|
256441
|
7.5 |
HIGH
Network
|
vonets
|
var1200-h_firmware var1200-l_firmware var600-h_firmware vap11ac_firmware vap11g-500s_firmware vbg1200_firmware vap11s-5g_firmware vap11s_firmware var11n-300_firmware vap11g…
|
Improper check or handling of exceptional conditions vulnerability
affecting Vonets
industrial wifi bridge relays and wifi bridge repeaters, software versions 3.3.23.6.9 and prior, enable an un…
|
NVD-CWE-noinfo
|
CVE-2024-39815
|
2024-08-21 02:14 |
2024-08-12 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
256442
|
9.9 |
CRITICAL
Network
|
vonets
|
var1200-h_firmware var1200-l_firmware var600-h_firmware vap11ac_firmware vap11g-500s_firmware vbg1200_firmware vap11s-5g_firmware vap11s_firmware var11n-300_firmware vap11g…
|
Multiple OS command injection vulnerabilities affecting Vonets
industrial wifi bridge relays and wifi bridge repeaters, software
versions 3.3.23.6.9 and prior, enable an authenticated remote atta…
|
CWE-77
Command Injection
|
CVE-2024-37023
|
2024-08-21 02:12 |
2024-08-12 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
256443
|
8.6 |
HIGH
Network
|
vonets
|
var1200-h_firmware var1200-l_firmware var600-h_firmware vap11ac_firmware vap11g-500s_firmware vbg1200_firmware vap11s-5g_firmware vap11s_firmware var11n-300_firmware vap11g…
|
Improper access control vulnerability affecting Vonets
industrial wifi bridge relays and wifi bridge repeaters, software versions 3.3.23.6.9
and prior, enables an unauthenticated remote attacker t…
|
CWE-284
Improper Access Control
|
CVE-2024-29082
|
2024-08-21 02:11 |
2024-08-12 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
256444
|
9.8 |
CRITICAL
Network
|
vonets
|
var1200-h_firmware var1200-l_firmware var600-h_firmware vap11ac_firmware vap11g-500s_firmware vbg1200_firmware vap11s-5g_firmware vap11s_firmware var11n-300_firmware vap11g…
|
Use of hard-coded credentials vulnerability affecting Vonets industrial wifi bridge relays and WiFi bridge repeaters, software versions
3.3.23.6.9 and prior, enables an unauthenticated remote attack…
|
CWE-798
Use of Hard-coded Credentials
|
CVE-2024-41161
|
2024-08-21 02:09 |
2024-08-9 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
256445
|
5.5 |
MEDIUM
Local
|
huawei
|
emui harmonyos
|
Access permission verification vulnerability in the Contacts module
Impact: Successful exploitation of this vulnerability may affect service confidentiality.
|
NVD-CWE-noinfo
|
CVE-2024-42032
|
2024-08-21 01:58 |
2024-08-8 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
256446
|
7.5 |
HIGH
Network
|
huawei
|
emui harmonyos
|
Access permission verification vulnerability in the Settings module.
Impact: Successful exploitation of this vulnerability may affect service confidentiality.
|
NVD-CWE-noinfo
|
CVE-2024-42031
|
2024-08-21 01:57 |
2024-08-8 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
256447
|
6.2 |
MEDIUM
Local
|
huawei
|
harmonyos emui
|
Access permission verification vulnerability in the content sharing pop-up module
Impact: Successful exploitation of this vulnerability may affect service confidentiality.
|
NVD-CWE-noinfo
|
CVE-2024-42030
|
2024-08-21 01:55 |
2024-08-8 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
256448
|
9.8 |
CRITICAL
Network
|
vonets
|
var1200-h_firmware var1200-l_firmware var600-h_firmware vap11ac_firmware vap11g-500s_firmware vbg1200_firmware vap11s-5g_firmware vap11s_firmware var11n-300_firmware vap11g…
|
An improper authentication vulnerability affecting Vonets
industrial wifi bridge relays and wifi bridge repeaters, software versions
3.3.23.6.9 and prior enables an unauthenticated remote a…
|
CWE-425
Direct Request ('Forced Browsing')
|
CVE-2024-42001
|
2024-08-21 01:37 |
2024-08-12 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
256449
|
- |
|
-
|
-
|
A Cross-Site Request Forgery (CSRF) in the component categorie.php of Warehouse Inventory System v2.0 allows attackers to escalate privileges.
|
-
|
CVE-2024-42586
|
2024-08-21 01:35 |
2024-08-20 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
256450
|
- |
|
-
|
-
|
A Cross-Site Request Forgery (CSRF) in the component delete_media.php of Warehouse Inventory System v2.0 allows attackers to escalate privileges.
|
-
|
CVE-2024-42585
|
2024-08-21 01:35 |
2024-08-20 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|