7.5

CVSS3.1

CVE-2023-28452 -

An issue was discovered in CoreDNS through 1.10.1. There is a vulnerability in DNS resolving software, which triggers a resolver to ignore valid responses, thus causing denial of service for normal resolution. In an exploit, the attacker could just forge a response targeting the source port of a vu…

πŸ“… Published: Sept. 18, 2024, midnight πŸ”„ Last Modified: March 19, 2025, 9:15 p.m.

8.8

CVSS3.1

CVE-2023-41610 -

Victure PC420 1.1.39 was discovered to contain a hardcoded root password which is stored in plaintext.

πŸ“… Published: Sept. 18, 2024, midnight πŸ”„ Last Modified: April 14, 2025, 3:09 p.m.

7.5

CVSS3.1

CVE-2024-46564 -

Draytek Vigor 3910 v4.3.2.6 was discovered to contain a buffer overflow in the sProfileName parameter at fextobj.cgi. This vulnerability allows attackers to cause a Denial of Service (DoS) via a crafted input.

πŸ“… Published: Sept. 18, 2024, midnight πŸ”„ Last Modified: March 19, 2025, 2:15 p.m.

7.5

CVSS3.1

CVE-2024-46584 -

Draytek Vigor 3910 v4.3.2.6 was discovered to contain a buffer overflow in the AControlIp1 parameter at acontrol.cgi. This vulnerability allows attackers to cause a Denial of Service (DoS) via a crafted input.

πŸ“… Published: Sept. 18, 2024, midnight πŸ”„ Last Modified: March 14, 2025, 4:15 p.m.

7.5

CVSS3.1

CVE-2023-28456 -

An issue was discovered in Technitium through 11.0.2. It enables attackers to launch amplification attacks (3 times more than other "golden model" software like BIND) and cause potential DoS.

πŸ“… Published: Sept. 18, 2024, midnight πŸ”„ Last Modified: April 22, 2025, 2:19 p.m.

9.8

CVSS3.1

CVE-2024-34399 -

**UNSUPPORTED WHEN ASSIGNED** An issue was discovered in BMC Remedy Mid Tier 7.6.04. An unauthenticated remote attacker is able to access any user account without using any password. NOTE: This vulnerability only affects products that are no longer supported by the maintainer and the impacted versi…

πŸ“… Published: Sept. 18, 2024, midnight πŸ”„ Last Modified: Oct. 14, 2025, 6:04 p.m.

5.5

CVSS3.1

CVE-2024-46799 - net: ethernet: ti: am65-cpsw: Fix NULL dereference on XDP_TX

In the Linux kernel, the following vulnerability has been resolved: net: ethernet: ti: am65-cpsw: Fix NULL dereference on XDP_TX If number of TX queues are set to 1 we get a NULL pointer dereference during XDP_TX. ~# ethtool -L eth0 tx 1 ~# ./xdp-trafficgen udp -A <ipv6-src> -a <ipv6-dst> eth0 -…

πŸ“… Published: Sept. 18, 2024, midnight πŸ”„ Last Modified: May 4, 2025, 9:34 a.m.

7.1

CVSS3.1

CVE-2024-46774 - powerpc/rtas: Prevent Spectre v1 gadget construction in sys_rtas()

In the Linux kernel, the following vulnerability has been resolved: powerpc/rtas: Prevent Spectre v1 gadget construction in sys_rtas() Smatch warns: arch/powerpc/kernel/rtas.c:1932 __do_sys_rtas() warn: potential spectre issue 'args.args' [r] (local cap) The 'nargs' and 'nret' locals come d…

πŸ“… Published: Sept. 18, 2024, midnight πŸ”„ Last Modified: Jan. 5, 2026, 10:53 a.m.

7.5

CVSS3.1

CVE-2024-46598 -

Draytek Vigor 3910 v4.3.2.6 was discovered to contain a buffer overflow in the iprofileidx parameter at dialin.cgi. This vulnerability allows attackers to cause a Denial of Service (DoS) via a crafted input.

πŸ“… Published: Sept. 18, 2024, midnight πŸ”„ Last Modified: March 18, 2025, 3:15 p.m.

7.5

CVSS3.1

CVE-2024-46557 -

Draytek Vigor 3910 v4.3.2.6 was discovered to contain a buffer overflow in the sProfileName parameter at v2x00.cgi. This vulnerability allows attackers to cause a Denial of Service (DoS) via a crafted input.

πŸ“… Published: Sept. 18, 2024, midnight πŸ”„ Last Modified: March 13, 2025, 6:15 p.m.
Total resulsts: 349182
Page 8521 of 34,919
Β« previous page Β» next page
Filters