Autore: Angelo Barbosa

CVE-2024-0259 | Fortra Robot Schedule Enterprise Agent up to 3.03 on Windows default permission

A vulnerability was found in Fortra Robot Schedule Enterprise Agent up to 3.03 on Windows. It has been declared as critical. Affected by this vulnerability is an unknown functionality. The manipulation leads to incorrect default permissions. This vulnerability is known as CVE-2024-0259. The attack needs to be approached locally. There is no exploit available. It is recommended to upgrade the affected...

Per saperne di più

CVE-2024-30607 | Tenda FH1203 2.0.1.6 saveParentControlInfo deviceId stack-based overflow

A vulnerability was found in Tenda FH1203 2.0.1.6 and classified as critical. This issue affects the function saveParentControlInfo of the file /goform/saveParentControlInfo. The manipulation of the argument deviceId leads to stack-based buffer overflow. The identification of this vulnerability is CVE-2024-30607. The attack may be initiated remotely. Furthermore, there is an exploit...

Per saperne di più

CVE-2024-30606 | Tenda FH1203 2.0.1.6 /goform/DhcpListClient fromDhcpListClient page stack-based overflow

A vulnerability has been found in Tenda FH1203 2.0.1.6 and classified as critical. This vulnerability affects the function fromDhcpListClient of the file /goform/DhcpListClient. The manipulation of the argument page leads to stack-based buffer overflow. This vulnerability was named CVE-2024-30606. The attack can be initiated remotely. Furthermore, there is an exploit...

Per saperne di più

CVE-2023-45705 | HCL BigFix Platform 10.0/10.0.10/11.0.0/11.0.1 SMTP Configuration Option server-side request forgery (KB0111972)

A vulnerability, which was classified as critical, was found in HCL BigFix Platform 10.0/10.0.10/11.0.0/11.0.1. This affects an unknown part of the component SMTP Configuration Option Handler. The manipulation leads to server-side request forgery. This vulnerability is uniquely identified as CVE-2023-45705. It is possible to initiate the attack remotely. There is no exploit...

Per saperne di più