|
312261
|
7.8 |
HIGH
Local
|
microsoft
|
windows_11_24h2
|
Windows Setup and Deployment Elevation of Privilege Vulnerability
|
NVD-CWE-noinfo
|
CVE-2024-43457
|
2024-09-18 01:25 |
2024-09-11 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
312262
|
7.7 |
HIGH
Network
|
microsoft
|
windows_10_1607 windows_server_2016
|
Windows Networking Information Disclosure Vulnerability
|
CWE-908
Use of Uninitialized Resource
|
CVE-2024-43458
|
2024-09-18 01:24 |
2024-09-11 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
312263
|
7.8 |
HIGH
Local
|
microsoft
|
visio 365_apps office office_long_term_servicing_channel
|
Microsoft Office Visio Remote Code Execution Vulnerability
|
NVD-CWE-noinfo
|
CVE-2024-43463
|
2024-09-18 01:08 |
2024-09-11 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
312264
|
7.5 |
HIGH
Network
|
microsoft
|
windows_server_2008 windows_server_2012 windows_server_2019 windows_server_2022 windows_server_2022_23h2 windows_server_2016
|
Windows Remote Desktop Licensing Service Remote Code Execution Vulnerability
|
NVD-CWE-noinfo
|
CVE-2024-43467
|
2024-09-18 01:06 |
2024-09-11 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
312265
|
8.8 |
HIGH
Network
|
microsoft
|
azure_cyclecloud
|
Azure CycleCloud Remote Code Execution Vulnerability
|
CWE-94
Code Injection
|
CVE-2024-43469
|
2024-09-18 01:05 |
2024-09-11 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
312266
|
7.5 |
HIGH
Network
|
nac
|
nacpremium
|
Cleartext Storage of Sensitive Information vulnerability in NAC Telecommunication Systems Inc. NACPremium allows Retrieve Embedded Sensitive Data.This issue affects NACPremium: through 01082024.
|
CWE-312
Cleartext Storage of Sensitive Information
|
CVE-2024-6921
|
2024-09-18 00:58 |
2024-09-3 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
312267
|
6.1 |
MEDIUM
Network
|
nac
|
nacpremium
|
Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in NAC Telecommunication Systems Inc. NACPremium allows Stored XSS.This issue affects NACPremium: th…
|
CWE-79
Cross-site Scripting
|
CVE-2024-6920
|
2024-09-18 00:58 |
2024-09-3 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
312268
|
9.8 |
CRITICAL
Network
|
nac
|
nacpremium
|
Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in NAC Telecommunication Systems Inc. NACPremium allows Blind SQL Injection.This issue affects NACPr…
|
CWE-89
SQL Injection
|
CVE-2024-6919
|
2024-09-18 00:57 |
2024-09-3 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
312269
|
6.5 |
MEDIUM
Network
|
siemens
|
omnivise_t3000_application_server
|
A vulnerability has been identified in Omnivise T3000 Application Server R9.2 (All versions), Omnivise T3000 R8.2 SP3 (All versions), Omnivise T3000 R8.2 SP4 (All versions). Affected devices allow au…
|
CWE-22
Path Traversal
|
CVE-2024-38878
|
2024-09-18 00:50 |
2024-08-2 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
312270
|
9.8 |
CRITICAL
Network
|
anji-plus
|
report
|
anji-plus AJ-Report is affected by an authentication bypass vulnerability. A remote and unauthenticated attacker can append ";swagger-ui" to HTTP requests to bypass authentication and execute arbitra…
|
NVD-CWE-Other
|
CVE-2024-7314
|
2024-09-18 00:45 |
2024-08-3 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|