Show filters
16 Total Results
Displaying 11-16 of 16
Sort by:
Attacker Value
Unknown
CVE-2024-3786
Disclosure Date: April 15, 2024 (last updated April 16, 2024)
Vulnerability in WBSAirback 21.02.04, which involves improper neutralisation of Server-Side Includes (SSI), through Device Synchronizations (/admin/DeviceReplication). Exploitation of this vulnerability could allow a remote user to execute arbitrary code.
0
Attacker Value
Unknown
CVE-2024-3785
Disclosure Date: April 15, 2024 (last updated April 16, 2024)
Vulnerability in WBSAirback 21.02.04, which involves improper neutralisation of Server-Side Includes (SSI), through Device NAS shared section (/admin/DeviceNAS). Exploitation of this vulnerability could allow a remote user to execute arbitrary code.
0
Attacker Value
Unknown
CVE-2024-3784
Disclosure Date: April 15, 2024 (last updated April 16, 2024)
Vulnerability in WBSAirback 21.02.04, which involves improper neutralisation of Server-Side Includes (SSI), through S3 Accounts (/admin/CloudAccounts). Exploitation of this vulnerability could allow a remote user to execute arbitrary code.
0
Attacker Value
Unknown
CVE-2024-3783
Disclosure Date: April 15, 2024 (last updated April 16, 2024)
The Backup Agents section in WBSAirback 21.02.04 is affected by a Path Traversal vulnerability, allowing a user with low privileges to download files from the system.
0
Attacker Value
Unknown
CVE-2024-3782
Disclosure Date: April 15, 2024 (last updated April 16, 2024)
Cross-Site Request Forgery vulnerability in WBSAirback 21.02.04, which could allow an attacker to create a manipulated HTML form to perform privileged actions once it is executed by a privileged user.
0
Attacker Value
Unknown
CVE-2024-3781
Disclosure Date: April 15, 2024 (last updated April 16, 2024)
Command injection vulnerability in the operating system. Improper neutralisation of special elements in Active Directory integration allows the intended command to be modified when sent to a downstream component in WBSAirback 21.02.04.
0