7.8

CVSS3.1

CVE-2024-7994 - Stack-Based Buffer Overflow Vulnerability in Autodesk Revit

A maliciously crafted RFA file, when parsed through Autodesk Revit, can force a Stack-Based Buffer Overflow. A malicious actor can leverage this vulnerability to cause a crash, read sensitive data, or execute arbitrary code in the context of the current process.

πŸ“… Published: Oct. 16, 2024, 9:47 p.m. πŸ”„ Last Modified: Jan. 28, 2025, 8:10 p.m.

7.8

CVSS3.1

CVE-2024-7993 - Out-of-Bounds Write Vulnerability in Autodesk Revit

A maliciously crafted PDF file, when parsed through Autodesk Revit, may force an Out-of-Bounds Write vulnerability. A malicious actor may leverage this vulnerability to cause a crash, cause data corruption, or execute arbitrary code in the context of the current process.

πŸ“… Published: Oct. 16, 2024, 9:47 p.m. πŸ”„ Last Modified: Sept. 26, 2025, 5:48 p.m.

8.1

CVSS4.0

CVE-2024-48918 - Lack of Input Validation in RDS Light - Potential for Injection Attacks and Memory Tampering

RDS Light is a simplified version of the Reflective Dialogue System (RDS), a self-reflecting AI framework. Versions prior to 1.1.0 contain a vulnerability that involves a lack of input validation within the RDS AI framework, specifically within the user input handling code in the main module (`main…

πŸ“… Published: Oct. 16, 2024, 9:03 p.m. πŸ”„ Last Modified: April 15, 2026, 12:35 a.m.

3.5

CVSS3.1

CVE-2024-47836 - Admidio vulnerable to HTML Injection In The Messages Section

Admidio is an open-source user management solution. Prior to version 4.3.12, an unsafe deserialization vulnerability allows any unauthenticated user to execute arbitrary code on the server. Version 4.3.12 fixes this issue.

πŸ“… Published: Oct. 16, 2024, 7:43 p.m. πŸ”„ Last Modified: Oct. 18, 2024, 12:53 p.m.

7.5

CVSS3.1

CVE-2024-47522 - Suricata ja4: invalid alpn leads to panic

Suricata is a network Intrusion Detection System, Intrusion Prevention System and Network Security Monitoring engine. Prior to version 7.0.7, invalid ALPN in TLS/QUIC traffic when JA4 matching/logging is enabled can lead to Suricata aborting with a panic. This issue has been addressed in 7.0.7. One…

πŸ“… Published: Oct. 16, 2024, 7:40 p.m. πŸ”„ Last Modified: April 2, 2026, 2:21 p.m.

7.5

CVSS3.1

CVE-2024-47188 - Suricata http/byte-ranges: missing hashtable random seed leads to potential DoS

Suricata is a network Intrusion Detection System, Intrusion Prevention System and Network Security Monitoring engine. Prior to version 7.0.7, missing initialization of the random seed for "thash" leads to byte-range tracking having predictable hash table behavior. This can lead to an attacker forci…

πŸ“… Published: Oct. 16, 2024, 6:58 p.m. πŸ”„ Last Modified: Oct. 22, 2024, 1:50 p.m.

7.5

CVSS3.1

CVE-2024-47187 - Suricata datasets: missing hashtable random seed leads to potential DoS

Suricata is a network Intrusion Detection System, Intrusion Prevention System and Network Security Monitoring engine. Prior to version 7.0.7, missing initialization of the random seed for "thash" leads to datasets having predictable hash table behavior. This can lead to dataset file loading to use …

πŸ“… Published: Oct. 16, 2024, 6:50 p.m. πŸ”„ Last Modified: Oct. 22, 2024, 1:48 p.m.

7.5

CVSS3.1

CVE-2024-45797 - LibHTP's unbounded header handling leads to denial service

LibHTP is a security-aware parser for the HTTP protocol and the related bits and pieces. Prior to version 0.5.49, unbounded processing of HTTP request and response headers can lead to excessive CPU time and memory utilization, possibly leading to extreme slowdowns. This issue is addressed in 0.5.49.

πŸ“… Published: Oct. 16, 2024, 6:45 p.m. πŸ”„ Last Modified: Nov. 3, 2025, 7:15 p.m.

5.3

CVSS3.1

CVE-2024-45796 - Suricata defrag: off by one can lead to policy bypass

Suricata is a network Intrusion Detection System, Intrusion Prevention System and Network Security Monitoring engine. Prior to version 7.0.7, a logic error during fragment reassembly can lead to failed reassembly for valid traffic. An attacker could craft packets to trigger this behavior.This issue…

πŸ“… Published: Oct. 16, 2024, 6:41 p.m. πŸ”„ Last Modified: Nov. 3, 2025, 8:16 p.m.

7.5

CVSS3.1

CVE-2024-45795 - Suricata detect/datasets: reachable assertion with unimplemented rule option

Suricata is a network Intrusion Detection System, Intrusion Prevention System and Network Security Monitoring engine. Prior to version 7.0.7, rules using datasets with the non-functional / unimplemented "unset" option can trigger an assertion during traffic parsing, leading to denial of service. Th…

πŸ“… Published: Oct. 16, 2024, 6:34 p.m. πŸ”„ Last Modified: April 2, 2026, 2:21 p.m.
Total resulsts: 349182
Page 8260 of 34,919
Β« previous page Β» next page
Filters