Home
Trends
Vulnerabilities
News
Researchers
Why dbugs?

Max Rozendaal

Researcher fromSecura B.V.
#16080of 53,633
16.8Total CVSS
Vulnerabilities · 2
High
2
PT-2024-19295
9.0
2024-05-08
Vmware · Vmware Avi Load Balancer · CVE-2024-22264
**Name of the Vulnerable Software and Affected Versions** VMware Avi Load Balancer (affected versions not specified) **Description** The issue allows a malicious actor with admin privileges on VMware Avi Load Balancer to create, modify, execute, and delete files as a root user on the host system. This is a privilege escalation issue. **Recommendations** At the moment, there is no information about a newer version that contains a fix for this vulnerability.
PT-2022-27473
7.8
2022-12-15
Exact · Exact Synergy Enterprise · CVE-2022-45338
**Name of the Vulnerable Software and Affected Versions** Exact Synergy Enterprise 267 versions prior to 267SP13 Exact Synergy Enterprise 500 versions prior to 500SP6 **Description** The issue concerns an arbitrary file upload vulnerability in the profile picture upload function, allowing attackers to execute arbitrary code via a crafted SVG file. **Recommendations** For Exact Synergy Enterprise 267 versions prior to 267SP13, update to version 267SP13 or later. For Exact Synergy Enterprise 500 versions prior to 500SP6, update to version 500SP6 or later.