A vulnerability, which was classified as critical, was found in MitraStar GPT-2541GNAC BR_g5.6_1.11(WVK.0)b26. Affected is an unknown function of the file /cgi-bin/settings-firewall.cgi of the component Firewall Settings Page. The manipulation of the argument SrcInterface leads to os command injection.
This vulnerability is traded as CVE-2024-9977. It is possible to launch the attack remotely. Furthermore, there is an exploit available.
We tried to contact the vendor early about the disclosure but the official mail address was not working properly.
A vulnerability, which was classified as critical, has been found in NVIDIA NeMo up to All versions r2.0.0rc0. This issue affects the function SaveRestoreConnector of the component Tar File Extraction Handler. The manipulation leads to path traversal.
The identification of this vulnerability is CVE-2024-0129. Attacking locally is a requirement. There is no exploit available.
It is recommended to upgrade the affected component.
A vulnerability was found in jsoup up to 1.15.2. It has been declared as problematic. Affected by this vulnerability is an unknown functionality of the component javascript URL Handler. The manipulation leads to cross site scripting.
This vulnerability is known as CVE-2022-36033. The attack can be launched remotely. There is no exploit available.
It is recommended to upgrade the affected component.
A vulnerability was found in Oracle Communications Cloud Native Core Console 22.2.0. It has been classified as critical. Affected is an unknown function of the component Installer. The manipulation leads to cross site scripting.
This vulnerability is traded as CVE-2022-36033. It is possible to launch the attack remotely. There is no exploit available.
A vulnerability was found in Oracle Financial Services Enterprise Case Management 8.0.8.2/8.1.1.1/8.1.2.5/8.1.2.6. It has been declared as critical. Affected by this vulnerability is an unknown functionality of the component Web UI. The manipulation leads to incorrect conversion between numeric types.
This vulnerability is known as CVE-2022-34169. The attack can be launched remotely. Furthermore, there is an exploit available.
A vulnerability, which was classified as critical, has been found in Oracle Agile PLM 9.3.6. This issue affects some unknown processing of the component Application Server. The manipulation leads to incorrect conversion between numeric types.
The identification of this vulnerability is CVE-2022-34169. The attack may be initiated remotely. Furthermore, there is an exploit available.
A vulnerability was found in Oracle Financial Services Revenue Management and Billing up to 4.0. It has been classified as critical. Affected is an unknown function of the component Infrastructure. The manipulation leads to incorrect conversion between numeric types.
This vulnerability is traded as CVE-2022-34169. It is possible to launch the attack remotely. Furthermore, there is an exploit available.
A vulnerability classified as critical has been found in Oracle Business Intelligence Enterprise Edition 12.2.1.4.0. Affected is an unknown function of the component JAXP. The manipulation leads to incorrect conversion between numeric types.
This vulnerability is traded as CVE-2022-34169. It is possible to launch the attack remotely. Furthermore, there is an exploit available.
A vulnerability, which was classified as critical, was found in Oracle PeopleSoft Enterprise PeopleTools 8.58. Affected is an unknown function of the component Integration Broker. The manipulation leads to incorrect conversion between numeric types.
This vulnerability is traded as CVE-2022-34169. It is possible to launch the attack remotely. Furthermore, there is an exploit available.
A vulnerability classified as critical has been found in Oracle Java SE 7u343/8u333/11.0.15.1/17.0.3.1/18.0.1.1. Affected is an unknown function of the component JAXP. The manipulation leads to incorrect conversion between numeric types.
This vulnerability is traded as CVE-2022-34169. It is possible to launch the attack remotely. Furthermore, there is an exploit available.
It is recommended to upgrade the affected component.
A vulnerability was found in jose4j up to 0.9.3 on Java. It has been classified as problematic. Affected is an unknown function of the component p2c Handler. The manipulation leads to denial of service.
This vulnerability is traded as CVE-2023-51775. The attack needs to be approached within the local network. There is no exploit available.
It is recommended to upgrade the affected component.
A vulnerability was found in Red Hat WildFly. It has been rated as problematic. This issue affects some unknown processing of the component EAP Management Interface. The manipulation leads to denial of service.
The identification of this vulnerability is CVE-2024-4029. The attack may be initiated remotely. There is no exploit available.
A vulnerability was found in magzter Halftime Magazine 3. It has been declared as critical. Affected by this vulnerability is an unknown functionality of the component X.509 Certificate Handler. The manipulation leads to cryptographic issues.
This vulnerability is known as CVE-2014-7696. The attack needs to be done within the local network. There is no exploit available.
A vulnerability has been found in Netwerk Smart Publisher 1.0.1 and classified as critical. Affected by this vulnerability is an unknown functionality. The manipulation of the argument filedata leads to code injection.
This vulnerability is known as CVE-2008-0503. The attack can be launched remotely. Furthermore, there is an exploit available.
It is recommended to upgrade the affected component.
A vulnerability has been found in phpcms 1.2.2 and classified as critical. This vulnerability affects unknown code of the component Parser. The manipulation of the argument file leads to path traversal.
This vulnerability was named CVE-2008-0513. The attack can be initiated remotely. Furthermore, there is an exploit available.
A vulnerability classified as critical was found in SafeNET Softremote VPN Client 1.4.12. This vulnerability affects unknown code. The manipulation leads to improper access controls.
This vulnerability was named CVE-2008-0573. It is possible to launch the attack on the local host. Furthermore, there is an exploit available.