NA - CVE-2024-39563 - A Command Injection vulnerability in Juniper...
A Command Injection vulnerability in Juniper Networks Junos Space allows an unauthenticated, network-based attacker sending a specially crafted request to execute arbitrary shell commands on the...
NA - CVE-2024-42640 - angular-base64-upload prior to v0.1.21 is...
angular-base64-upload prior to v0.1.21 is vulnerable to unauthenticated remote code execution via demo/server.php. Exploiting this vulnerability allows an attacker to upload arbitrary content to...
NA - CVE-2024-44729 - Incorrect access control in the component...
Incorrect access control in the component app/src/server.js of Mirotalk before commit 9de226 allows unauthenticated attackers without presenter privileges to arbitrarily eject users from a meeting.
NA - CVE-2024-44730 - Incorrect access control in the function...
Incorrect access control in the function handleDataChannelChat(dataMessage) of Mirotalk before commit c21d58 allows attackers to forge chat messages using an arbitrary sender name.
NA - CVE-2024-46088 - An arbitrary file upload vulnerability in the...
An arbitrary file upload vulnerability in the ProductAction.entphone interface of Zhejiang University Entersoft Customer Resource Management System v2002 to v2024 allows attackers to execute...
Medium - CVE-2024-47489 - An Improper Handling of Exceptional Conditions...
An Improper Handling of Exceptional Conditions vulnerability in the Packet Forwarding Engine (pfe) of the Juniper Networks Junos OS Evolved on ACX Series devices allows an unauthenticated, network...
High - CVE-2024-47490 - An Improper Restriction of Communication...
An Improper Restriction of Communication Channel to Intended Endpoints vulnerability in the Packet Forwarding Engine (PFE) of Juniper Networks Junos OS Evolved on ACX 7000 Series allows an...
High - CVE-2024-47491 - An Improper Handling of Exceptional Conditions...
An Improper Handling of Exceptional Conditions vulnerability in the Routing Protocol Daemon (rpd) of Juniper Networks Junos OS and Junos OS Evolved allows a network-based, unauthenticated attacker...
Medium - CVE-2024-47493 - A Missing Release of Memory after Effective...
A Missing Release of Memory after Effective Lifetime vulnerability in the Packet Forwarding Engine (PFE) of the Juniper Networks Junos OS on the SRX5K, SRX4600 and MX Series platforms with...
Medium - CVE-2024-47494 - A Time-of-check Time-of-use (TOCTOU) Race...
A Time-of-check Time-of-use (TOCTOU) Race Condition vulnerability in the AgentD process of Juniper Networks Junos OS allows an attacker who is already causing impact to established sessions which...