|
312031
|
8.2 |
HIGH
Local
|
intel
|
server_board_s2600st_firmware
|
Improper input validation in kernel mode driver for some Intel(R) Server Board S2600ST Family firmware before version 02.01.0017 may allow a privileged user to potentially enable escalation of privil…
|
NVD-CWE-noinfo
|
CVE-2024-28947
|
2024-09-13 03:52 |
2024-08-14 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
312032
|
7.8 |
HIGH
Local
|
intel
|
oneapi_base_toolkit integrated_performance_primitives
|
Uncontrolled search path in some Intel(R) IPP software before version 2021.11 may allow an authenticated user to potentially enable escalation of privilege via local access.
|
CWE-427
Uncontrolled Search Path Element
|
CVE-2024-28887
|
2024-09-13 03:51 |
2024-08-14 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
312033
|
7.8 |
HIGH
Local
|
intel
|
nuc_x15_laptop_kit_lapac71h nuc_x15_laptop_kit_lapac71g nuc_x15_laptop_kit_lapkc71f nuc_x15_laptop_kit_lapkc71e nuc_x15_laptop_kit_lapkc51e nuc_m15_laptop_kit_lapbc710 nuc_m15_lapto…
|
Insecure inherited permissions in some Intel(R) HID Event Filter software installers before version 2.2.2.1 may allow an authenticated user to potentially enable escalation of privilege via local acc…
|
CWE-732
Incorrect Permission Assignment for Critical Resource
|
CVE-2024-25561
|
2024-09-13 03:50 |
2024-08-14 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
312034
|
7.8 |
HIGH
Local
|
intel
|
license_manager_for_flexim
|
Uncontrolled search path for some Intel(R) License Manager for FLEXlm product software before version 11.19.5.0 may allow an authenticated user to potentially enable escalation of privilege via local…
|
CWE-427
Uncontrolled Search Path Element
|
CVE-2024-24977
|
2024-09-13 03:45 |
2024-08-14 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
312035
|
7.8 |
HIGH
Local
|
intel
|
flexlm_license_daemons_for_intel_fpga
|
Insecure inherited permissions in some Flexlm License Daemons for Intel(R) FPGA software before version v11.19.5.0 may allow an authenticated user to potentially enable escalation of privilege via lo…
|
CWE-732
Incorrect Permission Assignment for Critical Resource
|
CVE-2024-23908
|
2024-09-13 03:43 |
2024-08-14 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
312036
|
9.8 |
CRITICAL
Network
|
openedx
|
openedx
|
This openedx-translations repository contains translation files from Open edX repositories to be kept in sync with Transifex. Before moving to pulling translations from the openedx-translations repos…
|
CWE-74
Injection
|
CVE-2024-43782
|
2024-09-13 03:29 |
2024-08-24 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
312037
|
7.8 |
HIGH
Local
|
steveklabnik
|
request_store
|
RequestStore provides per-request global storage for Rack. The files published as part of request_store 1.3.2 have 0666 permissions, meaning that they are world-writable, which allows local users to …
|
CWE-276
Incorrect Default Permissions
|
CVE-2024-43791
|
2024-09-13 03:26 |
2024-08-24 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
312038
|
8.8 |
HIGH
Local
|
intel
|
ethernet_800_series_controllers_driver
|
Out-of-bounds write in Linux kernel mode driver for some Intel(R) Ethernet Network Controllers and Adapters before version 28.3 may allow an authenticated user to potentially enable escalation of pri…
|
CWE-787
Out-of-bounds Write
|
CVE-2024-23497
|
2024-09-13 03:26 |
2024-08-14 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
312039
|
6.1 |
MEDIUM
Network
|
jeesite
|
jeesite
|
A vulnerability was found in thinkgem JeeSite 5.3. It has been rated as problematic. This issue affects some unknown processing of the file /js/a/login of the component Cookie Handler. The manipulati…
|
CWE-79
Cross-site Scripting
|
CVE-2024-8112
|
2024-09-13 03:23 |
2024-08-24 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
312040
|
5.4 |
MEDIUM
Network
|
pretix
|
pretix
|
Stored XSS in organizer and event settings of pretix up to 2024.7.0 allows malicious event organizers to inject HTML tags into e-mail previews on settings page. The default Content Security Policy of…
|
CWE-79
Cross-site Scripting
|
CVE-2024-8113
|
2024-09-13 03:21 |
2024-08-24 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|