5.5

CVSS3.1

CVE-2024-57360 - binutils: nm: potential segmentation fault when displaying symbols without version info

https://www.gnu.org/software/binutils/ nm >=2.43 is affected by: Incorrect Access Control. The type of exploitation is: local. The component is: `nm --without-symbol-version` function.

πŸ“… Published: Jan. 21, 2025, midnight πŸ”„ Last Modified: April 15, 2026, 12:35 a.m.

7.5

CVSS3.1

CVE-2024-24428 -

A reachable assertion in the oai_nas_5gmm_decode function of Open5GS <= 2.6.4 allows attackers to cause a Denial of Service (DoS) via a crafted NGAP packet.

πŸ“… Published: Jan. 21, 2025, midnight πŸ”„ Last Modified: Jan. 24, 2025, 6:44 p.m.

6.5

CVSS3.1

CVE-2023-37033 -

A Null pointer dereference vulnerability in the Mobile Management Entity (MME) in Magma <= 1.8.0 (fixed in v1.9 commit 08472ba98b8321f802e95f5622fa90fec2dea486) allows network-adjacent attackers to crash the MME via an S1AP `Initial UE Message` packet missing an expected `EUTRAN_CGI` field.

πŸ“… Published: Jan. 21, 2025, midnight πŸ”„ Last Modified: March 20, 2025, 2:15 p.m.

6.5

CVSS3.1

CVE-2023-37026 -

A Null pointer dereference vulnerability in the Mobile Management Entity (MME) in Magma <= 1.8.0 (fixed in v1.9 commit 08472ba98b8321f802e95f5622fa90fec2dea486) allows network-adjacent attackers to crash the MME via an S1AP `E-RAB Release Response` packet missing an expected `MME_UE_S1AP_ID` field.

πŸ“… Published: Jan. 21, 2025, midnight πŸ”„ Last Modified: Jan. 23, 2025, 6:15 p.m.

7.5

CVSS3.1

CVE-2023-37024 -

A reachable assertion in the Mobile Management Entity (MME) of Magma versions <= 1.8.0 (fixed in v1.9 commit 08472ba98b8321f802e95f5622fa90fec2dea486) allows remote attackers to crash the MME with an unauthenticated cellphone by sending a NAS packet containing an `Emergency Number List` Information…

πŸ“… Published: Jan. 21, 2025, midnight πŸ”„ Last Modified: Jan. 23, 2025, 7:15 p.m.

9.8

CVSS3.1

CVE-2024-42936 -

The mqlink.elf is service component in Ruijie RG-EW300N with firmware ReyeeOS 1.300.1422 is vulnerable to Remote Code Execution via a modified MQTT broker message.

πŸ“… Published: Jan. 21, 2025, midnight πŸ”„ Last Modified: Dec. 15, 2025, 8 p.m.

5.4

CVSS3.1

CVE-2024-54795 -

SpagoBI v3.5.1 contains multiple Stored Cross-Site Scripting (XSS) vulnerabilities in the create/edit forms of the worksheet designer function.

πŸ“… Published: Jan. 21, 2025, midnight πŸ”„ Last Modified: Oct. 17, 2025, 4:15 p.m.

9.8

CVSS3.1

CVE-2023-27113 -

pearProjectApi v2.8.10 was discovered to contain a SQL injection vulnerability via the organizationCode parameter at project.php.

πŸ“… Published: Jan. 21, 2025, midnight πŸ”„ Last Modified: May 30, 2025, 4:29 p.m.

9.1

CVSS3.1

CVE-2024-54794 -

The script input feature of SpagoBI 3.5.1 allows arbitrary code execution.

πŸ“… Published: Jan. 21, 2025, midnight πŸ”„ Last Modified: Oct. 17, 2025, 4:15 p.m.

6.5

CVSS3.1

CVE-2023-37034 -

A Null pointer dereference vulnerability in the Mobile Management Entity (MME) in Magma <= 1.8.0 (fixed in v1.9 commit 08472ba98b8321f802e95f5622fa90fec2dea486) allows network-adjacent attackers to crash the MME via an S1AP `Initial UE Message` packet missing an expected `TAI` field.

πŸ“… Published: Jan. 21, 2025, midnight πŸ”„ Last Modified: March 24, 2025, 6:15 p.m.
Total resulsts: 346285
Page 6743 of 34,629
Β« previous page Β» next page
Filters