Vulnerabilities

DATE CVE VULNERABILITY TITLE RISK
2024-12-27 CVE-2020-9236 Unspecified vulnerability in Huawei Fusioncompute 8.0.0
There is an improper interface design vulnerability in Huawei product.
network
low complexity
huawei
8.8
2024-12-27 CVE-2020-9253 Out-of-bounds Write vulnerability in Huawei Lion-Al00C Firmware 10.0.0.205(C00E202R7P2)
There is a stack overflow vulnerability in some Huawei smart phone.
network
low complexity
huawei CWE-787
6.5
2024-12-27 CVE-2024-3393 Improper Check for Unusual or Exceptional Conditions vulnerability in Paloaltonetworks Pan-Os
A Denial of Service vulnerability in the DNS Security feature of Palo Alto Networks PAN-OS software allows an unauthenticated attacker to send a malicious packet through the data plane of the firewall that reboots the firewall.
network
low complexity
paloaltonetworks CWE-754
7.5
2024-12-26 CVE-2024-51540 Integer Overflow or Wraparound vulnerability in Dell Elastic Cloud Storage
Dell ECS, versions prior to 3.8.1.3 contains an arithmetic overflow vulnerability exists in retention period handling of ECS.
network
low complexity
dell CWE-190
6.5
2024-12-25 CVE-2024-52534 Authentication Bypass by Capture-replay vulnerability in Dell Elastic Cloud Storage
Dell ECS, version(s) prior to ECS 3.8.1.3, contain(s) an Authentication Bypass by Capture-replay vulnerability.
network
low complexity
dell CWE-294
5.4
2024-12-25 CVE-2024-52543 Exposure of Resource to Wrong Sphere vulnerability in Dell Nativeedge Orchestrator
Dell NativeEdge, version(s) 2.1.0.0, contain(s) a Creation of Temporary File With Insecure Permissions vulnerability.
local
low complexity
dell CWE-668
4.4
2024-12-25 CVE-2024-47102 IBM AIX 7.2, 7.3, VIOS 3.1, and 4.1 could allow a non-privileged local user to exploit a vulnerability in the AIX perfstat kernel extension to cause a denial of service.
local
low complexity
CWE-20
5.5
2024-12-25 CVE-2024-47978 Unspecified vulnerability in Dell Nativeedge Orchestrator
Dell NativeEdge, version(s) 2.1.0.0, contain(s) an Execution with Unnecessary Privileges vulnerability.
local
low complexity
dell
7.8
2024-12-25 CVE-2024-52535 Link Following vulnerability in Dell products
Dell SupportAssist for Home PCs versions 4.6.1 and prior and Dell SupportAssist for Business PCs versions 4.5.0 and prior, contain a symbolic link (symlink) attack vulnerability in the software remediation component.
network
low complexity
dell CWE-59
8.8
2024-12-25 CVE-2024-52906 IBM AIX 7.2, 7.3, VIOS 3.1, and 4.1 could allow a non-privileged local user to exploit a vulnerability in the TCP/IP kernel extension to cause a denial of service.
local
low complexity
CWE-362
5.5