Show filters
458 Total Results
Displaying 21-30 of 458
Sort by:
Attacker Value
Unknown

CVE-2024-49603

Disclosure Date: December 09, 2024 (last updated January 13, 2025)
Dell PowerScale OneFS Versions 8.2.2.x through 9.9.0.x contain an incorrect specified argument vulnerability. A remote low privileged legitimate user could potentially exploit this vulnerability, leading to information disclosure.
Attacker Value
Unknown

CVE-2024-49602

Disclosure Date: December 09, 2024 (last updated January 13, 2025)
Dell PowerScale OneFS Versions 8.2.2.x through 9.8.0.x contain an improper resource unlocking vulnerability. A remote low privileged attacker could potentially exploit this vulnerability, leading to denial of service.
Attacker Value
Unknown

CVE-2024-42426

Disclosure Date: December 09, 2024 (last updated January 13, 2025)
Dell PowerScale OneFS Versions 9.5.0.x through 9.8.0.x contain an uncontrolled resource consumption vulnerability. A low privilege remote attacker could potentially exploit this vulnerability, leading to denial of service.
Attacker Value
Unknown

CVE-2024-8535

Disclosure Date: November 12, 2024 (last updated November 13, 2024)
Authenticated user can access unintended user capabilities in NetScaler ADC and NetScaler Gateway if the appliance must be configured as a Gateway (SSL VPN, ICA Proxy, CVPN, RDP Proxy) with KCDAccount configuration for Kerberos SSO to access backend resources OR the appliance must be configured as an Auth Server (AAA Vserver) with KCDAccount configuration for Kerberos SSO to access backend resources
0
Attacker Value
Unknown

CVE-2024-8534

Disclosure Date: November 12, 2024 (last updated November 13, 2024)
Memory safety vulnerability leading to memory corruption and Denial of Service in NetScaler ADC and Gateway if the appliance must be configured as a Gateway (VPN Vserver) with RDP Feature enabled OR the appliance must be configured as a Gateway (VPN Vserver) and RDP Proxy Server Profile is created and set to Gateway (VPN Vserver) OR the appliance must be configured as a Auth Server (AAA Vserver) with RDP Feature enabled
0
Attacker Value
Unknown

CVE-2024-10295

Disclosure Date: October 24, 2024 (last updated January 06, 2025)
A flaw was found in Gateway. Sending a non-base64 'basic' auth with special characters can cause APICast to incorrectly authenticate a request. A malformed basic authentication header containing special characters bypasses authentication and allows unauthorized access to the backend. This issue can occur due to a failure in the base64 decoding process, which causes APICast to skip the rest of the authentication checks and proceed with routing the request upstream.
0
Attacker Value
Unknown

CVE-2024-9671

Disclosure Date: October 09, 2024 (last updated January 12, 2025)
A vulnerability was found in 3Scale. There is no auth mechanism to see a PDF invoice of a Developer user if the URL is known. Anyone can see the invoice if the URL is known or guessed.
Attacker Value
Unknown

CVE-2024-39579

Disclosure Date: August 31, 2024 (last updated September 04, 2024)
Dell PowerScale OneFS versions 8.2.2.x through 9.8.0.0 contains an incorrect privilege assignment vulnerability. A local high privileged attacker could potentially exploit this vulnerability to gain root-level access.
Attacker Value
Unknown

CVE-2024-39578

Disclosure Date: August 31, 2024 (last updated September 04, 2024)
Dell PowerScale OneFS versions 8.2.2.x through 9.8.0.1 contains a UNIX symbolic link (symlink) following vulnerability. A local high privileged attacker could potentially exploit this vulnerability, leading to denial of service, information tampering.
Attacker Value
Unknown

CVE-2024-6236

Disclosure Date: July 10, 2024 (last updated July 11, 2024)
Denial of Service in NetScaler Console (formerly NetScaler ADM), NetScaler Agent, and NetScaler SDX
0