Category: CVE

CVE-2024-39354 | Delta Electronics DIAScreen up to 1.4.x CEtherIPTagItem stack-based overflow (icsa-24-312-02)

A vulnerability was found in Delta Electronics DIAScreen up to 1.4.x. It has been classified as critical. Affected is an unknown function of the component CEtherIPTagItem. The manipulation leads to stack-based buffer overflow. This vulnerability is traded as CVE-2024-39354. It is possible to launch the attack remotely. There is no exploit available. It is recommended to upgrade the affected...

Read More

CVE-2024-39605 | Delta Electronics DIAScreen up to 1.4.x BACnetParameter stack-based overflow (icsa-24-312-02)

A vulnerability was found in Delta Electronics DIAScreen up to 1.4.x and classified as critical. This issue affects some unknown processing of the component BACnetParameter. The manipulation leads to stack-based buffer overflow. The identification of this vulnerability is CVE-2024-39605. The attack may be initiated remotely. There is no exploit available. It is recommended to upgrade the affected...

Read More

CVE-2024-47131 | Delta Electronics DIAScreen up to 1.4.x BACnetObjectInfo stack-based overflow (icsa-24-312-02)

A vulnerability has been found in Delta Electronics DIAScreen up to 1.4.x and classified as critical. This vulnerability affects unknown code of the component BACnetObjectInfo. The manipulation leads to stack-based buffer overflow. This vulnerability was named CVE-2024-47131. The attack can be initiated remotely. There is no exploit available. It is recommended to upgrade the affected...

Read More

CVE-2024-48989 | Bosch Rexroth IndraDrive FWA-INDRV PROFINET Stack resource consumption (icsa-24-312-03)

A vulnerability, which was classified as critical, was found in Bosch Rexroth IndraDrive FWA-INDRV. This affects an unknown part of the component PROFINET Stack. The manipulation leads to resource consumption. This vulnerability is uniquely identified as CVE-2024-48989. It is possible to initiate the attack remotely. There is no exploit available. It is recommended to upgrade the affected...

Read More

CVE-2024-10269 | Easy SVG Support Plugin up to 3.7 on WordPress SVG File Upload cross site scripting

A vulnerability, which was classified as problematic, has been found in Easy SVG Support Plugin up to 3.7 on WordPress. Affected by this issue is some unknown functionality of the component SVG File Upload Handler. The manipulation leads to cross site scripting. This vulnerability is handled as CVE-2024-10269. The attack may be launched remotely. There is no exploit...

Read More

CVE-2024-10621 | Simple Shortcode for Google Maps Plugin up to 1.5.4 on WordPress cross site scripting

A vulnerability classified as problematic was found in Simple Shortcode for Google Maps Plugin up to 1.5.4 on WordPress. Affected by this vulnerability is an unknown functionality of the component Shortcode Handler. The manipulation leads to cross site scripting. This vulnerability is known as CVE-2024-10621. The attack can be launched remotely. There is no exploit...

Read More

CVE-2024-51994 | Combodo iTop up to 3.1.x Text File Upload cross site scripting (GHSA-jjph-c25g-5c7g)

A vulnerability classified as problematic has been found in Combodo iTop up to 3.1.x. Affected is an unknown function of the component Text File Upload. The manipulation leads to cross site scripting. This vulnerability is traded as CVE-2024-51994. It is possible to launch the attack remotely. There is no exploit available. It is recommended to upgrade the affected...

Read More

CVE-2024-51993 | Combodo iTop up to 3.1.x cleartext storage (GHSA-9mq5-349x-x427)

A vulnerability was found in Combodo iTop up to 3.1.x. It has been rated as problematic. This issue affects some unknown processing. The manipulation leads to cleartext storage of sensitive information. The identification of this vulnerability is CVE-2024-51993. The attack needs to be approached locally. There is no exploit available. It is recommended to upgrade the affected...

Read More

CVE-2024-48951 | Logpoint up to 7.4.x SOAR server-side request forgery

A vulnerability was found in Logpoint up to 7.4.x. It has been classified as problematic. This affects an unknown part of the component SOAR. The manipulation leads to server-side request forgery. This vulnerability is uniquely identified as CVE-2024-48951. Access to the local network is required for this attack to succeed. There is no exploit available. It is recommended to upgrade the affected...

Read More

CVE-2024-51989 | pglombardo PasswordPusher up to 1.48.0 cross site scripting

A vulnerability has been found in pglombardo PasswordPusher up to 1.48.0 and classified as problematic. Affected by this vulnerability is an unknown functionality. The manipulation leads to cross site scripting. This vulnerability is known as CVE-2024-51989. The attack can be launched remotely. There is no exploit available. It is recommended to upgrade the affected...

Read More
Loading