7.5

CVSS3.1

CVE-2023-33206 -

Diebold Nixdorf Vynamic Security Suite (VSS) before 3.3.0 SR16, 4.0.0 SR06, 4.1.0 SR04, 4.2.0 SR03, and 4.3.0 SR01 fails to validate symlinks during the Pre-Boot Authorization (PBA) process. This can be exploited by a physical attacker who is able to manipulate the contents of the system's hard dis…

πŸ“… Published: Aug. 8, 2024, midnight πŸ”„ Last Modified: Aug. 19, 2024, 7:04 p.m.

4.6

CVSS3.1

CVE-2023-40261 -

Diebold Nixdorf Vynamic Security Suite (VSS) before 3.3.0 SR17, 4.0.0 SR07, 4.1.0 SR04, 4.2.0 SR04, and 4.3.0 SR02 fails to validate file attributes during the Pre-Boot Authorization (PBA) process. This can be exploited by a physical attacker who is able to manipulate the contents of the system's h…

πŸ“… Published: Aug. 8, 2024, midnight πŸ”„ Last Modified: March 13, 2025, 8:15 p.m.

5.5

CVSS3.1

CVE-2024-42254 - io_uring: fix error pbuf checking

In the Linux kernel, the following vulnerability has been resolved: io_uring: fix error pbuf checking Syz reports a problem, which boils down to NULL vs IS_ERR inconsistent error handling in io_alloc_pbuf_ring(). KASAN: null-ptr-deref in range [0x0000000000000000-0x0000000000000007] RIP: 0010:__…

πŸ“… Published: Aug. 8, 2024, midnight πŸ”„ Last Modified: May 4, 2025, 9:25 a.m.

6.1

CVSS3.1

CVE-2024-41482 -

Typora before 1.9.3 Markdown editor has a cross-site scripting (XSS) vulnerability via the MathJax component.

πŸ“… Published: Aug. 8, 2024, midnight πŸ”„ Last Modified: March 25, 2025, 5:16 p.m.

9.8

CVSS3.1

CVE-2024-42256 - cifs: Fix server re-repick on subrequest retry

In the Linux kernel, the following vulnerability has been resolved: cifs: Fix server re-repick on subrequest retry When a subrequest is marked for needing retry, netfs will call cifs_prepare_write() which will make cifs repick the server for the op before renegotiating credits; it then calls cifs…

πŸ“… Published: Aug. 8, 2024, midnight πŸ”„ Last Modified: May 4, 2025, 9:25 a.m.

8.8

CVSS3.1

CVE-2024-40488 -

A Cross-Site Request Forgery (CSRF) vulnerability was found in the Kashipara Live Membership System v1.0. This could lead to an attacker tricking the administrator into deleting valid member data via a crafted HTML page, as demonstrated by a Delete Member action at the /delete_members.php.

πŸ“… Published: Aug. 8, 2024, midnight πŸ”„ Last Modified: April 28, 2025, 2:24 p.m.

6.1

CVSS3.1

CVE-2024-40484 -

A Reflected Cross Site Scripting (XSS) vulnerability was found in "/oahms/search.php" in PHPGurukul Old Age Home Management System v1.0, which allows remote attackers to execute arbitrary code via the "searchdata" parameter.

πŸ“… Published: Aug. 8, 2024, midnight πŸ”„ Last Modified: Aug. 15, 2024, 1:59 p.m.

9.8

CVSS3.1

CVE-2024-40482 -

An Unrestricted file upload vulnerability was found in "/Membership/edit_member.php" of Kashipara Live Membership System v1.0, which allows attackers to execute arbitrary code via uploading a crafted PHP file.

πŸ“… Published: Aug. 8, 2024, midnight πŸ”„ Last Modified: April 28, 2025, 2:32 p.m.

6.1

CVSS3.1

CVE-2024-40481 -

A Stored Cross Site Scripting (XSS) vulnerability was found in "/admin/view-enquiry.php" in PHPGurukul Old Age Home Management System v1.0, which allows remote attackers to execute arbitrary code via the Contact Us page "message" parameter.

πŸ“… Published: Aug. 8, 2024, midnight πŸ”„ Last Modified: Aug. 15, 2024, 1:58 p.m.

9.8

CVSS3.1

CVE-2024-40477 -

A SQL injection vulnerability in "/oahms/admin/forgot-password.php" in PHPGurukul Old Age Home Management System v1.0 allows an attacker to execute arbitrary SQL commands via the "email" parameter.

πŸ“… Published: Aug. 8, 2024, midnight πŸ”„ Last Modified: March 31, 2025, 3:15 p.m.
Total resulsts: 349182
Page 8921 of 34,919
Β« previous page Β» next page
Filters