Vulnerabilities
Vulnerable Software
Security Vulnerabilities - CVEs Published In 2024
An exposure of sensitive information to an unauthorized actor [CWE-200] in Fortinet FortiManager before 7.4.2, FortiAnalyzer before 7.4.2 and FortiAnalyzer-BigData before 7.2.5 may allow a privileged attacker with administrative read permissions to read event logs of another adom via crafted HTTP or HTTPs requests.
CVSS Score
4.1
EPSS Score
0.006
Published
2024-11-12
CVE-2024-8068
Known exploited
Privilege escalation to NetworkService Account access in Citrix Session Recording when an attacker is an authenticated user in the same Windows Active Directory domain as the session recording server domain
CVSS Score
5.1
EPSS Score
0.014
Published
2024-11-12
CVE-2024-8069
Known exploited
Limited remote code execution with privilege of a NetworkService Account access in Citrix Session Recording if the attacker is an authenticated user on the same intranet as the session recording server
CVSS Score
5.1
EPSS Score
0.146
Published
2024-11-12
Microsoft PC Manager Elevation of Privilege Vulnerability
CVSS Score
7.8
EPSS Score
0.006
Published
2024-11-12
Authentication bypass by assumed-immutable data on airlift.microsoft.com allows an authorized attacker to elevate privileges over a network.
CVSS Score
7.3
EPSS Score
0.01
Published
2024-11-12
Windows Win32 Kernel Subsystem Elevation of Privilege Vulnerability
CVSS Score
7.8
EPSS Score
0.004
Published
2024-11-12
TorchGeo Remote Code Execution Vulnerability
CVSS Score
8.1
EPSS Score
0.012
Published
2024-11-12
Visual Studio Code Remote Extension Elevation of Privilege Vulnerability
CVSS Score
7.1
EPSS Score
0.004
Published
2024-11-12
Visual Studio Code Python Extension Remote Code Execution Vulnerability
CVSS Score
8.8
EPSS Score
0.012
Published
2024-11-12
CVE-2024-49039
Known exploited
Windows Task Scheduler Elevation of Privilege Vulnerability
CVSS Score
8.8
EPSS Score
0.142
Published
2024-11-12


Contact Us

Shodan ® - All rights reserved