Show filters
325,530 Total Results
Displaying 681-690 of 10,000
Refine your search criteria for more targeted results.
Sort by:
Attacker Value
Unknown

CVE-2023-25189

Disclosure Date: September 25, 2024 (last updated September 26, 2024)
BTS is affected by information disclosure vulnerability where mobile network operator personnel connected over BTS Web Element Manager, regardless of the access privileges, having a possibility to read BTS service operation details performed by Nokia Care service personnel via SSH.
0
Attacker Value
Unknown

CVE-2024-46461

Disclosure Date: September 25, 2024 (last updated September 26, 2024)
VLC media player 3.0.20 and earlier is vulnerable to denial of service through an integer overflow which could be triggered with a maliciously crafted mms stream (heap based overflow). If successful, a malicious third party could trigger either a crash of VLC or an arbitrary code execution with the target user's privileges.
0
Attacker Value
Unknown

CVE-2024-43990

Disclosure Date: September 25, 2024 (last updated September 26, 2024)
Insertion of Sensitive Information into Log File vulnerability in StylemixThemes Masterstudy LMS Starter.This issue affects Masterstudy LMS Starter: from n/a through 1.1.8.
0
Attacker Value
Unknown

CVE-2024-43959

Disclosure Date: September 25, 2024 (last updated September 26, 2024)
Improper Neutralization of Input During Web Page Generation (XSS or 'Cross-site Scripting') vulnerability in Themepoints Testimonials allows Reflected XSS.This issue affects Testimonials: from n/a through 3.0.8.
0
Attacker Value
Unknown

CVE-2024-43237

Disclosure Date: September 25, 2024 (last updated September 26, 2024)
Exposure of Sensitive Information to an Unauthorized Actor vulnerability in TaxoPress WordPress Tag Cloud Plugin – Tag Groups.This issue affects WordPress Tag Cloud Plugin – Tag Groups: from n/a through 2.0.3.
0
Attacker Value
Unknown

CVE-2024-30128

Disclosure Date: September 25, 2024 (last updated September 26, 2024)
HCL Nomad server on Domino is affected by an open proxy vulnerability in which an unauthenticated attacker can mask their original source IP address. This may enable an attacker to trick the user into exposing sensitive information.
0
Attacker Value
Unknown

CVE-2024-22893

Disclosure Date: September 25, 2024 (last updated September 26, 2024)
OpenSlides 4.0.15 verifies passwords by comparing password hashes using a function with content-dependent runtime. This can allow attackers to obtain information about the password hash using a timing attack.
0
Attacker Value
Unknown

CVE-2024-22892

Disclosure Date: September 25, 2024 (last updated October 02, 2024)
OpenSlides 4.0.15 was discovered to be using a weak hashing algorithm to store passwords.
Attacker Value
Unknown

CVE-2024-8316

Disclosure Date: September 25, 2024 (last updated October 03, 2024)
In Progress Telerik UI for WPF versions prior to 2024 Q3 (2024.3.924), a code execution attack is possible through an insecure deserialization vulnerability.
Attacker Value
Unknown

CVE-2024-7679

Disclosure Date: September 25, 2024 (last updated October 02, 2024)
In Progress Telerik UI for WinForms versions prior to 2024 Q3 (2024.3.924), a command injection attack is possible through improper neutralization of hyperlink elements.