4

CVSS3.1

CVE-2024-11586 -

Ubuntu's implementation of pulseaudio can be crashed by a malicious program if a bluetooth headset is connected.

πŸ“… Published: Nov. 23, 2024, 2:05 a.m. πŸ”„ Last Modified: Aug. 26, 2025, 5:22 p.m.

5.3

CVSS3.1

CVE-2024-41761 - IBM Db2 denial of service

IBM Db2 for Linux, UNIX and Windows (includes Db2 Connect Server) 10.5, 11.1, and 11.5 is vulnerable to a denial of service as the server may crash under certain conditions with a specially crafted query.

πŸ“… Published: Nov. 23, 2024, 1:57 a.m. πŸ”„ Last Modified: Jan. 31, 2025, 3:26 p.m.

7.6

CVSS3.1

CVE-2024-0122 -

NVIDIA Delegated Licensing Service for all appliance platforms contains a vulnerability where an attacker may cause an unauthorized action. A successful exploit of this vulnerability may lead to partial denial of service and confidential information disclosure.

πŸ“… Published: Nov. 22, 2024, 11:23 p.m. πŸ”„ Last Modified: April 15, 2026, 12:35 a.m.

9.8

CVSS3.1

CVE-2024-0138 -

NVIDIA Base Command Manager contains a missing authentication vulnerability in the CMDaemon component. A successful exploit of this vulnerability might lead to code execution, denial of service, escalation of privileges, information disclosure, and data tampering.

πŸ“… Published: Nov. 22, 2024, 11:21 p.m. πŸ”„ Last Modified: April 15, 2026, 12:35 a.m.

8.7

CVSS4.0

CVE-2024-50054 - mySCADA myPRO Path Traversal

The back-end does not sufficiently verify the user-controlled filename parameter which makes it possible for an attacker to perform a path traversal attack and retrieve arbitrary files from the file system.

πŸ“… Published: Nov. 22, 2024, 10:22 p.m. πŸ”„ Last Modified: April 15, 2026, 12:35 a.m.

9.3

CVSS4.0

CVE-2024-47138 - mySCADA myPRO Missing Authentication for Critical Function

The administrative interface listens by default on all interfaces on a TCP port and does not require authentication when being accessed.

πŸ“… Published: Nov. 22, 2024, 10:19 p.m. πŸ”„ Last Modified: April 15, 2026, 12:35 a.m.

9.2

CVSS4.0

CVE-2024-45369 - mySCADA myPRO Improper Authentication

The web application uses a weak authentication mechanism to verify that a request is coming from an authenticated and authorized resource.

πŸ“… Published: Nov. 22, 2024, 10:18 p.m. πŸ”„ Last Modified: April 15, 2026, 12:35 a.m.

10

CVSS4.0

CVE-2024-52034 - mySCADA myPRO OS Command Injection

An OS Command Injection vulnerability exists within myPRO Manager. A parameter within a command can be exploited by an unauthenticated remote attacker to inject arbitrary operating system commands.

πŸ“… Published: Nov. 22, 2024, 10:15 p.m. πŸ”„ Last Modified: April 15, 2026, 12:35 a.m.

10

CVSS4.0

CVE-2024-47407 - mySCADA myPRO OS Command Injection

A parameter within a command does not properly validate input within myPRO Manager which could be exploited by an unauthenticated remote attacker to inject arbitrary operating system commands.

πŸ“… Published: Nov. 22, 2024, 10:15 p.m. πŸ”„ Last Modified: April 15, 2026, 12:35 a.m.

6.9

CVSS4.0

CVE-2024-11630 - E-Lins H685/H685f/H700/H720/H750/H820/H820Q/H820Q0/H900 OEM Backend hard-coded credentials

A vulnerability has been found in E-Lins H685, H685f, H700, H720, H750, H820, H820Q, H820Q0 and H900 up to 3.2 and classified as critical. This vulnerability affects unknown code of the component OEM Backend. The manipulation leads to hard-coded credentials. The attack can be initiated remotely. Th…

πŸ“… Published: Nov. 22, 2024, 10 p.m. πŸ”„ Last Modified: April 15, 2026, 12:35 a.m.
Total resulsts: 346627
Page 7465 of 34,663
Β« previous page Β» next page
Filters