|
305461
|
- |
|
-
|
-
|
Dell PowerProtect DD, versions prior to 7.7.5.50, contains an Exposure of Sensitive Information to an Unauthorized Actor vulnerability. A low privileged attacker with remote access could potentially …
|
CWE-200
Information Exposure
|
CVE-2024-48011
|
2024-11-8 12:15 |
2024-11-8 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
305462
|
- |
|
-
|
-
|
Dell PowerProtect DD, versions prior to 8.1.0.0, 7.13.1.10, 7.10.1.40, and 7.7.5.50, contains an access control vulnerability. A remote high privileged attacker could potentially exploit this vulnera…
|
CWE-284
Improper Access Control
|
CVE-2024-48010
|
2024-11-8 12:15 |
2024-11-8 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
305463
|
- |
|
-
|
-
|
Dell PowerProtect Data Domain, versions prior to 8.1.0.0, 7.13.1.10, 7.10.1.40, and 7.7.5.50, contains an escalation of privilege vulnerability. A local low privileged attacker could potentially expl…
|
-
|
CVE-2024-45759
|
2024-11-8 12:15 |
2024-11-8 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
305464
|
- |
|
-
|
-
|
upgrademysqlstatus in databases/views.py in CyberPanel (aka Cyber Panel) before 5b08cd6 allows remote attackers to bypass authentication and execute arbitrary commands via /dataBases/upgrademysqlstat…
|
-
|
CVE-2024-51567
|
2024-11-8 11:00 |
2024-10-30 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
305465
|
- |
|
-
|
-
|
Improper Privilege Management vulnerability in WatchGuard EPDR, Panda AD360 and Panda Dome on Windows (PSANHost.exe module) allows arbitrary file delete with SYSTEM permissions.
This issue affects EP…
|
-
|
CVE-2024-8424
|
2024-11-8 09:15 |
2024-11-8 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
305466
|
- |
|
-
|
-
|
XStream is a simple library to serialize objects to XML and back again. This vulnerability may allow a remote attacker to terminate the application with a stack overflow error resulting in a denial o…
|
CWE-502 CWE-121
Deserialization of Untrusted Data Stack-based Buffer Overflow
|
CVE-2024-47072
|
2024-11-8 09:15 |
2024-11-8 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
305467
|
- |
|
-
|
-
|
changedetection.io is a free open source web page change detection tool. The validation for the file URI scheme falls short, and results in an attacker being able to read any file on the system. This…
|
CWE-22
Path Traversal
|
CVE-2024-51998
|
2024-11-8 09:15 |
2024-11-8 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
305468
|
- |
|
-
|
-
|
Duende.AccessTokenManagement.OpenIdConnect is a set of .NET libraries that manage OAuth and OpenId Connect access tokens. HTTP Clients created by `AddUserAccessTokenHttpClient` may use a different us…
|
CWE-270
Privilege Context Switching Error
|
CVE-2024-51987
|
2024-11-8 09:15 |
2024-11-8 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
305469
|
7.8 |
HIGH
Local
|
linux
|
linux_kernel
|
In the Linux kernel, the following vulnerability has been resolved:
net: pse-pd: Fix out of bound for loop
Adjust the loop limit to prevent out-of-bounds access when iterating over
PI structures. T…
|
CWE-787
Out-of-bounds Write
|
CVE-2024-50129
|
2024-11-8 06:49 |
2024-11-6 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
305470
|
5.5 |
MEDIUM
Local
|
linux
|
linux_kernel
|
In the Linux kernel, the following vulnerability has been resolved:
tracing/probes: Fix MAX_TRACE_ARGS limit handling
When creating a trace_probe we would set nr_args prior to truncating the
argume…
|
CWE-476
NULL Pointer Dereference
|
CVE-2024-50132
|
2024-11-8 06:32 |
2024-11-6 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|