Vulnerabilities
Vulnerable Software
Security Vulnerabilities - CVEs Published In June 2024
IBM Security Access Manager Docker 10.0.0.0 through 10.0.7.1 uses weaker than expected cryptographic algorithms that could allow an attacker to decrypt highly sensitive information. IBM X-Force ID: 261198.
CVSS Score
5.9
EPSS Score
0.001
Published
2024-06-27
Marco Trevisan discovered that the Ubuntu Advantage Desktop Daemon, before version 1.12, leaks the Pro token to unprivileged users by passing the token as an argument in plaintext.
CVSS Score
5.9
EPSS Score
0.0
Published
2024-06-27
IBM Security Verify Access 10.0.0.0 through 10.0.7.1, under certain configurations, could allow an unauthenticated attacker to cause a denial of service due to asymmetric resource consumption. IBM X-Force ID: 287615.
CVSS Score
5.3
EPSS Score
0.002
Published
2024-06-27
TELSAT marKoni FM Transmitters are vulnerable to a command injection vulnerability through the manipulation of settings and could allow an attacker to gain unauthorized access to the system with administrative privileges.
CVSS Score
7.2
EPSS Score
0.005
Published
2024-06-27
TELSAT marKoni FM Transmitters are vulnerable to an attacker exploiting a hidden admin account that can be accessed through the use of hard-coded credentials.
CVSS Score
9.8
EPSS Score
0.002
Published
2024-06-27
TELSAT marKoni FM Transmitters are vulnerable to an attacker bypassing authentication and gaining administrator privileges.
CVSS Score
9.8
EPSS Score
0.0
Published
2024-06-27
TELSAT marKoni FM Transmitters are vulnerable to users gaining unauthorized access to sensitive information or performing actions beyond their designated permissions.
CVSS Score
9.8
EPSS Score
0.002
Published
2024-06-27
IBM Security Verify Access 10.0.0 through 10.0.7.1 could allow a local user to obtain sensitive information from trace logs. IBM X-Force ID: 252183.
CVSS Score
5.5
EPSS Score
0.0
Published
2024-06-27
idccms v1.35 was discovered to contain a Cross-Site Request Forgery (CSRF) via the component /admin/keyWord_deal.php?mudi=add.
CVSS Score
3.8
EPSS Score
0.001
Published
2024-06-27
idccms v1.35 was discovered to contain a Cross-Site Request Forgery (CSRF) via the component /admin/ipRecord_deal.php?mudi=del&dataType=&dataID=1.
CVSS Score
3.8
EPSS Score
0.001
Published
2024-06-27


Contact Us

Shodan ® - All rights reserved