Show filters
325,399 Total Results
Displaying 421-430 of 10,000
Refine your search criteria for more targeted results.
Sort by:
Attacker Value
Unknown

CVE-2024-45836

Disclosure Date: September 26, 2024 (last updated September 26, 2024)
Cross-site scripting vulnerability exists in the web management page of PLANEX COMMUNICATIONS network cameras. If a logged-in user accesses a specific file, an arbitrary script may be executed on the web browser of the user.
0
Attacker Value
Unknown

CVE-2024-45372

Disclosure Date: September 26, 2024 (last updated September 26, 2024)
MZK-DP300N firmware versions 1.04 and earlier contains a cross-site request forger vulnerability. Viewing a malicious page while logging in to the web management page of the affected product may lead the user to perform unintended operations such as changing the login password, etc.
0
Attacker Value
Unknown

CVE-2024-47045

Disclosure Date: September 26, 2024 (last updated September 26, 2024)
Privilege chaining issue exists in the installer of e-Tax software(common program). If this vulnerability is exploited, a malicious DLL prepared by an attacker may be executed with higher privileges than the application privilege.
0
Attacker Value
Unknown

CVE-2023-52950

Disclosure Date: September 26, 2024 (last updated September 26, 2024)
Missing encryption of sensitive data vulnerability in login component in Synology Active Backup for Business Agent before 2.7.0-3221 allows adjacent man-in-the-middle attackers to obtain user credential via unspecified vectors.
0
Attacker Value
Unknown

CVE-2023-52949

Disclosure Date: September 26, 2024 (last updated September 26, 2024)
Missing authentication for critical function vulnerability in proxy settings functionality in Synology Active Backup for Business Agent before 2.7.0-3221 allows local users to obtain user credential via unspecified vectors.
0
Attacker Value
Unknown

CVE-2023-52948

Disclosure Date: September 26, 2024 (last updated September 26, 2024)
Missing encryption of sensitive data vulnerability in settings functionality in Synology Active Backup for Business Agent before 2.7.0-3221 allows local users to obtain user credential via unspecified vectors.
0
Attacker Value
Unknown

CVE-2023-52947

Disclosure Date: September 26, 2024 (last updated September 26, 2024)
Missing authentication for critical function vulnerability in logout functionality in Synology Active Backup for Business Agent before 2.6.3-3101 allows local users to logout the client via unspecified vectors. The backup functionality will continue to operate and will not be affected by the logout.
0
Attacker Value
Unknown

CVE-2023-52946

Disclosure Date: September 26, 2024 (last updated September 26, 2024)
Buffer copy without checking size of input ('Classic Buffer Overflow') vulnerability in vss service component in Synology Drive Client before 3.5.0-16084 allows remote attackers to overwrite trivial buffers and crash the client via unspecified vectors.
0
Attacker Value
Unknown

CVE-2022-49041

Disclosure Date: September 26, 2024 (last updated September 26, 2024)
Buffer copy without checking size of input ('Classic Buffer Overflow') vulnerability in backup task management functionality in Synology Drive Client before 3.4.0-15721 allows local users with administrator privileges to crash the client via unspecified vectors.
0
Attacker Value
Unknown

CVE-2022-49040

Disclosure Date: September 26, 2024 (last updated September 26, 2024)
Buffer copy without checking size of input ('Classic Buffer Overflow') vulnerability in connection management functionality in Synology Drive Client before 3.4.0-15721 allows local users with administrator privileges to crash the client via unspecified vectors.
0