NA - CVE-2024-7314 - anji-plus AJ-Report is affected by an...
anji-plus AJ-Report is affected by an authentication bypass vulnerability. A remote and unauthenticated attacker can append ";swagger-ui" to HTTP requests to bypass authentication and execute...
NA - CVE-2024-33892 - Insecure Permissions vulnerability in Cosy+...
Insecure Permissions vulnerability in Cosy+ devices running a firmware 21.x below 21.2s10 or a firmware 22.x below 22.1s3 are susceptible to leaking information through cookies. This is fixed in...
NA - CVE-2024-33893 - Cosy+ devices running a firmware 21.x below...
Cosy+ devices running a firmware 21.x below 21.2s10 or a firmware 22.x below 22.1s3 are vulnerable to XSS when displaying the logs due to improper input sanitization. This is fixed in version...
NA - CVE-2024-33894 - Insecure Permission vulnerability in Cosy+...
Insecure Permission vulnerability in Cosy+ devices running a firmware 21.x below 21.2s10 or a firmware 22.x below 22.1s3 are executing several processes with elevated privileges.
NA - CVE-2024-33895 - Cosy+ devices running a firmware 21.x below...
Cosy+ devices running a firmware 21.x below 21.2s10 or a firmware 22.x below 22.1s3 use a unique key to encrypt the configuration parameters. This is fixed in version 21.2s10 and 22.1s3, the key is...
NA - CVE-2024-33896 - Cosy+ devices running a firmware 21.x below...
Cosy+ devices running a firmware 21.x below 21.2s10 or a firmware 22.x below 22.1s3 are vulnerable to code injection due to improper parameter blacklisting. This is fixed in version 21.2s10 and...
NA - CVE-2024-38881 - An issue in Horizon Business Services Inc....
An issue in Horizon Business Services Inc. Caterease 16.0.1.1663 through 24.0.1.2405 and possibly later versions, allows a remote attacker to perform a Rainbow Table Password cracking attack due to...