6.7

CVSS3.1

CVE-2023-43526 - Buffer Copy Without Checking Size of Input (`Classic Buffer Overflow`) in Audio

Memory corruption while querying module parameters from Listen Sound model client in kernel from user space.

๐Ÿ“… Published: May 6, 2024, 2:32 p.m. ๐Ÿ”„ Last Modified: Jan. 15, 2025, 4:52 p.m.

6.7

CVSS3.1

CVE-2023-43525 - Buffer Copy Without Checking Size of Input (`Classic Buffer Overflow`) in Audio

Memory corruption while copying the sound model data from user to kernel buffer during sound model register.

๐Ÿ“… Published: May 6, 2024, 2:32 p.m. ๐Ÿ”„ Last Modified: Dec. 16, 2025, 6:23 p.m.

6.7

CVSS3.1

CVE-2023-43524 - Buffer Copy Without Checking Size of Input (`Classic Buffer Overflow`) in Audio

Memory corruption when the bandpass filter order received from AHAL is not within the expected range.

๐Ÿ“… Published: May 6, 2024, 2:32 p.m. ๐Ÿ”„ Last Modified: Jan. 15, 2025, 4:51 p.m.

6.7

CVSS3.1

CVE-2023-43521 - Use After Free in HLOS

Memory corruption when multiple listeners are being registered with the same file descriptor.

๐Ÿ“… Published: May 6, 2024, 2:32 p.m. ๐Ÿ”„ Last Modified: Aug. 11, 2025, 3:06 p.m.

8.4

CVSS3.1

CVE-2023-33119 - Time-of-check Time-of-use (TOCTOU) Race Condition in Hypervisor

Memory corruption while loading a VM from a signed VM image that is not coherent in the processor cache.

๐Ÿ“… Published: May 6, 2024, 2:32 p.m. ๐Ÿ”„ Last Modified: Dec. 16, 2025, 6:23 p.m.

7.5

CVSS3.1

CVE-2024-32972 - go-ethereum denial of service via malicious p2p message

go-ethereum (geth) is a golang execution layer implementation of the Ethereum protocol. Prior to 1.13.15, a vulnerable node can be made to consume very large amounts of memory when handling specially crafted p2p messages sent from an attacker node. The fix has been included in geth version `1.13.15โ€ฆ

๐Ÿ“… Published: May 6, 2024, 2:26 p.m. ๐Ÿ”„ Last Modified: April 15, 2026, 12:35 a.m.

7.5

CVSS3.1

CVE-2024-4549 - Delta Electronics DIAEnergie SQL Injection

A denial of service vulnerability exists in Delta Electronics DIAEnergie v1.10.1.8610 and prior. When processing an 'ICS Restart!' message, CEBC.exe restarts the system.

๐Ÿ“… Published: May 6, 2024, 1:54 p.m. ๐Ÿ”„ Last Modified: June 17, 2025, 4:24 p.m.

9.8

CVSS3.1

CVE-2024-4548 - Delta Electronics DIAEnergie SQL Injection

An SQLi vulnerability exists inย Delta Electronics DIAEnergie v1.10.1.8610 and prior when CEBC.exe processes a 'RecalculateHDMWYC' message, which is split into 4 fields using the '~' character as the separator. An unauthenticated remote attacker can perform SQLi via the fourth field.

๐Ÿ“… Published: May 6, 2024, 1:51 p.m. ๐Ÿ”„ Last Modified: June 27, 2025, 2:44 p.m.

9.8

CVSS3.1

CVE-2024-4547 - Delta Electronics DIAEnergie Unauthenticated SQL Injection

A SQLi vulnerability exists inย Delta Electronicsย DIAEnergie v1.10.1.8610 and prior when CEBC.exe processes a 'RecalculateScript' message, which is splitted into 4 fields using the '~' character as the separator. An unauthenticated remote attacker can perform SQLi via the fourth field

๐Ÿ“… Published: May 6, 2024, 1:48 p.m. ๐Ÿ”„ Last Modified: June 27, 2025, 2:44 p.m.

8.3

CVSS3.1

CVE-2024-3576 - NPort 5100A Series Store XSS Vulnerability

The NPort 5100A Series firmware version v1.6 and prior versions are affected by web server XSS vulnerability. The vulnerability is caused by not correctly neutralizing user-controllable input before placing it in output. Malicious users may use the vulnerability to get sensitive information and escโ€ฆ

๐Ÿ“… Published: May 6, 2024, 12:04 p.m. ๐Ÿ”„ Last Modified: April 15, 2026, 12:35 a.m.
Total resulsts: 349182
Page 9972 of 34,919
ยซ previous page ยป next page
Filters