Vulnerability Summary for the Week of June 24, 2024

High Vulnerabilities

[…]
Content was cut in order to protect the source.Please visit the source for the rest of the article.

This article has been indexed from Bulletins

Read the original article:

Primary
Vendor — Product
Description Published CVSS Score Source & Patch Info
access_management_specialist_project — access_management_specialist
 
An issue in Shenzhen Weitillage Industrial Co., Ltd the access management specialist V6.62.51215 allows a remote attacker to obtain sensitive information. 2024-06-24 7.5 CVE-2024-37677
cve@mitre.org
aimeos–ai-client-html
 
ai-client-html is an Aimeos e-commerce HTML client component. Debug information revealed sensitive information from environment variables in error log. This issue has been patched in versions 2024.04.7, 2023.10.15, 2022.10.13 and 2021.10.22. 2024-06-25 8.8 CVE-2024-38516
security-advisories@github.com
security-advisories@github.com
amazon — freertos-plus-tcp