Autore: Angelo Barbosa

CVE-2024-30603 | Tenda FH1203 2.0.1.6 saveParentControlInfo urls stack-based overflow

A vulnerability classified as critical was found in Tenda FH1203 2.0.1.6. This vulnerability affects the function saveParentControlInfo of the file /goform/saveParentControlInfo. The manipulation of the argument urls leads to stack-based buffer overflow. This vulnerability was named CVE-2024-30603. The attack can be initiated remotely. Furthermore, there is an exploit...

Per saperne di più

CVE-2023-45706 | HCL BigFix Platform up to 9.5.23/10.0.10/11.0.1 SAML Configuration cross site scripting (KB0111972)

A vulnerability classified as problematic has been found in HCL BigFix Platform up to 9.5.23/10.0.10/11.0.1. This affects an unknown part of the component SAML Configuration Handler. The manipulation leads to cross site scripting. This vulnerability is uniquely identified as CVE-2023-45706. It is possible to initiate the attack remotely. There is no exploit...

Per saperne di più

CVE-2023-45715 | HCL BigFix Platform up to 9.5.23/10.0.10/11.0.1 File Name denial of service (KB0111972)

A vulnerability was found in HCL BigFix Platform up to 9.5.23/10.0.10/11.0.1. It has been rated as problematic. Affected by this issue is some unknown functionality of the component File Name Handler. The manipulation leads to denial of service. This vulnerability is handled as CVE-2023-45715. The attack may be launched remotely. There is no exploit...

Per saperne di più

CVE-2024-0259 | Fortra Robot Schedule Enterprise Agent up to 3.03 on Windows default permission

A vulnerability was found in Fortra Robot Schedule Enterprise Agent up to 3.03 on Windows. It has been declared as critical. Affected by this vulnerability is an unknown functionality. The manipulation leads to incorrect default permissions. This vulnerability is known as CVE-2024-0259. The attack needs to be approached locally. There is no exploit available. It is recommended to upgrade the affected...

Per saperne di più