Category: CVE

CVE-2024-50306 | Apache Traffic Server up to 9.2.5/10.0.1 dropped privileges

A vulnerability, which was classified as critical, has been found in Apache Traffic Server up to 9.2.5/10.0.1. Affected by this issue is some unknown functionality. The manipulation leads to improper check for dropped privileges. This vulnerability is handled as CVE-2024-50306. The attack can only be initiated within the local network. There is no exploit available. It is recommended to upgrade the affected...

Read More

CVE-2024-50305 | Apache Traffic Server up to 9.2.5 Host denial of service

A vulnerability classified as problematic was found in Apache Traffic Server up to 9.2.5. Affected by this vulnerability is an unknown functionality. The manipulation of the argument Host leads to denial of service. This vulnerability is known as CVE-2024-50305. The attack can only be done within the local network. There is no exploit available. It is recommended to upgrade the affected...

Read More

CVE-2024-38479 | Apache Traffic Server up to 9.2.5 Cache Key Plugin

A vulnerability classified as problematic has been found in Apache Traffic Server up to 9.2.5. Affected is an unknown function of the component Cache Key Plugin. The manipulation leads to an unknown weakness. This vulnerability is traded as CVE-2024-38479. The attack needs to be approached within the local network. There is no exploit available. It is recommended to upgrade the affected...

Read More

CVE-2024-50955 | Xinje XD5E-24R/XL5E-16T 3.5.3b TCP Protocol Message denial of service

A vulnerability was found in Xinje XD5E-24R and XL5E-16T 3.5.3b. It has been rated as problematic. This issue affects some unknown processing of the component TCP Protocol Message Handler. The manipulation leads to denial of service. The identification of this vulnerability is CVE-2024-50955. Access to the local network is required for this attack to succeed. There is no exploit...

Read More

CVE-2024-50956 | Inovance HCPLC_AM401-CPU1608TPTN Modbus Message RecvSocketData buffer overflow

A vulnerability was found in Inovance HCPLC_AM401-CPU1608TPTN, HCPLC_AM402-CPU1608TPTN and HCPLC_AM403-CPU1608TN. It has been declared as critical. This vulnerability affects the function RecvSocketData of the component Modbus Message Handler. The manipulation leads to buffer overflow. This vulnerability was named CVE-2024-50956. Access to the local network is required for this attack. There is no exploit...

Read More

CVE-2024-51027 | Ruijie NBR800G NBR_RGOS_11.1(6)B4P9 networksafe.php province Privilege Escalation

A vulnerability was found in Ruijie NBR800G NBR_RGOS_11.1(6)B4P9. It has been classified as critical. This affects an unknown part of the file /itbox_pi/networksafe.php. The manipulation of the argument province leads to Privilege Escalation. This vulnerability is uniquely identified as CVE-2024-51027. It is possible to initiate the attack remotely. There is no exploit...

Read More

CVE-2024-41167 | Intel Server Board M10JNP2SB Family UEFI Firmware input validation (intel-sa-01175)

A vulnerability was found in Intel Server Board M10JNP2SB Family and classified as critical. Affected by this issue is some unknown functionality of the component UEFI Firmware. The manipulation leads to improper input validation. This vulnerability is handled as CVE-2024-41167. It is possible to launch the attack on the local host. There is no exploit...

Read More
Loading