7.5

CVSS3.1

CVE-2024-33535 -

An issue was discovered in Zimbra Collaboration (ZCS) 9.0 and 10.0. The vulnerability involves unauthenticated local file inclusion (LFI) in a web application, specifically impacting the handling of the packages parameter. Attackers can exploit this flaw to include arbitrary local files without aut…

πŸ“… Published: Aug. 12, 2024, midnight πŸ”„ Last Modified: March 19, 2025, 4:15 p.m.

9.8

CVSS3.1

CVE-2024-41651 -

An issue in Prestashop v.8.1.7 and before allows a remote attacker to execute arbitrary code via the module upgrade functionality. NOTE: this is disputed by multiple parties, who report that exploitation requires that an attacker be able to hijack network requests made by an admin user (who, by des…

πŸ“… Published: Aug. 12, 2024, midnight πŸ”„ Last Modified: Oct. 9, 2024, 6:15 p.m.

7.3

CVSS3.1

CVE-2024-42747 -

In TOTOLINK X5000r v9.1.0cu.2350_b20230313, the file /cgi-bin/cstecgi.cgi contains an OS command injection vulnerability in setWanIeCfg. Authenticated Attackers can send malicious packet to execute arbitrary commands.

πŸ“… Published: Aug. 12, 2024, midnight πŸ”„ Last Modified: Aug. 13, 2024, 5:35 p.m.

8.8

CVSS3.1

CVE-2024-42626 -

FrogCMS v0.9.5 was discovered to contain a Cross-Site Request Forgery (CSRF) vulnerability via /admin/?/snippet/add.

πŸ“… Published: Aug. 12, 2024, midnight πŸ”„ Last Modified: Aug. 13, 2024, 3:35 p.m.

9.8

CVSS3.1

CVE-2024-42545 -

TOTOLINK A3700R v9.1.2u.5822_B20200513 has a buffer overflow vulnerability in the ssid parameter in setWizardCfg function.

πŸ“… Published: Aug. 12, 2024, midnight πŸ”„ Last Modified: Aug. 13, 2024, 3:35 p.m.

5.5

CVSS3.1

CVE-2024-42258 - mm: huge_memory: use !CONFIG_64BIT to relax huge page alignment on 32 bit machines

In the Linux kernel, the following vulnerability has been resolved: mm: huge_memory: use !CONFIG_64BIT to relax huge page alignment on 32 bit machines Yves-Alexis Perez reported commit 4ef9ad19e176 ("mm: huge_memory: don't force huge page alignment on 32 bit") didn't work for x86_32 [1]. It is b…

πŸ“… Published: Aug. 12, 2024, midnight πŸ”„ Last Modified: Nov. 3, 2025, 10:17 p.m.

5.9

CVSS3.1

CVE-2024-41909 - Apache MINA SSHD: integrity check bypass

Like many other SSH implementations, Apache MINA SSHD suffered from the issue that is more widely known as CVE-2023-48795. An attacker that can intercept traffic between client and server could drop certain packets from the stream, potentially causing client and server to consequently end up with a…

πŸ“… Published: Aug. 12, 2024, midnight πŸ”„ Last Modified: March 27, 2025, 4:15 p.m.

9.8

CVSS3.1

CVE-2024-42546 -

TOTOLINK A3100R V4.1.2cu.5050_B20200504 has a buffer overflow vulnerability in the password parameter in the loginauth function.

πŸ“… Published: Aug. 12, 2024, midnight πŸ”„ Last Modified: Aug. 15, 2024, 4:35 p.m.

9.8

CVSS3.1

CVE-2024-42520 -

TOTOLINK A3002R v4.0.0-B20230531.1404 contains a buffer overflow vulnerability in /bin/boa via formParentControl.

πŸ“… Published: Aug. 12, 2024, midnight πŸ”„ Last Modified: Aug. 13, 2024, 3:35 p.m.

8.2

CVSS3.1

CVE-2024-36877 -

Micro-Star International Z-series motherboards (Z590, Z490, and Z790) and B-series motherboards (B760, B560, B660, and B460) with firmware 7D25v14, 7D25v17 to 7D25v19, and 7D25v1A to 7D25v1H was discovered to contain a write-what-where condition in the in the SW handler for SMI 0xE3. Motherboard's …

πŸ“… Published: Aug. 12, 2024, midnight πŸ”„ Last Modified: April 15, 2026, 12:35 a.m.
Total resulsts: 347748
Page 8755 of 34,775
Β« previous page Β» next page
Filters