Show filters
458 Total Results
Displaying 21-30 of 458
Sort by:
Attacker Value
Unknown
CVE-2024-49603
Disclosure Date: December 09, 2024 (last updated January 13, 2025)
Dell PowerScale OneFS Versions 8.2.2.x through 9.9.0.x contain an incorrect specified argument vulnerability. A remote low privileged legitimate user could potentially exploit this vulnerability, leading to information disclosure.
0
Attacker Value
Unknown
CVE-2024-49602
Disclosure Date: December 09, 2024 (last updated January 13, 2025)
Dell PowerScale OneFS Versions 8.2.2.x through 9.8.0.x contain an improper resource unlocking vulnerability. A remote low privileged attacker could potentially exploit this vulnerability, leading to denial of service.
0
Attacker Value
Unknown
CVE-2024-42426
Disclosure Date: December 09, 2024 (last updated January 13, 2025)
Dell PowerScale OneFS Versions 9.5.0.x through 9.8.0.x contain an uncontrolled resource consumption vulnerability. A low privilege remote attacker could potentially exploit this vulnerability, leading to denial of service.
0
Attacker Value
Unknown
CVE-2024-8535
Disclosure Date: November 12, 2024 (last updated November 13, 2024)
Authenticated user can access unintended user capabilities in NetScaler ADC and NetScaler Gateway if the appliance must be configured as a Gateway (SSL VPN, ICA Proxy, CVPN, RDP Proxy) with KCDAccount configuration for Kerberos SSO to access backend resources OR the appliance must be configured as an Auth Server (AAA Vserver) with KCDAccount configuration for Kerberos SSO to access backend resources
0
Attacker Value
Unknown
CVE-2024-8534
Disclosure Date: November 12, 2024 (last updated November 13, 2024)
Memory safety vulnerability leading to memory corruption and Denial of Service in NetScaler ADC and Gateway if the appliance must be configured as a Gateway (VPN Vserver) with RDP Feature enabled OR the appliance must be configured as a Gateway (VPN Vserver) and RDP Proxy Server Profile is created and set to Gateway (VPN Vserver) OR the appliance must be configured as a Auth Server (AAA Vserver) with RDP Feature enabled
0
Attacker Value
Unknown
CVE-2024-10295
Disclosure Date: October 24, 2024 (last updated January 06, 2025)
A flaw was found in Gateway. Sending a non-base64 'basic' auth with special characters can cause APICast to incorrectly authenticate a request. A malformed basic authentication header containing special characters bypasses authentication and allows unauthorized access to the backend. This issue can occur due to a failure in the base64 decoding process, which causes APICast to skip the rest of the authentication checks and proceed with routing the request upstream.
0
Attacker Value
Unknown
CVE-2024-9671
Disclosure Date: October 09, 2024 (last updated January 12, 2025)
A vulnerability was found in 3Scale. There is no auth mechanism to see a PDF invoice of a Developer user if the URL is known. Anyone can see the invoice if the URL is known or guessed.
0
Attacker Value
Unknown
CVE-2024-39579
Disclosure Date: August 31, 2024 (last updated September 04, 2024)
Dell PowerScale OneFS versions 8.2.2.x through 9.8.0.0 contains an incorrect privilege assignment vulnerability. A local high privileged attacker could potentially exploit this vulnerability to gain root-level access.
0
Attacker Value
Unknown
CVE-2024-39578
Disclosure Date: August 31, 2024 (last updated September 04, 2024)
Dell PowerScale OneFS versions 8.2.2.x through 9.8.0.1 contains a UNIX symbolic link (symlink) following vulnerability. A local high privileged attacker could potentially exploit this vulnerability, leading to denial of service, information tampering.
0
Attacker Value
Unknown
CVE-2024-6236
Disclosure Date: July 10, 2024 (last updated July 11, 2024)
Denial of Service in NetScaler Console (formerly NetScaler ADM), NetScaler Agent, and NetScaler SDX
0