NA - CVE-2024-54008 - An authenticated Remote Code Execution (RCE)...
An authenticated Remote Code Execution (RCE) vulnerability exists in the AirWave CLI. Successful exploitation of this vulnerability could allow a remote authenticated threat actor to run arbitrary...
NA - CVE-2024-55500 - Cross-Site Request Forgery (CSRF) in Avenwu...
Cross-Site Request Forgery (CSRF) in Avenwu Whistle v.2.9.90 and before allows attackers to perform malicious API calls, resulting in the execution of arbitrary code on the victim's machine.
NA - CVE-2024-55550 - Mitel MiCollab through 9.8 SP2 could allow an...
Mitel MiCollab through 9.8 SP2 could allow an authenticated attacker with administrative privilege to conduct a local file read, due to insufficient input sanitization. A successful exploit could...
NA - CVE-2024-8540 - Insecure permissions in Ivanti Sentry before...
Insecure permissions in Ivanti Sentry before versions 9.20.2 and 10.0.2 or 10.1.0 allow a local authenticated attacker to modify sensitive application components.
NA - CVE-2024-9844 - Insufficient server-side controls in Secure...
Insufficient server-side controls in Secure Application Manager of Ivanti Connect Secure before version 22.7R2.4 allows a remote authenticated attacker to bypass restrictions.
NA - CVE-2024-46341 - TP-Link TL-WR845N(UN)_V4_190219 was discovered...
TP-Link TL-WR845N(UN)_V4_190219 was discovered to transmit credentials in base64 encoded form, which can be easily decoded by an attacker executing a man-in-the-middle attack.
High - CVE-2024-49530 - Acrobat Reader versions 24.005.20307,...
Acrobat Reader versions 24.005.20307, 24.001.30213, 24.001.30193, 20.005.30730, 20.005.30710 and earlier are affected by a Use After Free vulnerability that could result in arbitrary code execution...