|
250801
|
5.5 |
MEDIUM
Local
|
linux
|
linux_kernel
|
In the Linux kernel, the following vulnerability has been resolved:
drm/amd/display: Skip Recompute DSC Params if no Stream on Link
[why]
Encounter NULL pointer dereference uner mst + dsc setup.
B…
|
CWE-476
NULL Pointer Dereference
|
CVE-2024-47683
|
2024-10-24 00:02 |
2024-10-21 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
250802
|
8.8 |
HIGH
Network
|
fabianros
|
hospital_management_system
|
A vulnerability classified as critical was found in code-projects Hospital Management System 1.0. This vulnerability affects unknown code of the file change-password.php. The manipulation of the argu…
|
CWE-89
SQL Injection
|
CVE-2024-10169
|
2024-10-24 00:01 |
2024-10-20 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
250803
|
8.2 |
HIGH
Network
|
wikimedia
|
wikimedia-extensions-css
|
Improper Encoding or Escaping of Output vulnerability in The Wikimedia Foundation Mediawiki - CSS Extension allows Code Injection.This issue affects Mediawiki - CSS Extension: from 1.39.X before 1.39…
|
CWE-116
Improper Encoding or Escaping of Output
|
CVE-2024-47845
|
2024-10-24 00:00 |
2024-10-5 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
250804
|
7.8 |
HIGH
Local
|
linux
|
linux_kernel
|
In the Linux kernel, the following vulnerability has been resolved:
scsi: sd: Fix off-by-one error in sd_read_block_characteristics()
Ff the device returns page 0xb1 with length 8 (happens with qem…
|
CWE-193
Off-by-one Error
|
CVE-2024-47682
|
2024-10-23 23:57 |
2024-10-21 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
250805
|
4.7 |
MEDIUM
Local
|
linux
|
linux_kernel
|
In the Linux kernel, the following vulnerability has been resolved:
drm/amd/display: Disable DMCUB timeout for DCN35
[Why]
DMCUB can intermittently take longer than expected to process commands.
O…
|
CWE-362
Race Condition
|
CVE-2024-46870
|
2024-10-23 23:26 |
2024-10-9 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
250806
|
5.5 |
MEDIUM
Local
|
adobe
|
substance_3d_sampler
|
Substance3D - Sampler versions 4.5 and earlier are affected by a NULL Pointer Dereference vulnerability that could lead to an application denial-of-service (DoS) condition. An attacker could exploit …
|
CWE-476
NULL Pointer Dereference
|
CVE-2024-47459
|
2024-10-23 23:17 |
2024-10-18 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
250807
|
9.8 |
CRITICAL
Network
|
litespeedtech
|
litespeed_cache
|
Insufficiently Protected Credentials vulnerability in LiteSpeed Technologies LiteSpeed Cache allows Authentication Bypass.This issue affects LiteSpeed Cache: from n/a before 6.5.0.1.
|
CWE-522
Insufficiently Protected Credentials
|
CVE-2024-44000
|
2024-10-23 23:16 |
2024-10-20 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
250808
|
7.8 |
HIGH
Local
|
siemens
|
jt2go
|
A vulnerability has been identified in JT2Go (All versions < V2406.0003). The affected application contains a stack-based buffer overflow vulnerability that could be triggered while parsing specially…
|
CWE-787
Out-of-bounds Write
|
CVE-2024-41902
|
2024-10-23 23:16 |
2024-10-8 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
250809
|
9.8 |
CRITICAL
Network
|
code-projects
|
pharmacy_management_system
|
A vulnerability was found in code-projects Pharmacy Management System 1.0 and classified as critical. This issue affects some unknown processing of the file /add_new_invoice.php. The manipulation of …
|
CWE-89
SQL Injection
|
CVE-2024-10196
|
2024-10-23 23:15 |
2024-10-21 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
250810
|
4.8 |
MEDIUM
Network
|
code-projects
|
pharmacy_management_system
|
A vulnerability was found in code-projects Pharmacy Management System 1.0. It has been classified as problematic. Affected is an unknown function of the file /manage_supplier.php of the component Man…
|
CWE-79
Cross-site Scripting
|
CVE-2024-10197
|
2024-10-23 23:14 |
2024-10-21 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|