5.5

CVSS3.1

CVE-2025-21677 - pfcp: Destroy device along with udp socket's netns dismantle.

In the Linux kernel, the following vulnerability has been resolved: pfcp: Destroy device along with udp socket's netns dismantle. pfcp_newlink() links the device to a list in dev_net(dev) instead of net, where a udp tunnel socket is created. Even when net is removed, the device stays alive on de…

πŸ“… Published: Jan. 31, 2025, midnight πŸ”„ Last Modified: Oct. 15, 2025, 1:41 p.m.

7.5

CVSS3.1

CVE-2024-53357 -

Multiple SQL injection vulnerabilities in EasyVirt DCScope <= 8.6.0 and CO2Scope <= 1.3.0 allows remote authenticated attackers, with low privileges, to (1) add an admin user via the /api/user/addalias route; (2) modifiy a user via the /api/user/updatealiasroute; (4) delete users via the /api/user/…

πŸ“… Published: Jan. 31, 2025, midnight πŸ”„ Last Modified: May 24, 2025, 1:15 a.m.

9.8

CVSS3.1

CVE-2024-47857 -

SSH Communication Security PrivX versions between 18.0-36.0 implement insufficient validation on public key signatures when using native SSH connections via a proxy port. This allows an existing PrivX "account A" to impersonate another existing PrivX "account B" and gain access to SSH target hosts …

πŸ“… Published: Jan. 31, 2025, midnight πŸ”„ Last Modified: March 18, 2025, 8:15 p.m.

9.8

CVSS3.1

CVE-2024-53584 -

OpenPanel v0.3.4 was discovered to contain an OS command injection vulnerability via the timezone parameter.

πŸ“… Published: Jan. 31, 2025, midnight πŸ”„ Last Modified: May 23, 2025, 3:57 p.m.

5.5

CVSS3.1

CVE-2025-21681 - openvswitch: fix lockup on tx to unregistering netdev with carrier

In the Linux kernel, the following vulnerability has been resolved: openvswitch: fix lockup on tx to unregistering netdev with carrier Commit in a fixes tag attempted to fix the issue in the following sequence of calls: do_output -> ovs_vport_send -> dev_queue_xmit -> __…

πŸ“… Published: Jan. 31, 2025, midnight πŸ”„ Last Modified: Nov. 3, 2025, 9:19 p.m.

6.4

CVSS3.1

CVE-2024-53007 -

Bentley Systems ProjectWise Integration Server before 10.00.03.288 allows unintended SQL query execution by an authenticated user via an API call.

πŸ“… Published: Jan. 31, 2025, midnight πŸ”„ Last Modified: Jan. 31, 2025, 5:44 p.m.

5.5

CVSS3.1

CVE-2024-57948 - mac802154: check local interfaces before deleting sdata list

In the Linux kernel, the following vulnerability has been resolved: mac802154: check local interfaces before deleting sdata list syzkaller reported a corrupted list in ieee802154_if_remove. [1] Remove an IEEE 802.15.4 network interface after unregister an IEEE 802.15.4 hardware device from the s…

πŸ“… Published: Jan. 31, 2025, midnight πŸ”„ Last Modified: Jan. 5, 2026, 10:56 a.m.

8.8

CVSS3.1

CVE-2024-53355 -

Multiple incorrect access control issues in EasyVirt DCScope <= 8.6.0 and CO2Scope <= 1.3.0 allows remote authenticated attackers, with low privileges, to (1) add an admin user via the /api/user/addalias route; (2) modifiy a user via the /api/user/updatealias route; (4) delete users via the /api/us…

πŸ“… Published: Jan. 31, 2025, midnight πŸ”„ Last Modified: May 23, 2025, 3:37 p.m.

5.5

CVSS3.1

CVE-2025-21673 - smb: client: fix double free of TCP_Server_Info::hostname

In the Linux kernel, the following vulnerability has been resolved: smb: client: fix double free of TCP_Server_Info::hostname When shutting down the server in cifs_put_tcp_session(), cifsd thread might be reconnecting to multiple DFS targets before it realizes it should exit the loop, so @server-…

πŸ“… Published: Jan. 31, 2025, midnight πŸ”„ Last Modified: Oct. 1, 2025, 8:18 p.m.

9.8

CVSS3.1

CVE-2024-53320 -

Qualisys C++ SDK commit a32a21a was discovered to contain multiple stack buffer overflows via the GetCurrentFrame, SaveCapture, and LoadProject functions.

πŸ“… Published: Jan. 31, 2025, midnight πŸ”„ Last Modified: Feb. 3, 2025, 9:15 p.m.
Total resulsts: 343168
Page 6298 of 34,317
Β« previous page Β» next page
Filters