7.5

CVSS3.1

CVE-2024-50320 -

An infinite loop in Ivanti Avalanche before 6.4.6 allows a remote unauthenticated attacker to cause a denial of service.

๐Ÿ“… Published: Nov. 12, 2024, 3:32 p.m. ๐Ÿ”„ Last Modified: Nov. 18, 2024, 3:06 p.m.

7.5

CVSS3.1

CVE-2024-50319 -

An infinite loop in Ivanti Avalanche before 6.4.6 allows a remote unauthenticated attacker to cause a denial of service.

๐Ÿ“… Published: Nov. 12, 2024, 3:32 p.m. ๐Ÿ”„ Last Modified: Nov. 18, 2024, 3:06 p.m.

7.5

CVSS3.1

CVE-2024-50318 -

A null pointer dereference in Ivanti Avalanche before 6.4.6 allows a remote unauthenticated attacker to cause a denial of service.

๐Ÿ“… Published: Nov. 12, 2024, 3:30 p.m. ๐Ÿ”„ Last Modified: Nov. 18, 2024, 3:06 p.m.

7.5

CVSS3.1

CVE-2024-50317 -

A null pointer dereference in Ivanti Avalanche before 6.4.6 allows a remote unauthenticated attacker to cause a denial of service.

๐Ÿ“… Published: Nov. 12, 2024, 3:29 p.m. ๐Ÿ”„ Last Modified: Nov. 18, 2024, 3:06 p.m.

7.5

CVSS3.1

CVE-2024-45289 - Unbounded allocation in ctl(4) CAM Target Layer

The fetch(3) library uses environment variables for passing certain information, including the revocation file pathname. The environment variable name used by fetch(1) to pass the filename to the library was incorrect, in effect ignoring the option. Fetch would still connect to a host presenting โ€ฆ

๐Ÿ“… Published: Nov. 12, 2024, 3:06 p.m. ๐Ÿ”„ Last Modified: Jan. 10, 2025, 1:15 p.m.

5.3

CVSS3.1

CVE-2024-39281 - Unbounded allocation in ctl(4) CAM Target Layer

The command ctl_persistent_reserve_out allows the caller to specify an arbitrary size which will be passed to the kernel's memory allocator.

๐Ÿ“… Published: Nov. 12, 2024, 3:01 p.m. ๐Ÿ”„ Last Modified: Jan. 10, 2025, 1:15 p.m.

6.8

CVSS4.0

CVE-2024-2315 - SMM arbitrary code execution in Overclock

APTIOV contains a vulnerability in BIOS where may cause Improper Access Control by a local attacker. Successful exploitation of this vulnerability may lead to unexpected SPI flash modifications and BIOS boot kit launches, also impacting the availability.

๐Ÿ“… Published: Nov. 12, 2024, 3:01 p.m. ๐Ÿ”„ Last Modified: Oct. 2, 2025, 2:28 p.m.

4.4

CVSS4.0

CVE-2024-33658 - Buffer Overflow Vulnerability In OFBD

APTIOV contains a vulnerability in BIOS where an attacker may cause an Improper Restriction of Operations within the Bounds of a Memory Buffer by local. Successful exploitation of this vulnerability may lead to privilege escalation and potentially arbitrary code execution, and impact Integrity.

๐Ÿ“… Published: Nov. 12, 2024, 3:01 p.m. ๐Ÿ”„ Last Modified: Oct. 2, 2025, 2:28 p.m.

5.2

CVSS4.0

CVE-2024-33660 - Potential Firmware update without integrity check

An exploit is possible where an actor with physical access can manipulate SPI flash without being detected.

๐Ÿ“… Published: Nov. 12, 2024, 3 p.m. ๐Ÿ”„ Last Modified: Oct. 2, 2025, 2:32 p.m.

7.2

CVSS3.1

CVE-2024-42442 - Runtime Service Access outside SMRAM

APTIOV contains a vulnerability in the BIOS where a user or attacker may cause an improper restriction of operations within the bounds of a memory buffer over the network. A successful exploitation of this vulnerability may lead to code execution outside of the intended System Management Mode.

๐Ÿ“… Published: Nov. 12, 2024, 3 p.m. ๐Ÿ”„ Last Modified: Oct. 2, 2025, 2:29 p.m.
Total resulsts: 343738
Page 7388 of 34,374
ยซ previous page ยป next page
Filters