|
308251
|
8.4 |
HIGH
Local
|
microsoft
|
windows_server_2022_23h2 windows_server_2022 windows_11_21h2 windows_11_23h2 windows_11_24h2 windows_11_22h2
|
Windows Scripting Engine Security Feature Bypass Vulnerability
|
NVD-CWE-noinfo
|
CVE-2024-43584
|
2024-10-17 06:38 |
2024-10-9 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
308252
|
7.8 |
HIGH
Local
|
microsoft
|
windows_server_2008 windows_server_2012 windows_10_1507 windows_server_2016 windows_server_2022_23h2 windows_10_1809 windows_server_2022 windows_11_21h2 windows_10_21h2 win…
|
Winlogon Elevation of Privilege Vulnerability
|
NVD-CWE-noinfo
|
CVE-2024-43583
|
2024-10-17 06:36 |
2024-10-9 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
308253
|
8.1 |
HIGH
Network
|
microsoft
|
windows_server_2022_23h2 windows_10_1809 windows_server_2022 windows_11_21h2 windows_10_21h2 windows_10_22h2 windows_11_23h2 windows_11_24h2 windows_11_22h2 windows_server_…
|
Remote Desktop Protocol Server Remote Code Execution Vulnerability
|
NVD-CWE-noinfo
|
CVE-2024-43582
|
2024-10-17 06:35 |
2024-10-9 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
308254
|
8.8 |
HIGH
Network
|
microsoft
|
power_bi_report_server
|
Power BI Report Server Spoofing Vulnerability
|
NVD-CWE-noinfo
|
CVE-2024-43481
|
2024-10-17 06:34 |
2024-10-9 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
308255
|
4.8 |
MEDIUM
Network
|
esri
|
portal_for_arcgis
|
There is a stored Cross-site Scripting vulnerability in Esri Portal for ArcGIS Enterprise Sites versions 10.8.1 – 11.1 that may allow a remote, authenticated attacker to create a crafted link that is…
|
CWE-79
Cross-site Scripting
|
CVE-2024-25702
|
2024-10-17 06:03 |
2024-10-5 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
308256
|
4.8 |
MEDIUM
Network
|
esri
|
portal_for_arcgis
|
There is a stored Cross-site Scripting vulnerability in Esri Portal for ArcGIS Enterprise Experience Builder versions 10.8.1 – 11.1 that may allow a remote, authenticated attacker to create a crafted…
|
CWE-79
Cross-site Scripting
|
CVE-2024-25701
|
2024-10-17 06:00 |
2024-10-5 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
308257
|
4.8 |
MEDIUM
Network
|
esri
|
portal_for_arcgis
|
There is a stored Cross-site Scripting vulnerability in Esri Portal for ArcGIS Enterprise versions 10.8.1 – 10.9.1 that may allow a remote, authenticated attacker to create a crafted link that is sto…
|
CWE-79
Cross-site Scripting
|
CVE-2024-25694
|
2024-10-17 06:00 |
2024-10-5 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
308258
|
- |
|
-
|
-
|
An issue in Creative Labs Pte Ltd com.creative.apps.xficonnect 2.00.02 allows a remote attacker to obtain sensitive information via the firmware update process.
|
-
|
CVE-2024-48795
|
2024-10-17 05:35 |
2024-10-15 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
308259
|
- |
|
-
|
-
|
An issue was discovered in version of Warp Terminal prior to 2024.07.18 (v0.2024.07.16.08.02). A command injection vulnerability exists in the Docker integration functionality. An attacker can create…
|
-
|
CVE-2024-41997
|
2024-10-17 05:35 |
2024-10-15 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
308260
|
- |
|
-
|
-
|
Zendesk before 2024-07-02 allows remote attackers to read ticket history via e-mail spoofing, because Cc fields are extracted from incoming e-mail messages and used to grant additional authorization …
|
-
|
CVE-2024-49193
|
2024-10-17 05:35 |
2024-10-12 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|