Show filters
1,431 Total Results
Displaying 201-210 of 1,431
Sort by:
Attacker Value
Unknown

CVE-2024-22458

Disclosure Date: March 01, 2024 (last updated February 26, 2025)
Dell Secure Connect Gateway, 5.18, contains an Inadequate Encryption Strength Vulnerability. An unauthenticated network attacker could potentially exploit this vulnerability, allowing an attacker to recover plaintext from a block of ciphertext.
Attacker Value
Unknown

CVE-2024-22457

Disclosure Date: March 01, 2024 (last updated February 26, 2025)
Dell Secure Connect Gateway 5.20 contains an improper authentication vulnerability during the SRS to SCG update path. A remote low privileged attacker could potentially exploit this vulnerability, leading to impersonation of the server through presenting a fake self-signed certificate and communicating with the remote server.
Attacker Value
Unknown

CVE-2024-0610

Disclosure Date: February 17, 2024 (last updated February 17, 2024)
The Piraeus Bank WooCommerce Payment Gateway plugin for WordPress is vulnerable to time-based blind SQL Injection via the 'MerchantReference' parameter in all versions up to, and including, 1.6.5.1 due to insufficient escaping on the user supplied parameter and lack of sufficient preparation on the existing SQL query. This makes it possible for unauthenticated attackers to append additional SQL queries into already existing queries that can be used to extract sensitive information from the database.
0
Attacker Value
Unknown

CVE-2023-44294

Disclosure Date: February 14, 2024 (last updated February 26, 2025)
In Dell Secure Connect Gateway Application and Secure Connect Gateway Appliance (between v5.10.00.00 and v5.18.00.00), a security concern has been identified, where a malicious user with a valid User session may inject malicious content in filters of Collection Rest API. This issue may potentially lead to unintentional information disclosure from the product database.
Attacker Value
Unknown

CVE-2023-44293

Disclosure Date: February 14, 2024 (last updated February 26, 2025)
In Dell Secure Connect Gateway Application and Secure Connect Gateway Appliance (between v5.10.00.00 and v5.18.00.00), a security concern has been identified, where a malicious user with a valid User session may inject malicious content in filters of IP Range Rest API. This issue may potentially lead to unintentional information disclosure from the product database.
Attacker Value
Unknown

CVE-2024-23615

Disclosure Date: January 26, 2024 (last updated February 26, 2025)
A buffer overflow vulnerability exists in Symantec Messaging Gateway versions 10.5 and before. A remote, anonymous attacker can exploit this vulnerability to achieve remote code execution as root.
Attacker Value
Unknown

CVE-2024-23614

Disclosure Date: January 26, 2024 (last updated February 26, 2025)
A buffer overflow vulnerability exists in Symantec Messaging Gateway versions 9.5 and before. A remote, anonymous attacker can exploit this vulnerability to achieve remote code execution as root.
Attacker Value
Unknown

CVE-2023-51059

Disclosure Date: January 16, 2024 (last updated January 23, 2024)
An issue in MOKO TECHNOLOGY LTD MOKOSmart MKGW1 BLE Gateway v.1.1.1 and before allows a remote attacker to escalate privileges via the session management component of the administrative web interface.
Attacker Value
Unknown

CVE-2023-31488

Disclosure Date: January 10, 2024 (last updated February 25, 2025)
Hyland Perceptive Filters releases before 2023-12-08 (e.g., 11.4.0.2647), as used in Cisco IronPort Email Security Appliance Software, Cisco Secure Email Gateway, and various non-Cisco products, allow attackers to trigger a segmentation fault and execute arbitrary code via a crafted document.
Attacker Value
Unknown

CVE-2023-52218

Disclosure Date: January 08, 2024 (last updated February 25, 2025)
Deserialization of Untrusted Data vulnerability in Anton Bond Woocommerce Tranzila Payment Gateway.This issue affects Woocommerce Tranzila Payment Gateway: from n/a through 1.0.8.