NA - CVE-2025-24497 - When URL categorization is configured on a...
When URL categorization is configured on a virtual server, undisclosed requests can cause TMM to terminate. Note: Software versions which have reached End of Technical Support (EoTS) are not...
Medium - CVE-2024-38316 - IBM Aspera Shares 1.9.0 through 1.10.0 PL6 does...
IBM Aspera Shares 1.9.0 through 1.10.0 PL6 does not properly rate limit the frequency that an authenticated user can send emails, which could result in email flooding or a denial of service.
Medium - CVE-2024-38317 - IBM Aspera Shares 1.9.0 through 1.10.0 PL6 is...
IBM Aspera Shares 1.9.0 through 1.10.0 PL6 is vulnerable to cross-site scripting. This vulnerability allows a privileged user to embed arbitrary JavaScript code in the Web UI thus altering the...
Medium - CVE-2024-38318 - IBM Aspera Shares 1.9.0 through 1.10.0 PL6 is...
IBM Aspera Shares 1.9.0 through 1.10.0 PL6 is vulnerable to HTML injection. A remote attacker could inject malicious HTML code, which when viewed, would be executed in the victim's Web browser...
Medium - CVE-2024-56470 - IBM Aspera Shares 1.9.0 through 1.10.0 PL6 is...
IBM Aspera Shares 1.9.0 through 1.10.0 PL6 is vulnerable to server-side request forgery (SSRF). This may allow an authenticated attacker to send unauthorized requests from the system, potentially...
Medium - CVE-2024-56471 - IBM Aspera Shares 1.9.0 through 1.10.0 PL6 is...
IBM Aspera Shares 1.9.0 through 1.10.0 PL6 is vulnerable to server-side request forgery (SSRF). This may allow an authenticated attacker to send unauthorized requests from the system, potentially...
Medium - CVE-2024-56472 - IBM Aspera Shares 1.9.0 through 1.10.0 PL6 is...
IBM Aspera Shares 1.9.0 through 1.10.0 PL6 is vulnerable to stored cross-site scripting. This vulnerability allows authenticated users to embed arbitrary JavaScript code in the Web UI thus...
Medium - CVE-2024-56473 - IBM Aspera Shares 1.9.0 through 1.10.0 PL6...
IBM Aspera Shares 1.9.0 through 1.10.0 PL6 could allow an attacker to spoof their IP address, which is written to log files, due to improper verification of 'Client-IP' headers.
NA - CVE-2025-1003 - A potential vulnerability has been identified...
A potential vulnerability has been identified in HP Anyware Agent for Linux which might allow for authentication bypass which may result in escalation of privilege. HP is releasing a software...
NA - CVE-2025-22475 - Dell PowerProtect DD, versions prior to DDOS...
Dell PowerProtect DD, versions prior to DDOS 8.3.0.0, 7.10.1.50, and 7.13.1.10 contains a use of a Cryptographic Primitive with a Risky Implementation vulnerability. A remote attacker could...