Vulnerabilities
Vulnerable Software
Security Vulnerabilities - CVEs Published In 2024
Combodo iTop is a simple, web based IT Service Management tool. Affected versions are subject to a reflected Cross-site Scripting (XSS) exploit by way of editing a request's payload which can lead to malicious javascript execution. This issue has been addressed in version 3.2.0 via systematic escaping of error messages when rendering on the page. All users are advised to upgrade. There are no known workarounds for this vulnerability.
CVSS Score
8.1
EPSS Score
0.004
Published
2024-11-08
wac commit 385e1 was discovered to contain a heap overflow.
CVSS Score
6.2
EPSS Score
0.002
Published
2024-11-08
vmir e8117 was discovered to contain a segmentation violation via the wasm_parse_block function at /src/vmir_wasm_parser.c.
CVSS Score
5.5
EPSS Score
0.002
Published
2024-11-08
vmir e8117 was discovered to contain a heap buffer overflow via the wasm_call function at /src/vmir_wasm_parser.c.
CVSS Score
7.8
EPSS Score
0.003
Published
2024-11-08
vmir e8117 was discovered to contain a heap buffer overflow via the wasm_parse_section_functions function at /src/vmir_wasm_parser.c.
CVSS Score
7.8
EPSS Score
0.003
Published
2024-11-08
vmir e8117 was discovered to contain a segmentation violation via the import_function function at /src/vmir_wasm_parser.c.
CVSS Score
5.5
EPSS Score
0.002
Published
2024-11-08
vmir e8117 was discovered to contain a segmentation violation via the function_prepare_parse function at /src/vmir_function.c.
CVSS Score
5.5
EPSS Score
0.002
Published
2024-11-08
wasm3 139076a is vulnerable to Denial of Service (DoS).
CVSS Score
7.5
EPSS Score
0.005
Published
2024-11-08
wasm3 139076a suffers from Invalid Memory Read, leading to DoS and potential Code Execution.
CVSS Score
8.4
EPSS Score
0.002
Published
2024-11-08
wasm3 139076a contains memory leaks in Read_utf8.
CVSS Score
8.4
EPSS Score
0.003
Published
2024-11-08


Contact Us

Shodan ® - All rights reserved