CVE-2024-20011
https://notcve.org/view.php?id=CVE-2024-20011
In alac decoder, there is a possible information disclosure due to an incorrect bounds check. • https://corp.mediatek.com/product-security-bulletin/February-2024 • CWE-119: Improper Restriction of Operations within the Bounds of a Memory Buffer •
CVE-2024-1075 – Minimal Coming Soon – Coming Soon Page <= 2.37 - Unauthenticated Maintenance Mode Bypass
https://notcve.org/view.php?id=CVE-2024-1075
The Minimal Coming Soon – Coming Soon Page plugin for WordPress is vulnerable to maintenance mode bypass and information disclosure in all versions up to, and including, 2.37. • https://plugins.trac.wordpress.org/browser/minimal-coming-soon-maintenance-mode/trunk/framework/public/init.php#L67 https://plugins.trac.wordpress.org/changeset/3031149/minimal-coming-soon-maintenance-mode/trunk/framework/public/init.php https://www.wordfence.com/threat-intel/vulnerabilities/id/78203b98-15bc-4d8e-9278-c472b518be07?source=cve • CWE-639: Authorization Bypass Through User-Controlled Key •
CVE-2023-33851 – IBM PowerVM Hypervisor information disclosure
https://notcve.org/view.php?id=CVE-2023-33851
IBM PowerVM Hypervisor FW950.00 through FW950.90, FW1020.00 through FW1020.40, and FW1030.00 through FW1030.30 could reveal sensitive partition data to a system administrator. IBM X-Force ID: 257135. IBM PowerVM Hypervisor FW950.00 a FW950.90, FW1020.00 a FW1020.40 y FW1030.00 a FW1030.30 podrían revelar datos de partición confidenciales a un administrador del sistema. ID de IBM X-Force: 257135. • https://exchange.xforce.ibmcloud.com/vulnerabilities/257135 https://www.ibm.com/support/pages/node/7114491 • CWE-200: Exposure of Sensitive Information to an Unauthorized Actor •
CVE-2024-23550 – HCL DevOps Deploy / HCL Launch (UCD) may be vulnerable to sensitive information disclosure
https://notcve.org/view.php?id=CVE-2024-23550
HCL DevOps Deploy / HCL Launch (UCD) could disclose sensitive user information when installing the Windows agent. • https://support.hcltechsw.com/csm?id=kb_article&sysparm_article=KB0110334 •
CVE-2024-1200 – Jspxcms information disclosure
https://notcve.org/view.php?id=CVE-2024-1200
The manipulation leads to information disclosure. ... Mittels Manipulieren mit unbekannten Daten kann eine information disclosure-Schwachstelle ausgenutzt werden. • https://github.com/sweatxi/BugHub/blob/main/Nanchang%20Lanzhi%20Technology%20Co.pdf https://vuldb.com/?ctiid.252698 https://vuldb.com/?id.252698 • CWE-200: Exposure of Sensitive Information to an Unauthorized Actor •