NA - CVE-2024-54008 - An authenticated Remote Code Execution (RCE)...
An authenticated Remote Code Execution (RCE) vulnerability exists in the AirWave CLI. Successful exploitation of this vulnerability could allow a remote authenticated threat actor to run arbitrary...
NA - CVE-2024-55500 - Cross-Site Request Forgery (CSRF) in Avenwu...
Cross-Site Request Forgery (CSRF) in Avenwu Whistle v.2.9.90 and before allows attackers to perform malicious API calls, resulting in the execution of arbitrary code on the victim's machine.
NA - CVE-2024-55550 - Mitel MiCollab through 9.8 SP2 could allow an...
Mitel MiCollab through 9.8 SP2 could allow an authenticated attacker with administrative privilege to conduct a local file read, due to insufficient input sanitization. A successful exploit could...
NA - CVE-2024-8540 - Insecure permissions in Ivanti Sentry before...
Insecure permissions in Ivanti Sentry before versions 9.20.2 and 10.0.2 or 10.1.0 allow a local authenticated attacker to modify sensitive application components.
NA - CVE-2024-9844 - Insufficient server-side controls in Secure...
Insufficient server-side controls in Secure Application Manager of Ivanti Connect Secure before version 22.7R2.4 allows a remote authenticated attacker to bypass restrictions.
NA - CVE-2024-46341 - TP-Link TL-WR845N(UN)_V4_190219 was discovered...
TP-Link TL-WR845N(UN)_V4_190219 was discovered to transmit credentials in base64 encoded form, which can be easily decoded by an attacker executing a man-in-the-middle attack.