Show filters
16 Total Results
Displaying 11-16 of 16
Sort by:
Attacker Value
Unknown

CVE-2024-3786

Disclosure Date: April 15, 2024 (last updated April 16, 2024)
Vulnerability in WBSAirback 21.02.04, which involves improper neutralisation of Server-Side Includes (SSI), through Device Synchronizations (/admin/DeviceReplication). Exploitation of this vulnerability could allow a remote user to execute arbitrary code.
0
Attacker Value
Unknown

CVE-2024-3785

Disclosure Date: April 15, 2024 (last updated April 16, 2024)
Vulnerability in WBSAirback 21.02.04, which involves improper neutralisation of Server-Side Includes (SSI), through Device NAS shared section (/admin/DeviceNAS). Exploitation of this vulnerability could allow a remote user to execute arbitrary code.
0
Attacker Value
Unknown

CVE-2024-3784

Disclosure Date: April 15, 2024 (last updated April 16, 2024)
Vulnerability in WBSAirback 21.02.04, which involves improper neutralisation of Server-Side Includes (SSI), through S3 Accounts (/admin/CloudAccounts). Exploitation of this vulnerability could allow a remote user to execute arbitrary code.
0
Attacker Value
Unknown

CVE-2024-3783

Disclosure Date: April 15, 2024 (last updated April 16, 2024)
The Backup Agents section in WBSAirback 21.02.04 is affected by a Path Traversal vulnerability, allowing a user with low privileges to download files from the system.
0
Attacker Value
Unknown

CVE-2024-3782

Disclosure Date: April 15, 2024 (last updated April 16, 2024)
Cross-Site Request Forgery vulnerability in WBSAirback 21.02.04, which could allow an attacker to create a manipulated HTML form to perform privileged actions once it is executed by a privileged user.
0
Attacker Value
Unknown

CVE-2024-3781

Disclosure Date: April 15, 2024 (last updated April 16, 2024)
Command injection vulnerability in the operating system. Improper neutralisation of special elements in Active Directory integration allows the intended command to be modified when sent to a downstream component in WBSAirback 21.02.04.
0