Show filters
19 Total Results
Displaying 1-10 of 19
Sort by:
Attacker Value
Unknown
CVE-2024-45320
Disclosure Date: February 18, 2025 (last updated February 18, 2025)
Out-of-bounds write vulnerability exists in DocuPrint CP225w 01.22.01 and earlier, DocuPrint CP228w 01.22.01 and earlier, DocuPrint CM225fw 01.10.01 and earlier, and DocuPrint CM228fw 01.10.01 and earlier. If an affected MFP processes a specially crafted printer job file, a denial-of-service (DoS) condition may occur.
0
Attacker Value
Unknown
CVE-2021-46686
Disclosure Date: February 18, 2025 (last updated February 18, 2025)
Improper neutralization of special elements used in an OS command ('OS Command Injection') issue exists in acmailer CGI ver.4.0.3 and earlier and acmailer DB ver.1.1.5 and earlier. If this vulnerability is exploited, an arbitrary OS command may be executed by an attacker.
0
Attacker Value
Unknown
CVE-2023-49780
Disclosure Date: February 12, 2025 (last updated February 12, 2025)
Cross-site scripting vulnerability exists in acmailer CGI ver.4.0.5 and earlier. An arbitrary script may be executed on the web browser of the user who accessed the management page of the affected product.
0
Attacker Value
Unknown
CVE-2023-45061
Disclosure Date: January 02, 2025 (last updated January 03, 2025)
Missing Authorization vulnerability in AWSM Innovations WP Job Openings allows Exploiting Incorrectly Configured Access Control Security Levels.This issue affects WP Job Openings: from n/a through 3.4.1.
0
Attacker Value
Unknown
CVE-2024-9991
Disclosure Date: October 25, 2024 (last updated October 26, 2024)
This vulnerability exists in Philips lighting devices due to storage of Wi-Fi credentials in plain text within the device firmware. An attacker with physical access could exploit this by extracting the firmware and analyzing the binary data to obtain the plaintext Wi-Fi credentials stored on the vulnerable device.
Successful exploitation of this vulnerability could allow an attacker to gain unauthorized access to the Wi-Fi network to which vulnerable device is connected.
0
Attacker Value
Unknown
CVE-2024-27974
Disclosure Date: March 18, 2024 (last updated April 01, 2024)
Cross-site request forgery vulnerability in FUJIFILM printers which implement CentreWare Internet Services or Internet Services allows a remote unauthenticated attacker to alter user information. In the case the user is an administrator, the settings such as the administrator's ID, password, etc. may be altered. As for the details of affected product names, model numbers, and versions, refer to the information provided by the vendor listed under [References].
0
Attacker Value
Unknown
CVE-2024-22475
Disclosure Date: March 18, 2024 (last updated April 01, 2024)
Cross-site request forgery vulnerability in multiple printers and scanners which implement Web Based Management provided by BROTHER INDUSTRIES, LTD. allows a remote unauthenticated attacker to perform unintended operations on the affected product. As for the details of affected product names, model numbers, and versions, refer to the information provided by the respective vendors listed under [References].
0
Attacker Value
Unknown
CVE-2024-21824
Disclosure Date: March 18, 2024 (last updated April 01, 2024)
Improper authentication vulnerability in exists in multiple printers and scanners which implement Web Based Management provided by BROTHER INDUSTRIES, LTD. If this vulnerability is exploited, a network-adjacent user who can access the product may impersonate an administrative user. As for the details of affected product names, model numbers, and versions, refer to the information provided by the respective vendors listed under [References].
0
Attacker Value
Unknown
CVE-2023-52150
Disclosure Date: January 05, 2024 (last updated January 11, 2024)
Cross-Site Request Forgery (CSRF) vulnerability in Ovation S.R.L. Dynamic Content for Elementor.This issue affects Dynamic Content for Elementor: from n/a before 2.12.5.
0
Attacker Value
Unknown
CVE-2022-29594
Disclosure Date: June 02, 2022 (last updated October 07, 2023)
eG Agent before 7.2 has weak file permissions that enable escalation of privileges to SYSTEM.
0