Base de datos CVE
Archivo de vulnerabilidades conocidas (CVE) con puntuación CVSS, gravedad, productos y fabricantes afectados. Filtra por año y severidad.
- CVE-2024-38813Alta7.5
vCenter Server contiene una vulnerabilidad de escalada de privilegios. Un actor malicioso con acceso de red a vCenter Server puede desencadenar esta vulnerabilidad para escalar privilegios a root mediante el envío de un paquete de red especialmente diseñado.
- CVE-2024-38812Crítica9.8
El vCenter Server contiene una vulnerabilidad heap-overflow en la implementación del protocolo DCERPC. Un actor malicioso con acceso de red a vCenter Server puede desencadenar esta vulnerabilidad enviando un paquete de red especialmente diseñado que podría conducir a la ejecución remota de código.
- CVE-2024-6587Alta7.5
Existe una vulnerabilidad de Server-Side Request Forgery (SSRF) en berriai/litellm versión 1.38.10. Esta vulnerabilidad permite a los usuarios especificar el parámetro `api_base` al realizar solicitudes a `POST /chat/completions`, lo que hace que la aplicación envíe la solicitud al dominio especificado por `api_base`. Esta solicitud incluye la clave de API de OpenAI. Un usuario malicioso puede establecer `api_base` en su propio dominio e interceptar la clave de API de OpenAI, lo que conduce a un acceso no autorizado y a un posible uso indebido de la clave de API.
- CVE-2024-8190Alta7.2
Una vulnerabilidad de inyección de comandos del sistema operativo en Ivanti Cloud Services Appliance versiones 4.6 Patch 518 y anteriores permite a un atacante remoto autenticado obtener ejecución remota de código. El atacante debe tener privilegios de nivel administrador para explotar esta vulnerabilidad.
- CVE-2024-43461Alta8.8
Windows MSHTML Platform Spoofing Vulnerability
- CVE-2024-38226Alta7.3
Microsoft Publisher Security Feature Bypass Vulnerability
- CVE-2024-38217Media5.4
Windows Mark of the Web Security Feature Bypass Vulnerability
- CVE-2024-38014Alta7.8
Windows Installer Elevation of Privilege Vulnerability
- CVE-2024-40711Crítica9.8
A deserialization of untrusted data vulnerability with a malicious payload can allow an unauthenticated remote code execution (RCE).
- CVE-2024-20439Crítica9.8
A vulnerability in Cisco Smart Licensing Utility (CSLU) could allow an unauthenticated, remote attacker to log into an affected system by using a static administrative credential. This vulnerability is due to an undocumented static user credential for an administrative account. An attacker could exploit this vulnerability by using the static credentials to login to the affected system. A successful exploit could allow the attacker to login to the affected system with administrative rights over the CSLU application API.
- CVE-2024-45195Alta7.5
Direct Request ('Forced Browsing') vulnerability in Apache OFBiz. This issue affects Apache OFBiz: before 18.12.16. Users are recommended to upgrade to version 18.12.16, which fixes the issue.
- CVE-2024-6670Crítica9.8
In WhatsUp Gold versions released before 2024.0.0, a SQL Injection vulnerability allows an unauthenticated attacker to retrieve the users encrypted password.
- CVE-2024-40766Crítica9.8
An improper access control vulnerability has been identified in the SonicWall SonicOS management access, potentially leading to unauthorized resource access and in specific conditions, causing the firewall to crash. This issue affects SonicWall Firewall Gen 5 and Gen 6 devices, as well as Gen 7 devices running SonicOS 7.0.1-5035 and older versions.
- CVE-2024-39717Alta7.2
The Versa Director GUI provides an option to customize the look and feel of the user interface. This option is only available for a user logged with Provider-Data-Center-Admin or Provider-Data-Center-System-Admin. (Tenant level users do not have this privilege). The “Change Favicon” (Favorite Icon) option can be mis-used to upload a malicious file ending with .png extension to masquerade as image file. This is possible only after a user with Provider-Data-Center-Admin or Provider-Data-Center-System-Admin has successfully authenticated and logged in.
- CVE-2024-28987Crítica9.1
The SolarWinds Web Help Desk (WHD) software is affected by a hardcoded credential vulnerability, allowing remote unauthenticated user to access internal functionality and modify data.
- CVE-2024-7971Crítica9.6
Type confusion in V8 in Google Chrome prior to 128.0.6613.84 allowed a remote attacker to exploit heap corruption via a crafted HTML page. (Chromium security severity: High)
- CVE-2024-7965Alta8.8
Inappropriate implementation in V8 in Google Chrome prior to 128.0.6613.84 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML page. (Chromium security severity: High)
- CVE-2024-28000Crítica9.8
Vulnerabilidad de asignación incorrecta de privilegios en LiteSpeed Technologies LiteSpeed Cache litespeed-cache. Este problema afecta a LiteSpeed Cache: desde n/a hasta <= 6.3.0.1.
- CVE-2024-7262Alta7.8
Improper path validation in promecefpluginhost.exe in Kingsoft WPS Office version ranging from 12.2.0.13110 to 12.2.0.16412 (exclusive) on Windows allows an attacker to load an arbitrary Windows library. The vulnerability was found weaponized as a single-click exploit in the form of a deceptive spreadsheet document
- CVE-2024-28986Crítica9.8
SolarWinds Web Help Desk was found to be susceptible to a Java Deserialization Remote Code Execution vulnerability that, if exploited, would allow an attacker to run commands on the host machine. While it was reported as an unauthenticated vulnerability, SolarWinds has been unable to reproduce it without authentication after thorough testing. However, out of an abundance of caution, we recommend all Web Help Desk customers apply the patch, which is now available.
This product uses the NVD API but is not endorsed or certified by the NVD.