CVE-2024-47557 – Pre-Auth RCE via Path Traversal
https://notcve.org/view.php?id=CVE-2024-47557
Pre-Auth RCE via Path Traversal • https://securitydocs.business.xerox.com/wp-content/uploads/2024/10/Xerox-Security-Bulletin-XRX24-014-for-Xerox%C2%AE-FreeFlow%C2%AE-Core-v7.0-.pdf • CWE-22: Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal') •
CVE-2024-47556 – Pre-Auth RCE via Path Traversal
https://notcve.org/view.php?id=CVE-2024-47556
Pre-Auth RCE via Path Traversal • https://securitydocs.business.xerox.com/wp-content/uploads/2024/10/Xerox-Security-Bulletin-XRX24-014-for-Xerox%C2%AE-FreeFlow%C2%AE-Core-v7.0-.pdf • CWE-22: Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal') •
CVE-2023-6362
https://notcve.org/view.php?id=CVE-2023-6362
This could allow attackers to execute arbitrary code via a long filename argument. • https://www.incibe.es/en/incibe-cert/notices/aviso/multiple-vulnerabilities-winhex • CWE-119: Improper Restriction of Operations within the Bounds of a Memory Buffer •
CVE-2023-6361
https://notcve.org/view.php?id=CVE-2023-6361
This could allow attackers to execute arbitrary code via a long filename argument. • https://www.incibe.es/en/incibe-cert/notices/aviso/multiple-vulnerabilities-winhex • CWE-119: Improper Restriction of Operations within the Bounds of a Memory Buffer •
CVE-2024-20103
https://notcve.org/view.php?id=CVE-2024-20103
This could lead to remote code execution with no additional execution privileges needed. • https://corp.mediatek.com/product-security-bulletin/October-2024 • CWE-787: Out-of-bounds Write •