CVE-Datenbank
Archiv bekannter Schwachstellen (CVEs) mit CVSS-Wert, Schweregrad, betroffenen Produkten und Herstellern. Nach Jahr und Schweregrad filterbar.
- CVE-2024-38813Hoch7.5
Der vCenter Server enthält eine Privilege-Escalation-Schwachstelle. Ein böswilliger Akteur mit Netzwerkzugriff auf vCenter Server kann diese Schwachstelle durch Senden eines speziell erstellten Netzwerkpakets auslösen, um Privilegien auf root zu eskalieren.
- CVE-2024-38812Kritisch9.8
Der vCenter Server enthält eine Heap-Overflow-Schwachstelle in der Implementierung des DCERPC-Protokolls. Ein böswilliger Akteur mit Netzwerkzugriff auf vCenter Server kann diese Schwachstelle durch Senden eines speziell erstellten Netzwerkpakets auslösen, was potenziell zur Remotecodeausführung führen kann.
- CVE-2024-6587Hoch7.5
Eine Server-Side Request Forgery (SSRF)-Schwachstelle existiert in berriai/litellm Version 1.38.10. Diese Schwachstelle ermöglicht es Benutzern, den Parameter `api_base` anzugeben, wenn sie Anfragen an `POST /chat/completions` stellen, wodurch die Anwendung die Anfrage an die von `api_base` angegebene Domain sendet. Diese Anfrage enthält den OpenAI API-Schlüssel. Ein böswilliger Benutzer kann `api_base` auf seine eigene Domain setzen und den OpenAI API-Schlüssel abfangen, was zu unbefugtem Zugriff und potenziellem Missbrauch des API-Schlüssels führt.
- CVE-2024-8190Hoch7.2
Eine OS-Command-Injection-Schwachstelle in Ivanti Cloud Services Appliance Versionen 4.6 Patch 518 und davor ermöglicht einem remote authentifizierten Angreifer, Remote Code Execution zu erlangen. Der Angreifer muss über Privilegien auf Admin-Ebene verfügen, um diese Schwachstelle auszunutzen.
- CVE-2024-43461Hoch8.8
Windows MSHTML Platform Spoofing Vulnerability
- CVE-2024-38226Hoch7.3
Microsoft Publisher Security Feature Bypass Vulnerability
- CVE-2024-38217Mittel5.4
Windows Mark of the Web Security Feature Bypass Vulnerability
- CVE-2024-38014Hoch7.8
Windows Installer Elevation of Privilege Vulnerability
- CVE-2024-40711Kritisch9.8
A deserialization of untrusted data vulnerability with a malicious payload can allow an unauthenticated remote code execution (RCE).
- CVE-2024-20439Kritisch9.8
A vulnerability in Cisco Smart Licensing Utility (CSLU) could allow an unauthenticated, remote attacker to log into an affected system by using a static administrative credential. This vulnerability is due to an undocumented static user credential for an administrative account. An attacker could exploit this vulnerability by using the static credentials to login to the affected system. A successful exploit could allow the attacker to login to the affected system with administrative rights over the CSLU application API.
- CVE-2024-45195Hoch7.5
Direct Request ('Forced Browsing') vulnerability in Apache OFBiz. This issue affects Apache OFBiz: before 18.12.16. Users are recommended to upgrade to version 18.12.16, which fixes the issue.
- CVE-2024-6670Kritisch9.8
In WhatsUp Gold versions released before 2024.0.0, a SQL Injection vulnerability allows an unauthenticated attacker to retrieve the users encrypted password.
- CVE-2024-40766Kritisch9.8
An improper access control vulnerability has been identified in the SonicWall SonicOS management access, potentially leading to unauthorized resource access and in specific conditions, causing the firewall to crash. This issue affects SonicWall Firewall Gen 5 and Gen 6 devices, as well as Gen 7 devices running SonicOS 7.0.1-5035 and older versions.
- CVE-2024-39717Hoch7.2
The Versa Director GUI provides an option to customize the look and feel of the user interface. This option is only available for a user logged with Provider-Data-Center-Admin or Provider-Data-Center-System-Admin. (Tenant level users do not have this privilege). The “Change Favicon” (Favorite Icon) option can be mis-used to upload a malicious file ending with .png extension to masquerade as image file. This is possible only after a user with Provider-Data-Center-Admin or Provider-Data-Center-System-Admin has successfully authenticated and logged in.
- CVE-2024-28987Kritisch9.1
The SolarWinds Web Help Desk (WHD) software is affected by a hardcoded credential vulnerability, allowing remote unauthenticated user to access internal functionality and modify data.
- CVE-2024-7971Kritisch9.6
Type confusion in V8 in Google Chrome prior to 128.0.6613.84 allowed a remote attacker to exploit heap corruption via a crafted HTML page. (Chromium security severity: High)
- CVE-2024-7965Hoch8.8
Inappropriate implementation in V8 in Google Chrome prior to 128.0.6613.84 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML page. (Chromium security severity: High)
- CVE-2024-28000Kritisch9.8
Fehlerhafte Privilegienzuteilung-Schwachstelle in LiteSpeed Technologies LiteSpeed Cache litespeed-cache. Dieses Problem betrifft LiteSpeed Cache: von n/a bis <= 6.3.0.1.
- CVE-2024-7262Hoch7.8
Improper path validation in promecefpluginhost.exe in Kingsoft WPS Office version ranging from 12.2.0.13110 to 12.2.0.16412 (exclusive) on Windows allows an attacker to load an arbitrary Windows library. The vulnerability was found weaponized as a single-click exploit in the form of a deceptive spreadsheet document
- CVE-2024-28986Kritisch9.8
SolarWinds Web Help Desk was found to be susceptible to a Java Deserialization Remote Code Execution vulnerability that, if exploited, would allow an attacker to run commands on the host machine. While it was reported as an unauthenticated vulnerability, SolarWinds has been unable to reproduce it without authentication after thorough testing. However, out of an abundance of caution, we recommend all Web Help Desk customers apply the patch, which is now available.
This product uses the NVD API but is not endorsed or certified by the NVD.