Show filters
1,948 Total Results
Displaying 261-270 of 1,948
Sort by:
Attacker Value
Unknown
CVE-2022-24807
Disclosure Date: April 16, 2024 (last updated February 26, 2025)
net-snmp provides various tools relating to the Simple Network Management Protocol. Prior to version 5.9.2, a malformed OID in a SET request to `SNMP-VIEW-BASED-ACM-MIB::vacmAccessTable` can cause an out-of-bounds memory access. A user with read-write credentials can exploit the issue. Version 5.9.2 contains a patch. Users should use strong SNMPv3 credentials and avoid sharing the credentials. Those who must use SNMPv1 or SNMPv2c should use a complex community string and enhance the protection by restricting access to a given IP address range.
0
Attacker Value
Unknown
CVE-2022-24806
Disclosure Date: April 16, 2024 (last updated February 26, 2025)
net-snmp provides various tools relating to the Simple Network Management Protocol. Prior to version 5.9.2, a user with read-write credentials can exploit an Improper Input Validation vulnerability when SETing malformed OIDs in master agent and subagent simultaneously. Version 5.9.2 contains a patch. Users should use strong SNMPv3 credentials and avoid sharing the credentials. Those who must use SNMPv1 or SNMPv2c should use a complex community string and enhance the protection by restricting access to a given IP address range.
0
Attacker Value
Unknown
CVE-2022-24805
Disclosure Date: April 16, 2024 (last updated February 26, 2025)
net-snmp provides various tools relating to the Simple Network Management Protocol. Prior to version 5.9.2, a buffer overflow in the handling of the `INDEX` of `NET-SNMP-VACM-MIB` can cause an out-of-bounds memory access. A user with read-only credentials can exploit the issue. Version 5.9.2 contains a patch. Users should use strong SNMPv3 credentials and avoid sharing the credentials. Those who must use SNMPv1 or SNMPv2c should use a complex community string and enhance the protection by restricting access to a given IP address range.
0
Attacker Value
Unknown
CVE-2024-32095
Disclosure Date: April 15, 2024 (last updated February 26, 2025)
Cross-Site Request Forgery (CSRF) vulnerability in MultiParcels MultiParcels Shipping For WooCommerce.This issue affects MultiParcels Shipping For WooCommerce: from n/a before 1.16.9.
0
Attacker Value
Unknown
CVE-2024-2739
Disclosure Date: April 15, 2024 (last updated April 15, 2024)
The Advanced Search WordPress plugin through 1.1.6 does not have CSRF checks in some places, which could allow attackers to make logged in users perform unwanted actions via CSRF attacks
0
Attacker Value
Unknown
CVE-2024-32080
Disclosure Date: April 11, 2024 (last updated February 26, 2025)
Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in Nick Pelton Search Keyword Redirect allows Stored XSS.This issue affects Search Keyword Redirect: from n/a through 1.0.
0
Attacker Value
Unknown
CVE-2024-31259
Disclosure Date: April 10, 2024 (last updated February 26, 2025)
Insertion of Sensitive Information into Log File vulnerability in Searchiq SearchIQ.This issue affects SearchIQ: from n/a through 4.5.
0
Attacker Value
Unknown
CVE-2024-29063
Disclosure Date: April 09, 2024 (last updated February 26, 2025)
Azure AI Search Information Disclosure Vulnerability
0
Attacker Value
Unknown
CVE-2024-28917
Disclosure Date: April 09, 2024 (last updated February 26, 2025)
Azure Arc-enabled Kubernetes Extension Cluster-Scope Elevation of Privilege Vulnerability
0
Attacker Value
Unknown
CVE-2024-26256
Disclosure Date: April 09, 2024 (last updated February 26, 2025)
Libarchive Remote Code Execution Vulnerability
0