Page 121 of 10569 results (0.027 seconds)

CVSS: 6.5EPSS: 0%CPEs: 1EXPL: 1

Deep Sea Electronics DSE855 Configuration Backup Missing Authentication Information Disclosure Vulnerability. • https://github.com/Cappricio-Securities/CVE-2024-5947 https://www.zerodayinitiative.com/advisories/ZDI-24-671 • CWE-306: Missing Authentication for Critical Function •

CVSS: 6.2EPSS: 0%CPEs: -EXPL: 0

HP Advance Mobile Applications for iOS and Android are potentially vulnerable to information disclosure when using an outdated version of the application via mobile devices. • https://support.hp.com/us-en/document/ish_10737234-10737262-16/hpsbgn03921 •

CVSS: 7.5EPSS: 0%CPEs: -EXPL: 0

This vulnerability allows remote attackers to disclose sensitive information on affected installations of Advantech iView. Authentication is not required to exploit this vulnerability. The specific flaw exists within the ConfigurationServlet servlet, which listens on TCP port 8080 by default. When parsing the column_value element, the process does not properly validate a user-supplied string before using it to construct SQL queries. An attacker can leverage this vulnerability to disclose stored credentials, leading to further compromise. •

CVSS: 5.7EPSS: 0%CPEs: 1EXPL: 0

Microsoft Dynamics 365 (On-Premises) Information Disclosure Vulnerability Vulnerabilidad de divulgación de información en Microsoft Dynamics 365 (local) • https://msrc.microsoft.com/update-guide/vulnerability/CVE-2024-35263 • CWE-200: Exposure of Sensitive Information to an Unauthorized Actor •

CVSS: 5.5EPSS: 0%CPEs: 12EXPL: 0

Windows Cryptographic Services Information Disclosure Vulnerability Vulnerabilidad de divulgación de información de servicios criptográficos de Windows • https://msrc.microsoft.com/update-guide/vulnerability/CVE-2024-30096 • CWE-200: Exposure of Sensitive Information to an Unauthorized Actor •