|
307381
|
- |
|
-
|
-
|
Redis is an open source, in-memory database that persists on disk. Authenticated users can trigger a denial-of-service by using specially crafted, long string match patterns on supported commands suc…
|
CWE-674
Uncontrolled Recursion
|
CVE-2024-31228
|
2024-10-10 21:57 |
2024-10-8 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
307382
|
- |
|
-
|
-
|
Redis is an open source, in-memory database that persists on disk. An authenticated with sufficient privileges may create a malformed ACL selector which, when accessed, triggers a server panic and su…
|
CWE-20
Improper Input Validation
|
CVE-2024-31227
|
2024-10-10 21:57 |
2024-10-8 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
307383
|
- |
|
-
|
-
|
BlueCMS 1.6 suffers from Arbitrary File Deletion via the file_name parameter in an /admin/database.php?act=del request.
|
-
|
CVE-2024-45894
|
2024-10-10 21:57 |
2024-10-8 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
307384
|
- |
|
-
|
-
|
An issue was discovered in the m2m scaler driver in Samsung Mobile Processor and Wearable Processor Exynos 9820, 9825, 980, 990, 850,and W920. A Use-After-Free in the mobile processor leads to privil…
|
-
|
CVE-2024-44068
|
2024-10-10 21:57 |
2024-10-8 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
307385
|
- |
|
-
|
-
|
Missing Authentication - User & System Configuration
|
-
|
CVE-2024-47555
|
2024-10-10 21:57 |
2024-10-8 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
307386
|
- |
|
-
|
-
|
RuoYi v4.7.9 and before has a security flaw that allows escaping from comments within the code generation feature, enabling the injection of malicious code.
|
-
|
CVE-2024-46076
|
2024-10-10 21:57 |
2024-10-8 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
307387
|
- |
|
-
|
-
|
D-Link COVR-2600R FW101b05 is vulnerable to Buffer Overflow. In the function sub_24E28, the HTTP_REFERER is obtained through an environment variable, and this field is controllable, allowing it to be…
|
-
|
CVE-2024-44674
|
2024-10-10 21:57 |
2024-10-8 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
307388
|
- |
|
-
|
-
|
There is a stored Cross-site Scripting vulnerability in Esri Portal for ArcGIS versions 10.8.1 – 1121 that may allow a remote, authenticated attacker to create a crafted link that can be saved as a n…
|
CWE-79
Cross-site Scripting
|
CVE-2024-25709
|
2024-10-10 21:57 |
2024-04-5 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
307389
|
- |
|
-
|
-
|
There is an HTML injection vulnerability in Esri Portal for ArcGIS <=11.0 that may allow a remote, unauthenticated attacker to craft a URL which, when clicked, could potentially generate a message th…
|
-
|
CVE-2024-25706
|
2024-10-10 21:57 |
2024-04-5 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
307390
|
- |
|
-
|
-
|
There is a cross site scripting vulnerability in the Esri Portal for ArcGIS Experience Builder 11.1 and below on Windows and Linux that allows a remote, unauthenticated attacker to create a crafted l…
|
CWE-79
Cross-site Scripting
|
CVE-2024-25705
|
2024-10-10 21:57 |
2024-04-5 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|