121
|
- |
|
-
|
-
|
An issue in the BATcalcbetween_intern component of MonetDB Server v11.47.11 allows attackers to cause a Denial of Service (DoS) via crafted SQL statements.
Update
|
-
|
CVE-2024-57615
|
2025-01-18 03:15 |
2025-01-14 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
122
|
- |
|
-
|
-
|
Multiple bash files were present in the application's private directory.
Bash files can be used on their own, by an attacker that has already
full access to the mobile platform to compromise the tr…
New
|
CWE-77
Command Injection
|
CVE-2024-54681
|
2025-01-18 02:15 |
2025-01-18 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
123
|
- |
|
-
|
-
|
A valid set of credentials in a .js file and a static token for
communication were obtained from the decompiled IPA. An attacker could
use the information to disrupt normal use of the application b…
New
|
CWE-497
Exposure of Sensitive System Information to an Unauthorized Control Sphere
|
CVE-2024-53683
|
2025-01-18 02:15 |
2025-01-18 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
124
|
- |
|
-
|
-
|
Hard-coded credentials were included as part of the application binary.
These credentials served as part of the application authentication flow
and communication with the mobile application. An att…
New
|
CWE-798
Use of Hard-coded Credentials
|
CVE-2024-45832
|
2025-01-18 02:15 |
2025-01-18 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
125
|
- |
|
-
|
-
|
All versions of ETIC Telecom Remote Access Server (RAS) prior to 4.5.0
are vulnerable to reflected cross site scripting (XSS) attacks in get
view method under view parameter. The ETIC RAS web serve…
New
|
CWE-79
Cross-site Scripting
|
CVE-2024-26157
|
2025-01-18 02:15 |
2025-01-18 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
126
|
- |
|
-
|
-
|
All versions of ETIC Telecom Remote Access Server (RAS) prior to 4.5.0
are vulnerable to reflected cross site scripting (XSS) attacks in the
method parameter. The ETIC RAS web server uses dynamic p…
New
|
CWE-79
Cross-site Scripting
|
CVE-2024-26156
|
2025-01-18 02:15 |
2025-01-18 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
127
|
- |
|
-
|
-
|
All versions of ETIC Telecom Remote Access Server (RAS) prior to 4.5.0
expose clear text credentials in the web portal. An attacker can access
the ETIC RAS web portal and view the HTML code, which …
New
|
CWE-319
Cleartext Transmission of Sensitive Information
|
CVE-2024-26155
|
2025-01-18 02:15 |
2025-01-18 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
128
|
- |
|
-
|
-
|
All versions of ETIC Telecom Remote Access Server (RAS) prior to 4.5.0
are vulnerable to reflected cross site scripting in the appliance site
name. The ETIC RAS web server saves the site name and t…
New
|
CWE-79
Cross-site Scripting
|
CVE-2024-26154
|
2025-01-18 02:15 |
2025-01-18 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
129
|
- |
|
-
|
-
|
All versions of ETIC Telecom Remote Access Server (RAS) prior to 4.9.19
are vulnerable to cross-site request forgery (CSRF). An external
attacker with no access to the device can force the end user…
New
|
CWE-352
Origin Validation Error
|
CVE-2024-26153
|
2025-01-18 02:15 |
2025-01-18 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
130
|
- |
|
-
|
-
|
Tenda AC18 V15.03.05.19 was discovered to contain a stack overflow via the startIP parameter in the formSetPPTPServer function.
New
|
-
|
CVE-2024-57582
|
2025-01-18 02:15 |
2025-01-17 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|