7.5

CVSS3.1

CVE-2024-43485 - .NET and Visual Studio Denial of Service Vulnerability

.NET and Visual Studio Denial of Service Vulnerability

πŸ“… Published: Oct. 8, 2024, midnight πŸ”„ Last Modified: July 8, 2025, 3:39 p.m.

8

CVSS3.1

CVE-2024-45880 -

A command injection vulnerability exists in Motorola CX2L router v1.0.2 and below. The vulnerability is present in the SetStationSettings function. The system directly invokes the system function to execute commands for setting parameters such as MAC address without proper input filtering. This all…

πŸ“… Published: Oct. 8, 2024, midnight πŸ”„ Last Modified: April 15, 2026, 12:35 a.m.

4.9

CVSS3.1

CVE-2024-36814 -

An arbitrary file read vulnerability in Adguard Home before v0.107.52 allows authenticated attackers to access arbitrary files as root on the underlying Operating System via placing a crafted file into a readable directory.

πŸ“… Published: Oct. 8, 2024, midnight πŸ”„ Last Modified: April 15, 2026, 12:35 a.m.

8.2

CVSS3.1

CVE-2024-46539 -

Insecure permissions in the Bluetooth Low Energy (BLE) component of Fire-Boltt Artillery Smart Watch NJ-R6E-10.3 allow attackers to cause a Denial of Service (DoS).

πŸ“… Published: Oct. 8, 2024, midnight πŸ”„ Last Modified: April 15, 2026, 12:35 a.m.

5.3

CVSS3.1

CVE-2024-9621 - Io.quarkiverse.cxf:quarkus-cxf: quarkus cxf may log user password and secret to application log

A vulnerability was found in Quarkus CXF. Passwords and other secrets may appear in the application log in spite of the user configuring them to be hidden. This issue requires some special configuration to be vulnerable, such as SOAP logging enabled, application set client, and endpoint logging pr…

πŸ“… Published: Oct. 8, 2024, midnight πŸ”„ Last Modified: April 15, 2026, 12:35 a.m.

3.1

CVSS3.1

CVE-2024-8928 - php: Erroneous parsing of multipart form data

A flaw was found in PHP. Erroneous parsing of multipart form data contained in an HTTP POST request could lead to legitimate data not being processed, violating data integrity.

πŸ“… Published: Oct. 8, 2024, midnight πŸ”„ Last Modified: Oct. 8, 2024, midnight

9.8

CVSS3.1

CVE-2024-45918 -

Fujian Kelixin Communication Command and Dispatch Platform <=7.6.6.4391 is vulnerable to SQL Injection via /client/get_gis_fence.php.

πŸ“… Published: Oct. 8, 2024, midnight πŸ”„ Last Modified: April 15, 2026, 12:35 a.m.

4.8

CVSS3.1

CVE-2024-46410 -

PublicCMS V4.0.202406.d was discovered to contain a cross-site scripting (XSS) vulnerability via a crafted script to the Category Managment feature

πŸ“… Published: Oct. 8, 2024, midnight πŸ”„ Last Modified: April 23, 2025, 1:14 a.m.

7.5

CVSS3.1

CVE-2024-25885 - xhtml2pdf: ReDoS via getcolor function in utils.py

An issue in the getcolor function in utils.py of xhtml2pdf v0.2.13 allows attackers to cause a Regular expression Denial of Service (ReDOS) via supplying a crafted string.

πŸ“… Published: Oct. 8, 2024, midnight πŸ”„ Last Modified: April 15, 2026, 12:35 a.m.

5.3

CVSS3.1

CVE-2024-9671 - System: pdf invoices of the developer users can be seen if the url is known

A vulnerability was found in 3Scale. There is no auth mechanism to see a PDF invoice of a Developer user if the URL is known. Anyone can see the invoice if the URL is known or guessed.

πŸ“… Published: Oct. 8, 2024, midnight πŸ”„ Last Modified: March 20, 2026, 10:41 a.m.
Total resulsts: 349182
Page 8370 of 34,919
Β« previous page Β» next page
Filters