CVE-2024-1346
- EPSS 0.32%
- Veröffentlicht 19.02.2024 12:15:45
- Zuletzt bearbeitet 24.03.2025 17:11:55
Weak MySQL database root password in LaborOfficeFree affects version 19.10. This vulnerability allows an attacker to calculate the root password of the MySQL database used by LaborOfficeFree using two constants.
CVE-2024-1343
- EPSS 0.03%
- Veröffentlicht 19.02.2024 12:15:44
- Zuletzt bearbeitet 24.03.2025 17:14:31
A weak permission was found in the backup directory in LaborOfficeFree affecting version 19.10. This vulnerability allows any authenticated user to read backup files in the directory '%programfiles(x86)% LaborOfficeFree BackUp'.
CVE-2024-1344
- EPSS 0.06%
- Veröffentlicht 19.02.2024 12:15:44
- Zuletzt bearbeitet 24.03.2025 17:14:06
Encrypted database credentials in LaborOfficeFree affecting version 19.10. This vulnerability allows an attacker to read and extract the username and password from the database of 'LOF_service.exe' and 'LaborOfficeFree.exe' located in the '%programfi...
CVE-2024-1345
- EPSS 0.03%
- Veröffentlicht 19.02.2024 12:15:44
- Zuletzt bearbeitet 24.03.2025 17:12:18
Weak MySQL database root password in LaborOfficeFree affects version 19.10. This vulnerability allows an attacker to perform a brute force attack and easily discover the root password.