CVE Alert: CVE-2024-13955
Vulnerability Summary: CVE-2024-13955 2nd Order SQL injection vulnerabilities in ASPECT allow unintended access and manipulation of database repositories if administrator...
Vulnerability Summary: CVE-2024-13955 2nd Order SQL injection vulnerabilities in ASPECT allow unintended access and manipulation of database repositories if administrator...
Vulnerability Summary: CVE-2024-13953 Sensitive device logger information in ASPECT may be exposed if administrator credentials become compromisedThis issue affects ASPECT-Enterprise:...
Vulnerability Summary: CVE-2024-40458 An issue in Ocuco Innovation Tracking.exe v.2.10.24.51 allows a local attacker to escalate privileges via the modification...
Vulnerability Summary: CVE-2024-13958 Stored Cross Site Scripting vulnerabilities exist in ASPECT if administrator creden-tials become compromisedThis issue affects ASPECT-Enterprise: through...
Vulnerability Summary: CVE-2024-13957 SSRF Server Side Request Forgery vulnerabilities exist in ASPECT if administrator credentials become compromisedThis issue affects ASPECT-Enterprise:...
Vulnerability Summary: CVE-2024-13952 Predictable filename vulnerabilities in ASPECT may expose sensitive information to a potential attacker if administrator credentials become...
Vulnerability Summary: CVE-2024-51553 Predictable filename vulnerabilities in ASPECT may expose sensitive information to a potential attacker if administrator credentials become...
Vulnerability Summary: CVE-2024-41199 An issue in Ocuco Innovation - JOBMANAGER.EXE v2.10.24.16 allows attackers to bypass authentication and escalate privileges to...
Vulnerability Summary: CVE-2024-6914 An incorrect authorization vulnerability exists in multiple WSO2 products due to a business logic flaw in the...
Vulnerability Summary: CVE-2024-48848 Large content vulnerabilities are present in ASPECT exposing a device to disk overutilization on a system if...
Vulnerability Summary: CVE-2024-51552 Weak password storage vulnerabilities exist in ASPECT if administrator credentials become compromisedThis issue affects ASPECT-Enterprise: through 3.*;...
Vulnerability Summary: CVE-2025-4338 Lantronix Device installer is vulnerable to XML external entity (XXE) attacks in configuration files read from the...
Vulnerability Summary: CVE-2024-7103 A reflected cross-site scripting (XSS) vulnerability exists in the sub-organization login flow of WSO2 Identity Server 7.0.0...
Vulnerability Summary: CVE-2024-7487 An improper authentication vulnerability exists in WSO2 Identity Server 7.0.0 due to an implementation flaw that allows...
Vulnerability Summary: CVE-2025-47181 Improper link resolution before file access ('link following') in Microsoft Edge (Chromium-based) allows an authorized attacker to...
Vulnerability Summary: CVE-2024-5962 A reflected cross-site scripting (XSS) vulnerability exists in the authentication endpoint of multiple WSO2 products due to...
Vulnerability Summary: CVE-2025-48201 The ns_backup extension through 13.0.0 for TYPO3 has a Predictable Resource Location. Affected Endpoints: No affected endpoints...
Vulnerability Summary: CVE-2025-48207 The reint_downloadmanager extension through 5.0.0 for TYPO3 allows Insecure Direct Object Reference. Affected Endpoints: No affected endpoints...
Vulnerability Summary: CVE-2025-48203 The cs_seo extension through 9.2.0 for TYPO3 allows XSS. Affected Endpoints: No affected endpoints listed. Published Date:...
Vulnerability Summary: CVE-2025-48202 The femanager extension through 8.2.1 for TYPO3 allows Insecure Direct Object Reference. Affected Endpoints: No affected endpoints...
Vulnerability Summary: CVE-2025-48200 The sr_feuser_register extension through 12.4.8 for TYPO3 allows Remote Code Execution. Affected Endpoints: No affected endpoints listed....
Vulnerability Summary: CVE-2025-20113 A vulnerability in Cisco Unified Intelligence Center could allow an authenticated, remote attacker to elevate privileges to...
Vulnerability Summary: CVE-2025-20112 A vulnerability in multiple Cisco Unified Communications and Contact Center Solutions products could allow an authenticated, local...
Vulnerability Summary: CVE-2025-48206 The ns_backup extension through 13.0.0 for TYPO3 allows XSS. Affected Endpoints: No affected endpoints listed. Published Date:...