861
|
- |
|
-
|
-
|
PMD is an extensible multilanguage static code analyzer. The passphrase for the PMD and PMD Designer release signing keys are included in jar published to Maven Central. The private key itself is not…
|
CWE-200 CWE-540
Information Exposure Inclusion of Sensitive Information in Source Code
|
CVE-2025-23215
|
2025-02-1 01:15 |
2025-02-1 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
862
|
6.4 |
MEDIUM
Network
|
-
|
-
|
IBM Sterling B2B Integrator 6.0.0.0 through 6.1.2.5 and 6.2.0.0 through 6.2.0.3 Standard Edition is vulnerable to stored cross-site scripting. This vulnerability allows authenticated users to embed a…
|
CWE-79
Cross-site Scripting
|
CVE-2024-49807
|
2025-02-1 01:15 |
2025-02-1 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
863
|
5.4 |
MEDIUM
Network
|
-
|
-
|
IBM Sterling B2B Integrator 6.0.0.0 through 6.1.2.5 and 6.2.0.0 through 6.2.0.3 Standard Edition is vulnerable to cross-site scripting. This vulnerability allows an authenticated user to embed arbitr…
|
CWE-79
Cross-site Scripting
|
CVE-2024-47116
|
2025-02-1 01:15 |
2025-02-1 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
864
|
4.8 |
MEDIUM
Network
|
-
|
-
|
IBM Sterling B2B Integrator 6.0.0.0 through 6.1.2.5 and 6.2.0.0 through 6.2.0.3 Standard Edition is vulnerable to cross-site scripting. This vulnerability allows a privileged user to embed arbitrary …
|
CWE-79
Cross-site Scripting
|
CVE-2024-47103
|
2025-02-1 01:15 |
2025-02-1 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
865
|
4.3 |
MEDIUM
Network
|
-
|
-
|
IBM Sterling B2B Integrator 6.0.0.0 through 6.1.2.5 and 6.2.0.0 through 6.2.0.3 Standard Edition EBICS server could allow an authenticated user to obtain sensitive filename information due to an obse…
|
CWE-203
Information Exposure Through Discrepancy
|
CVE-2024-45089
|
2025-02-1 01:15 |
2025-02-1 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
866
|
4.8 |
MEDIUM
Network
|
-
|
-
|
IBM Sterling B2B Integrator 6.0.0.0 through 6.1.2.5 and 6.2.0.0 through 6.2.0.3 Standard Edition is vulnerable to cross-site scripting. This vulnerability allows a privileged user to embed arbitrary …
|
CWE-79
Cross-site Scripting
|
CVE-2024-40696
|
2025-02-1 01:15 |
2025-02-1 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
867
|
- |
|
-
|
-
|
Grafana is an open-source platform for monitoring and observability.
The Grafana Alerting VictorOps integration was not properly protected and could be exposed to users with Viewer permission.
Fixe…
|
-
|
CVE-2024-11741
|
2025-02-1 01:15 |
2025-02-1 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
868
|
4.3 |
MEDIUM
Network
|
-
|
-
|
IBM Sterling B2B Integrator 6.0.0.0 through 6.1.2.5 and 6.2.0.0 through 6.2.0.3 is vulnerable to cross-site request forgery which could allow an attacker to execute malicious and unauthorized actions…
|
CWE-352
Origin Validation Error
|
CVE-2023-38739
|
2025-02-1 01:15 |
2025-02-1 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
869
|
- |
|
-
|
-
|
Local privilege escalation due to unquoted search path vulnerability. The following products are affected: Acronis Cyber Protect Cloud Agent (Windows) before build 39378.
|
CWE-428
Unquoted Search Path or Element
|
CVE-2025-24831
|
2025-02-1 01:15 |
2025-01-31 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
870
|
- |
|
-
|
-
|
Local privilege escalation due to DLL hijacking vulnerability. The following products are affected: Acronis Cyber Protect Cloud Agent (Windows) before build 39378.
|
CWE-426
Untrusted Search Path
|
CVE-2025-24830
|
2025-02-1 01:15 |
2025-01-31 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|