A vulnerability has been found in ARM Mbed TLS up to 2.16.6/2.22.x and classified as problematic. This vulnerability affects the function mbedtls_ecp_check_pub_priv/mbedtls_pk_parse_key/mbedtls_pk_parse_keyfile/mbedtls_ecp_mul/mbedtls_ecp_mul_restartable
of the component ECC Private Key Handler. Upgrading to version 2.16.7 or 2.23.0 eliminates this vulnerability. The upgrade is hosted for download at github.com.
ARM Mbed TLS up to 2.16.6/2.22.x ECC Private Key information exposure
CVE-2024-48889 : FORTINET FORTIMANAGER UP TO 6.4.14/7.0.12/7.2.7/7.4.4/7.6.0 FGFM REQUEST OS COMMAND INJECTION
Description An Improper Neutralization of Special Elements used in an OS Command (‘OS Command Injection’) vulnerability [CWE-78] in FortiManager version
CVE-2023-34990 : FORTINET FORTIWLM UP TO 8.5.4/8.6.5 WEB REQUEST PATH TRAVERSAL
Description A relative path traversal in Fortinet FortiWLM version 8.6.0 through 8.6.5 and 8.5.0 through 8.5.4 allows attacker to execute
CVE-2024-47104 : IBM I 7.4/7.5 PHYSICAL FILE SECURITY ATTRIBUTES PERMISSION ASSIGNMENT
Description IBM i 7.4 and 7.5 is vulnerable to an authenticated user gaining elevated privilege to a physical file. A