|
252221
|
5.5 |
MEDIUM
Local
|
linux
|
linux_kernel
|
In the Linux kernel, the following vulnerability has been resolved:
spi: rockchip: Resolve unbalanced runtime PM / system PM handling
Commit e882575efc77 ("spi: rockchip: Suspend and resume the bus…
|
NVD-CWE-noinfo
|
CVE-2024-46846
|
2024-10-9 03:25 |
2024-09-27 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
252222
|
5.5 |
MEDIUM
Local
|
linux
|
linux_kernel
|
In the Linux kernel, the following vulnerability has been resolved:
scsi: ufs: core: Remove SCSI host only if added
If host tries to remove ufshcd driver from a UFS device it would cause a
kernel p…
|
NVD-CWE-noinfo
|
CVE-2024-46843
|
2024-10-9 03:23 |
2024-09-27 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
252223
|
5.5 |
MEDIUM
Local
|
linux
|
linux_kernel
|
In the Linux kernel, the following vulnerability has been resolved:
scsi: lpfc: Handle mailbox timeouts in lpfc_get_sfp_info
The MBX_TIMEOUT return code is not handled in lpfc_get_sfp_info and the
…
|
CWE-416
Use After Free
|
CVE-2024-46842
|
2024-10-9 03:22 |
2024-09-27 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
252224
|
5.5 |
MEDIUM
Local
|
linux
|
linux_kernel
|
In the Linux kernel, the following vulnerability has been resolved:
btrfs: don't BUG_ON on ENOMEM from btrfs_lookup_extent_info() in walk_down_proc()
We handle errors here properly, ENOMEM isn't fa…
|
NVD-CWE-noinfo
|
CVE-2024-46841
|
2024-10-9 03:17 |
2024-09-27 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
252225
|
8.8 |
HIGH
Network
|
emiloimagtolis
|
online_discussion_forum
|
File Upload vulnerability in Itsourcecode Online Discussion Forum Project v.1.0 allows a remote attacker to execute arbitrary code via the "sendreply.php" file, and the uploaded file was received usi…
|
CWE-434
Unrestricted Upload of File with Dangerous Type
|
CVE-2024-37868
|
2024-10-9 03:16 |
2024-10-5 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
252226
|
8.8 |
HIGH
Network
|
emiloimagtolis
|
online_discussion_forum
|
File Upload vulnerability in Itsourcecode Online Discussion Forum Project v.1.0 allows a remote attacker to execute arbitrary code via the "poster.php" file, and the uploaded file was received using …
|
CWE-434
Unrestricted Upload of File with Dangerous Type
|
CVE-2024-37869
|
2024-10-9 03:15 |
2024-10-5 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
252227
|
5.5 |
MEDIUM
Local
|
linux
|
linux_kernel
|
In the Linux kernel, the following vulnerability has been resolved:
btrfs: clean up our handling of refs == 0 in snapshot delete
In reada we BUG_ON(refs == 0), which could be unkind since we aren't…
|
NVD-CWE-noinfo
|
CVE-2024-46840
|
2024-10-9 03:15 |
2024-09-27 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
252228
|
5.4 |
MEDIUM
Network
|
kraftplugins
|
demo_importer_plus
|
The Demo Importer Plus plugin for WordPress is vulnerable to Stored Cross-Site Scripting via SVG File uploads in all versions up to, and including, 2.0.1 due to insufficient input sanitization and ou…
|
CWE-79
Cross-site Scripting
|
CVE-2024-9172
|
2024-10-9 03:05 |
2024-10-2 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
252229
|
7.5 |
HIGH
Network
|
cisco
|
meraki_z4c_firmware meraki_z4_firmware meraki_z3c_firmware meraki_z3_firmware meraki_vmx_firmware meraki_mx600_firmware meraki_mx450_firmware meraki_mx400_firmware meraki_mx25…
|
Multiple vulnerabilities in the Cisco AnyConnect VPN server of Cisco Meraki MX and Cisco Meraki Z Series Teleworker Gateway devices could allow an unauthenticated, remote attacker to cause a DoS cond…
|
CWE-787
Out-of-bounds Write
|
CVE-2024-20499
|
2024-10-9 02:45 |
2024-10-3 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
252230
|
7.5 |
HIGH
Network
|
cisco
|
meraki_z4c_firmware meraki_z4_firmware meraki_z3c_firmware meraki_z3_firmware meraki_vmx_firmware meraki_mx600_firmware meraki_mx450_firmware meraki_mx400_firmware meraki_mx25…
|
A vulnerability in the Cisco AnyConnect VPN server of Cisco Meraki MX and Cisco Meraki Z Series Teleworker Gateway devices could allow an unauthenticated, remote attacker to cause a DoS condition in …
|
CWE-400
Uncontrolled Resource Consumption
|
CVE-2024-20500
|
2024-10-9 02:37 |
2024-10-3 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|