CVE-2024-5717 – Logsign Unified SecOps Platform Command Injection Remote Code Execution Vulnerability
https://notcve.org/view.php?id=CVE-2024-5717
This vulnerability allows remote attackers to execute arbitrary code on affected installations of Logsign Unified SecOps Platform. ... The issue results from the lack of proper validation of a user-supplied string before using it to execute a system call. An attacker can leverage this vulnerability to execute code in the context of root. •
CVE-2024-5876 – IrfanView PSP File Parsing Heap-based Buffer Overflow Remote Code Execution Vulnerability
https://notcve.org/view.php?id=CVE-2024-5876
This vulnerability allows remote attackers to execute arbitrary code on affected installations of IrfanView. ... An attacker can leverage this vulnerability to execute code in the context of the current process. •
CVE-2024-5719 – Logsign Unified SecOps Platform Command Injection Remote Code Execution Vulnerability
https://notcve.org/view.php?id=CVE-2024-5719
This vulnerability allows remote attackers to execute arbitrary code on affected installations of Logsign Unified SecOps Platform. ... The issue results from the lack of proper validation of a user-supplied string before using it to execute a system call. An attacker can leverage this vulnerability to execute code in the context of root. •
CVE-2024-37878
https://notcve.org/view.php?id=CVE-2024-37878
Cross Site Scripting vulnerability in TWCMS v.2.0.3 allows a remote attacker to execute arbitrary code via the /TWCMS-gh-pages/twcms/runtime/twcms_view/default,index.htm.php" PHP directly echoes parameters input from external sources Vulnerabilidad de Cross Site Scripting en TWCMS v.2.0.3 permite a un atacante remoto ejecutar código arbitrario a través de /TWCMS-gh-pages/twcms/runtime/twcms_view/default,index.htm.php" PHP repite directamente la entrada de parámetros desde fuentes externas • https://gist.github.com/sylvieverykawaii/243f1756151bee027725c6961d8c1ba9 •
CVE-2024-5875 – IrfanView SHP File Parsing Out-Of-Bounds Write Remote Code Execution Vulnerability
https://notcve.org/view.php?id=CVE-2024-5875
This vulnerability allows remote attackers to execute arbitrary code on affected installations of IrfanView. ... An attacker can leverage this vulnerability to execute code in the context of the current process. •