|
307351
|
- |
|
-
|
-
|
Products for macOS enables a user logged on to the system to perform a denial-of-service attack, which could be misused to disable the protection of the ESET security product and cause general system…
|
-
|
CVE-2024-6654
|
2024-10-9 18:15 |
2024-09-27 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
307352
|
5.5 |
MEDIUM
Local
|
-
|
-
|
Rejected reason: Maintainer contacted. This is a false-positive. The flaw does not actually exist and was erroneously tested.
|
-
|
CVE-2022-3857
|
2024-10-9 13:15 |
2023-03-7 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
307353
|
7.8 |
HIGH
Local
|
-
|
-
|
Memory corruption while maintaining memory maps of HLOS memory.
|
-
|
CVE-2024-43047
|
2024-10-9 10:00 |
2024-10-7 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
307354
|
4.3 |
MEDIUM
Network
|
ultimatemember
|
ultimate_member
|
The Ultimate Member – User Profile, Registration, Login, Member Directory, Content Restriction & Membership Plugin plugin for WordPress is vulnerable to Cross-Site Request Forgery in all versions up …
|
CWE-352
Origin Validation Error
|
CVE-2024-8520
|
2024-10-9 06:50 |
2024-10-4 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
307355
|
8.8 |
HIGH
Network
|
cisco
|
ios_xr network_services_orchestrator small_business_rv_series_router_firmware
|
A vulnerability in the JSON-RPC API feature in Cisco Crosswork Network Services Orchestrator (NSO) and ConfD that is used by the web-based management interfaces of Cisco Optical Site Manager and Cisc…
|
NVD-CWE-noinfo
|
CVE-2024-20381
|
2024-10-9 06:43 |
2024-09-12 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
307356
|
5.3 |
MEDIUM
Network
|
cisco
|
meraki_mx65_firmware meraki_mx64_firmware meraki_z4c_firmware meraki_z4_firmware meraki_z3c_firmware meraki_z3_firmware meraki_vmx_firmware meraki_mx600_firmware meraki_mx450_…
|
A vulnerability in the Cisco AnyConnect VPN server of Cisco Meraki MX and Cisco Meraki Z Series Teleworker Gateway devices could allow an unauthenticated, remote attacker to cause a DoS condition for…
|
CWE-639
Authorization Bypass Through User-Controlled Key
|
CVE-2024-20513
|
2024-10-9 06:16 |
2024-10-3 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
307357
|
7.5 |
HIGH
Network
|
cisco
|
ios_xe
|
A vulnerability in the HTTP Server feature of Cisco IOS XE Software when the Telephony Service feature is enabled could allow an unauthenticated, remote attacker to cause a denial of service (DoS) co…
|
CWE-476
NULL Pointer Dereference
|
CVE-2024-20436
|
2024-10-9 06:00 |
2024-09-26 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
307358
|
2.7 |
LOW
Network
|
gitlab
|
gitlab
|
An information disclosure issue has been discovered in GitLab EE affecting all versions starting from 16.5 prior to 17.2.8, from 17.3 prior to 17.3.4, and from 17.4 prior to 17.4.1. A maintainer coul…
|
NVD-CWE-Other
|
CVE-2024-4278
|
2024-10-9 04:51 |
2024-09-26 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
307359
|
- |
|
-
|
-
|
OnlineNewsSite v1.0 is vulnerable to Cross Site Scripting (XSS) which allows attackers to execute arbitrary code via the Title and summary fields in the /admin/post/edit/ endpoint.
|
-
|
CVE-2024-45933
|
2024-10-9 04:35 |
2024-10-8 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
307360
|
- |
|
-
|
-
|
TP-Link WR740N V6 has a stack overflow vulnerability via the ssid parameter in /userRpm/popupSiteSurveyRpm.htm url.
|
-
|
CVE-2024-46325
|
2024-10-9 04:35 |
2024-10-7 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|