9.8

CVSS3.1

CVE-2024-41368 -

RPi-Jukebox-RFID v2.7.0 was discovered to contain a remote code execution (RCE) vulnerability via htdocs\inc.setWlanIpMail.php

๐Ÿ“… Published: Aug. 29, 2024, midnight ๐Ÿ”„ Last Modified: Sept. 4, 2024, 4:28 p.m.

6.1

CVSS3.1

CVE-2024-41349 -

unmark 1.9.2 is vulnerable to Cross Site Scripting (XSS) via application/views/marks/add_by_url.php.

๐Ÿ“… Published: Aug. 29, 2024, midnight ๐Ÿ”„ Last Modified: Jan. 26, 2026, 4:15 p.m.

7.4

CVSS3.1

CVE-2024-44779 -

A reflected cross-site scripting (XSS) vulnerability in the viewname parameter in the index page of vTiger CRM 7.4.0 allows attackers to execute arbitrary code in the context of a user's browser via injecting a crafted payload.

๐Ÿ“… Published: Aug. 29, 2024, midnight ๐Ÿ”„ Last Modified: Sept. 3, 2024, 6:33 p.m.

6.1

CVSS3.1

CVE-2024-44776 -

An Open Redirect vulnerability in the page parameter of vTiger CRM v7.4.0 allows attackers to redirect users to a malicious site via a crafted URL.

๐Ÿ“… Published: Aug. 29, 2024, midnight ๐Ÿ”„ Last Modified: March 25, 2025, 5:16 p.m.

7.8

CVSS3.1

CVE-2024-8250 - Expired Pointer Dereference in Wireshark

NTLMSSP dissector crash in Wireshark 4.2.0 to 4.0.6 and 4.0.0 to 4.0.16 allows denial of service via packet injection or crafted capture file

๐Ÿ“… Published: Aug. 28, 2024, 11:30 p.m. ๐Ÿ”„ Last Modified: March 27, 2026, 1:56 p.m.

7.5

CVSS3.1

CVE-2024-8198 -

Heap buffer overflow in Skia in Google Chrome prior to 128.0.6613.113 allowed a remote attacker who had compromised the renderer process to potentially exploit heap corruption via a crafted HTML page. (Chromium security severity: High)

๐Ÿ“… Published: Aug. 28, 2024, 10:44 p.m. ๐Ÿ”„ Last Modified: Oct. 15, 2024, 2:35 p.m.

7.5

CVSS3.1

CVE-2024-8194 -

Type Confusion in V8 in Google Chrome prior to 128.0.6613.113 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML page. (Chromium security severity: High)

๐Ÿ“… Published: Aug. 28, 2024, 10:44 p.m. ๐Ÿ”„ Last Modified: Sept. 5, 2024, 3:55 a.m.

8.8

CVSS3.1

CVE-2024-8193 -

Heap buffer overflow in Skia in Google Chrome prior to 128.0.6613.113 allowed a remote attacker who had compromised the renderer process to potentially exploit heap corruption via a crafted HTML page. (Chromium security severity: High)

๐Ÿ“… Published: Aug. 28, 2024, 10:44 p.m. ๐Ÿ”„ Last Modified: Sept. 5, 2024, 3:55 a.m.

5.4

CVSS3.1

CVE-2024-45046 - PhpSpreadsheet HTML writer is vulnerable to Cross-Site Scripting via style information

PHPSpreadsheet is a pure PHP library for reading and writing spreadsheet files. In affected versions `\PhpOffice\PhpSpreadsheet\Writer\Html` doesn't sanitize spreadsheet styling information such as font names, allowing an attacker to inject arbitrary JavaScript on the page. As a result an attacker โ€ฆ

๐Ÿ“… Published: Aug. 28, 2024, 8:41 p.m. ๐Ÿ”„ Last Modified: Sept. 4, 2024, 5:32 p.m.

8.8

CVSS3.1

CVE-2024-45048 - XML External Entity Reference (XXE) in PHPSpreadsheet

PHPSpreadsheet is a pure PHP library for reading and writing spreadsheet files. Affected versions are subject to a bypassing of a filter which allows for an XXE-attack. This in turn allows attacker to obtain contents of local files, even if error reporting is muted. This vulnerability has been addrโ€ฆ

๐Ÿ“… Published: Aug. 28, 2024, 8:38 p.m. ๐Ÿ”„ Last Modified: Sept. 4, 2024, 5:27 p.m.
Total resulsts: 349182
Page 8711 of 34,919
ยซ previous page ยป next page
Filters