6.4

CVSS3.1

CVE-2024-8159 - Deep Freeze 9.00.020.5760 - Out-of-bounds read

Deep Freeze 9.00.020.5760 is vulnerable to an out-of-bounds read vulnerability by triggering the 0x70014 IOCTL code of the FarDisk.sys driver.

πŸ“… Published: Oct. 3, 2024, 6:10 a.m. πŸ”„ Last Modified: July 13, 2025, 11:31 a.m.

7.5

CVSS3.1

CVE-2024-8352 - Social Web Suite – Social Media Auto Post, Social Media Auto Publish <= 4.1.11 - Directory Traversa…

The Social Web Suite – Social Media Auto Post, Social Media Auto Publish plugin for WordPress is vulnerable to Directory Traversal in all versions up to, and including, 4.1.11 via the download_log function. This makes it possible for unauthenticated attackers to read the contents of arbitrary files…

πŸ“… Published: Oct. 3, 2024, 3:32 a.m. πŸ”„ Last Modified: Oct. 8, 2024, 2:17 p.m.

7.8

CVSS3.1

CVE-2024-47136 -

Out-of-bounds read vulnerability exists in Kostac PLC Programming Software (Former name: Koyo PLC Programming Software) Version 1.6.14.0 and earlier. Having a user open a specially crafted project file which was saved using Kostac PLC Programming Software Version 1.6.9.0 and earlier may cause a den…

πŸ“… Published: Oct. 3, 2024, 2:54 a.m. πŸ”„ Last Modified: Oct. 15, 2024, 6:20 p.m.

7.8

CVSS3.1

CVE-2024-47135 -

Stack-based buffer overflow vulnerability exists in Kostac PLC Programming Software (Former name: Koyo PLC Programming Software) Version 1.6.14.0 and earlier. Having a user open a specially crafted project file which was saved using Kostac PLC Programming Software Version 1.6.9.0 and earlier may ca…

πŸ“… Published: Oct. 3, 2024, 2:53 a.m. πŸ”„ Last Modified: Oct. 15, 2024, 6:21 p.m.

7.8

CVSS3.1

CVE-2024-47134 -

Out-of-bounds write vulnerability exists in Kostac PLC Programming Software (Former name: Koyo PLC Programming Software) Version 1.6.14.0 and earlier. Having a user open a specially crafted project file which was saved using Kostac PLC Programming Software Version 1.6.9.0 and earlier may cause a de…

πŸ“… Published: Oct. 3, 2024, 2:53 a.m. πŸ”„ Last Modified: Oct. 16, 2024, 1:50 p.m.

8.2

CVSS3.1

CVE-2023-37822 -

The Eufy Homebase 2 before firmware version 3.3.4.1h creates a dedicated wireless network for its ecosystem, which serves as a proxy to the end user's primary network. The WPA2-PSK generation of this dedicated network is flawed and solely based on the serial number. Due to the flawed generation pro…

πŸ“… Published: Oct. 3, 2024, midnight πŸ”„ Last Modified: Nov. 25, 2024, 10:15 p.m.

8

CVSS3.1

CVE-2024-41596 -

Buffer Overflow vulnerabilities exist in DrayTek Vigor310 devices through 4.3.2.6 (in the Vigor management UI) because of improper retrieval and handling of the CGI form parameters.

πŸ“… Published: Oct. 3, 2024, midnight πŸ”„ Last Modified: June 11, 2025, 1:40 p.m.

8

CVSS3.1

CVE-2024-41595 -

DrayTek Vigor310 devices through 4.3.2.6 allow a remote attacker to change settings or cause a denial of service via .cgi pages because of missing bounds checks on read and write operations.

πŸ“… Published: Oct. 3, 2024, midnight πŸ”„ Last Modified: April 10, 2025, 2:37 p.m.

6.1

CVSS3.1

CVE-2024-41591 -

DrayTek Vigor3910 devices through 4.3.2.6 allow unauthenticated DOM-based reflected XSS.

πŸ“… Published: Oct. 3, 2024, midnight πŸ”„ Last Modified: March 14, 2025, 4:15 p.m.

4.7

CVSS3.1

CVE-2024-41584 -

DrayTek Vigor3910 devices through 4.3.2.6 are vulnerable to reflected XSS by authenticated users, caused by missing validation of the sFormAuthStr parameter.

πŸ“… Published: Oct. 3, 2024, midnight πŸ”„ Last Modified: April 10, 2025, 6:15 p.m.
Total resulsts: 342256
Page 7719 of 34,226
Β« previous page Β» next page
Filters