7.8

CVSS3.1

CVE-2024-31756 -

An issue in MarvinTest Solutions Hardware Access Driver v.5.0.3.0 and before and fixed in v.5.0.4.0 allows a local attacker to escalate privileges via the Hw65.sys component.

πŸ“… Published: May 21, 2024, 7:57 p.m. πŸ”„ Last Modified: April 15, 2026, 12:35 a.m.

3.9

CVSS3.1

CVE-2024-34274 -

OpenBD 20210306203917-6cbe797 is vulnerable to Deserialization of Untrusted Data. The cookies bdglobals and bdclient_spot of the OpenBD software uses serialized data, which can be used to execute arbitrary code on the system. NOTE: This vulnerability only affects products that are no longer support…

πŸ“… Published: May 21, 2024, 7:36 p.m. πŸ”„ Last Modified: April 15, 2026, 12:35 a.m.

4.3

CVSS3.1

CVE-2024-33525 -

A Stored Cross-site Scripting (XSS) vulnerability in the "Import of organizational units and title of organizational unit" feature in ILIAS 7.20 to 7.29 and ILIAS 8.4 to 8.10 as well as ILIAS 9.0 allows remote authenticated attackers with administrative privileges to inject arbitrary web script or …

πŸ“… Published: May 21, 2024, 6:50 p.m. πŸ”„ Last Modified: April 15, 2026, 12:35 a.m.

7.3

CVSS3.1

CVE-2024-25724 -

In RTI Connext Professional 5.3.1 through 6.1.0 before 6.1.1, a buffer overflow in XML parsing from Routing Service, Recording Service, Queuing Service, and Cloud Discovery Service allows attackers to execute code with the affected service's privileges, compromise the service's integrity, leak sens…

πŸ“… Published: May 21, 2024, 6:38 p.m. πŸ”„ Last Modified: Oct. 21, 2025, 11:34 a.m.

0.0

CVE-2024-5183 -

This CVE ID has been rejected or withdrawn by its CVE Numbering Authority.

πŸ“… Published: May 21, 2024, 6:30 p.m. πŸ”„ Last Modified: Feb. 8, 2025, 10:15 p.m.

6.5

CVSS3.1

CVE-2024-4154 - Incorrect Synchronization in lunary-ai/lunary

In lunary-ai/lunary version 1.2.2, an incorrect synchronization vulnerability allows unprivileged users to rename projects they do not have access to. Specifically, an unprivileged user can send a PATCH request to the project's endpoint with a new name for a project, despite not having the necessar…

πŸ“… Published: May 21, 2024, 5:57 p.m. πŸ”„ Last Modified: Jan. 31, 2025, 11:15 a.m.

7.8

CVSS3.1

CVE-2024-31757 -

An issue in TeraByte Unlimited Image for Windows v.3.64.0.0 and before and fixed in v.4.0.0.0 allows a local attacker to escalate privileges via the TBOFLHelper64.sys and TBOFLHelper.sys component.

πŸ“… Published: May 21, 2024, 5:37 p.m. πŸ”„ Last Modified: April 15, 2026, 12:35 a.m.

6.1

CVSS3.1

CVE-2024-34240 -

QDOCS Smart School 7.0.0 is vulnerable to Cross Site Scripting (XSS) resulting in arbitrary code execution in admin functions related to adding or updating records.

πŸ“… Published: May 21, 2024, 5:33 p.m. πŸ”„ Last Modified: Nov. 14, 2025, 4:37 p.m.

4.9

CVSS3.1

CVE-2024-22275 -

The vCenter Server contains a partial file read vulnerability.Β A malicious actor with administrative privileges on the vCenter appliance shell may exploit this issue to partially read arbitrary files containing sensitive data.

πŸ“… Published: May 21, 2024, 5:29 p.m. πŸ”„ Last Modified: June 27, 2025, 1:38 p.m.

7.2

CVSS3.1

CVE-2024-22274 -

The vCenter Server contains an authenticated remote code execution vulnerability.Β A malicious actor with administrative privileges on the vCenter appliance shell may exploit this issue to run arbitrary commands on the underlying operating system.

πŸ“… Published: May 21, 2024, 5:29 p.m. πŸ”„ Last Modified: June 27, 2025, 1:37 p.m.
Total resulsts: 349182
Page 9716 of 34,919
Β« previous page Β» next page
Filters