|
313161
|
4.8 |
MEDIUM
Network
|
cisco
|
identity_services_engine
|
A vulnerability in the web-based management interface of Cisco ISE could allow an authenticated, remote attacker to conduct an XSS attack against a user of the interface.
This vulnerability is due…
|
CWE-79
Cross-site Scripting
|
CVE-2024-20479
|
2024-08-24 00:14 |
2024-08-8 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
313162
|
5.3 |
MEDIUM
Network
|
hp
|
instantos
|
Multiple unauthenticated Denial-of-Service (DoS) vulnerabilities exist in the AP Certificate Management daemon accessed via the PAPI protocol. Successful exploitation of these vulnerabilities results…
|
NVD-CWE-noinfo
|
CVE-2024-42396
|
2024-08-24 00:07 |
2024-08-7 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
313163
|
5.3 |
MEDIUM
Network
|
arubanetworks hp
|
arubaos instantos
|
Multiple unauthenticated Denial-of-Service (DoS) vulnerabilities exist in the Soft AP daemon accessed via the PAPI protocol. Successful exploitation of these vulnerabilities results in the ability to…
|
NVD-CWE-noinfo
|
CVE-2024-42400
|
2024-08-24 00:06 |
2024-08-7 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
313164
|
5.3 |
MEDIUM
Network
|
arubanetworks hp
|
arubaos instantos
|
Multiple unauthenticated Denial-of-Service (DoS) vulnerabilities exist in the Soft AP daemon accessed via the PAPI protocol. Successful exploitation of these vulnerabilities results in the ability to…
|
NVD-CWE-noinfo
|
CVE-2024-42399
|
2024-08-24 00:06 |
2024-08-7 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
313165
|
5.3 |
MEDIUM
Network
|
arubanetworks hp
|
arubaos instantos
|
Multiple unauthenticated Denial-of-Service (DoS) vulnerabilities exist in the Soft AP daemon accessed via the PAPI protocol. Successful exploitation of these vulnerabilities results in the ability to…
|
NVD-CWE-noinfo
|
CVE-2024-42398
|
2024-08-24 00:06 |
2024-08-7 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
313166
|
5.3 |
MEDIUM
Network
|
hp
|
instantos
|
Multiple unauthenticated Denial-of-Service (DoS) vulnerabilities exist in the AP Certificate Management daemon accessed via the PAPI protocol. Successful exploitation of these vulnerabilities results…
|
NVD-CWE-noinfo
|
CVE-2024-42397
|
2024-08-24 00:06 |
2024-08-7 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
313167
|
4.3 |
MEDIUM
Network
|
mattermost
|
mattermost
|
Mattermost versions 9.9.x <= 9.9.0, 9.5.x <= 9.5.6 fail to properly validate synced reactions, when shared channels are enabled, which allows a malicious remote to create arbitrary reactions on arbit…
|
NVD-CWE-noinfo
|
CVE-2024-29977
|
2024-08-23 23:52 |
2024-08-2 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
313168
|
6.4 |
MEDIUM
Network
|
mattermost
|
mattermost
|
Mattermost versions 9.9.x <= 9.9.0, 9.5.x <= 9.5.6, 9.7.x <= 9.7.5, 9.8.x <= 9.8.1 fail to disallow the modification of local users when syncing users in shared channels. which allows a malicious rem…
|
NVD-CWE-noinfo
|
CVE-2024-36492
|
2024-08-23 23:51 |
2024-08-2 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
313169
|
6.5 |
MEDIUM
Network
|
mattermost
|
mattermost
|
Mattermost versions 9.9.x <= 9.9.0, 9.5.x <= 9.5.6, 9.7.x <= 9.7.5 and 9.8.x <= 9.8.1 fail to properly validate that the channel that comes from the sync message is a shared channel, when shared chan…
|
NVD-CWE-noinfo
|
CVE-2024-39274
|
2024-08-23 23:39 |
2024-08-2 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
313170
|
9.6 |
CRITICAL
Network
|
mattermost
|
mattermost
|
Mattermost versions 9.9.x <= 9.9.0, 9.5.x <= 9.5.6, 9.7.x <= 9.7.5 and 9.8.x <= 9.8.1 fail to disallow unsolicited invites to expose access to local channels, when shared channels are enabled, which …
|
NVD-CWE-noinfo
|
CVE-2024-39777
|
2024-08-23 23:36 |
2024-08-2 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|