1981
|
5.5 |
MEDIUM
Local
|
linux
|
linux_kernel
|
In the Linux kernel, the following vulnerability has been resolved:
pci/hotplug/pnv_php: Fix hotplug driver crash on Powernv
The hotplug driver for powerpc (pci/hotplug/pnv_php.c) causes a kernel
c…
|
CWE-476
NULL Pointer Dereference
|
CVE-2024-46761
|
2024-09-24 01:06 |
2024-09-18 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
1982
|
5.3 |
MEDIUM
Network
nasirkhan
|
laravel_starter
|
A vulnerability was found in nasirkhan Laravel Starter up to 11.8.0. It has been rated as problematic. Affected by this issue is some unknown functionality of the file /forgot-password of the compone…
|
CWE-203
Information Exposure Through Discrepancy
|
CVE-2024-6056
|
2024-09-24 01:04 |
2024-06-18 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
1983
|
- |
|
-
|
-
|
The authentication system of Securepoint UTM mishandles OTP keys. This allows the bypassing of second-factor verification (when OTP is enabled) in both the administration web interface and the user p…
|
-
|
CVE-2024-39340
|
2024-09-24 00:15 |
2024-07-12 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
1984
|
8.8 |
HIGH
Network
|
lunary
|
lunary
|
An Insecure Direct Object Reference (IDOR) vulnerability was identified in lunary-ai/lunary, affecting versions up to and including 1.2.2. This vulnerability allows unauthorized users to view, update…
|
CWE-639
Authorization Bypass Through User-Controlled Key
|
CVE-2024-5128
|
2024-09-24 00:11 |
2024-06-7 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
1985
|
7.8 |
HIGH
Local
|
microsoft
|
windows_server_2008 windows_server_2012 windows_10_1809 windows_server_2019 windows_server_2022 windows_11_21h2 windows_10_21h2 windows_11_22h2 windows_10_22h2 windows_11_2…
|
Windows Security Zone Mapping Security Feature Bypass Vulnerability
|
NVD-CWE-noinfo
|
CVE-2024-30073
|
2024-09-24 00:08 |
2024-09-11 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
1986
|
5.5 |
MEDIUM
Local
|
intel
|
raid_web_console
|
Improper access control in Intel(R) RAID Web Console all versions may allow an authenticated user to potentially enable information disclosure via local access.
|
NVD-CWE-noinfo
|
CVE-2024-28170
|
2024-09-23 23:49 |
2024-09-17 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
1987
|
5.5 |
MEDIUM
Local
|
intel
|
raid_web_console
|
NULL pointer dereference in Intel(R) RAID Web Console software for all versions may allow an authenticated user to potentially enable denial of service via local access.
|
CWE-476
NULL Pointer Dereference
|
CVE-2024-32666
|
2024-09-23 23:47 |
2024-09-17 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
1988
|
4.7 |
MEDIUM
Local
|
linux
|
linux_kernel
|
In the Linux kernel, the following vulnerability has been resolved:
ethtool: check device is present when getting link settings
A sysfs reader can race with a device reset or removal, attempting to…
|
NVD-CWE-noinfo
|
CVE-2024-46679
|
2024-09-23 23:47 |
2024-09-13 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
1989
|
5.5 |
MEDIUM
Local
|
linux
|
linux_kernel
|
In the Linux kernel, the following vulnerability has been resolved:
Bluetooth: btnxpuart: Fix random crash seen while removing driver
This fixes the random kernel crash seen while removing the driv…
|
NVD-CWE-noinfo
|
CVE-2024-46680
|
2024-09-23 23:45 |
2024-09-13 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
1990
|
5.7 |
MEDIUM
Adjacent
|
intel
|
raid_web_console
|
Improper access control in Intel(R) RAID Web Console software for all versions may allow an authenticated user to potentially enable denial of service via adjacent access.
|
NVD-CWE-noinfo
|
CVE-2024-32940
|
2024-09-23 23:44 |
2024-09-17 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|