Vulnerabilities > Low

DATE CVE VULNERABILITY TITLE RISK
2024-10-10 CVE-2024-45133 Unspecified vulnerability in Adobe Commerce and Magento
Adobe Commerce versions 2.4.7-p2, 2.4.6-p7, 2.4.5-p9, 2.4.4-p10 and earlier are affected by an Information Exposure vulnerability that could result in a security feature bypass.
network
low complexity
adobe
2.7
2024-10-10 CVE-2024-45134 Unspecified vulnerability in Adobe Commerce and Magento
Adobe Commerce versions 2.4.7-p2, 2.4.6-p7, 2.4.5-p9, 2.4.4-p10 and earlier are affected by an Information Exposure vulnerability that could result in a security feature bypass.
network
low complexity
adobe
2.7
2024-10-10 CVE-2024-45135 Unspecified vulnerability in Adobe Commerce and Magento
Adobe Commerce versions 2.4.7-p2, 2.4.6-p7, 2.4.5-p9, 2.4.4-p10 and earlier are affected by an Improper Access Control vulnerability that could result in a Security feature bypass.
network
low complexity
adobe
2.7
2024-10-09 CVE-2024-7038 Information Exposure Through an Error Message vulnerability in Openwebui Open Webui
An information disclosure vulnerability exists in open-webui version 0.3.8.
network
low complexity
openwebui CWE-209
2.7
2024-10-08 CVE-2024-45476 NULL Pointer Dereference vulnerability in Siemens Tecnomatix Plant Simulation
A vulnerability has been identified in Tecnomatix Plant Simulation V2302 (All versions < V2302.0016), Tecnomatix Plant Simulation V2404 (All versions < V2404.0005).
local
low complexity
siemens CWE-476
3.3
2024-10-08 CVE-2024-9026 Unspecified vulnerability in PHP-Fpm
In PHP versions 8.1.* before 8.1.30, 8.2.* before 8.2.24, 8.3.* before 8.3.12, when using PHP-FPM SAPI and it is configured to catch workers output through catch_workers_output = yes, it may be possible to pollute the final log or remove up to 4 characters from the log messages by manipulating log message content.
local
low complexity
php-fpm
3.3
2024-10-04 CVE-2024-9513 Information Exposure Through Discrepancy vulnerability in Netadmin IAM
A vulnerability was found in Netadmin Software NetAdmin IAM up to 3.5 and classified as problematic.
network
high complexity
netadmin CWE-203
3.7
2024-10-02 CVE-2024-24122 Unspecified vulnerability in Wondershare Edraw 3.2.2
A remote code execution vulnerability in the project management of Wanxing Technology's Yitu project which allows an attacker to use the exp.adpx file as a zip compressed file to construct a special file name, which can be used to decompress the project file into the system startup folder, restart the system, and automatically execute the constructed attack script.
local
low complexity
wondershare
3.3
2024-09-30 CVE-2024-47531 Improper Encoding or Escaping of Output vulnerability in Clinical-Genomics Scout
Scout is a web-based visualizer for VCF-files.
network
low complexity
clinical-genomics CWE-116
3.5
2024-09-26 CVE-2024-47123 Insufficient Verification of Data Authenticity vulnerability in Gotenna PRO
The goTenna Pro App uses AES CTR type encryption for short, encrypted messages without any additional integrity checking mechanisms.
high complexity
gotenna CWE-345
3.1