7.8

CVSS3.1

CVE-2024-57850 - jffs2: Prevent rtime decompress memory corruption

In the Linux kernel, the following vulnerability has been resolved: jffs2: Prevent rtime decompress memory corruption The rtime decompression routine does not fully check bounds during the entirety of the decompression pass and can corrupt memory outside the decompression buffer if the compressed…

πŸ“… Published: Jan. 11, 2025, midnight πŸ”„ Last Modified: Jan. 5, 2026, 10:56 a.m.

7.8

CVSS3.1

CVE-2024-57849 - s390/cpum_sf: Handle CPU hotplug remove during sampling

In the Linux kernel, the following vulnerability has been resolved: s390/cpum_sf: Handle CPU hotplug remove during sampling CPU hotplug remove handling triggers the following function call sequence: CPUHP_AP_PERF_S390_SF_ONLINE --> s390_pmu_sf_offline_cpu() ... CPUHP_AP_PERF_ONLINE …

πŸ“… Published: Jan. 11, 2025, midnight πŸ”„ Last Modified: Jan. 5, 2026, 10:56 a.m.

7.8

CVSS3.1

CVE-2024-50051 - spi: mpc52xx: Add cancel_work_sync before module remove

In the Linux kernel, the following vulnerability has been resolved: spi: mpc52xx: Add cancel_work_sync before module remove If we remove the module which will call mpc52xx_spi_remove it will free 'ms' through spi_unregister_controller. while the work ms->work will be used. The sequence of operati…

πŸ“… Published: Jan. 11, 2025, midnight πŸ”„ Last Modified: Nov. 3, 2025, 9:16 p.m.

8.8

CVSS3.1

CVE-2024-9188 - Specially constructed queries cause cross platform scripting leaking administrator tokens

Specially constructed queries cause cross platform scripting leaking administrator tokens

πŸ“… Published: Jan. 10, 2025, 10:05 p.m. πŸ”„ Last Modified: Sept. 29, 2025, 12:16 p.m.

7.6

CVSS3.1

CVE-2024-47520 - A user with advanced report application access rights can perform actions for which they are not au…

A user with advanced report application access rights can perform actions for which they are not authorized

πŸ“… Published: Jan. 10, 2025, 10 p.m. πŸ”„ Last Modified: Sept. 29, 2025, 12:32 p.m.

8.3

CVSS3.1

CVE-2024-47519 - Backup uploads to ETM subject to man-in-the-middle interception

Backup uploads to ETM subject to man-in-the-middle interception

πŸ“… Published: Jan. 10, 2025, 9:56 p.m. πŸ”„ Last Modified: Sept. 29, 2025, 12:31 p.m.

6.4

CVSS3.1

CVE-2024-47518 - Specially constructed queries targeting ETM could discover active remote access sessions

Specially constructed queries targeting ETM could discover active remote access sessions

πŸ“… Published: Jan. 10, 2025, 9:52 p.m. πŸ”„ Last Modified: Sept. 29, 2025, 12:30 p.m.

6.8

CVSS3.1

CVE-2024-47517 - Expired and unusable administrator authentication tokens can be revealed by units that have timed o…

Expired and unusable administrator authentication tokens can be revealed by units that have timed out from ETM access

πŸ“… Published: Jan. 10, 2025, 9:47 p.m. πŸ”„ Last Modified: Sept. 29, 2025, 12:25 p.m.

8.3

CVSS3.1

CVE-2024-9134 - Multiple SQL Injection vulnerabilities exist in the reporting application. A user with advanced re…

Multiple SQL Injection vulnerabilities exist in the reporting application. A user with advanced report application access rights can exploit the SQL injection, allowing them to execute commands on the underlying operating system with elevated privileges.

πŸ“… Published: Jan. 10, 2025, 9:44 p.m. πŸ”„ Last Modified: Dec. 18, 2025, 3:05 p.m.

6.6

CVSS3.1

CVE-2024-9133 - A user with administrator privileges is able to retrieve authentication tokens

A user with administrator privileges is able to retrieve authentication tokens

πŸ“… Published: Jan. 10, 2025, 9:40 p.m. πŸ”„ Last Modified: Sept. 29, 2025, 12:35 p.m.
Total resulsts: 345187
Page 6788 of 34,519
Β« previous page Β» next page
Filters