CVE-2024-47011 – Ivanti Avalanche Faces ResourceManager Information Disclosure Vulnerability
https://notcve.org/view.php?id=CVE-2024-47011
Path Traversal in Ivanti Avalanche before version 6.4.5 allows a remote unauthenticated attacker to leak sensitive information This vulnerability allows remote attackers to disclose sensitive information on affected installations of Ivanti Avalanche. • https://forums.ivanti.com/s/article/Ivanti-Avalanche-6-4-5-Security-Advisory • CWE-22: Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal') •
CVE-2024-47973
https://notcve.org/view.php?id=CVE-2024-47973
In some Solidigm DC Products, a defect in device overprovisioning may provide information disclosure to an attacker. • https://www.solidigm.com/support-page/support-security.html •
CVE-2024-38425 – Improper Authorization in Performance
https://notcve.org/view.php?id=CVE-2024-38425
Information disclosure while sending implicit broadcast containing APP launch information. • https://docs.qualcomm.com/product/publicresources/securitybulletin/october-2024-bulletin.html • CWE-285: Improper Authorization •
CVE-2024-33073 – Buffer Over-read in WLAN Host Communication
https://notcve.org/view.php?id=CVE-2024-33073
Information disclosure while parsing the BSS parameter change count or MLD capabilities fields of the ML IE. • https://docs.qualcomm.com/product/publicresources/securitybulletin/october-2024-bulletin.html • CWE-126: Buffer Over-read •
CVE-2024-33064 – Buffer Over-read in WLAN Host Communication
https://notcve.org/view.php?id=CVE-2024-33064
Information disclosure while parsing the multiple MBSSID IEs from the beacon. • https://docs.qualcomm.com/product/publicresources/securitybulletin/october-2024-bulletin.html • CWE-126: Buffer Over-read •