Vulnerabilities > Medium

DATE CVE VULNERABILITY TITLE RISK
2024-06-13 CVE-2024-30057 Unspecified vulnerability in Microsoft Edge 108.0.1462.42/114.0.1823.82
Microsoft Edge for iOS Spoofing Vulnerability
network
low complexity
microsoft
5.4
2024-06-13 CVE-2024-30058 Microsoft Edge (Chromium-based) Spoofing Vulnerability
network
low complexity
5.4
2024-06-13 CVE-2024-38083 Unspecified vulnerability in Microsoft Edge Chromium
Microsoft Edge (Chromium-based) Spoofing Vulnerability
network
low complexity
microsoft
4.3
2024-06-13 CVE-2024-38312 Unspecified vulnerability in Mozilla Firefox
When browsing private tabs, some data related to location history or webpage thumbnails could be persisted incorrectly within the sandboxed app bundle after app termination This vulnerability affects Firefox for iOS < 127.
network
low complexity
mozilla
6.5
2024-06-13 CVE-2024-38313 Unspecified vulnerability in Mozilla Firefox
In certain scenarios a malicious website could attempt to display a fake location URL bar which could mislead users as to the actual website address This vulnerability affects Firefox for iOS < 127.
network
low complexity
mozilla
4.3
2024-06-13 CVE-2024-5947 Missing Authentication for Critical Function vulnerability in Deepseaelectronics Dse855 Firmware 1.1.0
Deep Sea Electronics DSE855 Configuration Backup Missing Authentication Information Disclosure Vulnerability.
low complexity
deepseaelectronics CWE-306
6.5
2024-06-13 CVE-2024-5949 Infinite Loop vulnerability in Deepseaelectronics Dse855 Firmware 1.1.0
Deep Sea Electronics DSE855 Multipart Boundary Infinite Loop Denial-of-Service Vulnerability.
low complexity
deepseaelectronics CWE-835
6.5
2024-06-13 CVE-2024-5951 Missing Authentication for Critical Function vulnerability in Deepseaelectronics Dse855 Firmware 1.1.0
Deep Sea Electronics DSE855 Factory Reset Missing Authentication Denial-of-Service Vulnerability.
low complexity
deepseaelectronics CWE-306
6.5
2024-06-13 CVE-2024-5952 Missing Authentication for Critical Function vulnerability in Deepseaelectronics Dse855 Firmware 1.1.0
Deep Sea Electronics DSE855 Restart Missing Authentication Denial-of-Service Vulnerability.
low complexity
deepseaelectronics CWE-306
6.5
2024-06-13 CVE-2024-37279 Unspecified vulnerability in Elastic Kibana
A flaw was discovered in Kibana, allowing view-only users of alerting to use the run_soon API making the alerting rule run continuously, potentially affecting the system availability if the alerting rule is running complex queries.
network
low complexity
elastic
4.3