Category: CVE

CVE-2024-10218 | TIBCO Hawk/Operational Intelligence Monitoring Archive Utility mar.jar cross site scripting

A vulnerability was found in TIBCO Hawk and Operational Intelligence. It has been classified as problematic. This affects an unknown part of the file mar.jar of the component Monitoring Archive Utility. The manipulation leads to cross site scripting. This vulnerability is uniquely identified as CVE-2024-10218. It is possible to initiate the attack remotely. There is no exploit available. It is recommended to upgrade the affected...

Read More

CVE-2024-10217 | TIBCO Hawk/Operational Intelligence Monitoring Archive Utility mar.jar cross site scripting

A vulnerability was found in TIBCO Hawk and Operational Intelligence and classified as problematic. Affected by this issue is some unknown functionality of the file mar.jar of the component Monitoring Archive Utility. The manipulation leads to cross site scripting. This vulnerability is handled as CVE-2024-10217. The attack may be launched remotely. There is no exploit available. It is recommended to upgrade the affected...

Read More

CVE-2024-8068 | Citrix Session Recording privileges management (CTX691941)

A vulnerability has been found in Citrix Session Recording and classified as critical. Affected by this vulnerability is an unknown functionality. The manipulation leads to improper privilege management. This vulnerability is known as CVE-2024-8068. Access to the local network is required for this attack. There is no exploit available. It is recommended to upgrade the affected...

Read More

CVE-2024-40592 | Fortinet FortiClientMac up to 6.4.10/7.0.10/7.2.4/7.4.0 on macOS signature verification (FG-IR-24-022)

A vulnerability, which was classified as critical, was found in Fortinet FortiClientMac up to 6.4.10/7.0.10/7.2.4/7.4.0 on macOS. Affected is an unknown function. The manipulation leads to improper verification of cryptographic signature. This vulnerability is traded as CVE-2024-40592. Local access is required to approach this attack. There is no exploit available. It is recommended to upgrade the affected...

Read More

CVE-2024-8534 | Citrix NetScaler ADC/NetScaler Gateway up to 29.71/37.206/55.33/55.320 VPN Vserver memory corruption (CTX691608)

A vulnerability, which was classified as critical, has been found in Citrix NetScaler ADC and NetScaler Gateway up to 29.71/37.206/55.33/55.320. This issue affects some unknown processing of the component VPN Vserver. The manipulation leads to memory corruption. The identification of this vulnerability is CVE-2024-8534. The attack may be initiated remotely. There is no exploit available. It is recommended to upgrade the affected...

Read More

CVE-2024-36513 | Fortinet FortiClientWindows up to 6.4.10/7.0.12/7.2.4 LUA Auto Patch Script privilege context switching error (FG-IR-24-144)

A vulnerability was found in Fortinet FortiClientWindows up to 6.4.10/7.0.12/7.2.4. It has been rated as critical. Affected by this issue is some unknown functionality of the component LUA Auto Patch Script Handler. The manipulation leads to privilege context switching error. This vulnerability is handled as CVE-2024-36513. Attacking locally is a requirement. There is no exploit available. It is recommended to upgrade the affected...

Read More

CVE-2024-36509 | Fortinet FortiWeb up to 6.3.23/7.0.10/7.2.10/7.4.3/7.6.0 Log Access Event Page exposure of sensitive system information to an unauthorized control sphere (FG-IR-24-180)

A vulnerability was found in Fortinet FortiWeb up to 6.3.23/7.0.10/7.2.10/7.4.3/7.6.0. It has been declared as problematic. Affected by this vulnerability is an unknown functionality of the component Log Access Event Page. The manipulation leads to exposure of sensitive system information to an unauthorized control sphere. This vulnerability is known as CVE-2024-36509. The attack can be launched remotely. There is no exploit available. It is recommended to upgrade the affected...

Read More

CVE-2024-21937 | AMD Software PRO Edition HIP SDK Installation default permission

A vulnerability was found in AMD Software PRO Edition, Software Adrenalin Edition and Software Cloud Edition. It has been declared as critical. Affected by this vulnerability is an unknown functionality of the component HIP SDK Installation Handler. The manipulation leads to incorrect default permissions. This vulnerability is known as CVE-2024-21937. An attack has to be approached locally. There is no exploit available. It is recommended to upgrade the affected...

Read More

CVE-2024-10945 | Rockwell Automation FactoryTalk Updater prior 4.20.00 unusual condition

A vulnerability was found in Rockwell Automation FactoryTalk Updater. It has been classified as critical. Affected is an unknown function. The manipulation leads to improper check for unusual conditions. This vulnerability is traded as CVE-2024-10945. The attack needs to be approached locally. There is no exploit available. It is recommended to upgrade the affected...

Read More
Loading