NA - CVE-2025-8070 - The Windows service configuration of ABP and...
The Windows service configuration of ABP and AES contains an unquoted ImagePath registry value vulnerability. This allows a local attacker to execute arbitrary code by placing a malicious...
High - CVE-2025-41683 - An authenticated remote attacker can execute...
An authenticated remote attacker can execute arbitrary commands with root privileges on affected devices due to lack of improper sanitizing of user input in the Main Web Interface (endpoint...
High - CVE-2025-41684 - An authenticated remote attacker can execute...
An authenticated remote attacker can execute arbitrary commands with root privileges on affected devices due to lack of improper sanitizing of user input in the Main Web Interface (endpoint...
NA - CVE-2025-53882 - A Reliance on Untrusted Inputs in a Security...
A Reliance on Untrusted Inputs in a Security Decision vulnerability in the logrotate configuration for openSUSEs mailman3 package allows potential escalation from mailman to rootThis issue affects...
NA - CVE-2024-12310 - A vulnerability in Imprivata Enterprise Access...
A vulnerability in Imprivata Enterprise Access Management (formerly Imprivata OneSign) allows bypassing the login screen of the shared kiosk workstation and allows unauthorized access to the...
Medium - CVE-2024-40682 - IBM SmartCloud Analytics - Log Analysis...
IBM SmartCloud Analytics - Log Analysis 1.3.7.0, 1.3.7.1, 1.3.7.2, 1.3.8.0, 1.3.8.1, and 1.3.8.2 could allow a local user to cause a denial of service due to improper validation of specified type...
Medium - CVE-2024-40686 - IBM SmartCloud Analytics - Log Analysis...
IBM SmartCloud Analytics - Log Analysis 1.3.7.0, 1.3.7.1, 1.3.7.2, 1.3.8.0, 1.3.8.1, and 1.3.8.2 is vulnerable to HTTP header injection, caused by improper validation of input by the HOST headers....
Medium - CVE-2024-41750 - IBM SmartCloud Analytics - Log Analysis...
IBM SmartCloud Analytics - Log Analysis 1.3.7.0, 1.3.7.1, 1.3.7.2, 1.3.8.0, 1.3.8.1, and 1.3.8.2 could allow a local, authenticated attacker to bypass client-side enforcement of security to...