ENISA EUVD · EUVD-2024-36619Official EUVD mapping0 linked advisory records.
Official EUVD record ↗BSI · German · WID-SEC-2025-2360Oracle Communications Applications: Mehrere SchwachstellenEin entfernter, anonymer oder authentisierter Angreifer kann mehrere Schwachstellen in Oracle Communications Applications ausnutzen, um die Vertraulichkeit, Integrität und Verfügbarkeit zu gefährden.
Official advisory ↗BSI · German · WID-SEC-2025-0148Oracle Communications: Mehrere SchwachstellenEin entfernter, anonymer oder authentisierter Angreifer kann mehrere Schwachstellen in Oracle Communications ausnutzen, um die Vertraulichkeit, Integrität und Verfügbarkeit zu gefährden.
Official advisory ↗BSI · German · WID-SEC-2025-0167Oracle MySQL: Mehrere SchwachstellenEin entfernter, anonymer oder authentisierter Angreifer kann mehrere Schwachstellen in Oracle MySQL ausnutzen, um die Vertraulichkeit, Integrität und Verfügbarkeit zu gefährden.
Official advisory ↗BSI · German · WID-SEC-2025-0143Oracle Fusion Middleware: Mehrere SchwachstellenEin entfernter, anonymer oder authentisierter Angreifer kann mehrere Schwachstellen in Oracle Fusion Middleware ausnutzen, um die Vertraulichkeit, Integrität und Verfügbarkeit zu gefährden.
Official advisory ↗BSI · German · WID-SEC-2025-0135Oracle Communications Applications: Mehrere SchwachstellenEin entfernter, anonymer oder authentisierter Angreifer kann mehrere Schwachstellen in Oracle Communications Applications ausnutzen, um die Vertraulichkeit, Integrität und Verfügbarkeit zu gefährden.
Official advisory ↗BSI · German · WID-SEC-2025-0001IBM DB2: Mehrere SchwachstellenEin entfernter oder lokaler Angreifer kann mehrere Schwachstellen in IBM DB2 on Cloud Pak for Data ausnutzen, um seine Privilegien zu erhöhen, beliebigen Code auszuführen, vertrauliche Informationen offenzulegen, Sicherheitsmaßnahmen zu umgehen oder einen Denial-of-Service-Zustand zu erzeugen.
Official advisory ↗BSI · German · WID-SEC-2024-3195Oracle Communications: Mehrere SchwachstellenEin entfernter, anonymer oder authentisierter Angreifer kann mehrere Schwachstellen in Oracle Communications ausnutzen, um die Vertraulichkeit, Integrität und Verfügbarkeit zu gefährden.
Official advisory ↗BSI · German · WID-SEC-2024-3188Oracle MySQL: Mehrere SchwachstellenEin entfernter, anonymer oder authentisierter Angreifer kann mehrere Schwachstellen in Oracle MySQL ausnutzen, um die Vertraulichkeit, Integrität und Verfügbarkeit zu gefährden.
Official advisory ↗BSI · German · WID-SEC-2024-1913Red Hat OpenShift Container Platform: Mehrere SchwachstellenEin entfernter anonymer oder lokaler Angreifer kann mehrere Schwachstellen in Red Hat OpenShift Container Platform ausnutzen, um seine Privilegien zu erhöhen, beliebigen Code auszuführen, einen Denial-of-Service-Zustand zu erzeugen, vertrauliche Informationen offenzulegen, Dateien und Daten zu manipulieren oder Sicherheitsmaßnahmen zu umgehen.
Official advisory ↗BSI · German · WID-SEC-2025-0225Dell PowerProtect Data Domain: Mehrere SchwachstellenEin Angreifer kann mehrere Schwachstellen in Dell PowerProtect Data Domain ausnutzen, um erhöhte Rechte zu erlangen, einen Denial-of-Service-Zustand herbeizuführen und einen nicht näher spezifizierten Angriff durchzuführen.
Official advisory ↗BSI · German · WID-SEC-2024-1467MIT Kerberos: Mehrere Schwachstellen ermöglichen nicht spezifizierten AngriffEin entfernter, anonymer Angreifer kann mehrere Schwachstellen in MIT Kerberos ausnutzen, um einen nicht näher spezifizierten Angriff durchzuführen.
Official advisory ↗Cyber Security Agency of Singapore · English · CSA-SB-20240703Security Bulletin 03 Jul 2024The Cyber Security Agency of Singapore included this CVE in its official Security Bulletin 03 Jul 2024, published on 3 July 2024. Open the linked bulletin for the product, severity and reference information published in that issue.
Official advisory ↗CERT-FR · French · CERTFR-2026-AVI-0218Multiples vulnérabilités dans les produits VMwarecord?id=CVE-2024-3220
Référence CVE CVE-2024-33599
https://www.cve.org/CVERecord?id=CVE-2024-33599
Référence CVE CVE-2024-33600
https://www.cve.org/CVERecord?id=CVE-2024-33600
Référence CVE CVE-2024-33601
https://www.cve.org/CVERecord?id=CVE-2024-33601
Référence CVE CVE-2024-33602
https://www.cve.org/CVERecord?id=CVE-2024-33602
Référence CVE CVE-2024-34397
https://www.cve.org/CVERecord?id=CVE-2024-34397
Référence CVE CVE-2024-34459
https://www.cve.org/CVERecord?id=CVE-2024-34459
Référence CVE CVE-2024-36331
https://www.cve.org/CVERecord?id=CVE-2024-36331
Référence CVE CVE-2024-3651
https://www.cve.org/CVERecord?id=CVE-2024-3651
Référence CVE CVE-2024-37371
https://www.cve.org/CVERecord?id=CVE-2024-37371
Référence CVE CVE-2024-37407
https://www.cve.org/CVERecord?id=CVE-2024-37407
Référence CVE CVE-2024-37891
https://www.cve.org/CVERecord?id=CVE-2024-37891
Référence CVE CVE-2024-38816
https://www.cve.org/CVERecord?id=CVE-2024-38816
Référence CVE CVE-2024-38819
https://www.cve.org/CVERecord?id=CVE-2024-38819
Référence CVE CVE-2024-38828
https://www.cve.org/CVERecord?id=CVE-2024-38828
Référence CVE CVE-2024-4032
https://www.cve.org/CVERecord?id=CVE-2024-4032
Référence CVE CVE-2024-45337
https://www.cve.org/CVERecord?id=CVE-2024-45337
Référence CVE CVE-2024-45490
https://www.cve.org/CVERecord?id=CV
Official advisory ↗CERT-FR · French · CERTFR-2025-AVI-1057Multiples vulnérabilités dans les produits VMwared?id=CVE-2024-36945
Référence CVE CVE-2024-36956
https://www.cve.org/CVERecord?id=CVE-2024-36956
Référence CVE CVE-2024-36961
https://www.cve.org/CVERecord?id=CVE-2024-36961
Référence CVE CVE-2024-36962
https://www.cve.org/CVERecord?id=CVE-2024-36962
Référence CVE CVE-2024-36967
https://www.cve.org/CVERecord?id=CVE-2024-36967
Référence CVE CVE-2024-36970
https://www.cve.org/CVERecord?id=CVE-2024-36970
Référence CVE CVE-2024-36975
https://www.cve.org/CVERecord?id=CVE-2024-36975
Référence CVE CVE-2024-36977
https://www.cve.org/CVERecord?id=CVE-2024-36977
Référence CVE CVE-2024-37370
https://www.cve.org/CVERecord?id=CVE-2024-37370
Référence CVE CVE-2024-37371
https://www.cve.org/CVERecord?id=CVE-2024-37371
Référence CVE CVE-2024-38561
https://www.cve.org/CVERecord?id=CVE-2024-38561
Référence CVE CVE-2024-38566
https://www.cve.org/CVERecord?id=CVE-2024-38566
Référence CVE CVE-2024-38604
https://www.cve.org/CVERecord?id=CVE-2024-38604
Référence CVE CVE-2024-38606
https://www.cve.org/CVERecord?id=CVE-2024-38606
Référence CVE CVE-2024-38629
https://www.cve.org/CVERecord?id=CVE-2024-38629
Référence CVE CVE-2024-38632
https://www.cve.org/CVERecord?id=CVE-2024-38632
Référence CVE CVE-2024-39291
https://www.cve.org/CVERecord?id=CVE-2024-39291
Référence CVE CVE-2024-39298
https://www.cve.org/CVERecord?id=
Official advisory ↗CERT-FR · French · CERTFR-2025-AVI-0969Multiples vulnérabilités dans les produits VMwareord?id=CVE-2024-34156
Référence CVE CVE-2024-34158
https://www.cve.org/CVERecord?id=CVE-2024-34158
Référence CVE CVE-2024-34397
https://www.cve.org/CVERecord?id=CVE-2024-34397
Référence CVE CVE-2024-34447
https://www.cve.org/CVERecord?id=CVE-2024-34447
Référence CVE CVE-2024-34459
https://www.cve.org/CVERecord?id=CVE-2024-34459
Référence CVE CVE-2024-34750
https://www.cve.org/CVERecord?id=CVE-2024-34750
Référence CVE CVE-2024-35176
https://www.cve.org/CVERecord?id=CVE-2024-35176
Référence CVE CVE-2024-3596
https://www.cve.org/CVERecord?id=CVE-2024-3596
Référence CVE CVE-2024-37370
https://www.cve.org/CVERecord?id=CVE-2024-37370
Référence CVE CVE-2024-37371
https://www.cve.org/CVERecord?id=CVE-2024-37371
Référence CVE CVE-2024-37407
https://www.cve.org/CVERecord?id=CVE-2024-37407
Référence CVE CVE-2024-38428
https://www.cve.org/CVERecord?id=CVE-2024-38428
Référence CVE CVE-2024-38807
https://www.cve.org/CVERecord?id=CVE-2024-38807
Référence CVE CVE-2024-38808
https://www.cve.org/CVERecord?id=CVE-2024-38808
Référence CVE CVE-2024-38809
https://www.cve.org/CVERecord?id=CVE-2024-38809
Référence CVE CVE-2024-38816
https://www.cve.org/CVERecord?id=CVE-2024-38816
Référence CVE CVE-2024-38819
https://www.cve.org/CVERecord?id=CVE-2024-38819
Référence CVE CVE-2024-38820
https://www.cve.org/CVERecord?id=
Official advisory ↗CERT-FR · French · CERTFR-2025-AVI-0864Multiples vulnérabilités dans VMware Tanzuord?id=CVE-2024-33599
Référence CVE CVE-2024-33600
https://www.cve.org/CVERecord?id=CVE-2024-33600
Référence CVE CVE-2024-33601
https://www.cve.org/CVERecord?id=CVE-2024-33601
Référence CVE CVE-2024-33602
https://www.cve.org/CVERecord?id=CVE-2024-33602
Référence CVE CVE-2024-34155
https://www.cve.org/CVERecord?id=CVE-2024-34155
Référence CVE CVE-2024-34156
https://www.cve.org/CVERecord?id=CVE-2024-34156
Référence CVE CVE-2024-34158
https://www.cve.org/CVERecord?id=CVE-2024-34158
Référence CVE CVE-2024-3596
https://www.cve.org/CVERecord?id=CVE-2024-3596
Référence CVE CVE-2024-37370
https://www.cve.org/CVERecord?id=CVE-2024-37370
Référence CVE CVE-2024-37371
https://www.cve.org/CVERecord?id=CVE-2024-37371
Référence CVE CVE-2024-4032
https://www.cve.org/CVERecord?id=CVE-2024-4032
Référence CVE CVE-2024-45336
https://www.cve.org/CVERecord?id=CVE-2024-45336
Référence CVE CVE-2024-45341
https://www.cve.org/CVERecord?id=CVE-2024-45341
Référence CVE CVE-2024-45490
https://www.cve.org/CVERecord?id=CVE-2024-45490
Référence CVE CVE-2024-45491
https://www.cve.org/CVERecord?id=CVE-2024-45491
Référence CVE CVE-2024-45492
https://www.cve.org/CVERecord?id=CVE-2024-45492
Référence CVE CVE-2024-4603
https://www.cve.org/CVERecord?id=CVE-2024-4603
Référence CVE CVE-2024-4741
https://www.cve.org/CVERecord?id=CVE-2
Official advisory ↗CERT-FR · French · CERTFR-2025-AVI-0641Multiples vulnérabilités dans les produits Splunkord?id=CVE-2023-38039
Référence CVE CVE-2023-38545
https://www.cve.org/CVERecord?id=CVE-2023-38545
Référence CVE CVE-2023-38546
https://www.cve.org/CVERecord?id=CVE-2023-38546
Référence CVE CVE-2023-5590
https://www.cve.org/CVERecord?id=CVE-2023-5590
Référence CVE CVE-2024-12254
https://www.cve.org/CVERecord?id=CVE-2024-12254
Référence CVE CVE-2024-26458
https://www.cve.org/CVERecord?id=CVE-2024-26458
Référence CVE CVE-2024-26461
https://www.cve.org/CVERecord?id=CVE-2024-26461
Référence CVE CVE-2024-31141
https://www.cve.org/CVERecord?id=CVE-2024-31141
Référence CVE CVE-2024-37370
https://www.cve.org/CVERecord?id=CVE-2024-37370
Référence CVE CVE-2024-37371
https://www.cve.org/CVERecord?id=CVE-2024-37371
Référence CVE CVE-2024-40635
https://www.cve.org/CVERecord?id=CVE-2024-40635
Référence CVE CVE-2024-42459
https://www.cve.org/CVERecord?id=CVE-2024-42459
Référence CVE CVE-2024-42460
https://www.cve.org/CVERecord?id=CVE-2024-42460
Référence CVE CVE-2024-42461
https://www.cve.org/CVERecord?id=CVE-2024-42461
Référence CVE CVE-2024-48948
https://www.cve.org/CVERecord?id=CVE-2024-48948
Référence CVE CVE-2024-49766
https://www.cve.org/CVERecord?id=CVE-2024-49766
Référence CVE CVE-2024-49767
https://www.cve.org/CVERecord?id=CVE-2024-49767
Référence CVE CVE-2024-56128
https://www.cve.org/CVERecord?id=
Official advisory ↗CERT-FR · French · CERTFR-2025-AVI-0492Multiples vulnérabilités dans les produits Siemens0G, 24xSFP, 8xSFP+) (6GK5334-5TS01-4AR3) versions antérieures à V3.2
SIMATIC S7-1500 versions supérieures ou égales àV3.1.5 pour les vulnérabilités CVE-2021-41617, CVE-2023-4527, CVE-2023-4806, CVE-2023-4911, CVE-2023-5363, CVE-2023-6246, CVE-2023-6779, CVE-2023-6780, CVE-2023-28531, CVE-2023-38545, CVE-2023-38546, CVE-2023-44487, CVE-2023-46218, CVE-2023-46219, CVE-2023-48795, CVE-2023-51384, CVE-2023-51385, CVE-2023-52927, CVE-2024-2961, CVE-2024-6119, CVE-2024-6387, CVE-2024-12133, CVE-2024-12243, CVE-2024-24855, CVE-2024-26596, CVE-2024-28085, CVE-2024-33599, CVE-2024-33600, CVE-2024-33601, CVE-2024-33602, CVE-2024-34397, CVE-2024-37370, CVE-2024-37371, CVE-2024-45490, CVE-2024-45491, CVE-2024-45492, CVE-2024-50246, CVE-2024-53166, CVE-2024-57977, CVE-2024-57996, CVE-2024-58005, CVE-2025-4373, CVE-2025-4598, CVE-2025-21701, CVE-2025-21702, CVE-2025-21712, CVE-2025-21724, CVE-2025-21728, CVE-2025-21745, CVE-2025-21756, CVE-2025-21758, CVE-2025-21765, CVE-2025-21766, CVE-2025-21767, CVE-2025-21795, CVE-2025-21796, CVE-2025-21848, CVE-2025-21862, CVE-2025-21864, CVE-2025-21865, CVE-2025-26465, CVE-2025-31115 et CVE-2025-46836.
Résumé
De multiples vulnérabilités ont été découvertes dans les produits Siemens. Certaines d'entre elles permettent à un attaquant de provoquer une exécution de code a
Official advisory ↗CERT-FR · French · CERTFR-2025-AVI-0054Multiples vulnérabilités dans Oracle MySQLmultiples vulnérabilités ont été découvertes dans Oracle MySQL. Elles permettent à un attaquant de provoquer un déni de service à distance, une atteinte à la confidentialité des données et une atteinte à l'intégrité des données.
Solutions
Se référer au bulletin de sécurité de l'éditeur pour l'obtention des correctifs (cf. section Documentation).
Documentation
Bulletin de sécurité Oracle MySQL cpujan2025 du 21 janvier 2025
https://www.oracle.com/security-alerts/cpujan2025.html
Référence CVE CVE-2024-11053
https://www.cve.org/CVERecord?id=CVE-2024-11053
Référence CVE CVE-2024-37370
https://www.cve.org/CVERecord?id=CVE-2024-37370
Référence CVE CVE-2024-37371
https://www.cve.org/CVERecord?id=CVE-2024-37371
Référence CVE CVE-2024-38819
https://www.cve.org/CVERecord?id=CVE-2024-38819
Référence CVE CVE-2024-38820
https://www.cve.org/CVERecord?id=CVE-2024-38820
Référence CVE CVE-2025-21490
https://www.cve.org/CVERecord?id=CVE-2025-21490
Référence CVE CVE-2025-21491
https://www.cve.org/CVERecord?id=CVE-2025-21491
Référence CVE CVE-2025-21492
https://www.cve.org/CVERecord?id=CVE-2025-21492
Référence CVE CVE-2025-21493
https://www.cve.org/CVERecord?id=CVE-2025-21493
Référence CVE CVE-2025-21494
https://www.cve.org/CVERecord?id=CVE-2025-21494
Référence CVE CVE-2025-21495
https://www.cve.org/CVERecord?id=
Official advisory ↗CERT-FR · French · CERTFR-2025-AVI-0003Multiples vulnérabilités dans les produits IBMecord?id=CVE-2024-20952
Référence CVE CVE-2024-2398
https://www.cve.org/CVERecord?id=CVE-2024-2398
Référence CVE CVE-2024-24786
https://www.cve.org/CVERecord?id=CVE-2024-24786
Référence CVE CVE-2024-27281
https://www.cve.org/CVERecord?id=CVE-2024-27281
Référence CVE CVE-2024-2961
https://www.cve.org/CVERecord?id=CVE-2024-2961
Référence CVE CVE-2024-29857
https://www.cve.org/CVERecord?id=CVE-2024-29857
Référence CVE CVE-2024-33599
https://www.cve.org/CVERecord?id=CVE-2024-33599
Référence CVE CVE-2024-33883
https://www.cve.org/CVERecord?id=CVE-2024-33883
Référence CVE CVE-2024-37370
https://www.cve.org/CVERecord?id=CVE-2024-37370
Référence CVE CVE-2024-37371
https://www.cve.org/CVERecord?id=CVE-2024-37371
Référence CVE CVE-2024-37890
https://www.cve.org/CVERecord?id=CVE-2024-37890
Référence CVE CVE-2024-39338
https://www.cve.org/CVERecord?id=CVE-2024-39338
Référence CVE CVE-2024-39689
https://www.cve.org/CVERecord?id=CVE-2024-39689
Référence CVE CVE-2024-4068
https://www.cve.org/CVERecord?id=CVE-2024-4068
Référence CVE CVE-2024-41110
https://www.cve.org/CVERecord?id=CVE-2024-41110
Référence CVE CVE-2024-41123
https://www.cve.org/CVERecord?id=CVE-2024-41123
Référence CVE CVE-2024-41946
https://www.cve.org/CVERecord?id=CVE-2024-41946
Référence CVE CVE-2024-45296
https://www.cve.org/CVERecord?id=CV
Official advisory ↗CERT-FR · French · CERTFR-2024-AVI-0958Multiples vulnérabilités dans les produits IBMd?id=CVE-2024-36941
Référence CVE CVE-2024-36945
https://www.cve.org/CVERecord?id=CVE-2024-36945
Référence CVE CVE-2024-36950
https://www.cve.org/CVERecord?id=CVE-2024-36950
Référence CVE CVE-2024-36954
https://www.cve.org/CVERecord?id=CVE-2024-36954
Référence CVE CVE-2024-36960
https://www.cve.org/CVERecord?id=CVE-2024-36960
Référence CVE CVE-2024-36971
https://www.cve.org/CVERecord?id=CVE-2024-36971
Référence CVE CVE-2024-36978
https://www.cve.org/CVERecord?id=CVE-2024-36978
Référence CVE CVE-2024-36979
https://www.cve.org/CVERecord?id=CVE-2024-36979
Référence CVE CVE-2024-37370
https://www.cve.org/CVERecord?id=CVE-2024-37370
Référence CVE CVE-2024-37371
https://www.cve.org/CVERecord?id=CVE-2024-37371
Référence CVE CVE-2024-37529
https://www.cve.org/CVERecord?id=CVE-2024-37529
Référence CVE CVE-2024-37891
https://www.cve.org/CVERecord?id=CVE-2024-37891
Référence CVE CVE-2024-38286
https://www.cve.org/CVERecord?id=CVE-2024-38286
Référence CVE CVE-2024-38428
https://www.cve.org/CVERecord?id=CVE-2024-38428
Référence CVE CVE-2024-38538
https://www.cve.org/CVERecord?id=CVE-2024-38538
Référence CVE CVE-2024-38555
https://www.cve.org/CVERecord?id=CVE-2024-38555
Référence CVE CVE-2024-38573
https://www.cve.org/CVERecord?id=CVE-2024-38573
Référence CVE CVE-2024-38575
https://www.cve.org/CVERecord?id=
Official advisory ↗CERT-FR · French · CERTFR-2024-AVI-0903Multiples vulnérabilités dans les produits IBMord?id=CVE-2024-35888
Référence CVE CVE-2024-35890
https://www.cve.org/CVERecord?id=CVE-2024-35890
Référence CVE CVE-2024-35958
https://www.cve.org/CVERecord?id=CVE-2024-35958
Référence CVE CVE-2024-35959
https://www.cve.org/CVERecord?id=CVE-2024-35959
Référence CVE CVE-2024-35960
https://www.cve.org/CVERecord?id=CVE-2024-35960
Référence CVE CVE-2024-36004
https://www.cve.org/CVERecord?id=CVE-2024-36004
Référence CVE CVE-2024-36007
https://www.cve.org/CVERecord?id=CVE-2024-36007
Référence CVE CVE-2024-3651
https://www.cve.org/CVERecord?id=CVE-2024-3651
Référence CVE CVE-2024-37370
https://www.cve.org/CVERecord?id=CVE-2024-37370
Référence CVE CVE-2024-37371
https://www.cve.org/CVERecord?id=CVE-2024-37371
Référence CVE CVE-2024-37891
https://www.cve.org/CVERecord?id=CVE-2024-37891
Référence CVE CVE-2024-5197
https://www.cve.org/CVERecord?id=CVE-2024-5197
Référence CVE CVE-2024-5564
https://www.cve.org/CVERecord?id=CVE-2024-5564
Référence CVE CVE-2024-7254
https://www.cve.org/CVERecord?id=CVE-2024-7254
Gestion détaillée du document
le 18 octobre 2024
Version initiale
Alertes
Avis
Bulletins d’actualités
Mentions légales
Conditions générales
À propos
Contact
cyber.gouv.fr
service-public.fr
legifrance.gouv.fr
info.gouv.fr
france.fr
info.gouv.fr/risques
Premier Ministre / Secrétariat Général de la Dé
Official advisory ↗CERT-FR · French · CERTFR-2024-AVI-0884Multiples vulnérabilités dans Oracle MySQLd?id=CVE-2024-21239
Référence CVE CVE-2024-21241
https://www.cve.org/CVERecord?id=CVE-2024-21241
Référence CVE CVE-2024-21243
https://www.cve.org/CVERecord?id=CVE-2024-21243
Référence CVE CVE-2024-21244
https://www.cve.org/CVERecord?id=CVE-2024-21244
Référence CVE CVE-2024-21247
https://www.cve.org/CVERecord?id=CVE-2024-21247
Référence CVE CVE-2024-21262
https://www.cve.org/CVERecord?id=CVE-2024-21262
Référence CVE CVE-2024-21272
https://www.cve.org/CVERecord?id=CVE-2024-21272
Référence CVE CVE-2024-28182
https://www.cve.org/CVERecord?id=CVE-2024-28182
Référence CVE CVE-2024-37370
https://www.cve.org/CVERecord?id=CVE-2024-37370
Référence CVE CVE-2024-37371
https://www.cve.org/CVERecord?id=CVE-2024-37371
Référence CVE CVE-2024-5535
https://www.cve.org/CVERecord?id=CVE-2024-5535
Référence CVE CVE-2024-6119
https://www.cve.org/CVERecord?id=CVE-2024-6119
Référence CVE CVE-2024-7264
https://www.cve.org/CVERecord?id=CVE-2024-7264
Gestion détaillée du document
le 16 octobre 2024
Version initiale
Alertes
Avis
Bulletins d’actualités
Mentions légales
Conditions générales
À propos
Contact
cyber.gouv.fr
service-public.fr
legifrance.gouv.fr
info.gouv.fr
france.fr
info.gouv.fr/risques
Premier Ministre / Secrétariat Général de la Défense et de la Sécurité Nationale / Agence nationale de la
sécurité des systè
Official advisory ↗JVN iPedia · Japanese · JVNDB-2024-006676MIT の kerberos 5 における脆弱性MIT の kerberos 5 には、不特定の脆弱性が存在します。
Official advisory ↗JVN iPedia · Japanese · JVNDB-2026-007525エンタープライズサーバEP8000ハードウェア マネジメント コンソール(HWMC)製品における脆弱性(CVE-2025-49796他)についてハードウェア マネジメント コンソール(HWMC)およびHRL3(*1)のHWMCコード(*2)に関するセキュリティ問題を修正しました。 対象製品、および詳細は、次項に記載の対象製品、およびCVEを参照してください。 *1HRL(HA Reset feature for LPAR):系切替機構を搭載した専用HWMC *2HWMCコード:HWMC装置を制御するための専用プログラム
Official advisory ↗NCSC-NL · Dutch · NCSC-2024-0420Kwetsbaarheden verholpen in Oracle MySQLEen kwaadwillende kan de kwetsbaarheden misbruiken om een Denial-of-Service te veroorzaken, of om toegang te krijgen tot gevoelige gegevens in de database en deze mogelijk te manipuleren.
Official advisory ↗NCSC-NL · Dutch · NCSC-2024-0339Kwetsbaarheden verholpen in Microsoft MarinerDe kwetsbaarheden betreffen oudere kwetsbaarheden in diverse subcomponenten van de distro, zoals Python, Emacs, Qemu, Django, Curl, wget etc. welke in de nieuwe versie zijn verholpen.
Official advisory ↗NCSC-NL · Dutch · NCSC-2025-0330Kwetsbaarheden verholpen in Oracle Communications productenMultiple vulnerabilities across Oracle products, including Communications and MySQL, as well as MIT Kerberos 5, allow for unauthorized access, denial of service, and other malicious activities, with CVSS scores reaching 9.1.
Official advisory ↗NCSC-NL · Dutch · NCSC-2025-0187Kwetsbaarheden verholpen in Siemens productenDe kwetsbaarheden stellen een kwaadwillende mogelijk in staat aanvallen uit te voeren die kunnen leiden tot de volgende categorieën schade:
- Denial-of-Service (DoS)
- Manipulatie van gegevens
- Omzeilen van een beveiligingsmaatregel
- Omzeilen van authenticatie
- (Remote) code execution (root/admin rechten)
- (Remote) code execution (Gebruikersrechten)
- Toegang tot systeemgegevens
- Toegang tot gevoelige gegevens
- Spoofing
De kwaadwillende heeft hiervoor toegang nodig tot de productieomgeving. Het is goed gebruik een dergelijke omgeving niet publiek toegankelijk te hebben.
Official advisory ↗NCSC-NL · Dutch · NCSC-2025-0027Kwetsbaarheden verholpen in Oracle Fusion MiddlewareDe kwetsbaarheden bevinden zich in verschillende Oracle producten, waaronder Oracle WebLogic Server versies 12.2.1.4.0 en 14.1.1.0.0, die het mogelijk maken voor ongeauthenticeerde kwaadwillenden om toegang te krijgen tot kritieke gegevens. Dit kan leiden tot ernstige gevolgen voor de vertrouwelijkheid, integriteit en beschikbaarheid van de systemen. De kwetsbaarheid in Oracle HTTP Server versie 12.2.1.4.0 stelt kwaadwillenden in staat om ongeautoriseerde toegang te verkrijgen, met een CVSS-score van 5.3, terwijl de kwetsbaarheid in WebLogic Server een CVSS-score van 9.8 heeft, wat wijst op een kritieke impact. Kwaadwillenden kunnen ook gebruik maken van kwetsbaarheden in Oracle Fusion Middleware en andere producten om Denial-of-Service (DoS) aanvallen uit te voeren.
Official advisory ↗NCSC-NL · Dutch · NCSC-2025-0024Kwetsbaarheden verholpen in Oracle MySQLDe kwetsbaarheden stellen een kwaadwillende in staat om aanvallen uit te voeren die kunnen leiden tot de volgende categorieën schade:
- Denial-of-Service (DoS)
- Manipulatie van gegevens
- Omzeilen van een beveiligingsmaatregel
- Toegang tot gevoelige gegevens
Official advisory ↗NCSC-NL · Dutch · NCSC-2025-0021Kwetsbaarheden verholpen in Oracle CommunicationsDe kwetsbaarheden stellen ongeauthenticeerde kwaadwillenden in staat om Denial of Service (DoS) aanvallen uit te voeren of om ongeautoriseerde toegang tot gevoelige gegevens te verkrijgen. Specifieke versies, zoals 24.2.0 en 24.3.0 van de Cloud Native Core Network Function, zijn bijzonder kwetsbaar. Kwaadwillenden kunnen deze kwetsbaarheden misbruiken door speciaal geprepareerde HTTP-verzoeken te sturen naar het kwetsbare systeem.
Official advisory ↗NCSC-NL · Dutch · NCSC-2024-0414Kwetsbaarheden verholpen in Oracle CommunicationsEen kwaadwillende kan de kwetsbaarheden misbruiken om aanvallen uit te voeren die kunnen leiden tot de volgende categorieën schade:
- Denial-of-Service (DoS)
- Manipuleren van gegevens
- Uitvoer van willekeurige code (Gebruikersrechten)
- Uitvoer van willekeurige code (Administratorrechten)
- Toegang tot gevoelige gegevens
Official advisory ↗NCSC-NL · Dutch · NCSC-2024-0411Kwetsbaarheden verholpen in Oracle Database productenEen kwaadwillende kan de kwetsbaarheden misbruiken om aanvallen uit te voeren die kunnen leiden tot de volgende categorieën schade:
- Denial-of-Service (DoS)
- Manipuleren van data
- Toegang tot gevoelige gegevens
Official advisory ↗