A vulnerability was found in Oracle Communications Cloud Native Core Network Slice Selection Function 1.8.0. It has been classified as very critical. This affects an unknown part of the component NSSF. The manipulation leads to improper input validation.
This vulnerability is uniquely identified as CVE-2021-29921. It is possible to initiate the attack remotely. There is no exploit available.
It is recommended to upgrade the affected component.
A vulnerability, which was classified as problematic, has been found in Python CPython up to 3.10.13/3.11.8/3.12.2/3.13.0a4. Affected by this issue is the function cert_store_stats/get_ca_certs of the component TLS Handshake Handler. The manipulation leads to race condition.
This vulnerability is handled as CVE-2024-0397. The attack needs to be approached within the local network. There is no exploit available.
It is recommended to upgrade the affected component.
A vulnerability was found in tornado up to 6.4.1. It has been classified as critical. This affects an unknown part of the component HTTP Parser. The manipulation leads to resource consumption.
This vulnerability is uniquely identified as CVE-2024-52804. It is possible to initiate the attack remotely. There is no exploit available.
It is recommended to upgrade the affected component.
A vulnerability was found in Oracle Communications Cloud Native Core Automated Test Suite 1.8.0. It has been rated as critical. This issue affects some unknown processing of the component ATS Framework. The manipulation leads to improper input validation.
The identification of this vulnerability is CVE-2021-29921. The attack may be initiated remotely. There is no exploit available.
It is recommended to upgrade the affected component.
A vulnerability was found in Python up to 3.9.4 and classified as critical. Affected by this issue is some unknown functionality of the component ipaddress Library. The manipulation leads to improper input validation.
This vulnerability is handled as CVE-2021-29921. The attack may be launched remotely. There is no exploit available.
It is recommended to apply a patch to fix this issue.
A vulnerability was found in Oracle GraalVM Enterprise Edition 20.3.2/21.1.0 and classified as very critical. This issue affects some unknown processing of the component CPython. The manipulation leads to improper input validation.
The identification of this vulnerability is CVE-2021-29921. The attack may be initiated remotely. There is no exploit available.
It is recommended to upgrade the affected component.
A vulnerability was found in Oracle Communications Cloud Native Core Binding Support Function 1.11.0. It has been classified as very critical. Affected is an unknown function of the component BSF. The manipulation leads to improper input validation.
This vulnerability is traded as CVE-2021-29921. It is possible to launch the attack remotely. There is no exploit available.
It is recommended to upgrade the affected component.
A vulnerability was found in Oracle Communications Cloud Native Core Binding Support Function 1.10.0 and classified as critical. Affected by this issue is some unknown functionality of the component Binding Support Function. The manipulation leads to information disclosure.
This vulnerability is handled as CVE-2021-3426. The attack can only be initiated within the local network. There is no exploit available.
It is recommended to upgrade the affected component.
A vulnerability classified as problematic was found in Python. Affected by this vulnerability is the function AbstractBasicAuthHandler of the component urllib. The manipulation leads to resource consumption.
This vulnerability is known as CVE-2021-3733. The attack can be launched remotely. There is no exploit available.
It is recommended to apply a patch to fix this issue.
A vulnerability was found in Python up to 3.8.8/3.9.2/3.10.0a6. It has been rated as problematic. Affected by this issue is some unknown functionality of the component pydoc. The manipulation leads to information disclosure.
This vulnerability is handled as CVE-2021-3426. Access to the local network is required for this attack. There is no exploit available.
It is recommended to upgrade the affected component.
A vulnerability was found in Progress WhatsUp Gold up to 2024.0.0. It has been rated as very critical. This issue affects some unknown processing of the file NmAPI.exe. The manipulation leads to incorrect use of privileged apis.
The identification of this vulnerability is CVE-2024-8785. The attack may be initiated remotely. There is no exploit available.
It is recommended to upgrade the affected component.
A vulnerability was found in Progress WhatsUp Gold up to 2024.0.0. It has been declared as critical. This vulnerability affects unknown code. The manipulation leads to sql injection.
This vulnerability was named CVE-2024-46908. The attack can be initiated remotely. There is no exploit available.
It is recommended to upgrade the affected component.
A vulnerability was found in Progress WhatsUp Gold up to 2024.0.0. It has been classified as critical. This affects an unknown part. The manipulation leads to sql injection.
This vulnerability is uniquely identified as CVE-2024-46907. It is possible to initiate the attack remotely. There is no exploit available.
It is recommended to upgrade the affected component.
A vulnerability was found in dotNetTreasury WMS Warehouse Management System ZEQP 2.20.9.1 and classified as critical. Affected by this issue is some unknown functionality. The manipulation of the argument token leads to improper access controls.
This vulnerability is handled as CVE-2024-52732. The attack needs to be done within the local network. There is no exploit available.
A vulnerability has been found in radare2 5.8.8 and classified as critical. Affected by this vulnerability is the function parse_die. The manipulation leads to buffer overflow.
This vulnerability is known as CVE-2024-29645. The attack can only be initiated within the local network. There is no exploit available.
It is recommended to apply a patch to fix this issue.
A vulnerability, which was classified as very critical, was found in Progress WhatsUp Gold up to 2024.0.0. Affected is an unknown function. The manipulation leads to path traversal.
This vulnerability is traded as CVE-2024-46909. It is possible to launch the attack remotely. There is no exploit available.
It is recommended to upgrade the affected component.