Show filters
3,391 Total Results
Displaying 201-210 of 3,391
Sort by:
Attacker Value
Unknown
CVE-2024-41681
Disclosure Date: August 13, 2024 (last updated August 15, 2024)
A vulnerability has been identified in Location Intelligence family (All versions < V4.4). The web server of affected products is configured to support weak ciphers by default. This could allow an unauthenticated attacker in an on-path position to to read and modify any data passed over the connection between legitimate clients and the affected device.
0
Attacker Value
Unknown
CVE-2024-39091
Disclosure Date: August 12, 2024 (last updated August 14, 2024)
An OS command injection vulnerability in the ccm_debug component of MIPC Camera firmware prior to v5.4.1.240424171021 allows attackers within the same network to execute arbitrary code via a crafted HTML request.
0
Attacker Value
Unknown
CVE-2024-7408
Disclosure Date: August 12, 2024 (last updated August 14, 2024)
This vulnerability exists in Airveda Air Quality Monitor PM2.5 PM10 due to transmission of sensitive information in plain text during AP pairing mode. An attacker in close proximity could exploit this vulnerability by capturing Wi-Fi traffic of Airveda-AP.
Successful exploitation of this vulnerability could allow the attacker to cause Evil Twin attack on the targeted system.
0
Attacker Value
Unknown
CVE-2024-23350
Disclosure Date: August 05, 2024 (last updated August 06, 2024)
Permanent DOS when DL NAS transport receives multiple payloads such that one payload contains SOR container whose integrity check has failed, and the other is LPP where UE needs to send status message to network.
0
Attacker Value
Unknown
CVE-2024-41720
Disclosure Date: August 05, 2024 (last updated August 31, 2024)
Incorrect permission assignment for critical resource issue exists in ZWX-2000CSW2-HN firmware versions prior to Ver.0.3.15, which may allow a network-adjacent authenticated attacker to alter the configuration of the device.
0
Attacker Value
Unknown
CVE-2024-39838
Disclosure Date: August 05, 2024 (last updated August 31, 2024)
ZWX-2000CSW2-HN firmware versions prior to Ver.0.3.15 uses hard-coded credentials, which may allow a network-adjacent attacker with an administrative privilege to alter the configuration of the device.
0
Attacker Value
Unknown
CVE-2024-32865
Disclosure Date: August 01, 2024 (last updated August 10, 2024)
Under certain circumstances the exacqVision Server will not properly validate TLS certificates provided by connected devices.
0
Attacker Value
Unknown
CVE-2024-42225
Disclosure Date: July 30, 2024 (last updated July 31, 2024)
In the Linux kernel, the following vulnerability has been resolved:
wifi: mt76: replace skb_put with skb_put_zero
Avoid potentially reusing uninitialized data
0
Attacker Value
Unknown
CVE-2024-7170
Disclosure Date: July 28, 2024 (last updated August 09, 2024)
A vulnerability was found in TOTOLINK A3000RU 5.9c.5185. It has been rated as problematic. This issue affects some unknown processing of the file /web_cste/cgi-bin/product.ini. The manipulation leads to use of hard-coded password. The exploit has been disclosed to the public and may be used. The associated identifier of this vulnerability is VDB-272591. NOTE: The vendor was contacted early about this disclosure but did not respond in any way.
0
Attacker Value
Unknown
CVE-2024-7159
Disclosure Date: July 28, 2024 (last updated August 09, 2024)
A vulnerability was found in TOTOLINK A3600R 4.1.2cu.5182_B20201102. It has been rated as critical. This issue affects some unknown processing of the file /web_cste/cgi-bin/product.ini of the component Telnet Service. The manipulation leads to use of hard-coded password. The exploit has been disclosed to the public and may be used. The identifier VDB-272573 was assigned to this vulnerability. NOTE: The vendor was contacted early about this disclosure but did not respond in any way.
0