7.5

CVSS3.1

CVE-2024-42774 -

An Incorrect Access Control vulnerability was found in /admin/delete_room.php in Kashipara Hotel Management System v1.0, which allows an unauthenticated attacker to delete valid hotel room entries in the administrator section.

πŸ“… Published: Aug. 22, 2024, midnight πŸ”„ Last Modified: April 30, 2025, 4:50 p.m.

4.3

CVSS3.1

CVE-2024-45193 -

An issue was discovered in Matrix libolm through 3.2.16. There is Ed25519 signature malleability due to lack of validation criteria (does not ensure that S < n). This refers to the libolm implementation of Olm. NOTE: This vulnerability only affects products that are no longer supported by the maint…

πŸ“… Published: Aug. 22, 2024, midnight πŸ”„ Last Modified: June 17, 2025, 7:51 p.m.

7.6

CVSS3.1

CVE-2024-36443 -

Swissphone DiCal-RED 4009 devices allow a remote attacker to gain read access to almost the whole file system via anonymous FTP.

πŸ“… Published: Aug. 22, 2024, midnight πŸ”„ Last Modified: April 15, 2026, 12:35 a.m.

5.5

CVSS3.1

CVE-2022-48923 - btrfs: prevent copying too big compressed lzo segment

In the Linux kernel, the following vulnerability has been resolved: btrfs: prevent copying too big compressed lzo segment Compressed length can be corrupted to be a lot larger than memory we have allocated for buffer. This will cause memcpy in copy_compressed_segment to write outside of allocated…

πŸ“… Published: Aug. 22, 2024, midnight πŸ”„ Last Modified: May 21, 2025, 8:44 a.m.

9.8

CVSS3.1

CVE-2024-36445 -

Swissphone DiCal-RED 4009 devices allow a remote attacker to gain a root shell via TELNET without authentication.

πŸ“… Published: Aug. 22, 2024, midnight πŸ”„ Last Modified: April 15, 2026, 12:35 a.m.

5.5

CVSS3.1

CVE-2022-48918 - iwlwifi: mvm: check debugfs_dir ptr before use

In the Linux kernel, the following vulnerability has been resolved: iwlwifi: mvm: check debugfs_dir ptr before use When "debugfs=off" is used on the kernel command line, iwiwifi's mvm module uses an invalid/unchecked debugfs_dir pointer and causes a BUG: BUG: kernel NULL pointer dereference, ad…

πŸ“… Published: Aug. 22, 2024, midnight πŸ”„ Last Modified: May 4, 2025, 8:26 a.m.

7.5

CVSS3.1

CVE-2024-42772 -

An Incorrect Access Control vulnerability was found in /admin/rooms.php in Kashipara Hotel Management System v1.0, which allows an unauthenticated attacker to view valid hotel room entries in administrator section.

πŸ“… Published: Aug. 22, 2024, midnight πŸ”„ Last Modified: April 30, 2025, 4:51 p.m.

6.8

CVSS3.1

CVE-2024-36440 -

An issue was discovered on Swissphone DiCal-RED 4009 devices. An attacker with access to the file /etc/deviceconfig may recover the administrative device password via password-cracking methods, because unsalted MD5 is used.

πŸ“… Published: Aug. 22, 2024, midnight πŸ”„ Last Modified: April 15, 2026, 12:35 a.m.

3.3

CVSS3.1

CVE-2022-48937 - io_uring: add a schedule point in io_add_buffers()

In the Linux kernel, the following vulnerability has been resolved: io_uring: add a schedule point in io_add_buffers() Looping ~65535 times doing kmalloc() calls can trigger soft lockups, especially with DEBUG features (like KASAN). [ 253.536212] watchdog: BUG: soft lockup - CPU#64 stuck for 26…

πŸ“… Published: Aug. 22, 2024, midnight πŸ”„ Last Modified: May 4, 2025, 8:26 a.m.

4.7

CVSS3.1

CVE-2024-42770 -

A Stored Cross Site Scripting (XSS) vulnerability was found in "/core/signup_user.php" of Kashipara Hotel Management System v1.0, which allows remote attackers to execute arbitrary code via the "user_email" parameter.

πŸ“… Published: Aug. 22, 2024, midnight πŸ”„ Last Modified: April 30, 2025, 4:51 p.m.
Total resulsts: 349182
Page 8766 of 34,919
Β« previous page Β» next page
Filters