|
310021
|
4.7 |
MEDIUM
Local
|
linux
|
linux_kernel
|
In the Linux kernel, the following vulnerability has been resolved:
ethtool: check device is present when getting link settings
A sysfs reader can race with a device reset or removal, attempting to…
|
NVD-CWE-noinfo
|
CVE-2024-46679
|
2024-09-23 23:47 |
2024-09-13 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
310022
|
5.5 |
MEDIUM
Local
|
linux
|
linux_kernel
|
In the Linux kernel, the following vulnerability has been resolved:
Bluetooth: btnxpuart: Fix random crash seen while removing driver
This fixes the random kernel crash seen while removing the driv…
|
NVD-CWE-noinfo
|
CVE-2024-46680
|
2024-09-23 23:45 |
2024-09-13 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
310023
|
5.7 |
MEDIUM
Adjacent
|
intel
|
raid_web_console
|
Improper access control in Intel(R) RAID Web Console software for all versions may allow an authenticated user to potentially enable denial of service via adjacent access.
|
NVD-CWE-noinfo
|
CVE-2024-32940
|
2024-09-23 23:44 |
2024-09-17 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
310024
|
5.5 |
MEDIUM
Local
|
linux
|
linux_kernel
|
In the Linux kernel, the following vulnerability has been resolved:
bonding: change ipsec_lock from spin lock to mutex
In the cited commit, bond->ipsec_lock is added to protect ipsec_list,
hence xd…
|
CWE-667
Improper Locking
|
CVE-2024-46678
|
2024-09-23 23:44 |
2024-09-13 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
310025
|
5.5 |
MEDIUM
Local
|
intel
|
raid_web_console
|
Uncaught exception in Intel(R) RAID Web Console software all versions may allow an authenticated user to potentially enable denial of service via local access.
|
NVD-CWE-Other
|
CVE-2024-33848
|
2024-09-23 23:43 |
2024-09-17 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
310026
|
5.5 |
MEDIUM
Local
|
linux
|
linux_kernel
|
In the Linux kernel, the following vulnerability has been resolved:
nfc: pn533: Add poll mod list filling check
In case of im_protocols value is 1 and tm_protocols value is 0 this
combination succe…
|
CWE-369
Divide By Zero
|
CVE-2024-46676
|
2024-09-23 23:42 |
2024-09-13 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
310027
|
5.4 |
MEDIUM
Network
|
cryoutcreations
|
mantra
|
Improper Neutralization of Input During Web Page Generation (XSS or 'Cross-site Scripting') vulnerability in CryoutCreations Mantra allows Stored XSS.This issue affects Mantra: from n/a through 3.3.2.
|
CWE-79
Cross-site Scripting
|
CVE-2024-44056
|
2024-09-23 23:39 |
2024-09-15 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
310028
|
7.8 |
HIGH
Local
|
intel
|
raid_web_console
|
Uncontrolled search path element in Intel(R) RAID Web Console software for all versions may allow an authenticated user to potentially enable escalation of privilege via local access.
|
CWE-427
Uncontrolled Search Path Element
|
CVE-2024-34153
|
2024-09-23 23:35 |
2024-09-17 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
310029
|
5.4 |
MEDIUM
Network
|
cryoutcreations
|
nirvana
|
Improper Neutralization of Input During Web Page Generation (XSS or 'Cross-site Scripting') vulnerability in CryoutCreations Nirvana allows Stored XSS.This issue affects Nirvana: from n/a through 1.6…
|
CWE-79
Cross-site Scripting
|
CVE-2024-44057
|
2024-09-23 23:33 |
2024-09-15 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
310030
|
5.4 |
MEDIUM
Network
|
cryoutcreations
|
parabola
|
Improper Neutralization of Input During Web Page Generation (XSS or 'Cross-site Scripting') vulnerability in CryoutCreations Parabola allows Stored XSS.This issue affects Parabola: from n/a through 2…
|
CWE-79
Cross-site Scripting
|
CVE-2024-44058
|
2024-09-23 23:28 |
2024-09-15 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|