|
308011
|
6.7 |
MEDIUM
Local
|
openatom
|
openharmony
|
in OpenHarmony v4.1.0 allow a local attacker with high privileges arbitrary code execution in pre-installed apps through use after free.
|
CWE-416
Use After Free
|
CVE-2024-39831
|
2024-10-17 01:53 |
2024-10-8 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
308012
|
5.5 |
MEDIUM
Local
|
openatom
|
openharmony
|
in OpenHarmony v4.1.0 and prior versions allow a local attacker cause information leak through out-of-bounds Read.
|
CWE-125
Out-of-bounds Read
|
CVE-2024-39806
|
2024-10-17 01:49 |
2024-10-8 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
308013
|
8.8 |
HIGH
Network
|
dlink
|
dir-619l_firmware
|
A vulnerability was found in D-Link DIR-619L B1 2.06. It has been declared as critical. This vulnerability affects the function formEasySetupWWConfig of the file /goform/formEasySetupWWConfig. The ma…
|
CWE-120
Classic Buffer Overflow
|
CVE-2024-9782
|
2024-10-17 01:44 |
2024-10-10 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
308014
|
4.8 |
MEDIUM
Network
|
wikimedia
|
apex
|
Improper Neutralization of Input During Web Page Generation (XSS or 'Cross-site Scripting') vulnerability in The Wikimedia Foundation Mediawiki - Apex skin allows Stored XSS.This issue affects Mediaw…
|
CWE-79
Cross-site Scripting
|
CVE-2024-47840
|
2024-10-17 01:44 |
2024-10-5 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
308015
|
8.8 |
HIGH
Network
|
dlink
|
dir-619l_firmware
|
A vulnerability was found in D-Link DIR-619L B1 2.06. It has been rated as critical. This issue affects the function formLogDnsquery of the file /goform/formLogDnsquery. The manipulation of the argum…
|
CWE-120
Classic Buffer Overflow
|
CVE-2024-9783
|
2024-10-17 01:43 |
2024-10-10 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
308016
|
6.1 |
MEDIUM
Network
|
mediawiki
|
cargo
|
Improper Neutralization of Input During Web Page Generation (XSS or 'Cross-site Scripting') vulnerability in The Wikimedia Foundation Mediawiki - Cargo allows Cross-Site Scripting (XSS).This issue af…
|
CWE-79
Cross-site Scripting
|
CVE-2024-47847
|
2024-10-17 01:42 |
2024-10-5 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
308017
|
8.8 |
HIGH
Network
|
mediawiki
|
cargo
|
Cross-Site Request Forgery (CSRF) vulnerability in The Wikimedia Foundation Mediawiki - Cargo allows Cross Site Request Forgery.This issue affects Mediawiki - Cargo: from 3.6.X before 3.6.1.
|
CWE-352
Origin Validation Error
|
CVE-2024-47846
|
2024-10-17 01:42 |
2024-10-5 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
308018
|
- |
|
-
|
-
|
On Microchip RN4870 devices, when more than one consecutive PairReqNoInputNoOutput request is
received, the device becomes incapable of completing the pairing
process. A third party can inject a se…
|
-
|
CVE-2024-29155
|
2024-10-17 01:38 |
2024-10-17 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
308019
|
- |
|
-
|
-
|
Docker Desktop before v4.34.3 allows RCE via unsanitized GitHub source link in Build view.
|
-
|
CVE-2024-9348
|
2024-10-17 01:38 |
2024-10-17 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
308020
|
- |
|
-
|
-
|
A Reflected Cross Site Scripting (XSS) vulnerability was found in /trms/listed- teachers.php in PHPGurukul Teachers Record Management System v2.1, which allows remote attackers to execute arbitrary c…
|
-
|
CVE-2024-48744
|
2024-10-17 01:38 |
2024-10-17 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|