1061
|
7.0 |
HIGH
Local
|
ivanti
|
connect_secure neurons_for_zero-trust_access policy_secure
|
A stack-based buffer overflow in Ivanti Connect Secure before version 22.7R2.5, Ivanti Policy Secure before version 22.7R1.2, and Ivanti Neurons for ZTA gateways before version 22.7R2.3 allows a loca…
|
CWE-787
Out-of-bounds Write
|
CVE-2025-0283
|
2025-01-15 00:58 |
2025-01-9 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
1062
|
- |
|
-
|
-
|
Sourcecodester House Rental Management system v1.0 is vulnerable to Cross Site Scripting (XSS) in rental/manage_categories.php.
|
-
|
CVE-2024-55000
|
2025-01-15 00:15 |
2025-01-15 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
1063
|
- |
|
-
|
-
|
APTIOV contains a vulnerability in BIOS where an attacker may cause a TOCTOU Race Condition by local means. Successful exploitation of this vulnerability may lead to execution of arbitrary code on th…
|
-
|
CVE-2024-42444
|
2025-01-15 00:15 |
2025-01-15 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
1064
|
9.1 |
CRITICAL
Network
|
-
|
-
|
Multiple buffer overflow vulnerabilities exist in the qos.cgi qos_settings() functionality of Wavlink AC3000 M33A8.V5030.210505. A specially crafted HTTP request can lead to stack-based buffer overfl…
|
CWE-120
Classic Buffer Overflow
|
CVE-2024-39803
|
2025-01-15 00:15 |
2025-01-15 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
1065
|
9.1 |
CRITICAL
Network
|
-
|
-
|
Multiple buffer overflow vulnerabilities exist in the qos.cgi qos_settings() functionality of Wavlink AC3000 M33A8.V5030.210505. A specially crafted HTTP request can lead to stack-based buffer overfl…
|
CWE-120
Classic Buffer Overflow
|
CVE-2024-39802
|
2025-01-15 00:15 |
2025-01-15 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
1066
|
9.1 |
CRITICAL
Network
|
-
|
-
|
Multiple buffer overflow vulnerabilities exist in the qos.cgi qos_settings() functionality of Wavlink AC3000 M33A8.V5030.210505. A specially crafted HTTP request can lead to stack-based buffer overfl…
|
CWE-120
Classic Buffer Overflow
|
CVE-2024-39801
|
2025-01-15 00:15 |
2025-01-15 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
1067
|
9.1 |
CRITICAL
Network
|
-
|
-
|
Multiple external config control vulnerabilities exists in the openvpn.cgi openvpn_server_setup() functionality of Wavlink AC3000 M33A8.V5030.210505. A specially crafted HTTP request can lead to arbi…
|
CWE-15
External Control of System or Configuration Setting
|
CVE-2024-39800
|
2025-01-15 00:15 |
2025-01-15 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
1068
|
9.1 |
CRITICAL
Network
|
-
|
-
|
Multiple external config control vulnerabilities exists in the openvpn.cgi openvpn_server_setup() functionality of Wavlink AC3000 M33A8.V5030.210505. A specially crafted HTTP request can lead to arbi…
|
CWE-15
External Control of System or Configuration Setting
|
CVE-2024-39799
|
2025-01-15 00:15 |
2025-01-15 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
1069
|
9.1 |
CRITICAL
Network
|
-
|
-
|
Multiple external config control vulnerabilities exists in the openvpn.cgi openvpn_server_setup() functionality of Wavlink AC3000 M33A8.V5030.210505. A specially crafted HTTP request can lead to arbi…
|
CWE-15
External Control of System or Configuration Setting
|
CVE-2024-39798
|
2025-01-15 00:15 |
2025-01-15 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
1070
|
9.1 |
CRITICAL
Network
|
-
|
-
|
Multiple external config control vulnerabilities exist in the nas.cgi set_nas() proftpd functionality of Wavlink AC3000 M33A8.V5030.210505. A specially crafted HTTP request can lead to permission byp…
|
CWE-15
External Control of System or Configuration Setting
|
CVE-2024-39795
|
2025-01-15 00:15 |
2025-01-15 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|