5.5

CVSS3.1

CVE-2024-43864 - net/mlx5e: Fix CT entry update leaks of modify header context

In the Linux kernel, the following vulnerability has been resolved: net/mlx5e: Fix CT entry update leaks of modify header context The cited commit allocates a new modify header to replace the old one when updating CT entry. But if failed to allocate a new one, eg. exceed the max number firmware cโ€ฆ

๐Ÿ“… Published: Aug. 20, 2024, midnight ๐Ÿ”„ Last Modified: Sept. 29, 2025, 4:27 p.m.

5.4

CVSS3.1

CVE-2024-39094 -

Friendica 2024.03 is vulnerable to Cross Site Scripting (XSS) in settings/profile via the homepage, xmpp, and matrix parameters.

๐Ÿ“… Published: Aug. 20, 2024, midnight ๐Ÿ”„ Last Modified: March 13, 2025, 4:15 p.m.

7.5

CVSS3.1

CVE-2024-34458 -

Keyfactor Command 10.5.x before 10.5.1 and 11.5.x before 11.5.1 allows SQL Injection which could result in information disclosure.

๐Ÿ“… Published: Aug. 20, 2024, midnight ๐Ÿ”„ Last Modified: March 14, 2025, 3:15 p.m.

8.8

CVSS3.1

CVE-2024-42577 -

A Cross-Site Request Forgery (CSRF) in the component add_product.php of Warehouse Inventory System v2.0 allows attackers to escalate privileges.

๐Ÿ“… Published: Aug. 20, 2024, midnight ๐Ÿ”„ Last Modified: Aug. 21, 2024, 2:35 p.m.

9.8

CVSS3.1

CVE-2024-30949 - newlib: arbitrary code execution via the time unit scaling in the _gettimeofday function

An issue in newlib v.4.3.0 allows an attacker to execute arbitrary code via the time unit scaling in the _gettimeofday function.

๐Ÿ“… Published: Aug. 20, 2024, midnight ๐Ÿ”„ Last Modified: Aug. 21, 2024, 3:48 p.m.

9.8

CVSS3.1

CVE-2024-42556 -

Hotel Management System commit 91caab8 was discovered to contain a SQL injection vulnerability via the room_type parameter at admin_room_removed.php.

๐Ÿ“… Published: Aug. 20, 2024, midnight ๐Ÿ”„ Last Modified: June 5, 2025, 8:19 p.m.

8.8

CVSS3.1

CVE-2024-42608 -

Pligg CMS v2.0.2 was discovered to contain a Cross-Site Request Forgery (CSRF) vulnerability via /admin/submit_page.php.

๐Ÿ“… Published: Aug. 20, 2024, midnight ๐Ÿ”„ Last Modified: Aug. 21, 2024, 6:35 p.m.

8

CVSS3.1

CVE-2024-42578 -

A Cross-Site Request Forgery (CSRF) in the component edit_product.php of Warehouse Inventory System v2.0 allows attackers to escalate privileges.

๐Ÿ“… Published: Aug. 20, 2024, midnight ๐Ÿ”„ Last Modified: May 1, 2025, 2:28 p.m.

8.8

CVSS3.1

CVE-2024-42561 -

Pharmacy Management System commit a2efc8 was discovered to contain a SQL injection vulnerability via the invoice_number parameter at sales_report.php.

๐Ÿ“… Published: Aug. 20, 2024, midnight ๐Ÿ”„ Last Modified: June 5, 2025, 8:18 p.m.

8.8

CVSS3.1

CVE-2024-42554 -

Hotel Management System commit 91caab8 was discovered to contain a SQL injection vulnerability via the room_type parameter at admin_room_added.php.

๐Ÿ“… Published: Aug. 20, 2024, midnight ๐Ÿ”„ Last Modified: June 5, 2025, 8:19 p.m.
Total resulsts: 349182
Page 8793 of 34,919
ยซ previous page ยป next page
Filters