NA - CVE-2023-29080 - Potential privilege escalation vulnerability in...
Potential privilege escalation vulnerability in Revenera InstallShield versions 2022 R2 and 2021 R2 due to adding InstallScript custom action to a Basic MSI or InstallScript MSI project extracting...
NA - CVE-2025-0477 - An encryption vulnerability exists in all...
An encryption vulnerability exists in all versions prior to V15.00.001 of Rockwell Automation FactoryTalk® AssetCentre. The vulnerability exists due to a weak encryption methodology and could allow...
NA - CVE-2025-0497 - A data exposure vulnerability exists in all...
A data exposure vulnerability exists in all versions prior to V15.00.001 of Rockwell Automation FactoryTalk® AssetCentre. The vulnerability exists due to storing credentials in the configuration...
NA - CVE-2025-0498 - A data exposure vulnerability exists in all...
A data exposure vulnerability exists in all versions prior to V15.00.001 of Rockwell Automation FactoryTalk® AssetCentre. The vulnerability exists due to insecure storage of FactoryTalk® Security...
Medium - CVE-2025-0874 - A vulnerability, which was classified as...
A vulnerability, which was classified as critical, has been found in code-projects Simple Plugins Car Rental Management 1.0. Affected by this issue is some unknown functionality of the file...
NA - CVE-2024-12248 - The affected product is vulnerable to an...
The affected product is vulnerable to an out-of-bounds write, which could allow an attacker to send specially formatted UDP requests in order to write arbitrary data. This could result in remote...
NA - CVE-2024-44142 - The issue was addressed with improved bounds...
The issue was addressed with improved bounds checks. This issue is fixed in GarageBand 10.4.12. Processing a maliciously crafted image may lead to arbitrary code execution.
NA - CVE-2025-0626 - The affected product sends out remote access...
The affected product sends out remote access requests to a hard-coded IP address, bypassing existing device network settings to do so. This could serve as a backdoor and lead to a malicious actor...
NA - CVE-2025-0680 - Affected products contain a vulnerability in...
Affected products contain a vulnerability in the device cloud rpc command handling process that could allow remote attackers to take control over arbitrary devices connected to the cloud.
NA - CVE-2025-0681 - The Cloud MQTT service of the affected products...
The Cloud MQTT service of the affected products supports wildcard topic subscription which could allow an attacker to obtain sensitive information from tapping the service communications.