NA - CVE-2024-5650 - DLL Hijacking vulnerability has been found in...
DLL Hijacking vulnerability has been found in CENTUM CAMS Log server provided by Yokogawa Electric Corporation. If an attacker is somehow able to intrude into a computer that installed affected...
NA - CVE-2024-36277 - Improper verification of cryptographic...
Improper verification of cryptographic signature issue exists in "FreeFrom - the nostr client" App versions prior to 1.3.5 for Android and iOS. The affected app cannot detect event data with...
NA - CVE-2024-36279 - Reliance on obfuscation or encryption of...
Reliance on obfuscation or encryption of security-relevant inputs without integrity checking issue exists in "FreeFrom - the nostr client" App versions prior to 1.3.5 for Android and iOS. If this...
NA - CVE-2024-36289 - Reusing a nonce, key pair in encryption issue...
Reusing a nonce, key pair in encryption issue exists in "FreeFrom - the nostr client" App versions prior to 1.3.5 for Android and iOS. If this vulnerability is exploited, the content of direct...
NA - CVE-2024-6048 - Openfind's MailGates and MailAudit fail to...
Openfind's MailGates and MailAudit fail to properly filter user input when analyzing email attachments. An unauthenticated remote attacker can exploit this vulnerability to inject system...
NA - CVE-2024-38394 - Mismatches in interpreting USB authorization...
Mismatches in interpreting USB authorization policy between GNOME Settings Daemon (GSD) through 46.0 and the Linux kernel's underlying device matching logic allow a physically proximate...
NA - CVE-2024-38395 - In iTerm2 before 3.5.2, the "Terminal may...
In iTerm2 before 3.5.2, the "Terminal may report window title" setting is not honored, and thus remote code execution might occur but "is not trivially exploitable."
NA - CVE-2024-38427 - In International Color Consortium DemoIccMAX...
In International Color Consortium DemoIccMAX before 85ce74e, a logic flaw in CIccTagXmlProfileSequenceId::ParseXml in IccXML/IccLibXML/IccTagXml.cpp results in unconditionally returning false.
NA - CVE-2024-38428 - url.c in GNU Wget through 1.24.5 mishandles...
url.c in GNU Wget through 1.24.5 mishandles semicolons in the userinfo subcomponent of a URI, and thus there may be insecure behavior in which data that was supposed to be in the userinfo...