NA - CVE-2024-12196 - Incorrect authorization in the permission...
Incorrect authorization in the permission component in Devolutions Server 2024.3.7.0 and earlier allows an authenticated user to view the password history of an entry without the view password...
NA - CVE-2024-38829 - A vulnerability in VMware Tanzu Spring LDAP...
A vulnerability in VMware Tanzu Spring LDAP allows data exposure for case sensitive comparisons.This issue affects Spring LDAP: from 2.4.0 through 2.4.3, from 3.0.0 through 3.0.9, from 3.1.0...
NA - CVE-2024-39219 - An issue in Aginode GigaSwitch V5 before...
An issue in Aginode GigaSwitch V5 before version 7.06G allows authenticated attackers with Administrator privileges to upload an earlier firmware version, exposing the device to previously patched...
NA - CVE-2024-51210 - Firepad through 1.5.11 allows remote attackers,...
Firepad through 1.5.11 allows remote attackers, who have knowledge of a pad ID, to retrieve both the current text of a document and all content that has previously been pasted into the document....
NA - CVE-2024-54674 - app/View/GalaxyClusters/cluster_export_misp_gal...
app/View/GalaxyClusters/cluster_export_misp_galaxy.ctp in MISP through 2.5.2 has stored XSS when exporting custom clusters into the misp-galaxy format.
NA - CVE-2018-9396 - In rpc_msg_handler and related handlers of...
In rpc_msg_handler and related handlers of drivers/misc/mediatek/eccci/port_rpc.c, there is a possible out of bounds write due to an incorrect bounds check. This could lead to local escalation of...
NA - CVE-2024-12180 - A vulnerability classified as problematic has...
A vulnerability classified as problematic has been found in DedeCMS 5.7.116. Affected is an unknown function of the file /member/article_add.php. The manipulation of the argument body leads to...