Show filters
3 Total Results
Displaying 1-3 of 3
Sort by:
Attacker Value
Unknown

CVE-2024-2052

Disclosure Date: March 18, 2024 (last updated April 01, 2024)
CWE-552: Files or Directories Accessible to External Parties vulnerability exists that could allow unauthenticated files and logs exfiltration and download of files when an attacker modifies the URL to download to a different location.
0
Attacker Value
Unknown

CVE-2024-2051

Disclosure Date: March 18, 2024 (last updated April 01, 2024)
CWE-307: Improper Restriction of Excessive Authentication Attempts vulnerability exists that could cause account takeover and unauthorized access to the system when an attacker conducts brute-force attacks against the login form.
0
Attacker Value
Unknown

CVE-2024-2050

Disclosure Date: March 18, 2024 (last updated April 01, 2024)
CWE-79: Improper Neutralization of Input During Web Page Generation (‘Cross-site Scripting’) vulnerability exists when an attacker injects then executes arbitrary malicious JavaScript code within the context of the product.
0