|
306831
|
9.8 |
CRITICAL
Network
|
qualcomm
|
snapdragon_x65_5g_modem-rf_system_firmware sdx65m_firmware sdx55_firmware qxm8083_firmware qcn9274_firmware qcn9160_firmware qcn9100_firmware qcn9074_firmware qcn9072_firmware…
|
Memory corruption while redirecting log file to any file location with any file name.
|
NVD-CWE-noinfo
|
CVE-2024-33066
|
2024-10-17 04:49 |
2024-10-7 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
306832
|
7.5 |
HIGH
Network
|
qualcomm
|
wsa8835_firmware wsa8830_firmware wsa8815_firmware wsa8810_firmware wcn3988_firmware wcn3980_firmware wcd9385_firmware wcd9380_firmware sw5100p_firmware sw5100_firmware …
|
Transient DOS when transmission of management frame sent by host is not successful and error status is received in the host.
|
CWE-416
Use After Free
|
CVE-2024-33069
|
2024-10-17 04:48 |
2024-10-7 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
306833
|
7.5 |
HIGH
Network
|
qualcomm
|
qca6574au_firmware qca6574a_firmware qca6564au_firmware qca6564a_firmware mdm9628_firmware
|
Transient DOS while parsing ESP IE from beacon/probe response frame.
|
CWE-125
Out-of-bounds Read
|
CVE-2024-33070
|
2024-10-17 04:47 |
2024-10-7 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
306834
|
7.5 |
HIGH
Network
|
qualcomm
|
mdm9628_firmware qca6564a_firmware qca6564au_firmware qca6574a_firmware qca6574au_firmware
|
Transient DOS while parsing the MBSSID IE from the beacons when IE length is 0.
|
CWE-125
Out-of-bounds Read
|
CVE-2024-33071
|
2024-10-17 04:41 |
2024-10-7 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
306835
|
- |
|
-
|
-
|
An issue in ILIFE com.ilife.home.global 1.8.7 allows a remote attacker to obtain sensitive information via the firmware update process.
|
-
|
CVE-2024-48790
|
2024-10-17 04:35 |
2024-10-15 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
306836
|
- |
|
-
|
-
|
Incorrect access control in Mirotalk before commit 9de226 allows attackers to arbitrarily change usernames via sending a crafted roomAction request to the server.
|
-
|
CVE-2024-44734
|
2024-10-17 04:35 |
2024-10-12 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
306837
|
- |
|
-
|
-
|
Incorrect access control in the function handleDataChannelChat(dataMessage) of Mirotalk before commit c21d58 allows attackers to forge chat messages using an arbitrary sender name.
|
-
|
CVE-2024-44730
|
2024-10-17 04:35 |
2024-10-12 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
306838
|
- |
|
-
|
-
|
Incorrect access control in the component app/src/server.js of Mirotalk before commit 9de226 allows unauthenticated attackers without presenter privileges to arbitrarily eject users from a meeting.
|
-
|
CVE-2024-44729
|
2024-10-17 04:35 |
2024-10-12 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
306839
|
7.1 |
HIGH
Local
|
microsoft
|
azure_monitor_agent
|
Azure Monitor Agent Elevation of Privilege Vulnerability
|
NVD-CWE-noinfo
|
CVE-2024-38097
|
2024-10-17 04:28 |
2024-10-9 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
306840
|
6.1 |
MEDIUM
Network
|
microchip
|
timeprovider_4100_firmware
|
Improper Neutralization of Input During Web Page Generation (XSS or 'Cross-site Scripting') vulnerability in Microchip TimeProvider 4100 (banner config modules) allows Cross-Site Scripting (XSS).This…
|
CWE-79
Cross-site Scripting
|
CVE-2024-43687
|
2024-10-17 04:28 |
2024-10-5 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|