Show filters
9 Total Results
Displaying 1-9 of 9
Sort by:
Attacker Value
Unknown
CVE-2023-52323
Disclosure Date: January 05, 2024 (last updated January 12, 2024)
PyCryptodome and pycryptodomex before 3.19.1 allow side-channel leakage for OAEP decryption, exploitable for a Manger attack.
0
Attacker Value
Unknown
CVE-2022-39178
Disclosure Date: November 17, 2022 (last updated February 24, 2025)
Webvendome - webvendome Internal Server IP Disclosure.
Send GET Request to the request which is shown in the picture.
Internal Server IP and Full path disclosure.
0
Attacker Value
Unknown
CVE-2022-36787
Disclosure Date: November 17, 2022 (last updated February 24, 2025)
webvendome - webvendome SQL Injection.
SQL Injection in the Parameter " DocNumber"
Request :
Get Request :
/webvendome/showfiles.aspx?jobnumber=nullDoc Number=HERE.
0
Attacker Value
Unknown
CVE-2021-34577
Disclosure Date: November 09, 2022 (last updated February 24, 2025)
In the Kaden PICOFLUX AiR water meter an adversary can read the values through wireless M-Bus mode 5 with a hardcoded shared key while being adjacent to the device.
0
Attacker Value
Unknown
CVE-2020-9058
Disclosure Date: January 10, 2022 (last updated February 23, 2025)
Z-Wave devices based on Silicon Labs 500 series chipsets using CRC-16 encapsulation, including but likely not limited to the Linear LB60Z-1 version 3.5, Dome DM501 version 4.26, and Jasco ZW4201 version 4.05, do not implement encryption or replay protection.
0
Attacker Value
Unknown
CVE-2021-41232
Disclosure Date: November 02, 2021 (last updated February 23, 2025)
Thunderdome is an open source agile planning poker tool in the theme of Battling for points. In affected versions there is an LDAP injection vulnerability which affects instances with LDAP authentication enabled. The provided username is not properly escaped. This issue has been patched in version 1.16.3. If users are unable to update they should disable the LDAP feature if in use.
0
Attacker Value
Unknown
CVE-2021-34576
Disclosure Date: August 31, 2021 (last updated February 23, 2025)
In Kaden PICOFLUX Air in all known versions an information exposure through observable discrepancy exists. This may give sensitive information (water consumption without distinct values) to third parties.
0
Attacker Value
Unknown
CVE-2018-15560
Disclosure Date: August 20, 2018 (last updated January 12, 2024)
PyCryptodome before 3.6.6 has an integer overflow in the data_len variable in AESNI.c, related to the AESNI_encrypt and AESNI_decrypt functions, leading to the mishandling of messages shorter than 16 bytes.
0
Attacker Value
Unknown
CVE-2006-3836
Disclosure Date: July 25, 2006 (last updated October 04, 2023)
Directory traversal vulnerability in index.php in UNIDOmedia Chameleon LE 1.203 and earlier, and possibly Chameleon PRO, allows remote attackers to read arbitrary files via the rmid parameter.
0