CVE-2024-25646 – Information Disclosure vulnerability in SAP BusinessObjects Web Intelligence
https://notcve.org/view.php?id=CVE-2024-25646
Due to improper validation, SAP BusinessObject Business Intelligence Launch Pad allows an authenticated attacker to access operating system information using crafted document. • https://me.sap.com/notes/3421384 https://support.sap.com/en/my-support/knowledge-base/security-notes-news.html?anchorId=section_370125364 • CWE-200: Exposure of Sensitive Information to an Unauthorized Actor CWE-732: Incorrect Permission Assignment for Critical Resource •
CVE-2024-0083
https://notcve.org/view.php?id=CVE-2024-0083
A successful exploit of this vulnerability might lead to code execution, denial of service, and information disclosure. • https://nvidia.custhelp.com/app/answers/detail/a_id/5532 • CWE-79: Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') •
CVE-2024-0082
https://notcve.org/view.php?id=CVE-2024-0082
A successful exploit of this vulnerability might lead to local escalation of privileges, information disclosure, and data tampering NVIDIA ChatRTX para Windows contiene una vulnerabilidad en la interfaz de usuario, donde un atacante puede provocar una gestión inadecuada de privilegios al enviar solicitudes de apertura de archivos a la aplicación. • https://nvidia.custhelp.com/app/answers/detail/a_id/5532 • CWE-269: Improper Privilege Management •
CVE-2023-52533
https://notcve.org/view.php?id=CVE-2023-52533
This could lead to remote information disclosure no additional execution privileges needed En modem-ps-nas-ngmm, existe un posible comportamiento indefinido debido a un manejo incorrecto de errores. • https://www.unisoc.com/en_us/secy/announcementDetail/1777148475750809602 •
CVE-2023-52346
https://notcve.org/view.php?id=CVE-2023-52346
This could lead to local information disclosure with System execution privileges needed En el controlador del módem, existe una posible falla del sistema debido a una validación de entrada incorrecta. • https://www.unisoc.com/en_us/secy/announcementDetail/1777143682512781313 • CWE-120: Buffer Copy without Checking Size of Input ('Classic Buffer Overflow') •