7.5

CVSS3.1

CVE-2024-52920 -

Bitcoin Core before 0.20.0 allows remote attackers to cause a denial of service (infinite loop) via a malformed GETDATA message.

πŸ“… Published: Nov. 18, 2024, midnight πŸ”„ Last Modified: April 30, 2025, 4:18 p.m.

7.5

CVSS3.1

CVE-2024-52914 -

In Bitcoin Core before 0.18.0, a node could be stalled for hours when processing the orphans of a crafted unconfirmed transaction.

πŸ“… Published: Nov. 18, 2024, midnight πŸ”„ Last Modified: April 30, 2025, 4:15 p.m.

9.8

CVSS3.1

CVE-2024-50919 -

Jpress until v5.1.1 has arbitrary file uploads on the windows platform, and the construction of non-standard file formats such as .jsp. can lead to arbitrary command execution

πŸ“… Published: Nov. 18, 2024, midnight πŸ”„ Last Modified: May 21, 2025, 6:06 p.m.

5.4

CVSS3.1

CVE-2024-52943 -

An issue was discovered in Veritas Enterprise Vault before 15.1 UPD882911, ZDI-CAN-24697. It allows an authenticated remote attacker to inject a parameter into an HTTP request, allowing for Cross-Site Scripting (XSS) while viewing archived content. This could reflect back to an authenticated user w…

πŸ“… Published: Nov. 18, 2024, midnight πŸ”„ Last Modified: April 30, 2025, 4:18 p.m.

7.8

CVSS3.1

CVE-2024-52945 -

An issue was discovered in Veritas NetBackup before 10.5. This only applies to NetBackup components running on a Windows Operating System. If a user executes specific NetBackup commands or an attacker uses social engineering techniques to impel the user to execute the commands, a malicious DLL coul…

πŸ“… Published: Nov. 18, 2024, midnight πŸ”„ Last Modified: April 30, 2025, 4:19 p.m.

5.3

CVSS3.1

CVE-2024-52921 -

In Bitcoin Core before 25.0, a peer can affect the download state of other peers by sending a mutated block.

πŸ“… Published: Nov. 18, 2024, midnight πŸ”„ Last Modified: April 30, 2025, 4:17 p.m.

6.5

CVSS3.1

CVE-2024-52917 -

Bitcoin Core before 22.0 has a miniupnp infinite loop in which it allocates memory on the basis of random data received over the network, e.g., large M-SEARCH replies from a fake UPnP device.

πŸ“… Published: Nov. 18, 2024, midnight πŸ”„ Last Modified: April 30, 2025, 4:16 p.m.

5.4

CVSS3.1

CVE-2024-52944 -

An issue was discovered in Veritas Enterprise Vault before 15.1 UPD882911, ZDI-CAN-24698. It allows an authenticated remote attacker to inject a parameter into an HTTP request, allowing for Cross-Site Scripting while viewing archived content. This could reflect back to an authenticated user without…

πŸ“… Published: Nov. 18, 2024, midnight πŸ”„ Last Modified: April 30, 2025, 4:19 p.m.

7.5

CVSS3.1

CVE-2023-49952 -

Mastodon 4.1.x before 4.1.17 and 4.2.x before 4.2.9 allows a bypass of rate limiting via a crafted HTTP request header.

πŸ“… Published: Nov. 18, 2024, midnight πŸ”„ Last Modified: May 7, 2025, 1:38 p.m.

7.5

CVSS3.1

CVE-2024-44757 -

An arbitrary file download vulnerability in the component /Basics/DownloadInpFile of NUS-M9 ERP Management Software v3.0.0 allows attackers to download arbitrary files and access sensitive information via a crafted interface request.

πŸ“… Published: Nov. 18, 2024, midnight πŸ”„ Last Modified: Oct. 1, 2025, 4:01 p.m.
Total resulsts: 344986
Page 7422 of 34,499
Β« previous page Β» next page
Filters