NA - CVE-2024-51773 - A vulnerability in the HPE Aruba Networking...
A vulnerability in the HPE Aruba Networking ClearPass Policy Manager web-based management interface could allow an authenticated remote Attacker to conduct a stored cross-site scripting (XSS)...
NA - CVE-2024-53672 - A vulnerability in the ClearPass Policy Manager...
A vulnerability in the ClearPass Policy Manager web-based management interface allows remote authenticated users to run arbitrary commands on the underlying host. Successful exploit could allow an...
NA - CVE-2024-54131 - The Kolide Agent (aka: Launcher) is the...
The Kolide Agent (aka: Launcher) is the lightweight agent designed to work with Kolide's service. An implementation bug in the Kolide Agent (known as `launcher`) allows for local privilege...
NA - CVE-2024-40391 - Rejected reason: DO NOT USE THIS CANDIDATE...
Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: This candidate was withdrawn by its CNA. Further investigation showed that it was not a security issue. Notes: none.
NA - CVE-2024-46625 - An authenticated arbitrary file upload...
An authenticated arbitrary file upload vulnerability in the /documentCache/upload endpoint of InfoDom Performa 365 v4.0.1 allows attackers to execute arbitrary code via uploading a crafted SVG file.
NA - CVE-2024-46624 - An issue in InfoDom Performa 365 v4.0.1 allows...
An issue in InfoDom Performa 365 v4.0.1 allows authenticated attackers to elevate their privileges to Administrator via a crafted payload sent to /api/users.