Critical - CVE-2024-49803 - IBM Security Verify Access Appliance 10.0.0...
IBM Security Verify Access Appliance 10.0.0 through 10.0.8 could allow a remote authenticated attacker to execute arbitrary commands on the system by sending a specially crafted request.
High - CVE-2024-49804 - IBM Security Verify Access Appliance 10.0.0...
IBM Security Verify Access Appliance 10.0.0 through 10.0.8 could allow a locally authenticated non-administrative user to escalate their privileges due to unnecessary permissions used to perform...
Critical - CVE-2024-49805 - IBM Security Verify Access Appliance 10.0.0...
IBM Security Verify Access Appliance 10.0.0 through 10.0.8 contains hard-coded credentials, such as a password or cryptographic key, which it uses for its own inbound authentication, outbound...
Critical - CVE-2024-49806 - IBM Security Verify Access Appliance 10.0.0...
IBM Security Verify Access Appliance 10.0.0 through 10.0.8 contains hard-coded credentials, such as a password or cryptographic key, which it uses for its own inbound authentication, outbound...
NA - CVE-2024-36618 - FFmpeg n6.1.1 has a vulnerability in the AVI...
FFmpeg n6.1.1 has a vulnerability in the AVI demuxer of the libavformat library which allows for an integer overflow, potentially resulting in a denial-of-service (DoS) condition.
NA - CVE-2024-36621 - moby v25.0.5 is affected by a Race Condition in...
moby v25.0.5 is affected by a Race Condition in builder/builder-next/adapters/snapshot/layer.go. The vulnerability could be used to trigger concurrent builds that call the EnsureLayer function...
NA - CVE-2024-36622 - In RaspAP raspap-webgui 3.0.9 and earlier, a...
In RaspAP raspap-webgui 3.0.9 and earlier, a command injection vulnerability exists in the clearlog.php script. The vulnerability is due to improper sanitization of user input passed via the...