341
|
- |
|
-
|
-
|
Execution with unnecessary privileges issue exists in Defense Platform Home Edition Ver.3.9.51.x and earlier. If an attacker performs a specific operation, SYSTEM privilege of the Windows system wher…
|
CWE-250
Execution with Unnecessary Privileges
|
CVE-2025-22890
|
2025-02-6 16:15 |
2025-02-6 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
342
|
- |
|
-
|
-
|
Use of Hard-coded Credentials vulnerability in ABB ASPECT-Enterprise, ABB NEXUS Series, ABB MATRIX Series.This issue affects ASPECT-Enterprise: through 3.08.03; NEXUS Series: through 3.08.03; MATRIX …
|
CWE-798
Use of Hard-coded Credentials
|
CVE-2024-51547
|
2025-02-6 14:15 |
2025-02-6 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
343
|
6.5 |
MEDIUM
Network
|
-
|
-
|
IBM App Connect enterprise 12.0.1.0 through 12.0.12.10 and 13.0.1.0 through 13.0.2.1 could allow an authenticated user to write to an arbitrary file on the system during bar configuration deployment …
|
CWE-22
Path Traversal
|
CVE-2025-0799
|
2025-02-6 10:15 |
2025-02-6 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
344
|
9.1 |
CRITICAL
Network
|
-
|
-
|
IBM Security Verify Directory 10.0.0 through 10.0.3 could allow a remote authenticated attacker to execute arbitrary commands on the system by sending a specially crafted request.
|
CWE-78
OS Command
|
CVE-2024-51450
|
2025-02-6 10:15 |
2025-02-6 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
345
|
7.8 |
HIGH
Local
|
-
|
-
|
IBM Security Verify Access Appliance 10.0.0 through 10.0.3 could allow a locally authenticated user to increase their privileges due to execution with unnecessary privileges.
|
CWE-250
Execution with Unnecessary Privileges
|
CVE-2024-49814
|
2025-02-6 10:15 |
2025-02-6 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
346
|
4.3 |
MEDIUM
Network
|
-
|
-
|
IBM ApplinX 11.1 stores sensitive information in cleartext in memory that could be obtained by an authenticated user.
|
CWE-316
Cleartext Storage of Sensitive Information in Memory
|
CVE-2024-49800
|
2025-02-6 09:15 |
2025-02-6 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
347
|
4.3 |
MEDIUM
Network
|
-
|
-
|
IBM ApplinX 11.1 could allow a remote attacker to obtain sensitive information when a detailed technical error message is returned in the browser. This information could be used in further attacks ag…
|
CWE-209
Information Exposure Through an Error Message
|
CVE-2024-49798
|
2025-02-6 09:15 |
2025-02-6 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
348
|
5.9 |
MEDIUM
Network
|
-
|
-
|
IBM ApplinX 11.1 could allow a remote attacker to obtain sensitive information, caused by the failure to properly enable HTTP Strict Transport Security. An attacker could exploit this vulnerability t…
|
CWE-327
Use of a Broken or Risky Cryptographic Algorithm
|
CVE-2024-49797
|
2025-02-6 09:15 |
2025-02-6 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
349
|
5.4 |
MEDIUM
Network
|
-
|
-
|
IBM ApplinX 11.1 could allow a remote attacker to hijack the clicking action of the victim. By persuading a victim to visit a malicious Web site, a remote attacker could exploit this vulnerability to…
|
CWE-451
User Interface (UI) Misrepresentation of Critical Information
|
CVE-2024-49796
|
2025-02-6 09:15 |
2025-02-6 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
350
|
4.3 |
MEDIUM
Network
|
-
|
-
|
IBM ApplinX 11.1 is vulnerable to cross-site request forgery which could allow an attacker to execute malicious and unauthorized actions transmitted from a user that the website trusts.
|
CWE-352
Origin Validation Error
|
CVE-2024-49795
|
2025-02-6 09:15 |
2025-02-6 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|