CVE-2024-39671
Published Jul 25, 2024Access control vulnerability in the security verification module. Impact: Successful exploitation of this vulnerability may affect service confidentiality.
Loading current evidence
Historical archive search
Search decades of CVEs by regex, severity, date, CWE, vendor/product tags, KEV, PoC, and other evidence.
Results
94 results · Sorted by Highest Buzz score first
Access control vulnerability in the security verification module. Impact: Successful exploitation of this vulnerability may affect service confidentiality.
Privilege escalation vulnerability in the NMS module Impact: Successful exploitation of this vulnerability will affect availability.
Cracking vulnerability in the OS security module Impact: Successful exploitation of this vulnerability will affect availability.
Cracking vulnerability in the OS security module Impact: Successful exploitation of this vulnerability will affect availability.
An S3 bucket takeover vulnerability was identified in the h2oai/h2o-3 repository. The issue involves the S3 bucket 'http://s3.amazonaws.com/h2o-training', which was found to be vu…
A vulnerability was found in keerti1924 Online-Book-Store-Website 1.0 and classified as problematic. This issue affects some unknown processing of the file /shop.php. The manipula…
A vulnerability classified as problematic was found in SourceCodester Online Mobile Management Store 1.0. Affected by this vulnerability is an unknown functionality of the compone…
Business Logic Errors in GitHub repository microweber/microweber prior to 2.0.
Business Logic Errors in GitHub repository microweber/microweber prior to 2.0.
The Bluetooth module of some Huawei Smart Screen products has an identity authentication bypass vulnerability. Successful exploitation of this vulnerability may allow attackers to…
Business Logic Errors in GitHub repository froxlor/froxlor prior to 2.0.22,2.1.0.
Adobe Commerce versions 2.4.6 (and earlier), 2.4.5-p2 (and earlier) and 2.4.4-p3 (and earlier) are affected by a Business Logic Errors vulnerability that could result in a securit…
Business Logic Errors in GitHub repository fossbilling/fossbilling prior to 0.5.0.
Business Logic Errors in GitHub repository fossbilling/fossbilling prior to 0.5.0.
Business Logic Errors in GitHub repository thorsten/phpmyfaq prior to 3.1.12.
Business Logic Errors in GitHub repository answerdev/answer prior to 1.0.6.
Business Logic Errors in GitHub repository answerdev/answer prior to 1.0.6.
Business Logic Errors in GitHub repository froxlor/froxlor prior to 2.0.10.
Business Logic Errors in GitHub repository ikus060/rdiffweb prior to 2.5.5.
Business Logic Errors in GitHub repository ikus060/rdiffweb prior to 2.5.0a7.
When curl < 7.84.0 does FTP transfers secured by krb5, it handles message verification failures wrongly. This flaw makes it possible for a Man-In-The-Middle attack to go unnoticed…
When curl < 7.84.0 saves cookies, alt-svc and hsts data to local files, it makes the operation atomic by finalizing the operation with a rename from a temporary name to the final…
libcurl would reuse a previously created connection even when a TLS or SSHrelated option had been changed that should have prohibited reuse.libcurl keeps previously used connectio…
Business Logic Errors in GitHub repository erudika/para prior to 1.45.11.
Host Header injection in password Reset in GitHub repository livehelperchat/livehelperchat prior to 3.97.
Every filter state lives in the URL so you can bookmark, share, and crawl exact historical slices instead of a client-only search session.
Buzz order uses the latest all-time evidence snapshot, refreshed every two hours. Evidence-bearing CVEs rank first; records without a snapshot continue newest-first.