|
307711
|
5.9 |
MEDIUM
Network
|
-
|
-
|
Microsoft Edge (Chromium-based) Remote Code Execution Vulnerability
|
CWE-122
Heap-based Buffer Overflow
|
CVE-2024-43587
|
2024-10-18 10:15 |
2024-10-18 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
307712
|
- |
|
-
|
-
|
Improper access removal handling in firmware of some Solidigm DC Products may allow an attacker with physical access to gain unauthorized access.
|
-
|
CVE-2024-47976
|
2024-10-18 07:15 |
2024-10-8 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
307713
|
6.5 |
MEDIUM
Network
|
microsoft
|
office 365_apps office_long_term_servicing_channel
|
Microsoft Office Spoofing Vulnerability
|
NVD-CWE-noinfo
|
CVE-2024-43609
|
2024-10-18 06:18 |
2024-10-9 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
307714
|
7.8 |
HIGH
Local
|
microsoft
|
deepspeed
|
DeepSpeed Remote Code Execution Vulnerability
|
NVD-CWE-noinfo
|
CVE-2024-43497
|
2024-10-18 06:15 |
2024-10-9 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
307715
|
6.6 |
MEDIUM
Network
|
microsoft
|
azure_service_fabric
|
Azure Service Fabric for Linux Remote Code Execution Vulnerability
|
NVD-CWE-noinfo
|
CVE-2024-43480
|
2024-10-18 06:14 |
2024-10-9 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
307716
|
7.8 |
HIGH
Local
|
thinkst
|
opencanary
|
OpenCanary, a multi-protocol network honeypot, directly executed commands taken from its config file. Prior to version 0.9.4, where the config file is stored in an unprivileged user directory but the…
|
CWE-863
Incorrect Authorization
|
CVE-2024-48911
|
2024-10-18 06:13 |
2024-10-15 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
307717
|
8.8 |
HIGH
Network
|
dueclic
|
wp_2fa_with_telegram
|
The WP 2FA with Telegram plugin for WordPress is vulnerable to Authentication Bypass in versions up to, and including, 3.0. This is due to insufficient validation of the user-controlled key on the 'v…
|
CWE-639
Authorization Bypass Through User-Controlled Key
|
CVE-2024-9687
|
2024-10-18 06:11 |
2024-10-15 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
307718
|
4.3 |
MEDIUM
Network
|
elementor
|
website_builder
|
The Elementor Website Builder – More than Just a Page Builder plugin for WordPress is vulnerable to Basic Information Exposure in all versions up to, and including, 3.23.5 via the get_image_alt funct…
|
NVD-CWE-noinfo
|
CVE-2024-6757
|
2024-10-18 06:09 |
2024-10-15 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
307719
|
7.8 |
HIGH
Local
|
microsoft
|
windows_server_2008 windows_server_2012 windows_10_1507 windows_server_2016 windows_server_2022_23h2 windows_10_1809 windows_server_2022 windows_10_1607 windows_server_2019
|
Windows Common Log File System Driver Elevation of Privilege Vulnerability
|
NVD-CWE-noinfo
|
CVE-2024-43501
|
2024-10-18 06:06 |
2024-10-9 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
307720
|
5.3 |
MEDIUM
Network
|
hcltech
|
bigfix_platform
|
A dynamic search for a prerequisite library could allow the possibility for an attacker to replace the correct file under some circumstances.
|
CWE-427
Uncontrolled Search Path Element
|
CVE-2024-30117
|
2024-10-18 06:01 |
2024-10-15 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|