NA - CVE-2024-24459 - An invalid memory access when handling the...
An invalid memory access when handling the ProtocolIE_ID field of S1Setup Request messages in Athonet vEPC MME v11.4.0 allows attackers to cause a Denial of Service (DoS) to the cellular network by...
NA - CVE-2024-3334 - A security bypass vulnerability exists in the...
A security bypass vulnerability exists in the Removable Media Encryption (RME)component of Digital Guardian Windows Agents prior to version 8.2.0. This allows a user to circumvent encryption...
NA - CVE-2024-44759 - An arbitrary file download vulnerability in the...
An arbitrary file download vulnerability in the component /Doc/DownloadFile of NUS-M9 ERP Management Software v3.0.0 allows attackers to download arbitrary files and access sensitive information...
NA - CVE-2024-45609 - GLPI is a Free Asset and IT Management Software...
GLPI is a Free Asset and IT Management Software package, Data center management, ITIL Service Desk, licenses tracking and software auditing. An unauthenticated user can provide a malicious link to...
Medium - CVE-2024-49536 - Audition versions 23.6.9, 24.4.6 and earlier...
Audition versions 23.6.9, 24.4.6 and earlier are affected by an out-of-bounds read vulnerability that could lead to disclosure of sensitive memory. An attacker could leverage this vulnerability to...
NA - CVE-2017-13309 - In readEncryptedData of ConscryptEngine.java,...
In readEncryptedData of ConscryptEngine.java, there is a possible plaintext leak due to improperly used crypto. This could lead to local information disclosure with no additional execution...
Medium - CVE-2024-11217 - A vulnerability was found in the OAuth-server....
A vulnerability was found in the OAuth-server. OAuth-server logs the OAuth2 client secret when the logLevel is Debug higher for OIDC/GitHub/GitLab/Google IDPs login options.
NA - CVE-2024-44758 - An arbitrary file upload vulnerability in the...
An arbitrary file upload vulnerability in the component /Production/UploadFile of NUS-M9 ERP Management Software v3.0.0 allows attackers to execute arbitrary code via uploading crafted files.
NA - CVE-2024-45610 - GLPI is an open-source asset and IT management...
GLPI is an open-source asset and IT management software package that provides ITIL Service Desk features, licenses tracking and software auditing. An unauthenticated user can provide a malicious...
NA - CVE-2024-45611 - GLPI is an open-source asset and IT management...
GLPI is an open-source asset and IT management software package that provides ITIL Service Desk features, licenses tracking and software auditing. An authenticated user can bypass the access...