NA - CVE-2024-11772 - Command injection in the admin web console of...
Command injection in the admin web console of Ivanti CSA before version 5.0.3 allows a remote authenticated attacker with admin privileges to achieve remote code execution.
NA - CVE-2024-11773 - SQL injection in the admin web console of...
SQL injection in the admin web console of Ivanti CSA before version 5.0.3 allows a remote authenticated attacker with admin privileges to run arbitrary SQL statements.
NA - CVE-2024-50699 - TP-Link TL-WR845N(UN)_V4_201214,...
TP-Link TL-WR845N(UN)_V4_201214, TL-WR845N(UN)_V4_200909 and TL-WR845N(UN)_V4_190219 were discovered to contain weak default credentials for the Administrator account.
NA - CVE-2024-50921 - Insecure permissions in Silicon Labs (SiLabs)...
Insecure permissions in Silicon Labs (SiLabs) Z-Wave Series 700 and 800 v7.21.1 allow attackers to cause a Denial of Service (DoS) via repeatedly sending crafted packets to the controller.
NA - CVE-2024-50924 - Insecure permissions in Silicon Labs (SiLabs)...
Insecure permissions in Silicon Labs (SiLabs) Z-Wave Series 700 and 800 v7.21.1 allow attackers to cause disrupt communications between the controller and the device itself via repeatedly sending...
NA - CVE-2024-50928 - Insecure permissions in Silicon Labs (SiLabs)...
Insecure permissions in Silicon Labs (SiLabs) Z-Wave Series 700 and 800 v7.21.1 allow attackers to change the wakeup interval of end devices in controller memory, disrupting the device's...
NA - CVE-2024-50929 - Insecure permissions in Silicon Labs (SiLabs)...
Insecure permissions in Silicon Labs (SiLabs) Z-Wave Series 700 and 800 v7.21.1 allow attackers to arbitrarily change the device type in the controller's memory, leading to a Denial of Service...