6.5
CVE-2024-40432 -
A lack of input validation in Realtek SD card reader driver before 10.0.26100.21374 through the implementation of the IOCTL_SFFDISK_DEVICE_COMMAND control of the SD card reader driver allows a privileged attacker to crash the OS.
5.9
CVE-2024-50383 -
Botan before 3.6.0, when certain GCC versions are used, has a compiler-induced secret-dependent operation in lib/utils/donna128.h in donna128 (used in Chacha-Poly1305 and x25519). An addition can be skipped if a carry is not set. This was observed for GCC 11.3.0 with -O2 on MIPS, and GCC on x86-i38β¦
4.3
CVE-2024-48213 -
RockOA v2.6.5 is vulnerable to Directory Traversal in webmain/system/beifen/beifenAction.php.
7.8
CVE-2024-7587 - Information Disclosure, Information Tampering and Denial of Service (DoS) Vulnerability in GENESIS6β¦
Incorrect Default Permissions vulnerability in GenBroker32, which is included in the installers for Mitsubishi Electric GENESIS64 versions 10.97.3 and prior, Mitsubishi Electric Iconics Digital Solutions GENESIS64 versions 10.97.3 and prior, Mitsubishi Electric ICONICS Suite versions 10.97.3 and prβ¦
8.8
CVE-2024-10231 -
Type Confusion in V8 in Google Chrome prior to 130.0.6723.69 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML page. (Chromium security severity: High)
8.8
CVE-2024-10230 -
Type Confusion in V8 in Google Chrome prior to 130.0.6723.69 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML page. (Chromium security severity: High)
8.1
CVE-2024-10229 -
Inappropriate implementation in Extensions in Google Chrome prior to 130.0.6723.69 allowed a remote attacker to bypass site isolation via a crafted Chrome Extension. (Chromium security severity: High)
9.3
CVE-2024-43698 - Kieback&Peter DDC4000 Series Use of Weak Credentials
Kieback & Peter's DDC4000 seriesΒ uses weak credentials, which may allow an unauthenticated attacker to get full admin rights on the system.
8.6
CVE-2024-43812 - Kieback&Peter DDC4000 Series Path Traversal Insufficiently Protected Credentials
Kieback & Peter's DDC4000 seriesΒ has an insufficiently protected credentials vulnerability, which may allow an unauthenticated attacker with access to /etc/passwd to read the password hashes of all users on the system.
9.3
CVE-2024-41717 - Kieback&Peter DDC4000 Series Path Traversal
Kieback & Peter's DDC4000 seriesΒ is vulnerable to a path traversal vulnerability, which may allow an unauthenticated attacker to read files on the system.