7.3

CVSS3.1

CVE-2024-33211 -

Tenda FH1206 V1.2.0.8(8155)_EN was discovered to contain a stack-based buffer overflow vulnerability via the PPPOEPassword parameter in ip/goform/QuickIndex.

πŸ“… Published: April 23, 2024, midnight πŸ”„ Last Modified: March 17, 2025, 2:44 p.m.

8.8

CVSS3.1

CVE-2024-32258 -

The network server of fceux 2.7.0 has a path traversal vulnerability, allowing attackers to overwrite any files on the server without authentication by fake ROM.

πŸ“… Published: April 23, 2024, midnight πŸ”„ Last Modified: April 15, 2026, 12:35 a.m.

0.0

CVE-2024-33339 -

DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: This candidate was withdrawn by its CNA. Further investigation showed that it was not a security issue. Notes: none.

πŸ“… Published: April 23, 2024, midnight πŸ”„ Last Modified: April 29, 2024, 5:15 a.m.

5.4

CVSS3.1

CVE-2024-30886 -

A stored cross-site scripting (XSS) vulnerability in the remotelink function of HadSky v7.6.3 allows attackers to execute arbitrary web scripts or HTML via a crafted payload injected into the url parameter.

πŸ“… Published: April 23, 2024, midnight πŸ”„ Last Modified: May 21, 2025, 6:07 p.m.

7.5

CVSS3.1

CVE-2023-48183 -

QuickJS before c4cdd61 has a build_for_in_iterator NULL pointer dereference because of an erroneous lexical scope of "this" with eval.

πŸ“… Published: April 23, 2024, midnight πŸ”„ Last Modified: Oct. 15, 2025, 2:53 p.m.

6.7

CVSS3.1

CVE-2024-31804 -

An unquoted service path vulnerability in Terratec DMX_6Fire USB v.1.23.0.02 allows a local attacker to escalate privileges via the Program.exe component.

πŸ“… Published: April 23, 2024, midnight πŸ”„ Last Modified: April 15, 2026, 12:35 a.m.

8.1

CVSS3.1

CVE-2024-33599 - nscd: Stack-based buffer overflow in netgroup cache

nscd: Stack-based buffer overflow in netgroup cache If the Name Service Cache Daemon's (nscd) fixed size cache is exhausted by client requests then a subsequent client request for netgroup data may result in a stack-based buffer overflow. This flaw was introduced in glibc 2.15 when the cache was …

πŸ“… Published: April 23, 2024, midnight πŸ”„ Last Modified: June 18, 2025, 2:56 p.m.

7.5

CVSS3.1

CVE-2024-32662 - FreeRDP rdp_redirection_read_base64_wchar out of bound read

FreeRDP is a free implementation of the Remote Desktop Protocol. FreeRDP based clients prior to version 3.5.1 are vulnerable to out-of-bounds read. This occurs when `WCHAR` string is read with twice the size it has and converted to `UTF-8`, `base64` decoded. The string is only used to compare again…

πŸ“… Published: April 23, 2024, midnight πŸ”„ Last Modified: Feb. 13, 2025, 5:52 p.m.

9.8

CVSS3.1

CVE-2024-32658 - FreeRDP ExtractRunLengthRegular* out of bound read

FreeRDP is a free implementation of the Remote Desktop Protocol. FreeRDP based clients prior to version 3.5.1 are vulnerable to out-of-bounds read. Version 3.5.1 contains a patch for the issue. No known workarounds are available.

πŸ“… Published: April 23, 2024, midnight πŸ”„ Last Modified: Nov. 3, 2025, 9:16 p.m.

4.6

CVSS3.1

CVE-2024-32657 - Hydra has persistent XSS vulnerability serving HTML build outputs

Hydra is a Continuous Integration service for Nix based projects. Attackers can execute arbitrary code in the browser context of Hydra and execute authenticated HTTP requests. The abused feature allows Nix builds to specify files that Hydra serves to clients. One use of this functionality is servin…

πŸ“… Published: April 22, 2024, 10:24 p.m. πŸ”„ Last Modified: Sept. 22, 2025, 2:10 p.m.
Total resulsts: 349182
Page 10192 of 34,919
Β« previous page Β» next page
Filters