Show filters
1,197 Total Results
Displaying 81-90 of 1,197
Sort by:
Attacker Value
Unknown

CVE-2024-43470

Disclosure Date: September 10, 2024 (last updated September 18, 2024)
Azure Network Watcher VM Agent Elevation of Privilege Vulnerability
Attacker Value
Unknown

CVE-2024-38188

Disclosure Date: September 10, 2024 (last updated September 18, 2024)
Azure Network Watcher VM Agent Elevation of Privilege Vulnerability
Attacker Value
Unknown

CVE-2024-8260

Disclosure Date: August 30, 2024 (last updated September 20, 2024)
A SMB force-authentication vulnerability exists in all versions of OPA for Windows prior to v0.68.0. The vulnerability exists because of improper input validation, allowing a user to pass an arbitrary SMB share instead of a Rego file as an argument to OPA CLI or to one of the OPA Go library’s functions.
Attacker Value
Unknown

CVE-2024-7634

Disclosure Date: August 22, 2024 (last updated January 25, 2025)
NGINX Agent's "config_dirs" restriction feature allows a highly privileged attacker to gain the ability to write/overwrite files outside of the designated secure directory.
Attacker Value
Unknown

CVE-2024-39419

Disclosure Date: August 14, 2024 (last updated August 15, 2024)
Adobe Commerce versions 2.4.7-p1, 2.4.6-p6, 2.4.5-p8, 2.4.4-p9 and earlier are affected by an Improper Authorization vulnerability that could result in a Security feature bypass. A low-privileged attacker could leverage this vulnerability to bypass security measures and modify minor information. Exploitation of this issue does not require user interaction.
Attacker Value
Unknown

CVE-2024-39418

Disclosure Date: August 14, 2024 (last updated August 15, 2024)
Adobe Commerce versions 2.4.7-p1, 2.4.6-p6, 2.4.5-p8, 2.4.4-p9 and earlier are affected by an Improper Authorization vulnerability that could result in a Security feature bypass. A low-privileged attacker could leverage this vulnerability to bypass security measures to view and edit low-sensitivity information. Exploitation of this issue does not require user interaction.
Attacker Value
Unknown

CVE-2024-39417

Disclosure Date: August 14, 2024 (last updated August 15, 2024)
Adobe Commerce versions 2.4.7-p1, 2.4.6-p6, 2.4.5-p8, 2.4.4-p9 and earlier are affected by an Improper Authorization vulnerability that could result in a Security feature bypass. A low-privileged attacker could leverage this vulnerability to bypass security measures and disclose minor information. Exploitation of this issue does not require user interaction.
Attacker Value
Unknown

CVE-2024-39416

Disclosure Date: August 14, 2024 (last updated August 15, 2024)
Adobe Commerce versions 2.4.7-p1, 2.4.6-p6, 2.4.5-p8, 2.4.4-p9 and earlier are affected by an Improper Authorization vulnerability that could result in a Security feature bypass. A low-privileged attacker could leverage this vulnerability to bypass security measures and disclose minor information. Exploitation of this issue does not require user interaction.
Attacker Value
Unknown

CVE-2024-39415

Disclosure Date: August 14, 2024 (last updated August 15, 2024)
Adobe Commerce versions 2.4.7-p1, 2.4.6-p6, 2.4.5-p8, 2.4.4-p9 and earlier are affected by an Improper Authorization vulnerability that could result in a Security feature bypass. A low-privileged attacker could leverage this vulnerability to bypass security measures and disclose minor information. Exploitation of this issue does not require user interaction.
Attacker Value
Unknown

CVE-2024-39414

Disclosure Date: August 14, 2024 (last updated August 15, 2024)
Adobe Commerce versions 2.4.7-p1, 2.4.6-p6, 2.4.5-p8, 2.4.4-p9 and earlier are affected by an Improper Authorization vulnerability that could result in a Security feature bypass. A low-privileged attacker could leverage this vulnerability to bypass security measures and disclose minor information. Exploitation of this issue does not require user interaction.