|
307181
|
8.8 |
HIGH
Network
|
nask
|
ezd_rp
|
Incorrect User Management vulnerability in Naukowa i Akademicka Siec Komputerowa - Panstwowy Instytut Badawczy EZD RP allows logged-in user to change the password of any user, including root user, wh…
|
CWE-863
Incorrect Authorization
|
CVE-2024-7265
|
2024-10-11 01:15 |
2024-08-7 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
307182
|
5.5 |
MEDIUM
Local
|
linux
|
linux_kernel
|
In the Linux kernel, the following vulnerability has been resolved:
iommu: Restore lost return in iommu_report_device_fault()
When iommu_report_device_fault gets called with a partial fault it is
s…
|
NVD-CWE-noinfo
|
CVE-2024-44994
|
2024-10-11 00:59 |
2024-09-5 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
307183
|
- |
|
-
|
-
|
Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: This candidate was withdrawn by its CNA. Further investigation showed that it was not a security issue. Notes: none.
|
-
|
CVE-2024-44711
|
2024-10-10 23:15 |
2024-10-10 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
307184
|
- |
|
-
|
-
|
A NULL pointer dereference in libcoap v4.3.5-rc2 and below allows a remote attacker to cause a denial of service via the coap_handle_request_put_block function in src/coap_block.c.
|
-
|
CVE-2024-46304
|
2024-10-10 23:15 |
2024-10-10 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
307185
|
- |
|
-
|
-
|
Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: This candidate was withdrawn by its CNA. Further investigation showed that it was not a security issue. Notes: none.
|
-
|
CVE-2024-46503
|
2024-10-10 23:15 |
2024-10-1 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
307186
|
8.8 |
HIGH
Network
|
microsoft
|
windows_server_2022 windows_server_2022_23h2 windows_11_24h2 windows_11_23h2 windows_11_22h2 windows_11_21h2
|
Microsoft Management Console Remote Code Execution Vulnerability
|
NVD-CWE-noinfo
|
CVE-2024-38259
|
2024-10-10 23:02 |
2024-09-11 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
307187
|
- |
|
-
|
-
|
A SQL injection vulnerability in login portal in AnteeoWMS before v4.7.34 allows unauthenticated attackers to execute arbitrary SQL commands via the username parameter and disclosure of some data in …
|
-
|
CVE-2024-44349
|
2024-10-10 22:15 |
2024-10-9 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
307188
|
8.8 |
HIGH
Network
|
dlink
|
dir-605l_firmware
|
A vulnerability was found in D-Link DIR-605L 2.13B01 BETA and classified as critical. This issue affects the function formEasySetupWizard/formEasySetupWizard2 of the file /goform/formEasySetupWizard.…
|
CWE-120
Classic Buffer Overflow
|
CVE-2024-9549
|
2024-10-10 22:14 |
2024-10-6 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
307189
|
7.5 |
HIGH
Network
|
draytek
|
vigor3910_firmware
|
Draytek Vigor 3910 v4.3.2.6 was discovered to contain a buffer overflow in the ssidencrypt%d parameter at v2x00.cgi. This vulnerability allows attackers to cause a Denial of Service (DoS) via a craft…
|
CWE-120
Classic Buffer Overflow
|
CVE-2024-46590
|
2024-10-10 22:14 |
2024-09-19 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
307190
|
5.5 |
MEDIUM
Local
|
apple
|
macos
|
The issue was addressed with improved memory handling. This issue is fixed in macOS Sequoia 15. An application may be able to read restricted memory.
|
NVD-CWE-noinfo
|
CVE-2024-27861
|
2024-10-10 22:13 |
2024-09-17 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|