CVE-2024-3576 – NPort 5100A Series Store XSS Vulnerability
https://notcve.org/view.php?id=CVE-2024-3576
Malicious users may use the vulnerability to get sensitive information and escalate privileges. • https://www.moxa.com/en/support/product-support/security-advisory/mpsa-246328-nport-5100a-series-store-xss-vulnerability • CWE-79: Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') •
CVE-2024-20021
https://notcve.org/view.php?id=CVE-2024-20021
This could lead to local escalation of privilege with System execution privileges needed. ... Esto podría conducir a una escalada local de privilegios con permisos de ejecución de System necesarios. • https://corp.mediatek.com/product-security-bulletin/May-2024 • CWE-269: Improper Privilege Management •
CVE-2024-20064
https://notcve.org/view.php?id=CVE-2024-20064
This could lead to local escalation of privilege with no additional execution privileges needed. ... Esto podría conducir a una escalada local de privilegios sin necesidad de privilegios de ejecución adicionales. • https://corp.mediatek.com/product-security-bulletin/May-2024 • CWE-20: Improper Input Validation •
CVE-2024-20060
https://notcve.org/view.php?id=CVE-2024-20060
In da, there is a possible escalation of privilege due to an incorrect status check. This could lead to local escalation of privilege with System execution privileges needed. ... Esto podría conducir a una escalada local de privilegios con permisos de ejecución de System necesarios. • https://corp.mediatek.com/product-security-bulletin/May-2024 • CWE-1332: Improper Handling of Faults that Lead to Instruction Skips •
CVE-2024-20059
https://notcve.org/view.php?id=CVE-2024-20059
In da, there is a possible escalation of privilege due to an incorrect status check. This could lead to local escalation of privilege with System execution privileges needed. ... Esto podría conducir a una escalada local de privilegios con permisos de ejecución de System necesarios. • https://corp.mediatek.com/product-security-bulletin/May-2024 • CWE-1332: Improper Handling of Faults that Lead to Instruction Skips •