8.8

CVSS3.1

CVE-2024-27458 - HP Hotkey Support – Escalation of Privilege

A potential security vulnerability has been identified in the HP Hotkey Support software, which might allow local escalation of privilege. HP is releasing mitigation for the potential vulnerability. Customers using HP Programmable Key are recommended to update HP Hotkey Support.

πŸ“… Published: Oct. 7, 2024, 4:51 p.m. πŸ”„ Last Modified: April 15, 2026, 12:35 a.m.

8.7

CVSS4.0

CVE-2024-9570 - D-Link DIR-619L B1 formEasySetTimezone buffer overflow

A vulnerability was found in D-Link DIR-619L B1 2.06 and classified as critical. Affected by this issue is the function formEasySetTimezone of the file /goform/formEasySetTimezone. The manipulation of the argument curTime leads to buffer overflow. The attack may be launched remotely. The exploit ha…

πŸ“… Published: Oct. 7, 2024, 3:31 p.m. πŸ”„ Last Modified: Oct. 9, 2024, 11:13 a.m.

7.3

CVSS3.1

CVE-2023-6362 -

A vulnerability has been discovered in Winhex affecting version 16.1 SR-1 and 20.4. This vulnerability consists of a buffer overflow controlling the Structured Exception Handler (SEH) registers. This could allow attackers to execute arbitrary code via a long filename argument.

πŸ“… Published: Oct. 7, 2024, 3:03 p.m. πŸ”„ Last Modified: April 15, 2026, 12:35 a.m.

7.3

CVSS3.1

CVE-2023-6361 -

A vulnerability has been discovered in Winhex affecting version 16.1 SR-1 and 20.4. This vulnerability consists of a buffer overflow controlling the Structured Exception Handler (SEH) registers. This could allow attackers to execute arbitrary code via a long filename argument.

πŸ“… Published: Oct. 7, 2024, 3:03 p.m. πŸ”„ Last Modified: April 15, 2026, 12:35 a.m.

8.7

CVSS4.0

CVE-2024-9569 - D-Link DIR-619L B1 formEasySetPassword buffer overflow

A vulnerability has been found in D-Link DIR-619L B1 2.06 and classified as critical. Affected by this vulnerability is the function formEasySetPassword of the file /goform/formEasySetPassword. The manipulation of the argument curTime leads to buffer overflow. The attack can be launched remotely. T…

πŸ“… Published: Oct. 7, 2024, 3 p.m. πŸ”„ Last Modified: Oct. 9, 2024, 1:04 p.m.

9.8

CVSS3.1

CVE-2024-9574 - SQL Injection vulnerability in SOPlanning

SQL injection vulnerability in SOPlanning <1.45, via /soplanning/www/user_groupes.php in the by parameter, which could allow a remote user to submit a specially crafted query, allowing an attacker to retrieve all the information stored in the DB.

πŸ“… Published: Oct. 7, 2024, 2:48 p.m. πŸ”„ Last Modified: March 27, 2025, 10:49 a.m.

6.3

CVSS3.1

CVE-2024-9573 - SQL Injection vulnerability in SOPlanning

SQL injection vulnerability in SOPlanning <1.45, through /soplanning/www/groupe_list.php, in the by parameter, which could allow a remote user to send a specially crafted query and extract all the information stored on the server.

πŸ“… Published: Oct. 7, 2024, 2:47 p.m. πŸ”„ Last Modified: March 27, 2025, 10:49 a.m.

6.3

CVSS3.1

CVE-2024-9572 - Cross-Site Scripting vulnerability in SOPlanning

Cross-Site Scripting (XSS) vulnerability in SOPlanning <1.45, due to lack of proper validation of user input via /soplanning/www/process/groupe_save.php, in the groupe_id parameter. This could allow a remote user to send a specially crafted query to an authenticated user and steal their session det…

πŸ“… Published: Oct. 7, 2024, 2:46 p.m. πŸ”„ Last Modified: March 27, 2025, 10:49 a.m.

6.3

CVSS3.1

CVE-2024-9571 - Cross-Site Scripting vulnerability in SOPlanning

Cross-Site Scripting (XSS) vulnerability in SOPlanning <1.45, due to lack of proper validation of user input via /soplanning/www/process/xajax_server.php, affecting multiple parameters. This could allow a remote user to send a specially crafted query to an authenticated user and partially take cont…

πŸ“… Published: Oct. 7, 2024, 2:44 p.m. πŸ”„ Last Modified: March 27, 2025, 10:48 a.m.

8.7

CVSS4.0

CVE-2024-9568 - D-Link DIR-619L B1 formAdvNetwork buffer overflow

A vulnerability, which was classified as critical, was found in D-Link DIR-619L B1 2.06. Affected is the function formAdvNetwork of the file /goform/formAdvNetwork. The manipulation of the argument curTime leads to buffer overflow. It is possible to launch the attack remotely. The exploit has been …

πŸ“… Published: Oct. 7, 2024, 2:31 p.m. πŸ”„ Last Modified: Oct. 9, 2024, 1:04 p.m.
Total resulsts: 349182
Page 8375 of 34,919
Β« previous page Β» next page
Filters