1741
|
- |
|
-
|
-
|
mySCADA myPRO does not properly neutralize POST requests sent to a specific port with version information. This vulnerability could be exploited by an attacker to execute arbitrary commands on the af…
|
CWE-78
OS Command
|
CVE-2025-20014
|
2025-01-30 05:15 |
2025-01-30 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
1742
|
5.0 |
MEDIUM
Network
|
-
|
-
|
A vulnerability, which was classified as problematic, was found in GNU Binutils up to 2.43. This affects the function disassemble_bytes of the file binutils/objdump.c. The manipulation of the argumen…
|
CWE-119 CWE-121
Incorrect Access of Indexable Resource ('Range Error') Stack-based Buffer Overflow
|
CVE-2025-0840
|
2025-01-30 05:15 |
2025-01-30 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
1743
|
- |
|
-
|
-
|
Insertion of Sensitive Information into Log File vulnerability observed in FLEXON. Some information may be improperly disclosed through https access.
This issue affects FLXEON through <= 9.3.4.
|
CWE-532
Inclusion of Sensitive Information in Log Files
|
CVE-2024-48852
|
2025-01-30 04:15 |
2025-01-30 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
1744
|
- |
|
-
|
-
|
Missing Origin Validation in WebSockets vulnerability in FLXEON. Session management was not sufficient to prevent unauthorized HTTPS requests. This issue affects FLXEON: through <= 9.3.4.
|
CWE-1385
Missing Origin Validation in WebSockets
|
CVE-2024-48849
|
2025-01-30 04:15 |
2025-01-30 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
1745
|
- |
|
-
|
-
|
A Code Injection vulnerability was identified in GitHub Enterprise Server that allowed attackers to inject malicious code into the query selector via the identity property in the message handling fun…
|
-
|
CVE-2024-10001
|
2025-01-30 04:15 |
2025-01-30 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
1746
|
- |
|
-
|
-
|
regclient is a Docker and OCI Registry Client in Go. A malicious registry could return a different digest for a pinned manifest without detection. This vulnerability is fixed in 0.7.1.
|
CWE-20 CWE-345
Improper Input Validation Insufficient Verification of Data Authenticity
|
CVE-2025-24882
|
2025-01-30 03:15 |
2025-01-30 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
1747
|
- |
|
-
|
-
|
Snowflake JDBC provides a JDBC type 4 driver that supports core functionality, allowing Java program to connect to Snowflake. Snowflake discovered and remediated a vulnerability in the Snowflake JDBC…
|
CWE-276
Incorrect Default Permissions
|
CVE-2025-24790
|
2025-01-30 03:15 |
2025-01-30 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
1748
|
- |
|
-
|
-
|
Snowflake JDBC provides a JDBC type 4 driver that supports core functionality, allowing Java program to connect to Snowflake. Snowflake discovered and remediated a vulnerability in the Snowflake JDBC…
|
CWE-426
Untrusted Search Path
|
CVE-2025-24789
|
2025-01-30 03:15 |
2025-01-30 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
1749
|
- |
|
-
|
-
|
snowflake-connector-nodejs is a NodeJS driver for Snowflake. Snowflake discovered and remediated a vulnerability in the Snowflake NodeJS Driver. File permissions checks of the temporary credential ca…
|
CWE-281
Improper Preservation of Permissions
|
CVE-2025-24791
|
2025-01-30 02:15 |
2025-01-30 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
1750
|
5.3 |
MEDIUM
Network
-
|
-
|
IBM Aspera Faspex 5.0.0 through 5.0.10 could disclose sensitive username information due to an observable response discrepancy.
|
CWE-204
Response Discrepancy Information Exposure
|
CVE-2023-37413
|
2025-01-30 02:15 |
2025-01-30 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|