6.7

CVSS3.1

CVE-2024-27383 -

An issue was discovered in Samsung Mobile Processor Exynos 980, Exynos 850, Exynos 1280, Exynos 1380, and Exynos 1330. In the function slsi_get_scan_extra_ies(), there is no input validation check on default_ies coming from userspace, which can lead to a heap overwrite.

πŸ“… Published: Sept. 9, 2024, midnight πŸ”„ Last Modified: March 18, 2025, 8:15 p.m.

4.4

CVSS3.1

CVE-2024-27367 -

An issue was discovered in Samsung Mobile Processor Exynos Wearable Processor Exynos 980, Exynos 850, Exynos 1080, Exynos 1280, Exynos 1380, Exynos 1330, Exynos 1480, Exynos W920, Exynos W930. In the function slsi_rx_scan_ind(), there is no input validation check on a length coming from userspace, …

πŸ“… Published: Sept. 9, 2024, midnight πŸ”„ Last Modified: March 14, 2025, 2:15 p.m.

4.4

CVSS3.1

CVE-2024-27366 -

An issue was discovered in Samsung Mobile Processor, Wearable Processor Exynos Exynos 980, Exynos 850, Exynos 1080, Exynos 1280, Exynos 1380, Exynos 1330, Exynos 1480, Exynos W920, Exynos W930. In the function slsi_rx_scan_done_ind(), there is no input validation check on a length coming from users…

πŸ“… Published: Sept. 9, 2024, midnight πŸ”„ Last Modified: March 25, 2025, 4:15 p.m.

4.4

CVSS3.1

CVE-2024-27364 -

An issue was discovered in Mobile Processor, Wearable Processor Exynos 980, Exynos 850, Exynos 1080, Exynos 1280, Exynos 1380, Exynos 1330, Exynos 1480, Exynos W920, Exynos W930. In the function slsi_rx_roamed_ind(), there is no input validation check on a length coming from userspace, which can le…

πŸ“… Published: Sept. 9, 2024, midnight πŸ”„ Last Modified: March 20, 2025, 10:15 p.m.

6.1

CVSS3.1

CVE-2023-50883 -

ONLYOFFICE Docs before 8.0.1 allows XSS because a macro is an immediately-invoked function expression (IIFE), and therefore a sandbox escape is possible by directly calling the constructor of the Function object. NOTE: this issue exists because of an incorrect fix for CVE-2021-43446.

πŸ“… Published: Sept. 9, 2024, midnight πŸ”„ Last Modified: Sept. 20, 2024, 3:18 p.m.

6.1

CVSS3.1

CVE-2024-44085 -

ONLYOFFICE Docs before 8.1.0 allows XSS via a GeneratorFunction Object attack against a macro. This is related to use of an immediately-invoked function expression (IIFE) for a macro. NOTE: this issue exists because of an incorrect fix for CVE-2021-43446 and CVE-2023-50883.

πŸ“… Published: Sept. 9, 2024, midnight πŸ”„ Last Modified: July 3, 2025, 12:20 p.m.

5.3

CVSS4.0

CVE-2024-8583 - SourceCodester Online Bank Management System Feedback mfeedback.php cross site scripting

A vulnerability was found in SourceCodester Online Bank Management System and Online Bank Management System - 1.0. It has been classified as problematic. This affects an unknown part of the file /mfeedback.php of the component Feedback Handler. The manipulation leads to cross site scripting. It is …

πŸ“… Published: Sept. 8, 2024, 10 p.m. πŸ”„ Last Modified: Sept. 10, 2024, 3:49 p.m.

5.3

CVSS4.0

CVE-2024-8582 - SourceCodester Food Ordering Management System index.php cross site scripting

A vulnerability was found in SourceCodester Food Ordering Management System 1.0 and classified as problematic. Affected by this issue is some unknown functionality of the file /index.php. The manipulation of the argument description leads to cross site scripting. The attack may be launched remotely…

πŸ“… Published: Sept. 8, 2024, 10 p.m. πŸ”„ Last Modified: Sept. 10, 2024, 3:48 p.m.

9.2

CVSS4.0

CVE-2024-8580 - TOTOLINK AC1200 T8 shadow.sample hard-coded password

A vulnerability classified as critical was found in TOTOLINK AC1200 T8 4.1.5cu.861_B20230220. This vulnerability affects unknown code of the file /etc/shadow.sample. The manipulation leads to use of hard-coded password. The attack can be initiated remotely. The complexity of an attack is rather hig…

πŸ“… Published: Sept. 8, 2024, 8:31 p.m. πŸ”„ Last Modified: Sept. 10, 2024, 3:47 p.m.

8.7

CVSS4.0

CVE-2024-8579 - TOTOLINK AC1200 T8 cstecgi.cgi setWiFiRepeaterCfg buffer overflow

A vulnerability classified as critical has been found in TOTOLINK AC1200 T8 4.1.5cu.861_B20230220. This affects the function setWiFiRepeaterCfg of the file /cgi-bin/cstecgi.cgi. The manipulation of the argument password leads to buffer overflow. It is possible to initiate the attack remotely. The e…

πŸ“… Published: Sept. 8, 2024, 7:31 p.m. πŸ”„ Last Modified: Sept. 10, 2024, 3:47 p.m.
Total resulsts: 349182
Page 8633 of 34,919
Β« previous page Β» next page
Filters