|
303351
|
7.8 |
HIGH
Local
|
microsoft
|
windows_server_2008 windows_server_2012 windows_server_2025 windows_10_1809 windows_server_2019 windows_server_2022 windows_10_21h2 windows_11_22h2 windows_10_22h2 windows_…
|
Windows Win32 Kernel Subsystem Elevation of Privilege Vulnerability
|
NVD-CWE-noinfo
|
CVE-2024-49046
|
2024-11-19 07:10 |
2024-11-13 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
303352
|
8.1 |
HIGH
Network
|
microsoft
|
torchgeo
|
TorchGeo Remote Code Execution Vulnerability
|
NVD-CWE-noinfo
|
CVE-2024-49048
|
2024-11-19 07:09 |
2024-11-13 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
303353
|
7.8 |
HIGH
Local
|
microsoft
|
windows_server_2025 windows_10_1809 windows_server_2019 windows_server_2022 windows_10_21h2 windows_11_22h2 windows_10_22h2 windows_11_23h2 windows_server_2022_23h2 windows…
|
Windows DWM Core Library Elevation of Privilege Vulnerability
|
NVD-CWE-noinfo
|
CVE-2024-43629
|
2024-11-19 07:09 |
2024-11-13 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
303354
|
5.5 |
MEDIUM
Local
|
linux fedoraproject
|
linux_kernel fedora
|
A use-after-free vulnerability was found in the cyttsp4_core driver in the Linux kernel. This issue occurs in the device cleanup routine due to a possible rearming of the watchdog_timer from the work…
|
CWE-416
Use After Free
|
CVE-2023-4134
|
2024-11-19 07:08 |
2024-11-14 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
303355
|
7.1 |
HIGH
Local
|
microsoft
|
remote_ssh
|
Visual Studio Code Remote Extension Elevation of Privilege Vulnerability
|
NVD-CWE-noinfo
|
CVE-2024-49049
|
2024-11-19 07:08 |
2024-11-13 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
303356
|
8.8 |
HIGH
Network
|
microsoft
|
python_extension
|
Visual Studio Code Python Extension Remote Code Execution Vulnerability
|
NVD-CWE-noinfo
|
CVE-2024-49050
|
2024-11-19 07:03 |
2024-11-13 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
303357
|
7.5 |
HIGH
Network
|
lunary
|
lunary
|
In lunary-ai/lunary version 1.2.7, there is a lack of rate limiting on the forgot password page, leading to an email bombing vulnerability. Attackers can exploit this by automating forgot password re…
|
CWE-770
Allocation of Resources Without Limits or Throttling
|
CVE-2024-3760
|
2024-11-19 07:02 |
2024-11-15 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
303358
|
- |
|
-
|
-
|
A Python command injection vulnerability exists in the `SagemakerLLM` class's `complete()` method within `./private_gpt/components/llm/custom/sagemaker.py` of the imartinez/privategpt application, ve…
|
CWE-78
OS Command
|
CVE-2024-4343
|
2024-11-19 06:35 |
2024-11-15 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
303359
|
- |
|
-
|
-
|
An unclaimed Amazon S3 bucket, 'codeconf', is referenced in an audio file link within the .rst documentation file. This bucket has been claimed by an external party. The use of this unclaimed S3 buck…
|
CWE-840
Business Logic Errors
|
CVE-2024-1682
|
2024-11-19 06:35 |
2024-11-15 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
303360
|
5.5 |
MEDIUM
Local
|
linux
|
linux_kernel
|
In the Linux kernel, the following vulnerability has been resolved:
Bluetooth: bnep: fix wild-memory-access in proto_unregister
There's issue as follows:
KASAN: maybe wild-memory-access in range …
|
NVD-CWE-noinfo
|
CVE-2024-50148
|
2024-11-19 06:24 |
2024-11-7 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|