrary file upload vulnerability in the...
An arbitrary file upload vulnerability in the component /Production/UploadFile of NUS-M9 ERP Management Software v3.0.0 allows attackers to execute arbitrary code via uploading crafted files.
NA - CVE-2024-45610 - GLPI is an open-source asset and IT management...
GLPI is an open-source asset and IT management software package that provides ITIL Service Desk features, licenses tracking and software auditing. An unauthenticated user can provide a malicious...
NA - CVE-2024-45611 - GLPI is an open-source asset and IT management...
GLPI is an open-source asset and IT management software package that provides ITIL Service Desk features, licenses tracking and software auditing. An authenticated user can bypass the access...
NA - CVE-2017-13310 - In createFromParcel of ViewPager.java, there is...
In createFromParcel of ViewPager.java, there is a possible read/write serialization issue leading to a permissions bypass. This could lead to local escalation of privilege where an app can start an...
NA - CVE-2017-13311 - In the read() function of ProcessStats.java,...
In the read() function of ProcessStats.java, there is a possible read/write serialization issue leading to a permissions bypass. This could lead to local escalation of privilege where an app can...