5.7

CVSS3.1

CVE-2024-50996 -

Netgear R8500 v1.0.2.160, XR300 v1.0.3.78, R7000P v1.3.3.154, and R6400 v2 1.0.4.128 were discovered to contain a stack overflow via the bpa_server parameter at genie_bpa.cgi. This vulnerability allows attackers to cause a Denial of Service (DoS) via a crafted POST request.

πŸ“… Published: Nov. 5, 2024, midnight πŸ”„ Last Modified: May 7, 2025, 3:25 p.m.

9.8

CVSS3.1

CVE-2024-51358 -

An issue in Linux Server Heimdall v.2.6.1 allows a remote attacker to execute arbitrary code via a crafted script to the Add new application.

πŸ“… Published: Nov. 5, 2024, midnight πŸ”„ Last Modified: April 15, 2026, 12:35 a.m.

3.3

CVSS3.1

CVE-2024-50092 - net: netconsole: fix wrong warning

In the Linux kernel, the following vulnerability has been resolved: net: netconsole: fix wrong warning A warning is triggered when there is insufficient space in the buffer for userdata. However, this is not an issue since userdata will be sent in the next iteration. Current warning message: …

πŸ“… Published: Nov. 5, 2024, midnight πŸ”„ Last Modified: Oct. 1, 2025, 9:15 p.m.

5.4

CVSS3.1

CVE-2024-48312 -

WebLaudos v20.8 (118) was discovered to contain a cross-site scripting (XSS) vulnerability via the login page.

πŸ“… Published: Nov. 5, 2024, midnight πŸ”„ Last Modified: April 15, 2026, 12:35 a.m.

8.4

CVSS3.1

CVE-2024-51380 -

Stored Cross-Site Scripting (XSS) vulnerability discovered in the Properties Component of JATOS v3.9.3. This flaw allows an attacker to inject malicious JavaScript into the properties section of a study, specifically within the UUID field. When an admin user accesses the study's properties, the inj…

πŸ“… Published: Nov. 5, 2024, midnight πŸ”„ Last Modified: June 24, 2025, 1:22 p.m.

5.7

CVSS3.1

CVE-2024-52025 -

Netgear XR300 v1.0.3.78, R7000P v1.3.3.154, and R6400 v2 1.0.4.128 was discovered to contain a stack overflow via the pppoe_localip parameter at geniepppoe.cgi. This vulnerability allows attackers to cause a Denial of Service (DoS) via a crafted POST request.

πŸ“… Published: Nov. 5, 2024, midnight πŸ”„ Last Modified: May 21, 2025, 8:12 p.m.

5.7

CVSS3.1

CVE-2024-52023 -

Netgear XR300 v1.0.3.78, R7000P v1.3.3.154, and R6400 v2 1.0.4.128 was discovered to contain a stack overflow via the pppoe_localip parameter at pppoe2.cgi. This vulnerability allows attackers to cause a Denial of Service (DoS) via a crafted POST request.

πŸ“… Published: Nov. 5, 2024, midnight πŸ”„ Last Modified: May 21, 2025, 8:12 p.m.

5.7

CVSS3.1

CVE-2024-51014 -

Netgear XR300 v1.0.3.78 was discovered to contain a stack overflow via the ssid_an parameter in bridge_wireless_main.cgi. This vulnerability allows attackers to cause a Denial of Service (DoS) via a crafted POST request.

πŸ“… Published: Nov. 5, 2024, midnight πŸ”„ Last Modified: May 2, 2025, 3:43 p.m.

4.7

CVSS3.1

CVE-2024-50135 - nvme-pci: fix race condition between reset and nvme_dev_disable()

In the Linux kernel, the following vulnerability has been resolved: nvme-pci: fix race condition between reset and nvme_dev_disable() nvme_dev_disable() modifies the dev->online_queues field, therefore nvme_pci_update_nr_queues() should avoid racing against it, otherwise we could end up passing i…

πŸ“… Published: Nov. 5, 2024, midnight πŸ”„ Last Modified: Oct. 1, 2025, 9:15 p.m.

5.5

CVSS3.1

CVE-2024-50134 - drm/vboxvideo: Replace fake VLA at end of vbva_mouse_pointer_shape with real VLA

In the Linux kernel, the following vulnerability has been resolved: drm/vboxvideo: Replace fake VLA at end of vbva_mouse_pointer_shape with real VLA Replace the fake VLA at end of the vbva_mouse_pointer_shape shape with a real VLA to fix a "memcpy: detected field-spanning write error" warning: […

πŸ“… Published: Nov. 5, 2024, midnight πŸ”„ Last Modified: Nov. 3, 2025, 11:16 p.m.
Total resulsts: 349182
Page 8023 of 34,919
Β« previous page Β» next page
Filters