A vulnerability, which was classified as problematic, has been found in RDoc up to 6.3.0. This issue affects an unknown part of the component Filename Handler. Upgrading to version 6.3.1 eliminates this vulnerability.
RDoc up to 6.3.0 Filename Privilege Escalation
- Virtual Patching
- July 30, 2021
- 7:05 pm
CVE-2024-27521 : TOTOLINK A3300R 17.0.0CU.557_B20221024 SETOPMODECFG IMPROPER AUTHENTICATION
Description TOTOLINK A3300R V17.0.0cu.557_B20221024 was discovered to contain an unauthenticated remote command execution (RCE) vulnerability via multiple parameters in the
CVE-2024-25002 : BOSCH NETWORK SYNCHRONIZER STANDARD UP TO 9.29 DIAGNOSTICS INTERFACE OS COMMAND INJECTION
Description Command Injection in the diagnostics interface of the Bosch Network Synchronizer allows unauthorized users full access to the device.
CVE-2024-2862 : LG ELECTRONICS LED ASSISTANT 2.1.65 PASSWORD IMPROPER AUTHENTICATION
Description This vulnerability allows remote attackers to reset the password of anonymous users without authorization on the affected LG LED