|
309331
|
- |
|
-
|
-
|
Improper input validation in Power Management Firmware (PMFW) may allow an attacker with privileges to send a malformed input for the "set temperature input selection" command, potentially resulting …
|
-
|
CVE-2023-31310
|
2024-11-1 00:35 |
2024-08-14 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
309332
|
4.9 |
MEDIUM
Network
|
funadmin
|
funadmin
|
Funadmin v5.0.2 has an arbitrary file read vulnerability in /curd/index/editfile.
|
CWE-22
Path Traversal
|
CVE-2024-48224
|
2024-11-1 00:32 |
2024-10-26 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
309333
|
5.3 |
MEDIUM
Network
|
hcltech
|
sametime
|
HCL Sametime is impacted by the error messages containing sensitive information. An attacker can use this information to launch another, more focused attack.
|
CWE-209
Information Exposure Through an Error Message
|
CVE-2023-50355
|
2024-11-1 00:18 |
2024-10-24 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
309334
|
7.5 |
HIGH
Network
|
mozilla
|
thunderbird firefox
|
An attacker could have caused a use-after-free when accessibility was enabled, leading to a potentially exploitable crash. This vulnerability affects Firefox < 132, Firefox ESR < 128.4, Firefox ESR <…
|
CWE-416
Use After Free
|
CVE-2024-10459
|
2024-11-1 00:16 |
2024-10-29 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
309335
|
4.3 |
MEDIUM
Network
|
rockoa
|
xinhu
|
RockOA v2.6.5 is vulnerable to Directory Traversal in webmain/system/beifen/beifenAction.php.
|
CWE-22
Path Traversal
|
CVE-2024-48213
|
2024-11-1 00:09 |
2024-10-24 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
309336
|
7.5 |
HIGH
Network
|
mozilla
|
thunderbird firefox
|
A permission leak could have occurred from a trusted site to an untrusted site via `embed` or `object` elements. This vulnerability affects Firefox < 132, Firefox ESR < 128.4, Firefox ESR < 115.17, T…
|
NVD-CWE-noinfo
|
CVE-2024-10458
|
2024-11-1 00:03 |
2024-10-29 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
309337
|
5.5 |
MEDIUM
Local
|
linux
|
linux_kernel
|
In the Linux kernel, the following vulnerability has been resolved:
vrf: revert "vrf: Remove unnecessary RCU-bh critical section"
This reverts commit 504fc6f4f7f681d2a03aa5f68aad549d90eab853.
dev_…
|
CWE-667
Improper Locking
|
CVE-2024-49980
|
2024-10-31 23:58 |
2024-10-22 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
309338
|
5.5 |
MEDIUM
Local
|
linux
|
linux_kernel
|
In the Linux kernel, the following vulnerability has been resolved:
iommu/vt-d: Fix PCI device refcount leak in has_external_pci()
for_each_pci_dev() is implemented by pci_get_device(). The comment…
|
NVD-CWE-Other
|
CVE-2022-49000
|
2024-10-31 23:56 |
2024-10-22 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
309339
|
4.3 |
MEDIUM
Network
|
hitachienergy
|
tro610_firmware tro620_firmware tro670_firmware
|
Profile files from TRO600 series radios are extracted in plain-text
and encrypted file formats. Profile files provide potential attackers
valuable configuration information about the Tropos network. …
|
CWE-212
Improper Removal of Sensitive Information Before Storage or Transfer
|
CVE-2024-41156
|
2024-10-31 23:49 |
2024-10-29 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
309340
|
7.1 |
HIGH
Local
|
linux
|
linux_kernel
|
In the Linux kernel, the following vulnerability has been resolved:
ipv4: Handle attempt to delete multipath route when fib_info contains an nh reference
Gwangun Jung reported a slab-out-of-bounds …
|
CWE-125
Out-of-bounds Read
|
CVE-2022-48999
|
2024-10-31 23:44 |
2024-10-22 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|