|
248451
|
- |
|
-
|
-
|
A specially crafted filename containing a large number of spaces could obscure the file's extension when displayed in the download dialog.
*This bug only affects Firefox for Android. Other versions o…
|
-
|
CVE-2024-9395
|
2024-11-9 17:35 |
2024-10-2 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
248452
|
- |
|
-
|
-
|
An authorized RCE vulnerability exists in the DrayTek Vigor2960 router version 1.4.4, where an attacker can place a malicious command into the table parameter of the doPPPoE function in the cgi-bin/m…
|
-
|
CVE-2024-48074
|
2024-11-9 07:15 |
2024-10-28 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
248453
|
7.8 |
HIGH
Local
|
microsoft
|
visual_studio_code
|
Visual Studio Code for Linux Remote Code Execution Vulnerability
|
NVD-CWE-noinfo
|
CVE-2024-43601
|
2024-11-9 07:15 |
2024-10-9 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
248454
|
5.5 |
MEDIUM
Local
|
linux
|
linux_kernel
|
In the Linux kernel, the following vulnerability has been resolved:
md/raid10: fix null ptr dereference in raid10_size()
In raid10_run() if raid10_set_queue_limits() succeed, the return value
is se…
|
CWE-476
NULL Pointer Dereference
|
CVE-2024-50109
|
2024-11-9 06:30 |
2024-11-6 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
248455
|
8.8 |
HIGH
Network
|
truepush
|
truepush
|
Missing Authorization vulnerability in Truepush allows Exploiting Incorrectly Configured Access Control Security Levels.This issue affects Truepush: from n/a through 1.0.8.
|
CWE-862
Missing Authorization
|
CVE-2024-44021
|
2024-11-9 06:30 |
2024-11-2 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
248456
|
6.5 |
MEDIUM
Network
|
eclipse
|
jetty
|
Jetty PushSessionCacheFilter can be exploited by unauthenticated users
to launch remote DoS attacks by exhausting the server’s memory.
|
CWE-770
Allocation of Resources Without Limits or Throttling
|
CVE-2024-6762
|
2024-11-9 06:29 |
2024-10-15 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
248457
|
5.5 |
MEDIUM
Local
|
linux
|
linux_kernel
|
In the Linux kernel, the following vulnerability has been resolved:
drm/amd/display: Disable PSR-SU on Parade 08-01 TCON too
Stuart Hayhurst has found that both at bootup and fullscreen VA-API vide…
|
NVD-CWE-noinfo
|
CVE-2024-50108
|
2024-11-9 06:28 |
2024-11-6 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
248458
|
5.5 |
MEDIUM
Local
|
linux
|
linux_kernel
|
In the Linux kernel, the following vulnerability has been resolved:
platform/x86/intel/pmc: Fix pmc_core_iounmap to call iounmap for valid addresses
Commit 50c6dbdfd16e ("x86/ioremap: Improve iounm…
|
NVD-CWE-noinfo
|
CVE-2024-50107
|
2024-11-9 06:27 |
2024-11-6 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
248459
|
9.8 |
CRITICAL
Network
|
sunshinephotocart
|
sunshine_photo_cart
|
Missing Authorization vulnerability in WP Sunshine Sunshine Photo Cart allows Exploiting Incorrectly Configured Access Control Security Levels.This issue affects Sunshine Photo Cart: from n/a through…
|
CWE-862
Missing Authorization
|
CVE-2024-44038
|
2024-11-9 06:26 |
2024-11-2 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
248460
|
8.8 |
HIGH
Network
|
beardev
|
joomsport
|
Missing Authorization vulnerability in BearDev JoomSport allows Exploiting Incorrectly Configured Access Control Security Levels.This issue affects JoomSport: from n/a through 5.6.3.
|
CWE-862
Missing Authorization
|
CVE-2024-44031
|
2024-11-9 06:26 |
2024-11-2 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|