CVE-2024-6154 – Parallels Desktop Toolgate Heap-based Buffer Overflow Local Privilege Escalation Vulnerability
https://notcve.org/view.php?id=CVE-2024-6154
18 Jun 2024 — Parallels Desktop Toolgate Heap-based Buffer Overflow Local Privilege Escalation Vulnerability. This vulnerability allows local attackers to escalate privileges on affected installations of Parallels Desktop. This vulnerability allows local attackers to escalate privileges on affected installations of Parallels Desktop. ... An attacker can leverage this vulnerability to escalate privileges and execute arbitrary code in the context of the current user on the host system. An attack... • https://www.zerodayinitiative.com/advisories/ZDI-24-804 • CWE-122: Heap-based Buffer Overflow •
CVE-2023-37058
https://notcve.org/view.php?id=CVE-2023-37058
17 Jun 2024 — Ltd Jlink AX1800 v.1.0 allows a remote attacker to escalate privileges via a crafted command. • http://jlink.com •
CVE-2024-27275 – IBM i privilege escalation
https://notcve.org/view.php?id=CVE-2024-27275
15 Jun 2024 — IBM i 7.2, 7.3, 7.4, and 7.5 contains a local privilege escalation vulnerability caused by an insufficient authority requirement. • https://exchange.xforce.ibmcloud.com/vulnerabilities/285203 • CWE-264: Permissions, Privileges, and Access Controls CWE-287: Improper Authentication •
CVE-2024-37369 – Rockwell Automation FactoryTalk® View SE Local Privilege Escalation Vulnerability via Local File Permissions
https://notcve.org/view.php?id=CVE-2024-37369
14 Jun 2024 — A privilege escalation vulnerability exists in the affected product. The vulnerability allows low-privilege users to edit scripts, bypassing Access Control Lists, and potentially gaining further access within the system. Existe una vulnerabilidad de escalada de privilegios en el producto afectado. La vulnerabilidad permite a los usuarios con pocos privilegios editar scripts, eludir las listas de control de acceso y potencialmente obtener más acceso dentro del sistema. • https://www.rockwellautomation.com/en-us/trust-center/security-advisories/advisory.SD1674.html • CWE-732: Incorrect Permission Assignment for Critical Resource •
CVE-2024-34012
https://notcve.org/view.php?id=CVE-2024-34012
14 Jun 2024 — Local privilege escalation due to insecure folder permissions. • https://security-advisory.acronis.com/advisories/SEC-5758 • CWE-276: Incorrect Default Permissions •
CVE-2024-27165 – Local Privilege Escalation
https://notcve.org/view.php?id=CVE-2024-27165
14 Jun 2024 — Toshiba printers contain a suidperl binary and it has a Local Privilege Escalation vulnerability. • http://seclists.org/fulldisclosure/2024/Jul/1 • CWE-272: Least Privilege Violation •
CVE-2024-27155 – Local Privilege Escalation and Remote Code Execution using insecure permissions
https://notcve.org/view.php?id=CVE-2024-27155
14 Jun 2024 — The Toshiba printers are vulnerable to a Local Privilege Escalation vulnerability. • http://seclists.org/fulldisclosure/2024/Jul/1 • CWE-276: Incorrect Default Permissions •
CVE-2024-27154 – Passwords are stored in clear-text logs.
https://notcve.org/view.php?id=CVE-2024-27154
14 Jun 2024 — En cuanto a los productos/modelos/versiones afectados, consulte la URL de referencia. 103 models of Toshiba Multi-Function Printers (MFP) are vulnerable to 40 different vulnerabilities including remote code execution, local privilege escalation, xml injection, and more. • http://seclists.org/fulldisclosure/2024/Jul/1 • CWE-532: Insertion of Sensitive Information into Log File •
CVE-2024-27153 – Local Privilege Escalation and Remote Code Execution
https://notcve.org/view.php?id=CVE-2024-27153
14 Jun 2024 — The Toshiba printers are vulnerable to a Local Privilege Escalation vulnerability. ... En cuanto a los productos/modelos/versiones afectados, consulte la URL de referencia. 103 models of Toshiba Multi-Function Printers (MFP) are vulnerable to 40 different vulnerabilities including remote code execution, local privilege escalation, xml injection, and more. • http://seclists.org/fulldisclosure/2024/Jul/1 • CWE-276: Incorrect Default Permissions •
CVE-2024-27152 – Local Privilege Escalation and Remote Code Execution using insecure permissions
https://notcve.org/view.php?id=CVE-2024-27152
14 Jun 2024 — The Toshiba printers are vulnerable to a Local Privilege Escalation vulnerability. ... En cuanto a los productos/modelos/versiones afectados, consulte la URL de referencia. 103 models of Toshiba Multi-Function Printers (MFP) are vulnerable to 40 different vulnerabilities including remote code execution, local privilege escalation, xml injection, and more. • http://seclists.org/fulldisclosure/2024/Jul/1 • CWE-276: Incorrect Default Permissions •