5.5

CVSS3.1

CVE-2024-44970 - net/mlx5e: SHAMPO, Fix invalid WQ linked list unlink

In the Linux kernel, the following vulnerability has been resolved: net/mlx5e: SHAMPO, Fix invalid WQ linked list unlink When all the strides in a WQE have been consumed, the WQE is unlinked from the WQ linked list (mlx5_wq_ll_pop()). For SHAMPO, it is possible to receive CQEs with 0 consumed str…

πŸ“… Published: Sept. 4, 2024, midnight πŸ”„ Last Modified: Nov. 3, 2025, 11:15 p.m.

8

CVSS3.1

CVE-2024-44859 -

Tenda FH1201 v1.2.0.14 has a stack buffer overflow vulnerability in `formWrlExtraGet`.

πŸ“… Published: Sept. 4, 2024, midnight πŸ”„ Last Modified: April 9, 2025, 6:46 p.m.

6.1

CVSS3.1

CVE-2024-44819 -

Cross Site Scripting vulnerability in ZZCMS v.2023 and before allows a remote attacker to obtain sensitive information via a crafted script to the pagename parameter of the admin/del.php component.

πŸ“… Published: Sept. 4, 2024, midnight πŸ”„ Last Modified: March 13, 2025, 6:15 p.m.

5.5

CVSS3.1

CVE-2024-44963 - btrfs: do not BUG_ON() when freeing tree block after error

In the Linux kernel, the following vulnerability has been resolved: btrfs: do not BUG_ON() when freeing tree block after error When freeing a tree block, at btrfs_free_tree_block(), if we fail to create a delayed reference we don't deal with the error and just do a BUG_ON(). The error most likely…

πŸ“… Published: Sept. 4, 2024, midnight πŸ”„ Last Modified: Jan. 5, 2026, 10:52 a.m.

5.4

CVSS3.1

CVE-2024-44818 -

Cross Site Scripting vulnerability in ZZCMS v.2023 and before allows a remote attacker to obtain sensitive information via the HTTP_Referer header of the caina.php component.

πŸ“… Published: Sept. 4, 2024, midnight πŸ”„ Last Modified: April 23, 2025, 3:02 p.m.

8.1

CVSS3.1

CVE-2024-45174 -

An issue was discovered in za-internet C-MOR Video Surveillance 5.2401 and 6.00PL01. Due to improper validation of user-supplied data, different functionalities of the C-MOR web interface are vulnerable to SQL injection attacks. This kind of attack allows an authenticated user to execute arbitrary …

πŸ“… Published: Sept. 4, 2024, midnight πŸ”„ Last Modified: Sept. 4, 2025, 4:29 p.m.

6.8

CVSS3.1

CVE-2024-45172 -

An issue was discovered in za-internet C-MOR Video Surveillance 5.2401 and 6.00PL01. Due to missing protection mechanisms, the C-MOR web interface is vulnerable to cross-site request forgery (CSRF) attacks. The C-MOR web interface offers no protection against cross-site request forgery (CSRF) attac…

πŸ“… Published: Sept. 4, 2024, midnight πŸ”„ Last Modified: Sept. 4, 2025, 4:29 p.m.

8.1

CVSS3.1

CVE-2024-45170 -

An issue was discovered in za-internet C-MOR Video Surveillance 5.2401. Due to improper or missing access control, low privileged users can use administrative functions of the C-MOR web interface. It was found out that different functions are only available to administrative users. However, access …

πŸ“… Published: Sept. 4, 2024, midnight πŸ”„ Last Modified: Sept. 4, 2025, 4:30 p.m.

5.3

CVSS3.1

CVE-2024-44821 -

ZZCMS 2023 contains a vulnerability in the captcha reuse logic located in /inc/function.php. The checkyzm function does not properly refresh the captcha value after a failed validation attempt. As a result, an attacker can exploit this flaw by repeatedly submitting the same incorrect captcha respon…

πŸ“… Published: Sept. 4, 2024, midnight πŸ”„ Last Modified: April 23, 2025, 3:01 p.m.

8.8

CVSS3.1

CVE-2024-7970 -

Out of bounds write in V8 in Google Chrome prior to 128.0.6613.119 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML page. (Chromium security severity: High)

πŸ“… Published: Sept. 3, 2024, 10:40 p.m. πŸ”„ Last Modified: Jan. 2, 2025, 5:40 p.m.
Total resulsts: 349182
Page 8673 of 34,919
Β« previous page Β» next page
Filters