6.5

CVSS3.1

CVE-2024-40432 -

A lack of input validation in Realtek SD card reader driver before 10.0.26100.21374 through the implementation of the IOCTL_SFFDISK_DEVICE_COMMAND control of the SD card reader driver allows a privileged attacker to crash the OS.

πŸ“… Published: Oct. 23, 2024, midnight πŸ”„ Last Modified: April 15, 2026, 12:35 a.m.

5.9

CVSS3.1

CVE-2024-50383 -

Botan before 3.6.0, when certain GCC versions are used, has a compiler-induced secret-dependent operation in lib/utils/donna128.h in donna128 (used in Chacha-Poly1305 and x25519). An addition can be skipped if a carry is not set. This was observed for GCC 11.3.0 with -O2 on MIPS, and GCC on x86-i38…

πŸ“… Published: Oct. 23, 2024, midnight πŸ”„ Last Modified: July 10, 2025, 7:26 p.m.

4.3

CVSS3.1

CVE-2024-48213 -

RockOA v2.6.5 is vulnerable to Directory Traversal in webmain/system/beifen/beifenAction.php.

πŸ“… Published: Oct. 23, 2024, midnight πŸ”„ Last Modified: Oct. 31, 2024, 6:35 p.m.

7.8

CVSS3.1

CVE-2024-7587 - Information Disclosure, Information Tampering and Denial of Service (DoS) Vulnerability in GENESIS6…

Incorrect Default Permissions vulnerability in GenBroker32, which is included in the installers for Mitsubishi Electric GENESIS64 versions 10.97.3 and prior, Mitsubishi Electric Iconics Digital Solutions GENESIS64 versions 10.97.3 and prior, Mitsubishi Electric ICONICS Suite versions 10.97.3 and pr…

πŸ“… Published: Oct. 22, 2024, 10:19 p.m. πŸ”„ Last Modified: Jan. 9, 2026, 6:16 a.m.

8.8

CVSS3.1

CVE-2024-10231 -

Type Confusion in V8 in Google Chrome prior to 130.0.6723.69 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML page. (Chromium security severity: High)

πŸ“… Published: Oct. 22, 2024, 9:43 p.m. πŸ”„ Last Modified: Oct. 30, 2024, 3:55 a.m.

8.8

CVSS3.1

CVE-2024-10230 -

Type Confusion in V8 in Google Chrome prior to 130.0.6723.69 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML page. (Chromium security severity: High)

πŸ“… Published: Oct. 22, 2024, 9:43 p.m. πŸ”„ Last Modified: Oct. 31, 2024, 8:35 a.m.

8.1

CVSS3.1

CVE-2024-10229 -

Inappropriate implementation in Extensions in Google Chrome prior to 130.0.6723.69 allowed a remote attacker to bypass site isolation via a crafted Chrome Extension. (Chromium security severity: High)

πŸ“… Published: Oct. 22, 2024, 9:43 p.m. πŸ”„ Last Modified: Oct. 30, 2024, 3:55 a.m.

9.3

CVSS4.0

CVE-2024-43698 - Kieback&Peter DDC4000 Series Use of Weak Credentials

Kieback & Peter's DDC4000 seriesΒ uses weak credentials, which may allow an unauthenticated attacker to get full admin rights on the system.

πŸ“… Published: Oct. 22, 2024, 9:23 p.m. πŸ”„ Last Modified: April 15, 2026, 12:35 a.m.

8.6

CVSS4.0

CVE-2024-43812 - Kieback&Peter DDC4000 Series Path Traversal Insufficiently Protected Credentials

Kieback & Peter's DDC4000 seriesΒ has an insufficiently protected credentials vulnerability, which may allow an unauthenticated attacker with access to /etc/passwd to read the password hashes of all users on the system.

πŸ“… Published: Oct. 22, 2024, 9:19 p.m. πŸ”„ Last Modified: April 15, 2026, 12:35 a.m.

9.3

CVSS4.0

CVE-2024-41717 - Kieback&Peter DDC4000 Series Path Traversal

Kieback & Peter's DDC4000 seriesΒ is vulnerable to a path traversal vulnerability, which may allow an unauthenticated attacker to read files on the system.

πŸ“… Published: Oct. 22, 2024, 9:13 p.m. πŸ”„ Last Modified: April 15, 2026, 12:35 a.m.
Total resulsts: 349182
Page 8174 of 34,919
Β« previous page Β» next page
Filters