8.8

CVSS3.1

CVE-2023-47166 -

A firmware update vulnerability exists in the luci2-io file-import functionality of Milesight UR32L v32.3.0.7-r2. A specially crafted network request can lead to arbitrary firmware update. An attacker can send a network request to trigger this vulnerability.

πŸ“… Published: May 1, 2024, 3:31 p.m. πŸ”„ Last Modified: Nov. 4, 2025, 6:15 p.m.

9.8

CVSS3.1

CVE-2023-49606 -

A use-after-free vulnerability exists in the HTTP Connection Headers parsing in Tinyproxy 1.11.1 and Tinyproxy 1.10.0. A specially crafted HTTP header can trigger reuse of previously freed memory, which leads to memory corruption and could lead to remote code execution. An attacker needs to make an…

πŸ“… Published: May 1, 2024, 3:31 p.m. πŸ”„ Last Modified: Nov. 4, 2025, 6:15 p.m.

0.0

CVE-2023-40533 -

This CVE ID is a duplicate of CVE-2022-40468

πŸ“… Published: May 1, 2024, 3:31 p.m. πŸ”„ Last Modified: May 8, 2024, 10:15 p.m.

9.8

CVSS3.1

CVE-2024-33512 -

There is a buffer overflow vulnerability in the underlying Local User Authentication Database service that could lead to unauthenticated remote code execution by sending specially crafted packets destined to the PAPI (Aruba's access point management protocol) UDP port (8211). Successful exploitatio…

πŸ“… Published: May 1, 2024, 2:57 p.m. πŸ”„ Last Modified: April 15, 2026, 12:35 a.m.

9.8

CVSS3.1

CVE-2024-33511 -

There is a buffer overflow vulnerability in the underlying Automatic Reporting service that could lead to unauthenticated remote code execution by sending specially crafted packets destined to the PAPI (Aruba's access point management protocol) UDP port (8211). Successful exploitation of this vulne…

πŸ“… Published: May 1, 2024, 2:54 p.m. πŸ”„ Last Modified: April 15, 2026, 12:35 a.m.

9.8

CVSS3.1

CVE-2024-26305 -

There is a buffer overflow vulnerability in the underlying Utility daemon that could lead to unauthenticated remote code execution by sending specially crafted packets destined to the PAPI (Aruba's access point management protocol) UDP port (8211). Successful exploitation of this vulnerability resu…

πŸ“… Published: May 1, 2024, 2:52 p.m. πŸ”„ Last Modified: April 15, 2026, 12:35 a.m.

9.8

CVSS3.1

CVE-2024-26304 -

There is a buffer overflow vulnerability in the underlying L2/L3 Management service that could lead to unauthenticated remote code execution by sending specially crafted packets destined to the PAPI (Aruba's access point management protocol) UDP port (8211). Successful exploitation of this vulnerab…

πŸ“… Published: May 1, 2024, 2:43 p.m. πŸ”„ Last Modified: April 15, 2026, 12:35 a.m.

0.0

CVE-2024-4387 -

This CVE ID has been rejected or withdrawn by its CVE Numbering Authority.

πŸ“… Published: May 1, 2024, 1:25 p.m. πŸ”„ Last Modified: June 11, 2024, 10:15 a.m.

6.7

CVSS3.1

CVE-2024-24912 - Local privilege escalation in Harmony Endpoint Security Client for Windows via crafted DLL file

A local privilege escalation vulnerability has been identified in Harmony Endpoint Security Client for Windows versions E88.10 and below. To exploit this vulnerability, an attacker must first obtain the ability to execute local privileged code on the target system.

πŸ“… Published: May 1, 2024, 1:22 p.m. πŸ”„ Last Modified: Aug. 26, 2025, 6:56 p.m.

4.3

CVSS3.1

CVE-2024-24978 -

Denial-of-service (DoS) vulnerability exists in TvRock 0.9t8a. Receiving a specially crafted request by a remote attacker or having a user of TvRock click a specially crafted request may lead to ABEND (abnormal end). Note that the developer was unreachable, therefore, users should consider stop usi…

πŸ“… Published: May 1, 2024, 1:05 p.m. πŸ”„ Last Modified: April 15, 2026, 12:35 a.m.
Total resulsts: 349182
Page 10097 of 34,919
Β« previous page Β» next page
Filters