7.5

CVSS3.1

CVE-2024-50954 -

The XINJE XL5E-16T and XD5E-24R-E programmable logic controllers V3.5.3b-V3.7.2a have a vulnerability in handling Modbus messages. When a TCP connection is established with the above series of controllers within a local area network (LAN), sending a specific Modbus message to the controller can cau…

πŸ“… Published: Jan. 15, 2025, midnight πŸ”„ Last Modified: March 20, 2025, 2:15 p.m.

7.8

CVSS3.1

CVE-2024-57857 - RDMA/siw: Remove direct link to net_device

In the Linux kernel, the following vulnerability has been resolved: RDMA/siw: Remove direct link to net_device Do not manage a per device direct link to net_device. Rely on associated ib_devices net_device management, not doubling the effort locally. A badly managed local link to net_device was c…

πŸ“… Published: Jan. 15, 2025, midnight πŸ”„ Last Modified: May 4, 2025, 10:05 a.m.

4.8

CVSS3.1

CVE-2024-41453 -

A cross-site scripting (XSS) vulnerability in Process Maker pm4core-docker 4.1.21-RC7 allows attackers to execute arbitrary web scripts or HTML via a crafted payload injected into the Name parameter.

πŸ“… Published: Jan. 15, 2025, midnight πŸ”„ Last Modified: Jan. 16, 2025, 6:15 p.m.

8.8

CVSS3.1

CVE-2024-57021 -

TOTOLINK X5000R V9.1.0cu.2350_B20230313 was discovered to contain an OS command injection vulnerability via the "eHour" parameter in setWiFiScheduleCfg.

πŸ“… Published: Jan. 15, 2025, midnight πŸ”„ Last Modified: March 20, 2025, 3:15 p.m.

8.8

CVSS3.1

CVE-2024-57015 -

TOTOLINK X5000R V9.1.0cu.2350_B20230313 was discovered to contain an OS command injection vulnerability via the "hour" parameter in setScheduleCfg.

πŸ“… Published: Jan. 15, 2025, midnight πŸ”„ Last Modified: March 18, 2025, 2:15 p.m.

7.8

CVSS3.1

CVE-2024-57887 - drm: adv7511: Fix use-after-free in adv7533_attach_dsi()

In the Linux kernel, the following vulnerability has been resolved: drm: adv7511: Fix use-after-free in adv7533_attach_dsi() The host_node pointer was assigned and freed in adv7533_parse_dt(), and later, adv7533_attach_dsi() uses the same. Fix this use-after-free issue byΒ dropping of_node_put() i…

πŸ“… Published: Jan. 15, 2025, midnight πŸ”„ Last Modified: Nov. 3, 2025, 9:18 p.m.

6.8

CVSS3.1

CVE-2024-57024 -

TOTOLINK X5000R V9.1.0cu.2350_B20230313 was discovered to contain an OS command injection vulnerability via the "eMinute" parameter in setWiFiScheduleCfg.

πŸ“… Published: Jan. 15, 2025, midnight πŸ”„ Last Modified: April 7, 2025, 6:10 p.m.

7.8

CVSS3.1

CVE-2024-57014 -

TOTOLINK X5000R V9.1.0cu.2350_B20230313 was discovered to contain an OS command injection vulnerability via the "recHour" parameter in setScheduleCfg.

πŸ“… Published: Jan. 15, 2025, midnight πŸ”„ Last Modified: March 18, 2025, 3:15 p.m.

8.8

CVSS3.1

CVE-2024-57011 -

TOTOLINK X5000R V9.1.0cu.2350_B20230313 was discovered to contain an OS command injection vulnerability via the "minute" parameters in setScheduleCfg.

πŸ“… Published: Jan. 15, 2025, midnight πŸ”„ Last Modified: March 17, 2025, 5:15 p.m.

8.8

CVSS3.1

CVE-2024-57020 -

TOTOLINK X5000R V9.1.0cu.2350_B20230313 was discovered to contain an OS command injection vulnerability via the "sMinute" parameter in setWiFiScheduleCfg.

πŸ“… Published: Jan. 15, 2025, midnight πŸ”„ Last Modified: March 18, 2025, 7:15 p.m.
Total resulsts: 343996
Page 6596 of 34,400
Β« previous page Β» next page
Filters