A vulnerability, which was classified as critical, has been found in Keyfactor Command. Affected by this issue is some unknown functionality of the component Access Token Handler. The manipulation leads to improper access controls.
This vulnerability is handled as CVE-2024-49202. The attack can only be done within the local network. There is no exploit available.
It is recommended to upgrade the affected component.
A vulnerability, which was classified as problematic, was found in Keyfactor Remote File Orchestrator 2.8.0. Affected is an unknown function of the component Logging Level Handler. The manipulation leads to information disclosure.
This vulnerability is traded as CVE-2024-49201. It is possible to launch the attack remotely. There is no exploit available.
It is recommended to upgrade the affected component.
A vulnerability has been found in Digiteam 4.21.0.0 and classified as critical. This vulnerability affects unknown code of the file /RoleMenuMapping/AddRoleMenu. The manipulation leads to improper access controls.
This vulnerability was named CVE-2024-37758. Access to the local network is required for this attack to succeed. There is no exploit available.
A vulnerability classified as critical has been found in leonhad pdftools up to 0.5.0. Affected is an unknown function of the component Epub Handler. The manipulation leads to stack-based buffer overflow.
This vulnerability is traded as CVE-2024-56139. It is possible to launch the attack remotely. There is no exploit available.
A vulnerability, which was classified as very critical, has been found in Rockwell Automation Arena up to 16.20.06. Affected by this issue is some unknown functionality of the component DOE File Handler. The manipulation leads to allocation of resources.
This vulnerability is handled as CVE-2024-12672. The attack may be launched remotely. There is no exploit available.
A vulnerability has been found in woodruffw pyrage up to 1.2.2 and classified as critical. This vulnerability affects unknown code of the component age Crate. The manipulation leads to code injection.
This vulnerability was named CVE-2024-56327. The attack can be initiated remotely. There is no exploit available.
It is recommended to upgrade the affected component.
A vulnerability has been found in xmidt-org cjwt up to 2.2.x and classified as problematic. Affected by this vulnerability is an unknown functionality of the component JSON Web Token Handler. The manipulation of the argument alg leads to improper verification of cryptographic signature.
This vulnerability is known as CVE-2024-54150. The attack can be launched remotely. There is no exploit available.
It is recommended to upgrade the affected component.