3333 vulnerabilidades · General Orden: CVSS EPSS Año ID
CVE-2024-0879
vector-admin General
6.5
MEDIUM
EPSS
0.0%
2024 CWE-287 1 PoC

Authentication bypass in vector-admin allows a user to register to a vector-admin server while “domain restriction” is active, even when not owning an authorized email address.

CVE-2024-39601
CPCI85 Central Processing/Communication General
6.5
MEDIUM
EPSS
0.4%
2024 CWE-306 1 PoC

A vulnerability has been identified in CPCI85 Central Processing/Communication (All versions < V5.40), SICORE Base system (All versions < V1.4.0). Affected devices allow a remote authenticated user or an unauthenticated user with physical access to downgrade the firmware of the device. This could allow an attacker to downgrade the device to older versions with known vulnerabilities.

CVE-2024-3839
Chrome General
6.5
MEDIUM
EPSS
0.2%
2024 1 PoC

Out of bounds read in Fonts in Google Chrome prior to 124.0.6367.60 allowed a remote attacker to obtain potentially sensitive information from process memory via a crafted HTML page. (Chromium security severity: Medium)

CVE-2024-57682
Software Genérico General
6.5
MEDIUM
EPSS
0.2%
2024 1 PoC

An information disclosure vulnerability in the component d_status.asp of D-Link 816A2_FWv1.10CNB05_R1B011D88210 allows unauthenticated attackers to access sensitive information via a crafted POST request.

CVE-2024-45188
Software Genérico General
6.5
MEDIUM
EPSS
0.2%
2024 CWE-22 1 PoC

Mage AI allows remote users with the "Viewer" role to leak arbitrary files from the Mage server due to a path traversal in the "File Content" request

CVE-2024-2231
Himer General
6.5
MEDIUM
EPSS
0.5%
2024 1 PoC

The allows any authenticated user to join a private group due to a missing authorization check on a function

CVE-2024-54764
Software Genérico General ⚡ nuclei
6.5
MEDIUM
EPSS
9.0%
2024 0 PoCs

An access control issue in the component /login/hostinfo2.cgi of ipTIME A2004 v12.17.0 allows attackers to obtain sensitive information without authentication.

CVE-2024-36527
Software Genérico General ⚡ nuclei
6.5
MEDIUM
EPSS
89.1%
2024 1 PoC

puppeteer-renderer v.3.2.0 and before is vulnerable to Directory Traversal. Attackers can exploit the URL parameter using the file protocol to read sensitive information from the server.

CVE-2024-31840
Software Genérico General
6.5
MEDIUM
EPSS
0.1%
2024 1 PoC

An issue was discovered in Italtel Embrace 1.6.4. The web application inserts cleartext passwords in the HTML source code. An authenticated user is able to edit the configuration of the email server. Once the user access the edit function, the web application fills the edit form with the current credentials for the email account, including the cleartext password.

CVE-2024-40673
Android General
6.5
MEDIUM
EPSS
1.7%
2024 1 PoC

In Source of ZipFile.java, there is a possible way for an attacker to execute arbitrary code by manipulating Dynamic Code Loading due to improper input validation. This could lead to remote code execution with no additional execution privileges needed. User interaction is not needed for exploitation.

CVE-2024-37889
MyFinances General
6.5
MEDIUM
EPSS
10.9%
2024 CWE-639 1 PoC

MyFinances is a web application for managing finances. MyFinances has a way to access other customer invoices while signed in as a user. This method allows an actor to access PII and financial information from another account. The vulnerability is fixed in 0.4.6.

CVE-2024-40789
Safari General
6.5
MEDIUM
EPSS
0.9%
2024 4 PoCs

An out-of-bounds access issue was addressed with improved bounds checking. This issue is fixed in Safari 17.6, iOS 16.7.9 and iPadOS 16.7.9, iOS 17.6 and iPadOS 17.6, macOS Sonoma 14.6, tvOS 17.6, visionOS 1.3, watchOS 10.6. Processing maliciously crafted web content may lead to an unexpected process crash.

CVE-2024-41332
Software Genérico General
6.5
MEDIUM
EPSS
0.1%
2024 1 PoC

Incorrect access control in the delete_category function of Sourcecodester Computer Laboratory Management System v1.0 allows authenticated attackers with low-level privileges to arbitrarily delete categories.

CVE-2024-48272
Software Genérico General
6.5
MEDIUM
EPSS
0.2%
2024 1 PoC

D-Link DSL6740C v6.TR069.20211230 was discovered to use an insecure default Wifi password, possibly allowing attackers to connect to the device via a bruteforce attack.

CVE-2024-38565
Linux General
6.5
MEDIUM
EPSS
0.0%
2024 1 PoC

In the Linux kernel, the following vulnerability has been resolved: wifi: ar5523: enable proper endpoint verification Syzkaller reports [1] hitting a warning about an endpoint in use not having an expected type to it. Fix the issue by checking for the existence of all proper endpoints with their according types intact. Sadly, this patch has not been tested on real hardware. [1] Syzkaller report: ------------[ cut here ]------------ usb 1-1: BOGUS urb xfer, pipe 3 != type 1 WARNING: CPU: 0 PID: 3643 at drivers/usb/core/urb.c:504 usb_submit_urb+0xed6/0x1880 drivers/usb/core/urb.c:504 ... Ca

CVE-2024-36916
Linux General
6.5
MEDIUM
EPSS
0.0%
2024 2 PoCs

In the Linux kernel, the following vulnerability has been resolved: blk-iocost: avoid out of bounds shift UBSAN catches undefined behavior in blk-iocost, where sometimes iocg->delay is shifted right by a number that is too large, resulting in undefined behavior on some architectures. [ 186.556576] ------------[ cut here ]------------ UBSAN: shift-out-of-bounds in block/blk-iocost.c:1366:23 shift exponent 64 is too large for 64-bit type 'u64' (aka 'unsigned long long') CPU: 16 PID: 0 Comm: swapper/16 Tainted: G S E N 6.9.0-0_fbk700_debug_rc2_kbuilder_0_gc85af715cac0 #1 Hardware

CVE-2024-43998
Blogpoet General
6.5
MEDIUM
EPSS
26.0%
2024 CWE-862 2 PoCs

Missing Authorization vulnerability in WebsiteinWP Blogpoet allows Accessing Functionality Not Properly Constrained by ACLs.This issue affects Blogpoet: from n/a through 1.0.3.

CVE-2024-50848
Software Genérico General
6.5
MEDIUM
EPSS
7.9%
2024 2 PoCs

An XML External Entity (XXE) vulnerability in the Import object and Translation Memory import functionalities of WorldServer v11.8.2 to access sensitive information and execute arbitrary commands via supplying a crafted .tmx file.

CVE-2024-7518
Firefox General
6.5
MEDIUM
EPSS
0.3%
2024 1 PoC

Select options could obscure the fullscreen notification dialog. This could be used by a malicious site to perform a spoofing attack. This vulnerability affects Firefox < 129, Firefox ESR < 128.1, and Thunderbird < 128.1.

CVE-2024-7137
RS9116 Bluetooth SDK General
6.5
MEDIUM
EPSS
0.2%
2024 CWE-787 1 PoC

The L2CAP receive data buffer for L2CAP packets is restricted to packet sizes smaller than the maximum supported packet size. Receiving a packet that exceeds the restricted buffer length may cause a crash. A hard reset is required to recover the crashed device.