7.8

CVSS3.1

CVE-2024-23142 - Multiple Vulnerabilities in the Autodesk AutoCAD Desktop Software

A maliciously crafted CATPART, STP, and MODEL file, when parsed in atf_dwg_consumer.dll, rose_x64_vc15.dll and libodxdll through Autodesk applications, can cause a use-after-free vulnerability. This vulnerability, along with other vulnerabilities, can lead to code execution in the current process.

πŸ“… Published: June 25, 2024, 1:24 a.m. πŸ”„ Last Modified: Dec. 31, 2025, 12:41 a.m.

7.8

CVSS3.1

CVE-2024-23141 - Multiple Vulnerabilities in the Autodesk AutoCAD Desktop Software

A maliciously crafted MODEL file, when parsed in libodxdll through Autodesk applications, can cause a double free. This vulnerability, along with other vulnerabilities, can lead to code execution in the current process.

πŸ“… Published: June 25, 2024, 1:22 a.m. πŸ”„ Last Modified: Dec. 31, 2025, 12:41 a.m.

7.8

CVSS3.1

CVE-2024-23140 - Multiple Vulnerabilities in the Autodesk AutoCAD Desktop Software

A maliciously crafted 3DM and MODEL file, when parsed in opennurbs.dll and atf_api.dll through Autodesk applications, can force an Out-of-Bound Read. A malicious actor can leverage this vulnerability to cause a crash, read sensitive data, or execute arbitrary code in the context of the current proc…

πŸ“… Published: June 25, 2024, 1:01 a.m. πŸ”„ Last Modified: Dec. 31, 2025, 12:41 a.m.

8.4

CVSS3.1

CVE-2024-37855 -

An issue in Nepstech Wifi Router xpon (terminal) NTPL-Xpon1GFEVN, hardware verstion 1.0 firmware 2.0.1 allows a remote attacker to execute arbitrary code via the router's Telnet port 2345 without requiring authentication credentials.

πŸ“… Published: June 25, 2024, midnight πŸ”„ Last Modified: April 15, 2026, 12:35 a.m.

6.1

CVSS3.1

CVE-2024-30931 -

Stored Cross Site Scripting vulnerability in Emby Media Server Emby Media Server 4.8.3.0 allows a remote attacker to escalate privileges via the notifications.html component.

πŸ“… Published: June 25, 2024, midnight πŸ”„ Last Modified: April 15, 2026, 12:35 a.m.

9.8

CVSS3.1

CVE-2024-21741 -

GigaDevice GD32E103C8T6 devices have Incorrect Access Control.

πŸ“… Published: June 25, 2024, midnight πŸ”„ Last Modified: April 15, 2026, 12:35 a.m.

5.5

CVSS3.1

CVE-2024-38385 - genirq/irqdesc: Prevent use-after-free in irq_find_at_or_after()

In the Linux kernel, the following vulnerability has been resolved: genirq/irqdesc: Prevent use-after-free in irq_find_at_or_after() irq_find_at_or_after() dereferences the interrupt descriptor which is returned by mt_find() while neither holding sparse_irq_lock nor RCU read lock, which means the…

πŸ“… Published: June 25, 2024, midnight πŸ”„ Last Modified: May 4, 2025, 9:13 a.m.

4.7

CVSS3.1

CVE-2024-38306 - btrfs: protect folio::private when attaching extent buffer folios

In the Linux kernel, the following vulnerability has been resolved: btrfs: protect folio::private when attaching extent buffer folios [BUG] Since v6.8 there are rare kernel crashes reported by various people, the common factor is bad page status error messages like this: BUG: Bad page state in…

πŸ“… Published: June 25, 2024, midnight πŸ”„ Last Modified: Sept. 17, 2025, 4 p.m.

5.4

CVSS3.1

CVE-2024-36819 -

MAP-OS 4.45.0 and earlier is vulnerable to Cross-Site Scripting (XSS). This vulnerability allows malicious users to insert a malicious payload into the "Client Name" input. When a service order from this client is created, the malicious payload is displayed on the administrator and employee dashboa…

πŸ“… Published: June 25, 2024, midnight πŸ”„ Last Modified: July 3, 2025, 4:28 p.m.

6.5

CVSS3.1

CVE-2024-38951 -

A buffer overflow in PX4-Autopilot v1.12.3 allows attackers to cause a Denial of Service (DoS) via a crafted MavLink message.

πŸ“… Published: June 25, 2024, midnight πŸ”„ Last Modified: June 20, 2025, 6:54 p.m.
Total resulsts: 349182
Page 9341 of 34,919
Β« previous page Β» next page
Filters