NA - CVE-2024-48791 - An issue in Plug n Play Camera...
An issue in Plug n Play Camera com.starvedia.mCamView.zwave 5.5.1 allows a remote attacker to obtain sensitive information via the firmware update process
NA - CVE-2024-48795 - An issue in Creative Labs Pte Ltd...
An issue in Creative Labs Pte Ltd com.creative.apps.xficonnect 2.00.02 allows a remote attacker to obtain sensitive information via the firmware update process.
NA - CVE-2023-48082 - Nagios XI before 5.11.3 2024R1 was discovered...
Nagios XI before 5.11.3 2024R1 was discovered to improperly handle API keys generation (randomly-generated), allowing attackers to possibly generate the same set of API keys for all users and...
NA - CVE-2024-47885 - The Astro web framework has a DOM Clobbering...
The Astro web framework has a DOM Clobbering gadget in the client-side router starting in version 3.0.0 and prior to version 4.16.1. It can lead to cross-site scripting (XSS) in websites enables...
NA - CVE-2024-48821 - Cross Site Scripting vulnerability in Automatic...
Cross Site Scripting vulnerability in Automatic Systems Maintenance SlimLane 29565_d74ecce0c1081d50546db573a499941b10799fb7 allows a remote attacker to escalate privileges via the FtpConfig.php...
NA - CVE-2024-48822 - Privilege escalation in Automatic Systems...
Privilege escalation in Automatic Systems Maintenance SlimLane 29565_d74ecce0c1081d50546db573a499941b10799fb7 allows a remote attacker to escalate privileges via the FtpConfig.php page.
NA - CVE-2024-48823 - Local file inclusion in Automatic Systems...
Local file inclusion in Automatic Systems Maintenance SlimLane 29565_d74ecce0c1081d50546db573a499941b10799fb7 allows a remote attacker to escalate privileges via the PassageAutoServer.php page.