NA - CVE-2024-39275 - Cookies of authenticated Advantech ADAM-5630...
Cookies of authenticated Advantech ADAM-5630 users remain as active valid cookies when a session is closed. Forging requests with a legitimate cookie, even if the session was terminated, allows...
NA - CVE-2024-39364 - Advantech ADAM-5630
has built-in commands that...
Advantech ADAM-5630 has built-in commands that can be executed without authenticating the user. These commands allow for restarting the operating system, rebooting the hardware, and stopping the...
NA - CVE-2024-46097 - TestLink 1.9.20 is vulnerable to Incorrect...
TestLink 1.9.20 is vulnerable to Incorrect Access Control in the TestPlan editing section. When a new TestPlan is created, an ID with an incremental value is automatically generated. Using the edit...
NA - CVE-2024-46257 - A Command injection vulnerability in...
A Command injection vulnerability in requestLetsEncryptSslWithDnsChallenge in NginxProxyManager 2.11.3 allows an attacker to achieve remote code execution via Add Let's Encrypt Certificate....
NA - CVE-2024-33369 - Directory Traversal vulnerability in Plasmoapp...
Directory Traversal vulnerability in Plasmoapp RPShare Fabric mod v.1.0.0 allows a remote attacker to execute arbitrary code via the getFileNameFromConnection method in DownloadTask
NA - CVE-2024-6436 - An input validation vulnerability exists in the...
An input validation vulnerability exists in the Rockwell Automation Sequence Manager™ which could allow a malicious user to send malformed packets to the server and cause a denial-of-service...