An X user using the handle @NSA_Employee39 disclosed a zero-day vulnerability in the open-source file archive software 7-Zip. A verified X account, @NSA_Employee39, claimed to disclose a zero-day vulnerability in the open-source file archive software 7-Zip. The X user announced it would be “dropping 0days all this week,” starting with an arbitrary code execution vulnerability […]
A vulnerability was found in GraphicsMagick 1.3.16. It has been classified as problematic. Affected is the function Magick_png_malloc. The manipulation of the argument proper leads to memory corruption.
This vulnerability is traded as CVE-2012-3438. It is possible to launch the attack remotely. There is no exploit available.
A vulnerability, which was classified as critical, has been found in GNOME gnome-keyring 3.4.0/3.4.1. This issue affects the function gpg-cache-method of the file gkd-gpg-agent-ops.c. The manipulation of the argument idle/timeout leads to improper access controls.
The identification of this vulnerability is CVE-2012-3466. The attack needs to be approached locally. There is no exploit available.
It is recommended to upgrade the affected component.
A vulnerability was found in Red Hat libvirt 0.9.13. It has been declared as problematic. Affected by this vulnerability is the function virTypedParameterArrayClear. The manipulation leads to improper resource management.
This vulnerability is known as CVE-2012-3445. The attack can be launched remotely. There is no exploit available.
A vulnerability was found in GNU Emacs 23.2/23.3/23.4/24.1. It has been classified as critical. This affects an unknown part. The manipulation leads to Remote Code Execution.
This vulnerability is uniquely identified as CVE-2012-3479. It is possible to initiate the attack remotely. There is no exploit available.
A vulnerability was found in Paessler PRTG Network Monitor. It has been declared as problematic. This vulnerability affects unknown code of the component SNMP. The manipulation leads to cross site scripting.
This vulnerability was named CVE-2024-12833. The attack can be initiated remotely. There is no exploit available.
A vulnerability was found in WSO2 API Manager. It has been classified as critical. This affects an unknown part. The manipulation leads to improper authentication.
This vulnerability is uniquely identified as CVE-2024-6914. It is possible to initiate the attack remotely. There is no exploit available.
It is recommended to upgrade the affected component.
A vulnerability was found in WSO2 API Manager and classified as critical. Affected by this issue is the function SynapseArtifactUploaderAdmin. The manipulation leads to unrestricted upload.
This vulnerability is handled as CVE-2024-7074. The attack may be launched remotely. There is no exploit available.
It is recommended to upgrade the affected component.
A vulnerability has been found in InfotelGLPI tasklists up to 2.0.3 and classified as critical. Affected by this vulnerability is an unknown functionality. The manipulation leads to sql injection.
This vulnerability is known as CVE-2024-56801. The attack can be launched remotely. There is no exploit available.
It is recommended to upgrade the affected component.
A vulnerability, which was classified as critical, was found in mendableai firecrawl up to 1.1.0. Affected is an unknown function of the component Environment Variable Handler. The manipulation of the argument PROXY_SERVER leads to server-side request forgery.
This vulnerability is traded as CVE-2024-56800. It is possible to launch the attack remotely. There is no exploit available.
It is recommended to upgrade the affected component.
A vulnerability, which was classified as critical, has been found in Panda Security Dome 22.02.01. This issue affects some unknown processing. The manipulation leads to link following.
The identification of this vulnerability is CVE-2024-13043. An attack has to be approached locally. There is no exploit available.
A vulnerability classified as critical was found in Foxit PDF Reader 2024.2.3.25184. This vulnerability affects unknown code of the component File Handler. The manipulation leads to link following.
This vulnerability was named CVE-2024-12753. The attack can be initiated remotely. There is no exploit available.
A vulnerability classified as critical has been found in SoftIron HyperCloud 2.3.x/2.4.x. This affects an unknown part of the component Data Pool Handler. The manipulation leads to improper privilege management.
This vulnerability is uniquely identified as CVE-2024-13058. It is possible to initiate the attack remotely. There is no exploit available.
It is recommended to upgrade the affected component.
A vulnerability was found in TrueWinter simofa up to 0.2.6. It has been rated as critical. Affected by this issue is the function RouteLoader of the component API Route Handler. The manipulation leads to missing authentication.
This vulnerability is handled as CVE-2024-56799. The attack may be launched remotely. There is no exploit available.
It is recommended to upgrade the affected component.
A vulnerability was found in Ashlar-Vellum Graphite 13_SE_13048. It has been declared as critical. Affected by this vulnerability is an unknown functionality of the component VC6 File Parser. The manipulation leads to heap-based buffer overflow.
This vulnerability is known as CVE-2024-13051. The attack can be launched remotely. There is no exploit available.