5.5

CVSS3.1

CVE-2024-44914 -

An issue in the component EXR!ReadEXR+0x3df50 of Irfanview v4.67.1.0 allows attackers to cause an access violation via a crafted EXR file. This vulnerability can lead to a Denial of Service (DoS).

πŸ“… Published: Aug. 28, 2024, midnight πŸ”„ Last Modified: May 23, 2025, 1:58 p.m.

7.1

CVSS3.1

CVE-2023-45896 - kernel: ntfs3: kernel memory read by mounting a filesystem

ntfs3 in the Linux kernel through 6.8.0 allows a physically proximate attacker to read kernel memory by mounting a filesystem (e.g., if a Linux distribution is configured to allow unprivileged mounts of removable media) and then leveraging local access to trigger an out-of-bounds read. A length val…

πŸ“… Published: Aug. 28, 2024, midnight πŸ”„ Last Modified: April 15, 2026, 12:35 a.m.

9.8

CVSS3.1

CVE-2024-42905 -

Beijing Digital China Cloud Technology Co., Ltd. DCME-320 v.7.4.12.60 has a command execution vulnerability, which can be exploited to obtain device administrator privileges via the getVar function in the code/function/system/tool/ping.php file.

πŸ“… Published: Aug. 28, 2024, midnight πŸ”„ Last Modified: April 15, 2026, 12:35 a.m.

5.5

CVSS3.1

CVE-2024-44913 -

An issue in the component EXR!ReadEXR+0x40ef1 of Irfanview v4.67.1.0 allows attackers to cause an access violation via a crafted EXR file. This vulnerability can lead to a Denial of Service (DoS).

πŸ“… Published: Aug. 28, 2024, midnight πŸ”„ Last Modified: May 23, 2025, 1:57 p.m.

7.3

CVSS3.1

CVE-2024-45232 -

An issue was discovered in powermail extension through 12.3.5 for TYPO3. It fails to validate the mail parameter of the confirmationAction, resulting in Insecure Direct Object Reference (IDOR). An unauthenticated attacker can use this to display the user-submitted data of all forms persisted by the…

πŸ“… Published: Aug. 28, 2024, midnight πŸ”„ Last Modified: Aug. 30, 2024, 4:34 p.m.

6.1

CVSS3.1

CVE-2024-42900 -

Ruoyi v4.7.9 and before was discovered to contain a cross-site scripting (XSS) vulnerability via the sql parameter of the createTable() function at /tool/gen/create.

πŸ“… Published: Aug. 28, 2024, midnight πŸ”„ Last Modified: May 14, 2025, 6:25 p.m.

5.4

CVSS3.1

CVE-2024-41236 -

A SQL injection vulnerability in /smsa/admin_login.php in Kashipara Responsive School Management System v3.2.0 allows an attacker to execute arbitrary SQL commands via the "username" parameter of the Admin Login Page

πŸ“… Published: Aug. 28, 2024, midnight πŸ”„ Last Modified: Aug. 30, 2024, 4:02 p.m.

5.5

CVSS3.1

CVE-2024-44943 - mm: gup: stop abusing try_grab_folio

In the Linux kernel, the following vulnerability has been resolved: mm: gup: stop abusing try_grab_folio A kernel warning was reported when pinning folio in CMA memory when launching SEV virtual machine. The splat looks like: [ 464.325306] WARNING: CPU: 13 PID: 6734 at mm/gup.c:1313 __get_user…

πŸ“… Published: Aug. 28, 2024, midnight πŸ”„ Last Modified: May 4, 2025, 9:29 a.m.

4.3

CVSS3.1

CVE-2024-42698 -

Roughly Enough Items (REI) v.16.0.729 and before contains an Improper Validation of Specified Index, Position, or Offset in Input vulnerability. The specific issue is a failure to validate slot index and decrement stack count in the Roughly Enough Items (REI) mod for Minecraft, which allows in-game…

πŸ“… Published: Aug. 28, 2024, midnight πŸ”„ Last Modified: March 18, 2025, 7:15 p.m.

7.3

CVSS3.1

CVE-2024-45233 -

An issue was discovered in powermail extension through 12.3.5 for TYPO3. Several actions in the OutputController can directly be called, due to missing or insufficiently implemented access checks, resulting in Broken Access Control. Depending on the configuration of the Powermail Frontend plugins, …

πŸ“… Published: Aug. 28, 2024, midnight πŸ”„ Last Modified: Aug. 30, 2024, 4:33 p.m.
Total resulsts: 349182
Page 8718 of 34,919
Β« previous page Β» next page
Filters