Vulnerabilities > Medium

DATE CVE VULNERABILITY TITLE RISK
2024-09-02 CVE-2024-38858 Cross-site Scripting vulnerability in Checkmk
Improper neutralization of input in Checkmk before version 2.3.0p14 allows attackers to inject and run malicious scripts in the Robotmk logs view.
network
low complexity
checkmk CWE-79
6.1
2024-09-02 CVE-2024-7932 Cross-site Scripting vulnerability in 3DS 3Dexperience R2024X
A stored Cross-site Scripting (XSS) vulnerability affecting 3DDashboard in 3DSwymer on Release 3DEXPERIENCE R2024x allows an attacker to execute arbitrary script code in user's browser session.
network
low complexity
3ds CWE-79
5.4
2024-09-02 CVE-2024-7938 Cross-site Scripting vulnerability in 3DS 3Dexperience R2023X/R2024X
A stored Cross-site Scripting (XSS) vulnerability affecting 3DDashboard in 3DSwymer from Release 3DEXPERIENCE R2023x through Release 3DEXPERIENCE R2024x allows an attacker to execute arbitrary script code in user's browser session.
network
low complexity
3ds CWE-79
5.4
2024-09-02 CVE-2024-7939 Cross-site Scripting vulnerability in 3DS 3Dexperience R2024X
A stored Cross-site Scripting (XSS) vulnerability affecting 3DSwym in 3DSwymer on Release 3DEXPERIENCE R2024x allows an attacker to execute arbitrary script code in user's browser session.
network
low complexity
3ds CWE-79
5.4
2024-09-02 CVE-2024-8004 Cross-site Scripting vulnerability in 3DS 3Dexperience Enovia R2022X/R2023X/R2024X
A stored Cross-site Scripting (XSS) vulnerability affecting ENOVIA Collaborative Industry Innovator from Release 3DEXPERIENCE R2022x through Release 3DEXPERIENCE R2024x allows an attacker to execute arbitrary script code in user's browser session.
network
low complexity
3ds CWE-79
5.4
2024-09-02 CVE-2024-20084 Out-of-bounds Read vulnerability in multiple products
In power, there is a possible out of bounds read due to a missing bounds check.
4.4
2024-09-02 CVE-2024-20085 Out-of-bounds Read vulnerability in multiple products
In power, there is a possible out of bounds read due to a missing bounds check.
4.4
2024-09-02 CVE-2024-20086 Out-of-bounds Write vulnerability in Google Android 12.0
In vdec, there is a possible out of bounds write due to a missing bounds check.
local
low complexity
google CWE-787
6.7
2024-09-02 CVE-2024-20087 Out-of-bounds Write vulnerability in Google Android 12.0
In vdec, there is a possible out of bounds write due to a missing bounds check.
local
low complexity
google CWE-787
6.7
2024-09-02 CVE-2024-20088 Out-of-bounds Read vulnerability in Google Android 12.0/13.0/14.0
In keyinstall, there is a possible out of bounds read due to a missing bounds check.
local
low complexity
google CWE-125
4.4