|
308051
|
5.0 |
MEDIUM
Local
|
synology
|
active_backup_for_business_agent
|
Missing encryption of sensitive data vulnerability in settings functionality in Synology Active Backup for Business Agent before 2.7.0-3221 allows local users to obtain user credential via unspecifie…
|
CWE-311
Missing Encryption of Sensitive Data
|
CVE-2023-52948
|
2024-10-3 00:26 |
2024-09-26 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
308052
|
3.3 |
LOW
Local
|
synology
|
active_backup_for_business_agent
|
Missing authentication for critical function vulnerability in logout functionality in Synology Active Backup for Business Agent before 2.6.3-3101 allows local users to logout the client via unspecifi…
|
CWE-306
Missing Authentication for Critical Function
|
CVE-2023-52947
|
2024-10-3 00:26 |
2024-09-26 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
308053
|
5.5 |
MEDIUM
Local
|
opentext
|
identity_manager_azuread_driver
|
A vulnerability identified in OpenText™
Identity Manager AzureAD Driver that allows logging of sensitive information into log file. This impacts all versions before 5.1.4.0
|
CWE-532
Inclusion of Sensitive Information in Log Files
|
CVE-2021-22518
|
2024-10-3 00:10 |
2024-09-12 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
308054
|
7.5 |
HIGH
Network
|
netiq
|
identity_manager_rest_driver
|
Possible Insertion of Sensitive Information into Log File Vulnerability
in Identity Manager has been discovered in
OpenText™
Identity Manager REST Driver. This impact version before 1.1.2.0200.
|
CWE-532
Inclusion of Sensitive Information in Log Files
|
CVE-2022-26322
|
2024-10-3 00:03 |
2024-09-12 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
308055
|
9.8 |
CRITICAL
Network
|
rockwellautomation
|
factorytalk_batch_view
|
CVE-2024-45823 IMPACT
An
authentication bypass vulnerability exists in the affected product. The
vulnerability exists due to shared secrets across accounts and could allow a threat
actor to impers…
|
NVD-CWE-noinfo
|
CVE-2024-45823
|
2024-10-2 23:49 |
2024-09-13 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
308056
|
8.3 |
HIGH
Network
|
nvidia
|
nvidia_container_toolkit nvidia_gpu_operator
|
NVIDIA Container Toolkit 1.16.1 or earlier contains a Time-of-check Time-of-Use (TOCTOU) vulnerability when used with default configuration where a specifically crafted container image may gain acces…
|
CWE-367
Time-of-check Time-of-use (TOCTOU) Race Condition
|
CVE-2024-0132
|
2024-10-2 23:45 |
2024-09-26 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
308057
|
3.4 |
LOW
Network
|
nvidia
|
nvidia_container_toolkit nvidia_gpu_operator
|
NVIDIA Container Toolkit 1.16.1 or earlier contains a vulnerability in the default mode of operation allowing a specially crafted container image to create empty files on the host file system. This d…
|
CWE-367
Time-of-check Time-of-use (TOCTOU) Race Condition
|
CVE-2024-0133
|
2024-10-2 23:43 |
2024-09-26 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
308058
|
7.5 |
HIGH
Network
|
rockwellautomation
|
5015-u8ihft_firmware
|
CVE-2024-45825 IMPACT
A denial-of-service vulnerability exists in the affected products. The vulnerability occurs when a malformed CIP packet is sent over the network to the device and results in a m…
|
NVD-CWE-noinfo
|
CVE-2024-45825
|
2024-10-2 23:43 |
2024-09-13 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
308059
|
8.8 |
HIGH
Network
|
rockwellautomation
|
thinmanager
|
CVE-2024-45826 IMPACT
Due to improper input validation, a path traversal and remote code execution vulnerability exists when the ThinManager® processes a crafted POST request. If exploited, a user ca…
|
CWE-610
Externally Controlled Reference to a Resource in Another Sphere
|
CVE-2024-45826
|
2024-10-2 23:35 |
2024-09-13 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
308060
|
7.5 |
HIGH
Network
|
clibomanager
|
clibo_manager
|
Rate limit vulnerability in Clibo Manager v1.1.9.2 that could allow an attacker to send a large number of emails to the victim in a short time, affecting availability and leading to a denial of servi…
|
NVD-CWE-Other
|
CVE-2024-9199
|
2024-10-2 23:33 |
2024-09-26 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|