CVE-2023-49296
- EPSS 0.45%
- Veröffentlicht 13.12.2023 20:15:49
- Zuletzt bearbeitet 21.11.2024 08:33:12
The Arduino Create Agent allows users to use the Arduino Create applications to upload code to any USB connected Arduino board directly from the browser. A vulnerability in versions prior to 1.3.6 affects the endpoint `/certificate.crt` and the way t...
CVE-2023-43800
- EPSS 0.03%
- Veröffentlicht 18.10.2023 22:15:09
- Zuletzt bearbeitet 21.11.2024 08:24:48
Arduino Create Agent is a package to help manage Arduino development. The vulnerability affects the endpoint `/v2/pkgs/tools/installed`. A user who has the ability to perform HTTP requests to the localhost interface, or is able to bypass the CORS con...
CVE-2023-43801
- EPSS 0.03%
- Veröffentlicht 18.10.2023 22:15:09
- Zuletzt bearbeitet 21.11.2024 08:24:48
Arduino Create Agent is a package to help manage Arduino development. This vulnerability affects the endpoint `/v2/pkgs/tools/installed` and the way it handles plugin names supplied as user input. A user who has the ability to perform HTTP requests t...
CVE-2023-43802
- EPSS 0.08%
- Veröffentlicht 18.10.2023 21:15:09
- Zuletzt bearbeitet 21.11.2024 08:24:48
Arduino Create Agent is a package to help manage Arduino development. This vulnerability affects the endpoint `/upload` which handles request with the `filename` parameter. A user who has the ability to perform HTTP requests to the localhost interfac...
CVE-2023-43803
- EPSS 0.02%
- Veröffentlicht 18.10.2023 21:15:09
- Zuletzt bearbeitet 21.11.2024 08:24:49
Arduino Create Agent is a package to help manage Arduino development. This vulnerability affects the endpoint `/v2/pkgs/tools/installed` and the way it handles plugin names supplied as user input. A user who has the ability to perform HTTP requests t...