A vulnerability, which was classified as critical, was found in Visual Tools DVR VX16 4.2.28.0. Affected is an unknown functionality of the file cgi-bin/slogin/login.py of the component HTTP Header Handler. There is no information about possible countermeasures known. It may be suggested to replace the affected object with an alternative product.
Visual Tools DVR VX16 4.2.28.0 HTTP Header cgi-bin/slogin/login.py User-Agent os command injection
- Virtual Patching
- October 8, 2021
- 8:13 am
CVE-2024-52587 : STEP-SECURITY HARDEN-RUNNER UP TO 2.10.1 ENVIRONMENT VARIABLE OS COMMAND INJECTION
Description StepSecurity’s Harden-Runner provides network egress filtering and runtime security for GitHub-hosted and self-hosted runners. Versions of step-security/harden-runner prior to
CVE-2024-50282 : LINUX KERNEL UP TO 6.11.7 AMD GPU AMDGPU_DEBUGFS_GPRWAVE_READ BUFFER OVERFLOW
Description In the Linux kernel, the following vulnerability has been resolved: drm/amdgpu: add missing size check in amdgpu_debugfs_gprwave_read() Avoid a
CVE-2024-50919 : JPRESS 5.1.1 ON WINDOWS JSP FILE UNRESTRICTED UPLOAD
Description Jpress until v5.1.1 has arbitrary file uploads on the windows platform, and the construction of non-standard file formats such