Show filters
603 Total Results
Displaying 21-30 of 603
Sort by:
Attacker Value
Unknown

CVE-2024-47941

Disclosure Date: November 12, 2024 (last updated November 14, 2024)
A vulnerability has been identified in Solid Edge SE2024 (All versions < V224.0 Update 9). The affected applications contain an out of bounds read past the end of an allocated structure while parsing specially crafted PAR files. This could allow an attacker to execute code in the context of the current process.
Attacker Value
Unknown

CVE-2024-47940

Disclosure Date: November 12, 2024 (last updated November 14, 2024)
A vulnerability has been identified in Solid Edge SE2024 (All versions < V224.0 Update 9). The affected applications contain an out of bounds read past the end of an allocated structure while parsing specially crafted PSM files. This could allow an attacker to execute code in the context of the current process.
Attacker Value
Unknown

CVE-2022-44593

Disclosure Date: June 21, 2024 (last updated June 25, 2024)
Use of Less Trusted Source vulnerability in SolidWP Solid Security allows HTTP DoS.This issue affects Solid Security: from n/a through 9.3.1.
Attacker Value
Unknown

CVE-2024-37178

Disclosure Date: June 11, 2024 (last updated June 11, 2024)
SAP Financial Consolidation does not sufficiently encode user-controlled inputs, resulting in Cross-Site Scripting (XSS) vulnerability. These endpoints are exposed over the network. The vulnerability can exploit resources beyond the vulnerable component. On successful exploitation, an attacker can cause limited impact to confidentiality of the application.
0
Attacker Value
Unknown

CVE-2024-37177

Disclosure Date: June 11, 2024 (last updated June 11, 2024)
SAP Financial Consolidation allows data to enter a Web application through an untrusted source. These endpoints are exposed over the network and it allows the user to modify the content from the web site. On successful exploitation, an attacker can cause significant impact to confidentiality and integrity of the application.
0
Attacker Value
Unknown

CVE-2024-35229

Disclosure Date: May 27, 2024 (last updated May 28, 2024)
ZKsync Era is a layer 2 rollup that uses zero-knowledge proofs to scale Ethereum. Prior to version 1.3.10, there is a very specific pattern `f(a(),b()); check_if_a_executed_last()` in Yul that exposes a bug in evaluation order of Yul function arguments. This vulnerability has been fixed in version 1.3.10. As a workaround, update and redeploy affected contracts.
0
Attacker Value
Unknown

CVE-2024-4859

Disclosure Date: May 14, 2024 (last updated May 15, 2024)
Solidus <= 4.3.4 is affected by a Stored Cross-Site Scripting vulnerability in the order tracking URL.
0
Attacker Value
Unknown

CVE-2024-34773

Disclosure Date: May 14, 2024 (last updated May 15, 2024)
A vulnerability has been identified in Solid Edge (All versions < V224.0 Update 2). The affected applications contain a stack overflow vulnerability while parsing specially crafted PAR files. This could allow an attacker to execute code in the context of the current process.
0
Attacker Value
Unknown

CVE-2024-34772

Disclosure Date: May 14, 2024 (last updated May 15, 2024)
A vulnerability has been identified in Solid Edge (All versions < V224.0 Update 4). The affected applications contain an out of bounds read past the end of an allocated structure while parsing specially crafted PAR files. This could allow an attacker to execute code in the context of the current process.
0
Attacker Value
Unknown

CVE-2024-34771

Disclosure Date: May 14, 2024 (last updated May 15, 2024)
A vulnerability has been identified in Solid Edge (All versions < V224.0 Update 2). The affected application is vulnerable to heap-based buffer overflow while parsing specially crafted PAR files. This could allow an attacker to execute code in the context of the current process.
0