|
305551
|
5.8 |
MEDIUM
Network
|
cisco
|
firepower_threat_defense_software adaptive_security_appliance_software
|
A vulnerability in the Remote Access VPN (RAVPN) service of Cisco Adaptive Security Appliance (ASA) Software and Cisco Firepower Threat Defense (FTD) Software could allow an unauthenticated, remote a…
|
CWE-772
Missing Release of Resource after Effective Lifetime
|
CVE-2024-20481
|
2024-10-30 02:47 |
2024-10-24 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
305552
|
9.6 |
CRITICAL
Network
|
apple
|
ipados iphone_os
|
A custom URL scheme handling issue was addressed with improved input validation. This issue is fixed in iOS 18.1 and iPadOS 18.1. A remote attacker may be able to break out of Web Content sandbox.
|
NVD-CWE-noinfo
|
CVE-2024-40867
|
2024-10-30 02:41 |
2024-10-29 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
305553
|
8.8 |
HIGH
Local
|
apple
|
macos
|
A logic issue was addressed with improved checks. This issue is fixed in macOS Ventura 13.7.1, macOS Sequoia 15, macOS Sonoma 14.7.1. An application may be able to break out of its sandbox.
|
NVD-CWE-noinfo
|
CVE-2024-44122
|
2024-10-30 02:38 |
2024-10-29 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
305554
|
5.5 |
MEDIUM
Local
|
hp
|
oneview
|
This vulnerability could be exploited, leading to unauthorized disclosure of information to authenticated users.
|
NVD-CWE-noinfo
|
CVE-2024-42508
|
2024-10-30 02:38 |
2024-10-19 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
305555
|
2.3 |
LOW
Local
|
apple
|
macos iphone_os ipados
|
A permissions issue was addressed with additional restrictions. This issue is fixed in macOS Sequoia 15, iOS 18 and iPadOS 18. A malicious app with root privileges may be able to access keyboard inpu…
|
NVD-CWE-noinfo
|
CVE-2024-44123
|
2024-10-30 02:37 |
2024-10-29 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
305556
|
- |
|
-
|
-
|
Money Manager EX WebApp (web-money-manager-ex) 1.2.2 is vulnerable to SQL Injection in the `transaction_delete_group` function. The vulnerability is due to improper sanitization of user input in the …
|
-
|
CVE-2024-41618
|
2024-10-30 02:35 |
2024-10-25 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
305557
|
- |
|
-
|
-
|
Money Manager EX WebApp (web-money-manager-ex) 1.2.2 is vulnerable to Incorrect Access Control. The `redirect_if_not_loggedin` function in `functions_security.php` fails to terminate script execution…
|
-
|
CVE-2024-41617
|
2024-10-30 02:35 |
2024-10-25 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
305558
|
6.5 |
MEDIUM
Network
|
apple
|
macos watchos safari iphone_os ipados
|
A custom URL scheme handling issue was addressed with improved input validation. This issue is fixed in Safari 18, iOS 17.7.1 and iPadOS 17.7.1, macOS Sequoia 15, watchOS 11, iOS 18 and iPadOS 18. Ma…
|
NVD-CWE-noinfo
|
CVE-2024-44155
|
2024-10-30 02:34 |
2024-10-29 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
305559
|
5.5 |
MEDIUM
Local
|
apple
|
watchos tvos iphone_os ipados macos
|
A buffer overflow was addressed with improved size validation. This issue is fixed in iOS 17.7.1 and iPadOS 17.7.1, macOS Sequoia 15, macOS Sonoma 14.7.1, tvOS 18, watchOS 11, visionOS 2, iOS 18 and …
|
CWE-120
Classic Buffer Overflow
|
CVE-2024-44144
|
2024-10-30 02:34 |
2024-10-29 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
305560
|
5.4 |
MEDIUM
Network
|
jetbrains
|
youtrack
|
In JetBrains YouTrack before 2024.3.47707 stored XSS was possible via Angular template injection in Hub settings
|
CWE-79
Cross-site Scripting
|
CVE-2024-50577
|
2024-10-30 02:18 |
2024-10-28 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|