Show filters
603 Total Results
Displaying 21-30 of 603
Sort by:
Attacker Value
Unknown
CVE-2024-47941
Disclosure Date: November 12, 2024 (last updated November 14, 2024)
A vulnerability has been identified in Solid Edge SE2024 (All versions < V224.0 Update 9). The affected applications contain an out of bounds read past the end of an allocated structure while parsing specially crafted PAR files. This could allow an attacker to execute code in the context of the current process.
0
Attacker Value
Unknown
CVE-2024-47940
Disclosure Date: November 12, 2024 (last updated November 14, 2024)
A vulnerability has been identified in Solid Edge SE2024 (All versions < V224.0 Update 9). The affected applications contain an out of bounds read past the end of an allocated structure while parsing specially crafted PSM files. This could allow an attacker to execute code in the context of the current process.
0
Attacker Value
Unknown
CVE-2022-44593
Disclosure Date: June 21, 2024 (last updated June 25, 2024)
Use of Less Trusted Source vulnerability in SolidWP Solid Security allows HTTP DoS.This issue affects Solid Security: from n/a through 9.3.1.
0
Attacker Value
Unknown
CVE-2024-37178
Disclosure Date: June 11, 2024 (last updated June 11, 2024)
SAP Financial Consolidation does not
sufficiently encode user-controlled inputs, resulting in Cross-Site Scripting
(XSS) vulnerability. These endpoints are exposed over the network. The
vulnerability can exploit resources beyond the vulnerable component. On
successful exploitation, an attacker can cause limited impact to
confidentiality of the application.
0
Attacker Value
Unknown
CVE-2024-37177
Disclosure Date: June 11, 2024 (last updated June 11, 2024)
SAP Financial Consolidation allows data to enter
a Web application through an untrusted source. These endpoints are exposed over
the network and it allows the user to modify the content from the web site. On
successful exploitation, an attacker can cause significant impact to
confidentiality and integrity of the application.
0
Attacker Value
Unknown
CVE-2024-35229
Disclosure Date: May 27, 2024 (last updated May 28, 2024)
ZKsync Era is a layer 2 rollup that uses zero-knowledge proofs to scale Ethereum. Prior to version 1.3.10, there is a very specific pattern `f(a(),b()); check_if_a_executed_last()` in Yul that exposes a bug in evaluation order of Yul function arguments. This vulnerability has been fixed in version 1.3.10. As a workaround, update and redeploy affected contracts.
0
Attacker Value
Unknown
CVE-2024-4859
Disclosure Date: May 14, 2024 (last updated May 15, 2024)
Solidus <= 4.3.4 is affected by a Stored Cross-Site Scripting vulnerability in the order tracking URL.
0
Attacker Value
Unknown
CVE-2024-34773
Disclosure Date: May 14, 2024 (last updated May 15, 2024)
A vulnerability has been identified in Solid Edge (All versions < V224.0 Update 2). The affected applications contain a stack overflow vulnerability while parsing specially crafted PAR files. This could allow an attacker to execute code in the context of the current process.
0
Attacker Value
Unknown
CVE-2024-34772
Disclosure Date: May 14, 2024 (last updated May 15, 2024)
A vulnerability has been identified in Solid Edge (All versions < V224.0 Update 4). The affected applications contain an out of bounds read past the end of an allocated structure while parsing specially crafted PAR files. This could allow an attacker to execute code in the context of the current process.
0
Attacker Value
Unknown
CVE-2024-34771
Disclosure Date: May 14, 2024 (last updated May 15, 2024)
A vulnerability has been identified in Solid Edge (All versions < V224.0 Update 2). The affected application is vulnerable to heap-based buffer overflow while parsing specially crafted PAR files. This could allow an attacker to execute code in the context of the current process.
0