{
    "document": {
        "category": "csaf_security_advisory",
        "csaf_version": "2.0",
        "distribution": {
            "tlp": {
                "label": "WHITE"
            }
        },
        "lang": "nl",
        "notes": [
            {
                "category": "legal_disclaimer",
                "text": "The Netherlands Cyber Security Center (henceforth: NCSC-NL) maintains this page to enhance access to its information and security advisories. The use of this security advisory is subject to the following terms and conditions:\n\n    NCSC-NL makes every reasonable effort to ensure that the content of this page is kept up to date, and that it is accurate and complete. Nevertheless, NCSC-NL cannot entirely rule out the possibility of errors, and therefore cannot give any warranty in respect of its completeness, accuracy or continuous keeping up-to-date. The information contained in this security advisory is intended solely for the purpose of providing general information to professional users. No rights can be derived from the information provided therein.\n\n    NCSC-NL and the Kingdom of the Netherlands assume no legal liability or responsibility for any damage resulting from either the use or inability of use of this security advisory. This includes damage resulting from the inaccuracy of incompleteness of the information contained in the advisory.\n    This security advisory is subject to Dutch law. All disputes related to or arising from the use of this advisory will be submitted to the competent court in The Hague. This choice of means also applies to the court in summary proceedings."
            },
            {
                "category": "description",
                "text": "Apple heeft kwetsbaarheden verholpen in iOS en iPadOS.",
                "title": "Feiten"
            },
            {
                "category": "description",
                "text": "Een kwaadwillende kan de kwetsbaarheden misbruiken om aanvallen uit te voeren die kunnen leiden tot de volgende categorieën schade:\n\n- Cross-Site-Scripting (XSS)\n- Denial-of-Service (DoS)\n- Manipulatie van gegevens\n- Omzeilen van beveiligingsmaatregel\n- Toegang tot gevoelige gegevens\n- Toegang tot systeemgegevens\n\nVoor succesvol misbruik moet de kwaadwillende fysieke toegang hebben tot het kwetsbare apparaat, het slachtoffer misleiden een malafide app te installeren en draaien of een malafide link te volgen.\n",
                "title": "Interpretaties"
            },
            {
                "category": "description",
                "text": "Apple heeft updates uitgebracht om de kwetsbaarheden te verhelpen in iOS en iPadOS 17.7 en 18. Zie bijgevoegde referenties voor meer informatie.",
                "title": "Oplossingen"
            },
            {
                "category": "general",
                "text": "medium",
                "title": "Kans"
            },
            {
                "category": "general",
                "text": "high",
                "title": "Schade"
            },
            {
                "category": "general",
                "text": "Permissive Cross-domain Policy with Untrusted Domains",
                "title": "CWE-942"
            },
            {
                "category": "general",
                "text": "Integer Overflow or Wraparound",
                "title": "CWE-190"
            },
            {
                "category": "general",
                "text": "Improper Authorization",
                "title": "CWE-285"
            },
            {
                "category": "general",
                "text": "Improper Resource Shutdown or Release",
                "title": "CWE-404"
            },
            {
                "category": "general",
                "text": "CWE-275",
                "title": "CWE-275"
            },
            {
                "category": "general",
                "text": "Improper Access Control",
                "title": "CWE-284"
            },
            {
                "category": "general",
                "text": "Exposure of Sensitive Information to an Unauthorized Actor",
                "title": "CWE-200"
            },
            {
                "category": "general",
                "text": "Heap-based Buffer Overflow",
                "title": "CWE-122"
            },
            {
                "category": "general",
                "text": "Improper Authentication",
                "title": "CWE-287"
            },
            {
                "category": "general",
                "text": "Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')",
                "title": "CWE-79"
            }
        ],
        "publisher": {
            "category": "coordinator",
            "contact_details": "cert@ncsc.nl",
            "name": "Nationaal Cyber Security Centrum",
            "namespace": "https://www.ncsc.nl/"
        },
        "references": [
            {
                "category": "external",
                "summary": "Reference - certbundde; cveprojectv5; hkcert; nvd",
                "url": "https://support.apple.com/en-us/121250"
            },
            {
                "category": "external",
                "summary": "Reference - certbundde; cveprojectv5; hkcert; nvd",
                "url": "https://support.apple.com/en-us/121246"
            }
        ],
        "title": "Kwetsbaarheden verholpen in Apple iOS en iPadOS",
        "tracking": {
            "current_release_date": "2024-09-26T08:52:21.805564Z",
            "id": "NCSC-2024-0382",
            "initial_release_date": "2024-09-26T08:52:21.805564Z",
            "revision_history": [
                {
                    "date": "2024-09-26T08:52:21.805564Z",
                    "number": "0",
                    "summary": "Initiele versie"
                }
            ],
            "status": "final",
            "version": "1.0.0"
        }
    },
    "product_tree": {
        "branches": [
            {
                "branches": [
                    {
                        "category": "product_name",
                        "name": "ios__17.7",
                        "product": {
                            "name": "ios__17.7",
                            "product_id": "CSAFPID-1644315",
                            "product_identification_helper": {
                                "cpe": "cpe:2.3:a:apple:ios__17.7:*:*:*:*:*:*:*:*"
                            }
                        }
                    },
                    {
                        "category": "product_name",
                        "name": "ios__18",
                        "product": {
                            "name": "ios__18",
                            "product_id": "CSAFPID-1644312",
                            "product_identification_helper": {
                                "cpe": "cpe:2.3:a:apple:ios__18:*:*:*:*:*:*:*:*"
                            }
                        }
                    },
                    {
                        "category": "product_name",
                        "name": "ipados__17.7",
                        "product": {
                            "name": "ipados__17.7",
                            "product_id": "CSAFPID-1644313",
                            "product_identification_helper": {
                                "cpe": "cpe:2.3:a:apple:ipados__17.7:*:*:*:*:*:*:*:*"
                            }
                        }
                    },
                    {
                        "category": "product_name",
                        "name": "ipados__18",
                        "product": {
                            "name": "ipados__18",
                            "product_id": "CSAFPID-1644314",
                            "product_identification_helper": {
                                "cpe": "cpe:2.3:a:apple:ipados__18:*:*:*:*:*:*:*:*"
                            }
                        }
                    }
                ],
                "category": "vendor",
                "name": "apple"
            }
        ]
    },
    "vulnerabilities": [
        {
            "cve": "CVE-2023-5841",
            "cwe": {
                "id": "CWE-122",
                "name": "Heap-based Buffer Overflow"
            },
            "notes": [
                {
                    "category": "other",
                    "text": "Heap-based Buffer Overflow",
                    "title": "CWE-122"
                }
            ],
            "product_status": {
                "known_affected": [
                    "CSAFPID-1644312",
                    "CSAFPID-1644313",
                    "CSAFPID-1644314",
                    "CSAFPID-1644315"
                ]
            },
            "references": [
                {
                    "category": "self",
                    "summary": "CVE-2023-5841",
                    "url": "https://api.ncsc.nl/velma/v1/vulnerabilities/2023/CVE-2023-5841.json"
                }
            ],
            "scores": [
                {
                    "cvss_v3": {
                        "version": "3.1",
                        "vectorString": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:N",
                        "baseScore": 9.1,
                        "baseSeverity": "CRITICAL"
                    },
                    "products": [
                        "CSAFPID-1644312",
                        "CSAFPID-1644313",
                        "CSAFPID-1644314",
                        "CSAFPID-1644315"
                    ]
                }
            ],
            "title": "CVE-2023-5841"
        },
        {
            "cve": "CVE-2024-27869",
            "product_status": {
                "known_affected": [
                    "CSAFPID-1644312",
                    "CSAFPID-1644313",
                    "CSAFPID-1644314",
                    "CSAFPID-1644315"
                ]
            },
            "references": [
                {
                    "category": "self",
                    "summary": "CVE-2024-27869",
                    "url": "https://api.ncsc.nl/velma/v1/vulnerabilities/2024/CVE-2024-27869.json"
                }
            ],
            "scores": [
                {
                    "cvss_v3": {
                        "version": "3.1",
                        "vectorString": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:H/A:N",
                        "baseScore": 7.5,
                        "baseSeverity": "HIGH"
                    },
                    "products": [
                        "CSAFPID-1644312",
                        "CSAFPID-1644313",
                        "CSAFPID-1644314",
                        "CSAFPID-1644315"
                    ]
                }
            ],
            "title": "CVE-2024-27869"
        },
        {
            "cve": "CVE-2024-27874",
            "product_status": {
                "known_affected": [
                    "CSAFPID-1644312",
                    "CSAFPID-1644313",
                    "CSAFPID-1644314",
                    "CSAFPID-1644315"
                ]
            },
            "references": [
                {
                    "category": "self",
                    "summary": "CVE-2024-27874",
                    "url": "https://api.ncsc.nl/velma/v1/vulnerabilities/2024/CVE-2024-27874.json"
                }
            ],
            "scores": [
                {
                    "cvss_v3": {
                        "version": "3.1",
                        "vectorString": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N",
                        "baseScore": 7.5,
                        "baseSeverity": "HIGH"
                    },
                    "products": [
                        "CSAFPID-1644312",
                        "CSAFPID-1644313",
                        "CSAFPID-1644314",
                        "CSAFPID-1644315"
                    ]
                }
            ],
            "title": "CVE-2024-27874"
        },
        {
            "cve": "CVE-2024-27876",
            "product_status": {
                "known_affected": [
                    "CSAFPID-1644312",
                    "CSAFPID-1644313",
                    "CSAFPID-1644314",
                    "CSAFPID-1644315"
                ]
            },
            "references": [
                {
                    "category": "self",
                    "summary": "CVE-2024-27876",
                    "url": "https://api.ncsc.nl/velma/v1/vulnerabilities/2024/CVE-2024-27876.json"
                }
            ],
            "scores": [
                {
                    "cvss_v3": {
                        "version": "3.1",
                        "vectorString": "CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:N",
                        "baseScore": 8.1,
                        "baseSeverity": "HIGH"
                    },
                    "products": [
                        "CSAFPID-1644312",
                        "CSAFPID-1644313",
                        "CSAFPID-1644314",
                        "CSAFPID-1644315"
                    ]
                }
            ],
            "title": "CVE-2024-27876"
        },
        {
            "cve": "CVE-2024-27879",
            "product_status": {
                "known_affected": [
                    "CSAFPID-1644312",
                    "CSAFPID-1644313",
                    "CSAFPID-1644314",
                    "CSAFPID-1644315"
                ]
            },
            "references": [
                {
                    "category": "self",
                    "summary": "CVE-2024-27879",
                    "url": "https://api.ncsc.nl/velma/v1/vulnerabilities/2024/CVE-2024-27879.json"
                }
            ],
            "scores": [
                {
                    "cvss_v3": {
                        "version": "3.1",
                        "vectorString": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H",
                        "baseScore": 7.5,
                        "baseSeverity": "HIGH"
                    },
                    "products": [
                        "CSAFPID-1644312",
                        "CSAFPID-1644313",
                        "CSAFPID-1644314",
                        "CSAFPID-1644315"
                    ]
                }
            ],
            "title": "CVE-2024-27879"
        },
        {
            "cve": "CVE-2024-27880",
            "product_status": {
                "known_affected": [
                    "CSAFPID-1644312",
                    "CSAFPID-1644313",
                    "CSAFPID-1644314",
                    "CSAFPID-1644315"
                ]
            },
            "references": [
                {
                    "category": "self",
                    "summary": "CVE-2024-27880",
                    "url": "https://api.ncsc.nl/velma/v1/vulnerabilities/2024/CVE-2024-27880.json"
                }
            ],
            "scores": [
                {
                    "cvss_v3": {
                        "version": "3.1",
                        "vectorString": "CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:N/I:N/A:H",
                        "baseScore": 5.5,
                        "baseSeverity": "MEDIUM"
                    },
                    "products": [
                        "CSAFPID-1644312",
                        "CSAFPID-1644313",
                        "CSAFPID-1644314",
                        "CSAFPID-1644315"
                    ]
                }
            ],
            "title": "CVE-2024-27880"
        },
        {
            "cve": "CVE-2024-40791",
            "product_status": {
                "known_affected": [
                    "CSAFPID-1644312",
                    "CSAFPID-1644313",
                    "CSAFPID-1644314",
                    "CSAFPID-1644315"
                ]
            },
            "references": [
                {
                    "category": "self",
                    "summary": "CVE-2024-40791",
                    "url": "https://api.ncsc.nl/velma/v1/vulnerabilities/2024/CVE-2024-40791.json"
                }
            ],
            "scores": [
                {
                    "cvss_v3": {
                        "version": "3.1",
                        "vectorString": "CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:L/I:N/A:N",
                        "baseScore": 3.3,
                        "baseSeverity": "LOW"
                    },
                    "products": [
                        "CSAFPID-1644312",
                        "CSAFPID-1644313",
                        "CSAFPID-1644314",
                        "CSAFPID-1644315"
                    ]
                }
            ],
            "title": "CVE-2024-40791"
        },
        {
            "cve": "CVE-2024-40826",
            "product_status": {
                "known_affected": [
                    "CSAFPID-1644312",
                    "CSAFPID-1644313",
                    "CSAFPID-1644314",
                    "CSAFPID-1644315"
                ]
            },
            "references": [
                {
                    "category": "self",
                    "summary": "CVE-2024-40826",
                    "url": "https://api.ncsc.nl/velma/v1/vulnerabilities/2024/CVE-2024-40826.json"
                }
            ],
            "scores": [
                {
                    "cvss_v3": {
                        "version": "3.1",
                        "vectorString": "CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:L/A:N",
                        "baseScore": 6.1,
                        "baseSeverity": "MEDIUM"
                    },
                    "products": [
                        "CSAFPID-1644312",
                        "CSAFPID-1644313",
                        "CSAFPID-1644314",
                        "CSAFPID-1644315"
                    ]
                }
            ],
            "title": "CVE-2024-40826"
        },
        {
            "cve": "CVE-2024-40830",
            "product_status": {
                "known_affected": [
                    "CSAFPID-1644312",
                    "CSAFPID-1644313",
                    "CSAFPID-1644314",
                    "CSAFPID-1644315"
                ]
            },
            "references": [
                {
                    "category": "self",
                    "summary": "CVE-2024-40830",
                    "url": "https://api.ncsc.nl/velma/v1/vulnerabilities/2024/CVE-2024-40830.json"
                }
            ],
            "scores": [
                {
                    "cvss_v3": {
                        "version": "3.1",
                        "vectorString": "CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:L/I:N/A:N",
                        "baseScore": 3.3,
                        "baseSeverity": "LOW"
                    },
                    "products": [
                        "CSAFPID-1644312",
                        "CSAFPID-1644313",
                        "CSAFPID-1644314",
                        "CSAFPID-1644315"
                    ]
                }
            ],
            "title": "CVE-2024-40830"
        },
        {
            "cve": "CVE-2024-40840",
            "product_status": {
                "known_affected": [
                    "CSAFPID-1644312",
                    "CSAFPID-1644313",
                    "CSAFPID-1644314",
                    "CSAFPID-1644315"
                ]
            },
            "references": [
                {
                    "category": "self",
                    "summary": "CVE-2024-40840",
                    "url": "https://api.ncsc.nl/velma/v1/vulnerabilities/2024/CVE-2024-40840.json"
                }
            ],
            "scores": [
                {
                    "cvss_v3": {
                        "version": "3.1",
                        "vectorString": "CVSS:3.1/AV:P/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N",
                        "baseScore": 4.6,
                        "baseSeverity": "MEDIUM"
                    },
                    "products": [
                        "CSAFPID-1644312",
                        "CSAFPID-1644313",
                        "CSAFPID-1644314",
                        "CSAFPID-1644315"
                    ]
                }
            ],
            "title": "CVE-2024-40840"
        },
        {
            "cve": "CVE-2024-40844",
            "product_status": {
                "known_affected": [
                    "CSAFPID-1644312",
                    "CSAFPID-1644313",
                    "CSAFPID-1644314",
                    "CSAFPID-1644315"
                ]
            },
            "references": [
                {
                    "category": "self",
                    "summary": "CVE-2024-40844",
                    "url": "https://api.ncsc.nl/velma/v1/vulnerabilities/2024/CVE-2024-40844.json"
                }
            ],
            "scores": [
                {
                    "cvss_v3": {
                        "version": "3.1",
                        "vectorString": "CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:N/A:N",
                        "baseScore": 5.5,
                        "baseSeverity": "MEDIUM"
                    },
                    "products": [
                        "CSAFPID-1644312",
                        "CSAFPID-1644313",
                        "CSAFPID-1644314",
                        "CSAFPID-1644315"
                    ]
                }
            ],
            "title": "CVE-2024-40844"
        },
        {
            "cve": "CVE-2024-40850",
            "product_status": {
                "known_affected": [
                    "CSAFPID-1644312",
                    "CSAFPID-1644313",
                    "CSAFPID-1644314",
                    "CSAFPID-1644315"
                ]
            },
            "references": [
                {
                    "category": "self",
                    "summary": "CVE-2024-40850",
                    "url": "https://api.ncsc.nl/velma/v1/vulnerabilities/2024/CVE-2024-40850.json"
                }
            ],
            "scores": [
                {
                    "cvss_v3": {
                        "version": "3.1",
                        "vectorString": "CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:N/A:N",
                        "baseScore": 5.5,
                        "baseSeverity": "MEDIUM"
                    },
                    "products": [
                        "CSAFPID-1644312",
                        "CSAFPID-1644313",
                        "CSAFPID-1644314",
                        "CSAFPID-1644315"
                    ]
                }
            ],
            "title": "CVE-2024-40850"
        },
        {
            "cve": "CVE-2024-40852",
            "product_status": {
                "known_affected": [
                    "CSAFPID-1644312",
                    "CSAFPID-1644313",
                    "CSAFPID-1644314",
                    "CSAFPID-1644315"
                ]
            },
            "references": [
                {
                    "category": "self",
                    "summary": "CVE-2024-40852",
                    "url": "https://api.ncsc.nl/velma/v1/vulnerabilities/2024/CVE-2024-40852.json"
                }
            ],
            "scores": [
                {
                    "cvss_v3": {
                        "version": "3.1",
                        "vectorString": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N",
                        "baseScore": 7.5,
                        "baseSeverity": "HIGH"
                    },
                    "products": [
                        "CSAFPID-1644312",
                        "CSAFPID-1644313",
                        "CSAFPID-1644314",
                        "CSAFPID-1644315"
                    ]
                }
            ],
            "title": "CVE-2024-40852"
        },
        {
            "cve": "CVE-2024-40856",
            "product_status": {
                "known_affected": [
                    "CSAFPID-1644312",
                    "CSAFPID-1644313",
                    "CSAFPID-1644314",
                    "CSAFPID-1644315"
                ]
            },
            "references": [
                {
                    "category": "self",
                    "summary": "CVE-2024-40856",
                    "url": "https://api.ncsc.nl/velma/v1/vulnerabilities/2024/CVE-2024-40856.json"
                }
            ],
            "scores": [
                {
                    "cvss_v3": {
                        "version": "3.1",
                        "vectorString": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H",
                        "baseScore": 7.5,
                        "baseSeverity": "HIGH"
                    },
                    "products": [
                        "CSAFPID-1644312",
                        "CSAFPID-1644313",
                        "CSAFPID-1644314",
                        "CSAFPID-1644315"
                    ]
                }
            ],
            "title": "CVE-2024-40856"
        },
        {
            "cve": "CVE-2024-40857",
            "cwe": {
                "id": "CWE-79",
                "name": "Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')"
            },
            "notes": [
                {
                    "category": "other",
                    "text": "Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')",
                    "title": "CWE-79"
                }
            ],
            "product_status": {
                "known_affected": [
                    "CSAFPID-1644312",
                    "CSAFPID-1644313",
                    "CSAFPID-1644314",
                    "CSAFPID-1644315"
                ]
            },
            "references": [
                {
                    "category": "self",
                    "summary": "CVE-2024-40857",
                    "url": "https://api.ncsc.nl/velma/v1/vulnerabilities/2024/CVE-2024-40857.json"
                }
            ],
            "scores": [
                {
                    "cvss_v3": {
                        "version": "3.1",
                        "vectorString": "CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:C/C:L/I:L/A:L",
                        "baseScore": 7.1,
                        "baseSeverity": "HIGH"
                    },
                    "products": [
                        "CSAFPID-1644312",
                        "CSAFPID-1644313",
                        "CSAFPID-1644314",
                        "CSAFPID-1644315"
                    ]
                }
            ],
            "title": "CVE-2024-40857"
        },
        {
            "cve": "CVE-2024-40863",
            "product_status": {
                "known_affected": [
                    "CSAFPID-1644312",
                    "CSAFPID-1644313",
                    "CSAFPID-1644314",
                    "CSAFPID-1644315"
                ]
            },
            "references": [
                {
                    "category": "self",
                    "summary": "CVE-2024-40863",
                    "url": "https://api.ncsc.nl/velma/v1/vulnerabilities/2024/CVE-2024-40863.json"
                }
            ],
            "scores": [
                {
                    "cvss_v3": {
                        "version": "3.1",
                        "vectorString": "CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:N/A:N",
                        "baseScore": 5.5,
                        "baseSeverity": "MEDIUM"
                    },
                    "products": [
                        "CSAFPID-1644312",
                        "CSAFPID-1644313",
                        "CSAFPID-1644314",
                        "CSAFPID-1644315"
                    ]
                }
            ],
            "title": "CVE-2024-40863"
        },
        {
            "cve": "CVE-2024-44124",
            "product_status": {
                "known_affected": [
                    "CSAFPID-1644312",
                    "CSAFPID-1644313",
                    "CSAFPID-1644314",
                    "CSAFPID-1644315"
                ]
            },
            "references": [
                {
                    "category": "self",
                    "summary": "CVE-2024-44124",
                    "url": "https://api.ncsc.nl/velma/v1/vulnerabilities/2024/CVE-2024-44124.json"
                }
            ],
            "scores": [
                {
                    "cvss_v3": {
                        "version": "3.1",
                        "vectorString": "CVSS:3.1/AV:A/AC:L/PR:N/UI:N/S:U/C:N/I:H/A:N",
                        "baseScore": 6.5,
                        "baseSeverity": "MEDIUM"
                    },
                    "products": [
                        "CSAFPID-1644312",
                        "CSAFPID-1644313",
                        "CSAFPID-1644314",
                        "CSAFPID-1644315"
                    ]
                }
            ],
            "title": "CVE-2024-44124"
        },
        {
            "cve": "CVE-2024-44127",
            "product_status": {
                "known_affected": [
                    "CSAFPID-1644312",
                    "CSAFPID-1644313",
                    "CSAFPID-1644314",
                    "CSAFPID-1644315"
                ]
            },
            "references": [
                {
                    "category": "self",
                    "summary": "CVE-2024-44127",
                    "url": "https://api.ncsc.nl/velma/v1/vulnerabilities/2024/CVE-2024-44127.json"
                }
            ],
            "scores": [
                {
                    "cvss_v3": {
                        "version": "3.1",
                        "vectorString": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:L/I:N/A:N",
                        "baseScore": 5.3,
                        "baseSeverity": "MEDIUM"
                    },
                    "products": [
                        "CSAFPID-1644312",
                        "CSAFPID-1644313",
                        "CSAFPID-1644314",
                        "CSAFPID-1644315"
                    ]
                }
            ],
            "title": "CVE-2024-44127"
        },
        {
            "cve": "CVE-2024-44131",
            "product_status": {
                "known_affected": [
                    "CSAFPID-1644312",
                    "CSAFPID-1644313",
                    "CSAFPID-1644314",
                    "CSAFPID-1644315"
                ]
            },
            "references": [
                {
                    "category": "self",
                    "summary": "CVE-2024-44131",
                    "url": "https://api.ncsc.nl/velma/v1/vulnerabilities/2024/CVE-2024-44131.json"
                }
            ],
            "scores": [
                {
                    "cvss_v3": {
                        "version": "3.1",
                        "vectorString": "CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:N/A:N",
                        "baseScore": 5.5,
                        "baseSeverity": "MEDIUM"
                    },
                    "products": [
                        "CSAFPID-1644312",
                        "CSAFPID-1644313",
                        "CSAFPID-1644314",
                        "CSAFPID-1644315"
                    ]
                }
            ],
            "title": "CVE-2024-44131"
        },
        {
            "cve": "CVE-2024-44139",
            "cwe": {
                "id": "CWE-200",
                "name": "Exposure of Sensitive Information to an Unauthorized Actor"
            },
            "notes": [
                {
                    "category": "other",
                    "text": "Exposure of Sensitive Information to an Unauthorized Actor",
                    "title": "CWE-200"
                }
            ],
            "product_status": {
                "known_affected": [
                    "CSAFPID-1644312",
                    "CSAFPID-1644313",
                    "CSAFPID-1644314",
                    "CSAFPID-1644315"
                ]
            },
            "references": [
                {
                    "category": "self",
                    "summary": "CVE-2024-44139",
                    "url": "https://api.ncsc.nl/velma/v1/vulnerabilities/2024/CVE-2024-44139.json"
                }
            ],
            "title": "CVE-2024-44139"
        },
        {
            "cve": "CVE-2024-44147",
            "cwe": {
                "id": "CWE-285",
                "name": "Improper Authorization"
            },
            "notes": [
                {
                    "category": "other",
                    "text": "Improper Authorization",
                    "title": "CWE-285"
                }
            ],
            "product_status": {
                "known_affected": [
                    "CSAFPID-1644312",
                    "CSAFPID-1644313",
                    "CSAFPID-1644314",
                    "CSAFPID-1644315"
                ]
            },
            "references": [
                {
                    "category": "self",
                    "summary": "CVE-2024-44147",
                    "url": "https://api.ncsc.nl/velma/v1/vulnerabilities/2024/CVE-2024-44147.json"
                }
            ],
            "scores": [
                {
                    "cvss_v3": {
                        "version": "3.1",
                        "vectorString": "CVSS:3.1/AV:L/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:N",
                        "baseScore": 7.7,
                        "baseSeverity": "HIGH"
                    },
                    "products": [
                        "CSAFPID-1644312",
                        "CSAFPID-1644313",
                        "CSAFPID-1644314",
                        "CSAFPID-1644315"
                    ]
                }
            ],
            "title": "CVE-2024-44147"
        },
        {
            "cve": "CVE-2024-44158",
            "product_status": {
                "known_affected": [
                    "CSAFPID-1644312",
                    "CSAFPID-1644313",
                    "CSAFPID-1644314",
                    "CSAFPID-1644315"
                ]
            },
            "references": [
                {
                    "category": "self",
                    "summary": "CVE-2024-44158",
                    "url": "https://api.ncsc.nl/velma/v1/vulnerabilities/2024/CVE-2024-44158.json"
                }
            ],
            "scores": [
                {
                    "cvss_v3": {
                        "version": "3.1",
                        "vectorString": "CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:N/A:N",
                        "baseScore": 5.5,
                        "baseSeverity": "MEDIUM"
                    },
                    "products": [
                        "CSAFPID-1644312",
                        "CSAFPID-1644313",
                        "CSAFPID-1644314",
                        "CSAFPID-1644315"
                    ]
                }
            ],
            "title": "CVE-2024-44158"
        },
        {
            "cve": "CVE-2024-44164",
            "product_status": {
                "known_affected": [
                    "CSAFPID-1644312",
                    "CSAFPID-1644313",
                    "CSAFPID-1644314",
                    "CSAFPID-1644315"
                ]
            },
            "references": [
                {
                    "category": "self",
                    "summary": "CVE-2024-44164",
                    "url": "https://api.ncsc.nl/velma/v1/vulnerabilities/2024/CVE-2024-44164.json"
                }
            ],
            "title": "CVE-2024-44164"
        },
        {
            "cve": "CVE-2024-44165",
            "product_status": {
                "known_affected": [
                    "CSAFPID-1644312",
                    "CSAFPID-1644313",
                    "CSAFPID-1644314",
                    "CSAFPID-1644315"
                ]
            },
            "references": [
                {
                    "category": "self",
                    "summary": "CVE-2024-44165",
                    "url": "https://api.ncsc.nl/velma/v1/vulnerabilities/2024/CVE-2024-44165.json"
                }
            ],
            "title": "CVE-2024-44165"
        },
        {
            "cve": "CVE-2024-44167",
            "product_status": {
                "known_affected": [
                    "CSAFPID-1644312",
                    "CSAFPID-1644313",
                    "CSAFPID-1644314",
                    "CSAFPID-1644315"
                ]
            },
            "references": [
                {
                    "category": "self",
                    "summary": "CVE-2024-44167",
                    "url": "https://api.ncsc.nl/velma/v1/vulnerabilities/2024/CVE-2024-44167.json"
                }
            ],
            "scores": [
                {
                    "cvss_v3": {
                        "version": "3.1",
                        "vectorString": "CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:N",
                        "baseScore": 8.1,
                        "baseSeverity": "HIGH"
                    },
                    "products": [
                        "CSAFPID-1644312",
                        "CSAFPID-1644313",
                        "CSAFPID-1644314",
                        "CSAFPID-1644315"
                    ]
                }
            ],
            "title": "CVE-2024-44167"
        },
        {
            "cve": "CVE-2024-44169",
            "product_status": {
                "known_affected": [
                    "CSAFPID-1644312",
                    "CSAFPID-1644313",
                    "CSAFPID-1644314",
                    "CSAFPID-1644315"
                ]
            },
            "references": [
                {
                    "category": "self",
                    "summary": "CVE-2024-44169",
                    "url": "https://api.ncsc.nl/velma/v1/vulnerabilities/2024/CVE-2024-44169.json"
                }
            ],
            "scores": [
                {
                    "cvss_v3": {
                        "version": "3.1",
                        "vectorString": "CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:N",
                        "baseScore": 8.1,
                        "baseSeverity": "HIGH"
                    },
                    "products": [
                        "CSAFPID-1644312",
                        "CSAFPID-1644313",
                        "CSAFPID-1644314",
                        "CSAFPID-1644315"
                    ]
                }
            ],
            "title": "CVE-2024-44169"
        },
        {
            "cve": "CVE-2024-44170",
            "product_status": {
                "known_affected": [
                    "CSAFPID-1644312",
                    "CSAFPID-1644313",
                    "CSAFPID-1644314",
                    "CSAFPID-1644315"
                ]
            },
            "references": [
                {
                    "category": "self",
                    "summary": "CVE-2024-44170",
                    "url": "https://api.ncsc.nl/velma/v1/vulnerabilities/2024/CVE-2024-44170.json"
                }
            ],
            "title": "CVE-2024-44170"
        },
        {
            "cve": "CVE-2024-44171",
            "product_status": {
                "known_affected": [
                    "CSAFPID-1644312",
                    "CSAFPID-1644313",
                    "CSAFPID-1644314",
                    "CSAFPID-1644315"
                ]
            },
            "references": [
                {
                    "category": "self",
                    "summary": "CVE-2024-44171",
                    "url": "https://api.ncsc.nl/velma/v1/vulnerabilities/2024/CVE-2024-44171.json"
                }
            ],
            "scores": [
                {
                    "cvss_v3": {
                        "version": "3.1",
                        "vectorString": "CVSS:3.1/AV:P/AC:L/PR:N/UI:N/S:U/C:N/I:H/A:N",
                        "baseScore": 4.6,
                        "baseSeverity": "MEDIUM"
                    },
                    "products": [
                        "CSAFPID-1644312",
                        "CSAFPID-1644313",
                        "CSAFPID-1644314",
                        "CSAFPID-1644315"
                    ]
                }
            ],
            "title": "CVE-2024-44171"
        },
        {
            "cve": "CVE-2024-44176",
            "product_status": {
                "known_affected": [
                    "CSAFPID-1644312",
                    "CSAFPID-1644313",
                    "CSAFPID-1644314",
                    "CSAFPID-1644315"
                ]
            },
            "references": [
                {
                    "category": "self",
                    "summary": "CVE-2024-44176",
                    "url": "https://api.ncsc.nl/velma/v1/vulnerabilities/2024/CVE-2024-44176.json"
                }
            ],
            "scores": [
                {
                    "cvss_v3": {
                        "version": "3.1",
                        "vectorString": "CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:N/I:N/A:H",
                        "baseScore": 5.5,
                        "baseSeverity": "MEDIUM"
                    },
                    "products": [
                        "CSAFPID-1644312",
                        "CSAFPID-1644313",
                        "CSAFPID-1644314",
                        "CSAFPID-1644315"
                    ]
                }
            ],
            "title": "CVE-2024-44176"
        },
        {
            "cve": "CVE-2024-44180",
            "cwe": {
                "id": "CWE-284",
                "name": "Improper Access Control"
            },
            "notes": [
                {
                    "category": "other",
                    "text": "Improper Access Control",
                    "title": "CWE-284"
                }
            ],
            "product_status": {
                "known_affected": [
                    "CSAFPID-1644312",
                    "CSAFPID-1644313",
                    "CSAFPID-1644314",
                    "CSAFPID-1644315"
                ]
            },
            "references": [
                {
                    "category": "self",
                    "summary": "CVE-2024-44180",
                    "url": "https://api.ncsc.nl/velma/v1/vulnerabilities/2024/CVE-2024-44180.json"
                }
            ],
            "title": "CVE-2024-44180"
        },
        {
            "cve": "CVE-2024-44183",
            "cwe": {
                "id": "CWE-404",
                "name": "Improper Resource Shutdown or Release"
            },
            "notes": [
                {
                    "category": "other",
                    "text": "Improper Resource Shutdown or Release",
                    "title": "CWE-404"
                }
            ],
            "product_status": {
                "known_affected": [
                    "CSAFPID-1644312",
                    "CSAFPID-1644313",
                    "CSAFPID-1644314",
                    "CSAFPID-1644315"
                ]
            },
            "references": [
                {
                    "category": "self",
                    "summary": "CVE-2024-44183",
                    "url": "https://api.ncsc.nl/velma/v1/vulnerabilities/2024/CVE-2024-44183.json"
                }
            ],
            "title": "CVE-2024-44183"
        },
        {
            "cve": "CVE-2024-44184",
            "cwe": {
                "id": "CWE-275",
                "name": "-"
            },
            "notes": [
                {
                    "category": "other",
                    "text": "CWE-275",
                    "title": "CWE-275"
                }
            ],
            "product_status": {
                "known_affected": [
                    "CSAFPID-1644312",
                    "CSAFPID-1644313",
                    "CSAFPID-1644314",
                    "CSAFPID-1644315"
                ]
            },
            "references": [
                {
                    "category": "self",
                    "summary": "CVE-2024-44184",
                    "url": "https://api.ncsc.nl/velma/v1/vulnerabilities/2024/CVE-2024-44184.json"
                }
            ],
            "scores": [
                {
                    "cvss_v3": {
                        "version": "3.1",
                        "vectorString": "CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:N/A:N",
                        "baseScore": 5.5,
                        "baseSeverity": "MEDIUM"
                    },
                    "products": [
                        "CSAFPID-1644312",
                        "CSAFPID-1644313",
                        "CSAFPID-1644314",
                        "CSAFPID-1644315"
                    ]
                }
            ],
            "title": "CVE-2024-44184"
        },
        {
            "cve": "CVE-2024-44187",
            "cwe": {
                "id": "CWE-942",
                "name": "Permissive Cross-domain Policy with Untrusted Domains"
            },
            "notes": [
                {
                    "category": "other",
                    "text": "Permissive Cross-domain Policy with Untrusted Domains",
                    "title": "CWE-942"
                }
            ],
            "product_status": {
                "known_affected": [
                    "CSAFPID-1644312",
                    "CSAFPID-1644313",
                    "CSAFPID-1644314",
                    "CSAFPID-1644315"
                ]
            },
            "references": [
                {
                    "category": "self",
                    "summary": "CVE-2024-44187",
                    "url": "https://api.ncsc.nl/velma/v1/vulnerabilities/2024/CVE-2024-44187.json"
                }
            ],
            "scores": [
                {
                    "cvss_v3": {
                        "version": "3.1",
                        "vectorString": "CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:H/I:N/A:N",
                        "baseScore": 6.5,
                        "baseSeverity": "MEDIUM"
                    },
                    "products": [
                        "CSAFPID-1644312",
                        "CSAFPID-1644313",
                        "CSAFPID-1644314",
                        "CSAFPID-1644315"
                    ]
                }
            ],
            "title": "CVE-2024-44187"
        },
        {
            "cve": "CVE-2024-44191",
            "cwe": {
                "id": "CWE-285",
                "name": "Improper Authorization"
            },
            "notes": [
                {
                    "category": "other",
                    "text": "Improper Authorization",
                    "title": "CWE-285"
                }
            ],
            "product_status": {
                "known_affected": [
                    "CSAFPID-1644312",
                    "CSAFPID-1644313",
                    "CSAFPID-1644314",
                    "CSAFPID-1644315"
                ]
            },
            "references": [
                {
                    "category": "self",
                    "summary": "CVE-2024-44191",
                    "url": "https://api.ncsc.nl/velma/v1/vulnerabilities/2024/CVE-2024-44191.json"
                }
            ],
            "scores": [
                {
                    "cvss_v3": {
                        "version": "3.1",
                        "vectorString": "CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:H/A:N",
                        "baseScore": 5.5,
                        "baseSeverity": "MEDIUM"
                    },
                    "products": [
                        "CSAFPID-1644312",
                        "CSAFPID-1644313",
                        "CSAFPID-1644314",
                        "CSAFPID-1644315"
                    ]
                }
            ],
            "title": "CVE-2024-44191"
        },
        {
            "cve": "CVE-2024-44198",
            "cwe": {
                "id": "CWE-190",
                "name": "Integer Overflow or Wraparound"
            },
            "notes": [
                {
                    "category": "other",
                    "text": "Integer Overflow or Wraparound",
                    "title": "CWE-190"
                }
            ],
            "product_status": {
                "known_affected": [
                    "CSAFPID-1644312",
                    "CSAFPID-1644313",
                    "CSAFPID-1644314",
                    "CSAFPID-1644315"
                ]
            },
            "references": [
                {
                    "category": "self",
                    "summary": "CVE-2024-44198",
                    "url": "https://api.ncsc.nl/velma/v1/vulnerabilities/2024/CVE-2024-44198.json"
                }
            ],
            "scores": [
                {
                    "cvss_v3": {
                        "version": "3.1",
                        "vectorString": "CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:N/I:N/A:H",
                        "baseScore": 5.5,
                        "baseSeverity": "MEDIUM"
                    },
                    "products": [
                        "CSAFPID-1644312",
                        "CSAFPID-1644313",
                        "CSAFPID-1644314",
                        "CSAFPID-1644315"
                    ]
                }
            ],
            "title": "CVE-2024-44198"
        },
        {
            "cve": "CVE-2024-44202",
            "cwe": {
                "id": "CWE-287",
                "name": "Improper Authentication"
            },
            "notes": [
                {
                    "category": "other",
                    "text": "Improper Authentication",
                    "title": "CWE-287"
                }
            ],
            "product_status": {
                "known_affected": [
                    "CSAFPID-1644312",
                    "CSAFPID-1644313",
                    "CSAFPID-1644314",
                    "CSAFPID-1644315"
                ]
            },
            "references": [
                {
                    "category": "self",
                    "summary": "CVE-2024-44202",
                    "url": "https://api.ncsc.nl/velma/v1/vulnerabilities/2024/CVE-2024-44202.json"
                }
            ],
            "title": "CVE-2024-44202"
        }
    ]
}