Vulnerabilities
Vulnerable Software
Security Vulnerabilities - CVEs Published In November 2024
A NULL pointer dereference vulnerability has been reported to affect several QNAP operating system versions. If exploited, the vulnerability could allow remote attackers who have gained administrator access to launch a denial-of-service (DoS) attack. We have already fixed the vulnerability in the following versions: QTS 5.2.1.2930 build 20241025 and later QuTS hero h5.2.1.2929 build 20241025 and later
CVSS Score
5.1
EPSS Score
0.004
Published
2024-11-22
A cross-site scripting (XSS) vulnerability has been reported to affect Photo Station. If exploited, the vulnerability could allow remote attackers who have gained user access to inject malicious code. We have already fixed the vulnerability in the following version: Photo Station 6.4.3 ( 2024/07/12 ) and later
CVSS Score
6.3
EPSS Score
0.002
Published
2024-11-22
A cross-site scripting (XSS) vulnerability has been reported to affect Photo Station. If exploited, the vulnerability could allow remote attackers who have gained user access to inject malicious code. We have already fixed the vulnerability in the following version: Photo Station 6.4.3 ( 2024/07/12 ) and later
CVSS Score
6.3
EPSS Score
0.002
Published
2024-11-22
A cross-site scripting (XSS) vulnerability has been reported to affect Photo Station. If exploited, the vulnerability could allow remote attackers who have gained user access to inject malicious code. We have already fixed the vulnerability in the following version: Photo Station 6.4.3 ( 2024/07/12 ) and later
CVSS Score
6.3
EPSS Score
0.002
Published
2024-11-22
A cross-site scripting (XSS) vulnerability has been reported to affect Photo Station. If exploited, the vulnerability could allow remote attackers who have gained user access to inject malicious code. We have already fixed the vulnerability in the following version: Photo Station 6.4.3 ( 2024/07/12 ) and later
CVSS Score
6.3
EPSS Score
0.002
Published
2024-11-22
Possible Reflected Cross-Site Scripting (XSS) Vulnerability in iManager has been discovered in OpenText™ iManager 3.2.4.0000.
CVSS Score
6.1
EPSS Score
0.002
Published
2024-11-22
Possible XSS in iManager URL for access Component has been discovered in OpenText™ iManager 3.2.5.0000.
CVSS Score
6.1
EPSS Score
0.002
Published
2024-11-22
Possible External Service Interaction attack in iManager has been discovered in OpenText™ iManager 3.2.6.0000.
CVSS Score
8.6
EPSS Score
0.001
Published
2024-11-22
Possible XSS in iManager URL for access Component has been discovered in OpenText™ iManager 3.2.6.0000.
CVSS Score
7.6
EPSS Score
0.001
Published
2024-11-22
Possible XML External Entity Injection in iManager GET parameter has been discovered in OpenText™ iManager 3.2.6.0200.
CVSS Score
7.5
EPSS Score
0.001
Published
2024-11-22


Contact Us

Shodan ® - All rights reserved