8.1

CVSS3.1

CVE-2024-27273 - IBM AIX privilege escalation

IBM AIX's Unix domain (AIX 7.2, 7.3, VIOS 3.1, and VIOS 4.1) datagram socket implementation could potentially expose applications using Unix domain datagram sockets with SO_PEERID operation and may lead to privilege escalation. IBM X-Force ID: 284903.

πŸ“… Published: May 7, 2024, 8:17 p.m. πŸ”„ Last Modified: Aug. 18, 2025, 3:19 p.m.

0.0

CVE-2024-4625 -

This CVE ID has been rejected or withdrawn by its CVE Numbering Authority.

πŸ“… Published: May 7, 2024, 8:02 p.m. πŸ”„ Last Modified: Feb. 11, 2025, 2:15 a.m.

7.5

CVSS3.1

CVE-2024-4559 -

Heap buffer overflow in WebAudio in Google Chrome prior to 124.0.6367.155 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML page. (Chromium security severity: High)

πŸ“… Published: May 7, 2024, 7:02 p.m. πŸ”„ Last Modified: Feb. 13, 2025, 5:53 p.m.

0.0

CVE-2024-4614 -

** REJECT ** DO NOT USE THIS CANDIDATE NUMBER. Reason: This candidate was issued in error. Notes: All references and descriptions in this candidate have been removed to prevent accidental usage.

πŸ“… Published: May 7, 2024, 5:34 p.m. πŸ”„ Last Modified: May 14, 2024, 3:44 p.m.

6

CVSS3.0

CVE-2024-29209 -

A medium severity vulnerability has been identified in the update mechanism of the Phish Alert Button for Outlook, which could allow an attacker to remotely execute arbitrary code on the host machine. The vulnerability arises from the application's failure to securely verify the authenticity and in…

πŸ“… Published: May 7, 2024, 4:53 p.m. πŸ”„ Last Modified: April 15, 2026, 12:35 a.m.

2.8

CVSS3.0

CVE-2024-29210 -

A local privilege escalation (LPE) vulnerability has been identified in Phish Alert Button for Outlook (PAB), specifically within its configuration management functionalities. This vulnerability allows a regular user to modify the application's configuration file to redirect update checks to an arb…

πŸ“… Published: May 7, 2024, 4:53 p.m. πŸ”„ Last Modified: April 15, 2026, 12:35 a.m.

2.2

CVSS3.0

CVE-2024-29206 -

An Improper Access Control could allow a malicious actor authenticated in the API to enable Android Debug Bridge (ADB) and make unsupported changes to the system. Affected Products: UniFi Connect EV Station (Version 1.1.18 and earlier) UniFi Connect EV Station Pro (Version 1.1.18 and earlier…

πŸ“… Published: May 7, 2024, 4:40 p.m. πŸ”„ Last Modified: April 15, 2026, 12:35 a.m.

7.5

CVSS3.0

CVE-2024-29207 -

An Improper Certificate Validation could allow a malicious actor with access to an adjacent network to take control of the system. Affected Products: UniFi Connect Application (Version 3.7.9 and earlier) UniFi Connect EV Station (Version 1.1.18 and earlier) UniFi Connect EV Station Pro (V…

πŸ“… Published: May 7, 2024, 4:40 p.m. πŸ”„ Last Modified: April 15, 2026, 12:35 a.m.

2.2

CVSS3.0

CVE-2024-29208 -

An Unverified Password Change could allow a malicious actor with API access to the device to change the system password without knowing the previous password. Affected Products: UniFi Connect EV Station (Version 1.1.18 and earlier) UniFi Connect EV Station Pro (Version 1.1.18 and earlier) U…

πŸ“… Published: May 7, 2024, 4:40 p.m. πŸ”„ Last Modified: April 15, 2026, 12:35 a.m.

3.7

CVSS3.1

CVE-2024-4596 - Kimai Session information disclosure

A vulnerability was found in Kimai up to 2.15.0 and classified as problematic. Affected by this issue is some unknown functionality of the component Session Handler. The manipulation of the argument PHPSESSIONID leads to information disclosure. The attack may be launched remotely. The complexity of…

πŸ“… Published: May 7, 2024, 3:31 p.m. πŸ”„ Last Modified: Oct. 10, 2025, 6:16 p.m.
Total resulsts: 349182
Page 9955 of 34,919
Β« previous page Β» next page
Filters