Database CVE
Archivio delle vulnerabilità note (CVE) con punteggio CVSS, gravità, prodotti e vendor coinvolti. Filtra per anno e severità, collegato ai nostri articoli.
- CVE-2023-45249Critica9.8
Remote command execution due to use of default passwords. The following products are affected: Acronis Cyber Infrastructure (ACI) before build 5.0.1-61, Acronis Cyber Infrastructure (ACI) before build 5.1.1-71, Acronis Cyber Infrastructure (ACI) before build 5.2.1-69, Acronis Cyber Infrastructure (ACI) before build 5.3.1-53, Acronis Cyber Infrastructure (ACI) before build 5.4.4-132.
- CVE-2024-21182Alta7.5
Vulnerabilità nel prodotto Oracle WebLogic Server di Oracle Fusion Middleware (componente: Core). Le versioni supportate interessate sono 12.2.1.4.0 e 14.1.1.0.0. Vulnerabilità facilmente sfruttabile consente a un attaccante non autenticato con accesso di rete tramite T3, IIOP di compromettere Oracle WebLogic Server. Attacchi riusciti di questa vulnerabilità possono comportare accesso non autorizzato a dati critici o accesso completo a tutti i dati accessibili di Oracle WebLogic Server. Punteggio Base CVSS 3.1 7.5 (Impatti sulla riservatezza). Vettore CVSS: (CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N).
- CVE-2024-5910Critica9.8
Missing authentication for a critical function in Palo Alto Networks Expedition can lead to an Expedition admin account takeover for attackers with network access to Expedition. Note: Expedition is a tool aiding in configuration migration, tuning, and enrichment. Configuration secrets, credentials, and other data imported into Expedition is at risk due to this issue.
- CVE-2024-5217Critica9.8
ServiceNow has addressed an input validation vulnerability that was identified in the Washington DC, Vancouver, and earlier Now Platform releases. This vulnerability could enable an unauthenticated user to remotely execute code within the context of the Now Platform. The vulnerability is addressed in the listed patches and hot fixes below, which were released during the June 2024 patching cycle. If you have not done so already, we recommend applying security patches relevant to your instance as soon as possible.
- CVE-2024-4879Critica9.8
ServiceNow has addressed an input validation vulnerability that was identified in Vancouver and Washington DC Now Platform releases. This vulnerability could enable an unauthenticated user to remotely execute code within the context of the Now Platform. ServiceNow applied an update to hosted instances, and ServiceNow released the update to our partners and self-hosted customers. Listed below are the patches and hot fixes that address the vulnerability. If you have not done so already, we recommend applying security patches relevant to your instance as soon as possible.
- CVE-2024-38112Alta7.5
Windows MSHTML Platform Spoofing Vulnerability
- CVE-2024-38094Alta7.2
Microsoft SharePoint Remote Code Execution Vulnerability
- CVE-2024-38080Alta7.8
Windows Hyper-V Elevation of Privilege Vulnerability
- CVE-2024-39891Media5.3
In the Twilio Authy API, accessed by Authy Android before 25.1.0 and Authy iOS before 26.1.0, an unauthenticated endpoint provided access to certain phone-number data, as exploited in the wild in June 2024. Specifically, the endpoint accepted a stream of requests containing phone numbers, and responded with information about whether each phone number was registered with Authy. (Authy accounts were not compromised, however.)
- CVE-2024-38475Critica9.1
Improper escaping of output in mod_rewrite in Apache HTTP Server 2.4.59 and earlier allows an attacker to map URLs to filesystem locations that are permitted to be served by the server but are not intentionally/directly reachable by any URL, resulting in code execution or source code disclosure. Substitutions in server context that use a backreferences or variables as the first segment of the substitution are affected. Some unsafe RewiteRules will be broken by this change and the rewrite flag "UnsafePrefixStat" can be used to opt back in once ensuring the substitution is appropriately constrained.
- CVE-2024-20399Media6.0
A vulnerability in the CLI of Cisco NX-OS Software could allow an authenticated user in possession of Administrator credentials to execute arbitrary commands as root on the underlying operating system of an affected device. This vulnerability is due to insufficient validation of arguments that are passed to specific configuration CLI commands. An attacker could exploit this vulnerability by including crafted input as the argument of an affected configuration CLI command. A successful exploit could allow the attacker to execute arbitrary commands on the underlying operating system with the privileges of root. Note: To successfully exploit this vulnerability on a Cisco NX-OS device, an attacker must have Administrator credentials. The following Cisco devices already allow administrative users to access the underlying operating system through the bash-shell feature, so, for these devices, this vulnerability does not grant any additional privileges: Nexus 3000 Series Switches Nexus 7000 Series Switches that are running Cisco NX-OS Software releases 8.1(1) and later Nexus 9000 Series Switches in standalone NX-OS mode
- CVE-2024-36401Critica9.8
GeoServer è un server open source che consente agli utenti di condividere e modificare dati geospaziali. Prima delle versioni 2.22.6, 2.23.6, 2.24.4 e 2.25.2, diversi parametri di richiesta OGC consentono l'esecuzione di codice remoto (RCE) da parte di utenti non autenticati tramite input appositamente predisposti contro un'installazione predefinita di GeoServer a causa della valutazione non sicura dei nomi delle proprietà come espressioni XPath. L'API della libreria GeoTools che GeoServer chiama valuta i nomi di proprietà/attributi per i tipi di feature in un modo che li passa in modo non sicuro alla libreria commons-jxpath, la quale può eseguire codice arbitrario durante la valutazione di espressioni XPath. Questa valutazione XPath è destinata a essere utilizzata solo da tipi di feature complessi (ovvero, datastore Application Schema) ma viene erroneamente applicata anche a tipi di feature semplici, il che rende questa vulnerabilità applicabile a **TUTTE** le istanze di GeoServer. Non viene fornito alcun PoC pubblico, ma è stato confermato che questa vulnerabilità è sfruttabile tramite richieste WFS GetFeature, WFS GetPropertyValue, WMS GetMap, WMS GetFeatureInfo, WMS GetLegendGraphic e WPS Execute. Questa vulnerabilità può portare all'esecuzione di codice arbitrario. Le versioni 2.22.6, 2.23.6, 2.24.4 e 2.25.2 contengono una patch per il problema. Esiste una soluzione alternativa che consiste nel rimuovere il file `gt-complex-x.y.jar` da GeoServer, dove `x.y` è la versione di GeoTools (ad esempio, `gt-complex-31.1.jar` se si esegue GeoServer 2.25.1). Ciò rimuoverà il codice vulnerabile da GeoServer ma potrebbe compromettere alcune funzionalità di GeoServer o impedire la distribuzione di GeoServer se il modulo gt-complex è necessario.
- CVE-2024-4885Critica9.8
In WhatsUp Gold versions released before 2023.1.3, an unauthenticated Remote Code Execution vulnerability in Progress WhatsUpGold. The WhatsUp.ExportUtilities.Export.GetFileWithoutZip allows execution of commands with iisapppool\nmconsole privileges.
- CVE-2024-37085Media6.8
VMware ESXi contiene una vulnerabilità di bypass dell'autenticazione. Un attore malevolo con autorizzazioni Active Directory (AD) sufficienti può ottenere accesso completo a un host ESXi precedentemente configurato per utilizzare AD per la gestione degli utenti https://blogs.vmware.com/vsphere/2012/09/joining-vsphere-hosts-to-active-directory.html ricreando il gruppo AD configurato ('ESXi Admins' per impostazione predefinita) dopo che è stato eliminato da AD.
- CVE-2024-37079Critica9.8
vCenter Server contains a heap-overflow vulnerability in the implementation of the DCERPC protocol. A malicious actor with network access to vCenter Server may trigger this vulnerability by sending a specially crafted network packet potentially leading to remote code execution.
- CVE-2024-6047Critica9.8
Certain EOL GeoVision devices fail to properly filter user input for the specific functionality. Unauthenticated remote attackers can exploit this vulnerability to inject and execute arbitrary system commands on the device.
- CVE-2024-32896Alta7.8
there is a possible way to bypass due to a logic error in the code. This could lead to local escalation of privilege with no additional execution privileges needed. User interaction is needed for exploitation.
- CVE-2024-34102Critica9.8
Adobe Commerce versions 2.4.7, 2.4.6-p5, 2.4.5-p7, 2.4.4-p8 and earlier are affected by an Improper Restriction of XML External Entity Reference ('XXE') vulnerability that could result in arbitrary code execution. An attacker could exploit this vulnerability by sending a crafted XML document that references external entities. Exploitation of this issue does not require user interaction.
- CVE-2024-35250Alta7.8
Windows Kernel-Mode Driver Elevation of Privilege Vulnerability
- CVE-2024-30088Alta7.0
Windows Kernel Elevation of Privilege Vulnerability
This product uses the NVD API but is not endorsed or certified by the NVD.