Show filters
324 Total Results
Displaying 41-50 of 324
Sort by:
Attacker Value
Unknown

CVE-2024-0622

Disclosure Date: February 15, 2024 (last updated January 24, 2025)
Local privilege escalation vulnerability affects OpenText Operations Agent product versions 12.15 and 12.20-12.25 when installed on Non-Windows platforms. The vulnerability could allow local privilege escalation. 
Attacker Value
Unknown

CVE-2024-22241

Disclosure Date: February 06, 2024 (last updated February 10, 2024)
Aria Operations for Networks contains a cross site scripting vulnerability. A malicious actor with admin privileges can inject a malicious payload into the login banner and takeover the user account.  
Attacker Value
Unknown

CVE-2024-22240

Disclosure Date: February 06, 2024 (last updated February 10, 2024)
Aria Operations for Networks contains a local file read vulnerability. A malicious actor with admin privileges may exploit this vulnerability leading to unauthorized access to sensitive information.
Attacker Value
Unknown

CVE-2024-22239

Disclosure Date: February 06, 2024 (last updated February 10, 2024)
Aria Operations for Networks contains a local privilege escalation vulnerability. A console user with access to Aria Operations for Networks may exploit this vulnerability to escalate privileges to gain regular shell access.
Attacker Value
Unknown

CVE-2024-22238

Disclosure Date: February 06, 2024 (last updated February 10, 2024)
Aria Operations for Networks contains a cross site scripting vulnerability. A malicious actor with admin privileges may be able to inject malicious code into user profile configurations due to improper input sanitization.
Attacker Value
Unknown

CVE-2024-22237

Disclosure Date: February 06, 2024 (last updated February 10, 2024)
Aria Operations for Networks contains a local privilege escalation vulnerability. A console user with access to Aria Operations for Networks may exploit this vulnerability to escalate privileges to gain root access to the system.
Attacker Value
Unknown

CVE-2023-5390

Disclosure Date: January 31, 2024 (last updated July 09, 2024)
An attacker could potentially exploit this vulnerability, leading to files being read from the Honeywell Experion ControlEdge VirtualUOC and ControlEdge UOC. This exploit could be used to read files from the controller that may expose limited information from the device. Honeywell recommends updating to the most recent version of the product. See Honeywell Security Notification for recommendations on upgrading and versioning.
Attacker Value
Unknown

CVE-2023-5389

Disclosure Date: January 30, 2024 (last updated April 25, 2024)
An attacker could potentially exploit this vulnerability, leading to the ability to modify files on Honeywell Experion ControlEdge VirtualUOC and ControlEdge UOC . This exploit could be used to write a file that may result in unexpected behavior based on configuration changes or updating of files that could result in subsequent execution of a malicious application if triggered. Honeywell recommends updating to the most recent version of the product. See Honeywell Security Notification for recommendations on upgrading and versioning. 
Attacker Value
Unknown

CVE-2023-36043

Disclosure Date: November 14, 2023 (last updated November 21, 2023)
Open Management Infrastructure Information Disclosure Vulnerability
Attacker Value
Unknown

CVE-2023-34052

Disclosure Date: October 20, 2023 (last updated October 31, 2023)
VMware Aria Operations for Logs contains a deserialization vulnerability. A malicious actor with non-administrative access to the local system can trigger the deserialization of data which could result in authentication bypass.