4.4

CVSS3.1

CVE-2024-51330 -

An issue in UltiMaker Cura v.4.41 and 5.8.1 and before allows a local attacker to execute arbitrary code via Inter-process communication (IPC) mechanism between Cura application and CuraEngine processes, localhost network stack, printing settings and G-code processing and transmission components, Uโ€ฆ

๐Ÿ“… Published: Nov. 15, 2024, midnight ๐Ÿ”„ Last Modified: April 15, 2026, 12:35 a.m.

7.8

CVSS3.1

CVE-2024-46463 -

By default, dedicated folders of ORIZON for Windows up to 2024.3 can be accessed by other users to misuse technical files and make them perform tasks with higher privileges. Configuration of ORIZON has to be modified to prevent this vulnerability.

๐Ÿ“… Published: Nov. 15, 2024, midnight ๐Ÿ”„ Last Modified: April 15, 2026, 12:35 a.m.

5.9

CVSS3.1

CVE-2024-24458 -

An invalid memory access when handling the ENB Configuration Transferย messages containing invalid PLMN Identities in Athonet vEPC MMEย v11.4.0 allows attackers to cause a Denial of Service (DoS) to the cellularย network by repeatedly initiating connections and sending a craftedย payload.

๐Ÿ“… Published: Nov. 15, 2024, midnight ๐Ÿ”„ Last Modified: April 15, 2026, 12:35 a.m.

5.3

CVSS3.1

CVE-2024-24447 -

A buffer overflow in the ngap_amf_handle_pdu_session_resource_setup_response function of oai-cn5g-amf up to v2.0.0 allows attackers to cause a Denial of Service (DoS) via a PDU Session Resource Setup Response with an empty Response Item list.

๐Ÿ“… Published: Nov. 15, 2024, midnight ๐Ÿ”„ Last Modified: April 15, 2026, 12:35 a.m.

7.5

CVSS3.1

CVE-2024-24426 -

Reachable assertions in the NGAP_FIND_PROTOCOLIE_BY_ID function of OpenAirInterface Magma v1.8.0 and OAI EPC Federation v1.2.0 allow attackers to cause a Denial of Service (DoS) via a crafted NGAP packet.

๐Ÿ“… Published: Nov. 15, 2024, midnight ๐Ÿ”„ Last Modified: April 15, 2026, 12:35 a.m.

5.3

CVSS3.1

CVE-2024-52616 - Avahi: avahi wide-area dns predictable transaction ids

A flaw was found in the Avahi-daemon, where it initializes DNS transaction IDs randomly only once at startup, incrementing them sequentially after that. This predictable behavior facilitates DNS spoofing attacks, allowing attackers to guess transaction IDs.

๐Ÿ“… Published: Nov. 15, 2024, midnight ๐Ÿ”„ Last Modified: April 15, 2026, 12:35 a.m.

7.8

CVSS3.1

CVE-2024-46467 -

By default, dedicated folders of ZONEPOINT for Windows up to 2024.1 can be accessed by other users to misuse technical files and make them perform tasks with higher privileges. Configuration of ZONEPOINT has to be modified to prevent this vulnerability.

๐Ÿ“… Published: Nov. 15, 2024, midnight ๐Ÿ”„ Last Modified: April 15, 2026, 12:35 a.m.

6.1

CVSS3.1

CVE-2024-51142 -

Cross Site Scripting vulnerability in Chamilo LMS v.1.11.26 allows an attacker to execute arbitrary code via the svkey parameter of the storageapi.php file.

๐Ÿ“… Published: Nov. 15, 2024, midnight ๐Ÿ”„ Last Modified: April 18, 2025, 2:29 a.m.

5.3

CVSS3.1

CVE-2024-51037 -

An issue in kodbox v.1.52.04 and before allows a remote attacker to obtain sensitive information via the captcha feature in the password reset function.

๐Ÿ“… Published: Nov. 15, 2024, midnight ๐Ÿ”„ Last Modified: Sept. 16, 2025, 1:35 p.m.

7.5

CVSS3.1

CVE-2024-44759 -

An arbitrary file download vulnerability in the component /Doc/DownloadFile of NUS-M9 ERP Management Software v3.0.0 allows attackers to download arbitrary files and access sensitive information via a crafted interface request.

๐Ÿ“… Published: Nov. 15, 2024, midnight ๐Ÿ”„ Last Modified: Oct. 1, 2025, 4:03 p.m.
Total resulsts: 349182
Page 7867 of 34,919
ยซ previous page ยป next page
Filters