A vulnerability was found in TuomoKu SPx-GC up to 1.3.0. It has been classified as critical. This affects an unknown part of the file child_process.js. The manipulation leads to Privilege Escalation.
This vulnerability is uniquely identified as CVE-2024-44623. It is possible to initiate the attack remotely. There is no exploit available.
Today, the U.S. Department of the Treasury has sanctioned five executives and one entity linked to the Intellexa Consortium for developing and distributing Predator commercial spyware. [...]
A vulnerability was found in Smart HMI WebIQ 2.15.19 and classified as critical. Affected by this issue is some unknown functionality. The manipulation leads to path traversal.
This vulnerability is handled as CVE-2024-8752. The attack may be launched remotely. There is no exploit available.
A vulnerability has been found in SFS Consulting InsureE GL up to 4.6.1 and classified as critical. Affected by this vulnerability is an unknown functionality. The manipulation leads to sql injection.
This vulnerability is known as CVE-2024-6401. The attack can be launched remotely. There is no exploit available.
It is recommended to upgrade the affected component.
A vulnerability, which was classified as critical, was found in IBM Aspera Shares up to 1.10.0 PL3. Affected is an unknown function of the component Password Reset Handler. The manipulation leads to session expiration.
This vulnerability is traded as CVE-2024-38315. It is possible to launch the attack remotely. There is no exploit available.
It is recommended to upgrade the affected component.
Google announced updates in the post-quantum cryptographic key encapsulation mechanism used in the Chrome browser, specifically, the swap of Kyber used in hybrid key exchanges with Module Lattice Key Encapsulation Mechanism (ML-KEM). [...]