Search
CVE Explorer
Search the full tracked CVE corpus across every vendor — by keyword, vendor, severity, CVSS band and publication date. Server-rendered; each filtered view has its own URL.
01
Filters
Submit to refine — state is held in the URL.
02
Results
63,091 matching · page 965/1262Each CVE id links to its NVD record.
| CVE | Severity | CVSS | Summary | Published |
|---|---|---|---|---|
| CVE-2024-29969(opens NVD record) | High | 7.5 | When a Brocade SANnav installation is upgraded from Brocade SANnav v2.2.2 to Brocade SANnav 2.3.0, TLS/SSL weak message authentication code ciphers are added by default for port 18082. | Apr 19, 2024 |
| CVE-2024-29968(opens NVD record) | High | 7.7 | An information disclosure vulnerability exists in Brocade SANnav before v2.3.1 and v2.3.0a when Brocade SANnav instances are configured in disaster recovery mode. SQL Table names, column names, and SQL queries are collected in DR standby Supportsave. This could allow authenticated users to access the database structure and its contents. | Apr 19, 2024 |
| CVE-2024-29967(opens NVD record) | Medium | 4.4 | In Brocade SANnav before Brocade SANnav v2.31 and v2.3.0a, it was observed that Docker instances inside the appliance have insecure mount points, allowing reading and writing access to sensitive files. The vulnerability could allow a sudo privileged user on the host OS to read and write access to these files. | Apr 19, 2024 |
| CVE-2024-29966(opens NVD record) | High | 7.5 | Brocade SANnav OVA before v2.3.1 and v2.3.0a contain hard-coded credentials in the documentation that appear as the appliance's root password. The vulnerability could allow an unauthenticated attacker full access to the Brocade SANnav appliance. | Apr 19, 2024 |
| CVE-2024-29965(opens NVD record) | Medium | 6.8 | In Brocade SANnav before v2.3.1, and v2.3.0a, it is possible to back up the appliance from the web interface or the command line interface ("SSH"). The resulting backups are world-readable. A local attacker can recover backup files, restore them to a new malicious appliance, and retrieve the passwords of all the switches. | Apr 19, 2024 |
| CVE-2024-29964(opens NVD record) | Medium | 5.7 | Brocade SANnav versions before v2.3.0a do not correctly set permissions on files, including docker files. An unprivileged attacker who gains access to the server can read sensitive information from these files. | Apr 19, 2024 |
| CVE-2024-29962(opens NVD record) | Medium | 5.5 | Brocade SANnav OVA before v2.3.1 and v2.3.0a have an insecure file permission setting that makes files world-readable. This could allow a local user without the required privileges to access sensitive information or a Java binary. | Apr 19, 2024 |
| CVE-2024-29963(opens NVD record) | Low | 1.9 | Brocade SANnav OVA before v2.3.1, and v2.3.0a, contain hardcoded TLS keys used by Docker. Note: Brocade SANnav doesn't have access to remote Docker registries. | Apr 19, 2024 |
| CVE-2024-29961(opens NVD record) | High | 8.2 | A vulnerability affects Brocade SANnav before v2.3.1 and v2.3.0a. It allows a Brocade SANnav service to send ping commands in the background at regular intervals to gridgain.com to check if updates are available for the Component. This could make an unauthenticated, remote attacker aware of the behavior and launch a supply-chain attack against a Brocade SANnav appliance. | Apr 19, 2024 |
| CVE-2024-29960(opens NVD record) | Medium | 6.8 | In Brocade SANnav server before v2.3.1 and v2.3.0a, the SSH keys inside the OVA image are identical in the VM every time SANnav is installed. Any Brocade SAnnav VM based on the official OVA images is vulnerable to MITM over SSH. An attacker can decrypt and compromise the SSH traffic to the SANnav. | Apr 19, 2024 |
| CVE-2024-29959(opens NVD record) | High | 8.6 | A vulnerability in Brocade SANnav before v2.3.1 and v2.3.0a prints Brocade Fabric OS switch encrypted passwords in the Brocade SANnav Standby node's support save. | Apr 19, 2024 |
| CVE-2024-29958(opens NVD record) | High | 7.5 | A vulnerability in Brocade SANnav before v2.3.1 and v2.3.0a prints the encryption key in the console when a privileged user executes the script to replace the Brocade SANnav Management Portal standby node. This could provide attackers an additional, less protected path to acquiring the encryption key. | Apr 19, 2024 |
| CVE-2024-29957(opens NVD record) | High | 7.5 | When Brocade SANnav before v2.3.1 and v2.3.0a servers are configured in Disaster Recovery mode, the encryption key is stored in the DR log files. This could provide attackers with an additional, less-protected path to acquiring the encryption key. | Apr 19, 2024 |
| CVE-2024-29204(opens NVD record) | Critical | 9.8 | A Heap Overflow vulnerability in WLAvalancheService component of Ivanti Avalanche before 6.4.3 allows a remote unauthenticated attacker to execute arbitrary commands | Apr 19, 2024 |
| CVE-2024-27984(opens NVD record) | High | 7.1 | A Path Traversal vulnerability in web component of Ivanti Avalanche before 6.4.3 allows a remote authenticated attacker to delete specific type of files and/or cause denial of service. | Apr 19, 2024 |
| CVE-2024-27978(opens NVD record) | Medium | 6.5 | A Null Pointer Dereference vulnerability in WLAvalancheService component of Ivanti Avalanche before 6.4.3 allows an authenticated remote attacker to perform denial of service attacks. | Apr 19, 2024 |
| CVE-2024-27977(opens NVD record) | High | 8.1 | A Path Traversal vulnerability in web component of Ivanti Avalanche before 6.4.3 allows a remote authenticated attacker to delete arbitrary files, thereby leading to Denial-of-Service. | Apr 19, 2024 |
| CVE-2024-27976(opens NVD record) | High | 8.8 | A Path Traversal vulnerability in web component of Ivanti Avalanche before 6.4.3 allows a remote authenticated attacker to execute arbitrary commands as SYSTEM. | Apr 19, 2024 |
| CVE-2024-27975(opens NVD record) | High | 8.8 | An Use-after-free vulnerability in WLAvalancheService component of Ivanti Avalanche before 6.4.3 allows a remote authenticated attacker to execute arbitrary commands as SYSTEM. | Apr 19, 2024 |
| CVE-2024-25000(opens NVD record) | High | 8.8 | A Path Traversal vulnerability in web component of Ivanti Avalanche before 6.4.3 allows a remote authenticated attacker to execute arbitrary commands as SYSTEM. | Apr 19, 2024 |
| CVE-2024-24999(opens NVD record) | High | 8.8 | A Path Traversal vulnerability in web component of Ivanti Avalanche before 6.4.3 allows a remote authenticated attacker to execute arbitrary commands as SYSTEM. | Apr 19, 2024 |
| CVE-2024-24998(opens NVD record) | High | 8.8 | A Path Traversal vulnerability in web component of Ivanti Avalanche before 6.4.3 allows a remote authenticated attacker to execute arbitrary commands as SYSTEM. | Apr 19, 2024 |
| CVE-2024-24997(opens NVD record) | High | 8.8 | A Path Traversal vulnerability in web component of Ivanti Avalanche before 6.4.3 allows a remote authenticated attacker to execute arbitrary commands as SYSTEM. | Apr 19, 2024 |
| CVE-2024-24996(opens NVD record) | Critical | 9.8 | A Heap overflow vulnerability in WLInfoRailService component of Ivanti Avalanche before 6.4.3 allows an unauthenticated remote attacker to execute arbitrary commands. | Apr 19, 2024 |
| CVE-2024-24995(opens NVD record) | High | 7.5 | A Race Condition (TOCTOU) vulnerability in web component of Ivanti Avalanche before 6.4.3 allows a remote authenticated attacker to execute arbitrary commands as SYSTEM. | Apr 19, 2024 |
| CVE-2024-24994(opens NVD record) | High | 8.8 | A Path Traversal vulnerability in web component of Ivanti Avalanche before 6.4.3 allows a remote authenticated attacker to execute arbitrary commands as SYSTEM. | Apr 19, 2024 |
| CVE-2024-24993(opens NVD record) | High | 7.5 | A Race Condition (TOCTOU) vulnerability in web component of Ivanti Avalanche before 6.4.3 allows a remote authenticated attacker to execute arbitrary commands as SYSTEM. | Apr 19, 2024 |
| CVE-2024-24992(opens NVD record) | High | 8.8 | A Path Traversal vulnerability in web component of Ivanti Avalanche before 6.4.3 allows a remote authenticated attacker to execute arbitrary commands as SYSTEM. | Apr 19, 2024 |
| CVE-2024-24991(opens NVD record) | Medium | 6.5 | A Null Pointer Dereference vulnerability in WLAvalancheService component of Ivanti Avalanche before 6.4.3 allows an authenticated remote attacker to perform denial of service attacks. | Apr 19, 2024 |
| CVE-2024-23535(opens NVD record) | High | 8.8 | A Path Traversal vulnerability in web component of Ivanti Avalanche before 6.4.3 allows a remote authenticated attacker to execute arbitrary commands as SYSTEM. | Apr 19, 2024 |
| CVE-2024-23534(opens NVD record) | High | 8.8 | An Unrestricted File-upload vulnerability in web component of Ivanti Avalanche before 6.4.3 allows a remote authenticated attacker to execute arbitrary commands as SYSTEM. | Apr 19, 2024 |
| CVE-2024-23533(opens NVD record) | Medium | 6.5 | An out-of-bounds read vulnerability in WLAvalancheService component of Ivanti Avalanche before 6.4.3, in certain conditions can allow an authenticated remote attacker to read sensitive information in memory. | Apr 19, 2024 |
| CVE-2024-23532(opens NVD record) | High | 7.5 | An out-of-bounds Read vulnerability in WLAvalancheService component of Ivanti Avalanche before 6.4.3 allows an authenticated remote attacker to perform denial of service attacks. In certain conditions this could also lead to remote code execution. | Apr 19, 2024 |
| CVE-2024-23531(opens NVD record) | High | 7.5 | An Integer Overflow vulnerability in WLInfoRailService component of Ivanti Avalanche before 6.4.3 allows an unauthenticated remote attacker to perform denial of service attacks. In certain rare conditions this could also lead to reading content from memory. | Apr 19, 2024 |
| CVE-2024-23530(opens NVD record) | High | 7.5 | An out-of-bounds read vulnerability in WLAvalancheService component of Ivanti Avalanche before 6.4.3, in certain conditions can allow an unauthenticated remote attacker to read sensitive information in memory. | Apr 19, 2024 |
| CVE-2024-23529(opens NVD record) | High | 7.5 | An out-of-bounds read vulnerability in WLAvalancheService component of Ivanti Avalanche before 6.4.3, in certain conditions can allow an unauthenticated remote attacker to read sensitive information in memory. | Apr 19, 2024 |
| CVE-2024-23528(opens NVD record) | High | 7.5 | An out-of-bounds read vulnerability in WLAvalancheService component of Ivanti Avalanche before 6.4.3, in certain conditions can allow an unauthenticated remote attacker to read sensitive information in memory. | Apr 19, 2024 |
| CVE-2024-23526(opens NVD record) | High | 7.5 | An out-of-bounds read vulnerability in WLAvalancheService component of Ivanti Avalanche before 6.4.3, in certain conditions can allow an unauthenticated remote attacker to read sensitive information in memory. | Apr 19, 2024 |
| CVE-2024-22061(opens NVD record) | Critical | 9.8 | A Heap Overflow vulnerability in WLInfoRailService component of Ivanti Avalanche before 6.4.3 allows a remote unauthenticated attacker to execute arbitrary commands | Apr 19, 2024 |
| CVE-2024-29987(opens NVD record) | Medium | 6.5 | Microsoft Edge (Chromium-based) Information Disclosure Vulnerability | Apr 18, 2024 |
| CVE-2024-29986(opens NVD record) | Medium | 5.4 | Microsoft Edge for Android (Chromium-based) Information Disclosure Vulnerability | Apr 18, 2024 |
| CVE-2023-3758(opens NVD record) | High | 7.1 | A race condition flaw was found in sssd where the GPO policy is not consistently applied for authenticated users. This may lead to improper authorization issues, granting or denying access to resources inappropriately. | Apr 18, 2024 |
| CVE-2024-24910(opens NVD record) | High | 7.3 | A local attacker can erscalate privileges on affected Check Point ZoneAlarm ExtremeSecurity NextGen, Identity Agent for Windows, and Identity Agent for Windows Terminal Server. To exploit this vulnerability, an attacker must first obtain the ability to execute local privileged code on the target system. | Apr 18, 2024 |
| CVE-2024-29003(opens NVD record) | High | 7.5 | The SolarWinds Platform was susceptible to a XSS vulnerability that affects the maps section of the user interface. This vulnerability requires authentication and requires user interaction. | Apr 18, 2024 |
| CVE-2024-26921(opens NVD record) | High | 7.8 | In the Linux kernel, the following vulnerability has been resolved: inet: inet_defrag: prevent sk release while still in use ip_local_out() and other functions can pass skb->sk as function argument. If the skb is a fragment and reassembly happens before such function call returns, the sk must not be released. This affects skb fragments reassembled via netfilter or similar modules, e.g. openvswitch or ct_act.c, when run as part of tx pipeline. Eric Dumazet made an initial analysis of this bug. Quoting Eric: Calling ip_defrag() in output path is also implying skb_orphan(), which is buggy because output path relies on sk not disappearing. A relevant old patch about the issue was : 8282f27449bf ("inet: frag: Always orphan skbs inside ip_defrag()") [..] net/ipv4/ip_output.c depends on skb->sk being set, and probably to an inet socket, not an arbitrary one. If we orphan the packet in ipvlan, then downstream things like FQ packet scheduler will not work properly. We need to change ip_defrag() to only use skb_orphan() when really needed, ie whenever frag_list is going to be used. Eric suggested to stash sk in fragment queue and made an initial patch. However there is a problem with this: If skb is refragmented again right after, ip_do_fragment() will copy head->sk to the new fragments, and sets up destructor to sock_wfree. IOW, we have no choice but to fix up sk_wmem accouting to reflect the fully reassembled skb, else wmem will underflow. This change moves the orphan down into the core, to last possible moment. As ip_defrag_offset is aliased with sk_buff->sk member, we must move the offset into the FRAG_CB, else skb->sk gets clobbered. This allows to delay the orphaning long enough to learn if the skb has to be queued or if the skb is completing the reasm queue. In the former case, things work as before, skb is orphaned. This is safe because skb gets queued/stolen and won't continue past reasm engine. In the latter case, we will steal the skb->sk reference, reattach it to the head skb, and fix up wmem accouting when inet_frag inflates truesize. | Apr 18, 2024 |
| CVE-2024-29001(opens NVD record) | High | 7.5 | A SolarWinds Platform SWQL Injection Vulnerability was identified in the user interface. This vulnerability requires authentication and user interaction to be exploited. | Apr 18, 2024 |
| CVE-2024-28076(opens NVD record) | High | 7.0 | The SolarWinds Platform was susceptible to a Arbitrary Open Redirection Vulnerability. A potential attacker can redirect to different domain when using URL parameter with relative entry in the correct format | Apr 18, 2024 |
| CVE-2024-29956(opens NVD record) | Medium | 6.5 | A vulnerability in Brocade SANnav before v2.3.1 and v2.3.0a prints the Brocade SANnav password in clear text in supportsave logs when a user schedules a switch Supportsave from Brocade SANnav. | Apr 18, 2024 |
| CVE-2023-4509(opens NVD record) | Medium | 4.3 | It is possible for an API key to be logged in clear text in the audit log file after an invalid login attempt. | Apr 18, 2024 |
| CVE-2024-29955(opens NVD record) | Medium | 5.0 | A vulnerability in Brocade SANnav before v2.3.1 and v2.3.0a could allow a privileged user to print the SANnav encrypted key in PostgreSQL startup logs. This could provide attackers with an additional, less-protected path to acquiring the encryption key. | Apr 17, 2024 |