Show filters
424 Total Results
Displaying 181-190 of 424
Sort by:
Attacker Value
Unknown
CVE-2023-41817
Disclosure Date: May 03, 2024 (last updated February 26, 2025)
An improper export vulnerability was reported in the Motorola Phone Calls application that could allow a local attacker to read unauthorized information.
0
Attacker Value
Unknown
CVE-2023-41816
Disclosure Date: May 03, 2024 (last updated February 26, 2025)
An improper export vulnerability was reported in the Motorola Services Main application that could allow a local attacker to write to a local database.
0
Attacker Value
Unknown
CVE-2023-6962
Disclosure Date: May 02, 2024 (last updated February 26, 2025)
The WP Meta SEO plugin for WordPress is vulnerable to Sensitive Information Exposure in all versions up to, and including, 4.5.12 via the meta description. This makes it possible for unauthenticated attackers to disclose potentially sensitive information via the meta description of password-protected posts.
0
Attacker Value
Unknown
CVE-2024-32211
Disclosure Date: May 01, 2024 (last updated February 26, 2025)
An issue in LOGINT LoMag Inventory Management v1.0.20.120 and before allows a local attacker to obtain sensitive information via the UserClass.cs and Settings.cs components.
0
Attacker Value
Unknown
CVE-2024-32236
Disclosure Date: April 25, 2024 (last updated February 26, 2025)
An issue in CmsEasy v.7.7 and before allows a remote attacker to obtain sensitive information via the update function in the index.php component.
0
Attacker Value
Unknown
CVE-2024-3733
Disclosure Date: April 25, 2024 (last updated February 26, 2025)
The Essential Addons for Elementor – Best Elementor Templates, Widgets, Kits & WooCommerce Builders plugin for WordPress is vulnerable to Sensitive Information Exposure in all versions up to, and including, 5.9.15 via the ajax_load_more() , eael_woo_pagination_product_ajax(), and ajax_eael_product_gallery() functions. This makes it possible for unauthenticated attackers to extract posts that may be in private or draft status.
0
Attacker Value
Unknown
CVE-2024-22808
Disclosure Date: April 22, 2024 (last updated February 26, 2025)
An issue in Tormach xsTECH CNC Router, PathPilot Controller v2.9.6 allows attackers to cause a Denial of Service (DoS) by disrupting the communication between the PathPilot controller and the CNC router via overwriting the card's name in the device memory.
0
Attacker Value
Unknown
CVE-2024-29968
Disclosure Date: April 19, 2024 (last updated February 26, 2025)
An information disclosure vulnerability exists in Brocade SANnav before v2.3.1 and v2.3.0a when Brocade SANnav instances are configured in disaster recovery mode. SQL Table names, column names, and SQL queries are collected in DR standby Supportsave. This could allow authenticated users to access the database structure and its contents.
0
Attacker Value
Unknown
CVE-2024-29965
Disclosure Date: April 19, 2024 (last updated February 26, 2025)
In Brocade SANnav before v2.3.1, and v2.3.0a, it is possible to back up the appliance from the web interface or the command line interface ("SSH"). The resulting backups are world-readable. A local attacker can recover backup files, restore them to a new malicious appliance, and retrieve the passwords of all the switches.
0
Attacker Value
Unknown
CVE-2024-27086
Disclosure Date: April 16, 2024 (last updated February 26, 2025)
The MSAL library enabled acquisition of security tokens to call protected APIs. MSAL.NET applications targeting Xamarin Android and .NET Android (e.g., MAUI) using the library from versions 4.48.0 to 4.60.0 are impacted by a low severity vulnerability.
A malicious application running on a customer Android device can cause local denial of service against applications that were built using MSAL.NET for authentication on the same device (i.e., prevent the user of the legitimate application from logging in) due to incorrect activity export configuration. MSAL.NET version 4.60.1 includes the fix. As a workaround, a developer may explicitly mark the MSAL.NET activity non-exported.
0