1891
|
5.3 |
MEDIUM
Network
samba fedoraproject redhat debian
|
samba fedora enterprise_linux debian_linux
|
A Type Confusion vulnerability was found in Samba's mdssvc RPC service for Spotlight. When parsing Spotlight mdssvc RPC packets, one encoded data structure is a key-value style dictionary where the k…
|
CWE-843
Type Confusion
|
CVE-2023-34967
|
2024-09-16 22:15 |
2023-07-21 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
1892
|
7.5 |
HIGH
Network
samba fedoraproject redhat debian
|
samba fedora enterprise_linux debian_linux
|
An infinite loop vulnerability was found in Samba's mdssvc RPC service for Spotlight. When parsing Spotlight mdssvc RPC packets sent by the client, the core unmarshalling function sl_unpack_loop() di…
|
CWE-835
Loop with Unreachable Exit Condition ('Infinite Loop')
|
CVE-2023-34966
|
2024-09-16 22:15 |
2023-07-21 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
1893
|
5.5 |
MEDIUM
Local
|
adobe
|
premiere_pro
|
Premiere Pro versions 24.5, 23.6.8 and earlier are affected by a Use After Free vulnerability that could lead to disclosure of sensitive memory. An attacker could leverage this vulnerability to bypas…
|
CWE-416
Use After Free
|
CVE-2024-39385
|
2024-09-16 22:12 |
2024-09-13 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
1894
|
7.8 |
HIGH
Local
|
adobe
|
premiere_pro
|
Premiere Pro versions 24.5, 23.6.8 and earlier are affected by an out-of-bounds write vulnerability that could result in arbitrary code execution in the context of the current user. Exploitation of t…
|
CWE-787
Out-of-bounds Write
|
CVE-2024-39384
|
2024-09-16 22:01 |
2024-09-13 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
1895
|
7.8 |
HIGH
Local
|
qnap
|
qts quts_hero
|
An OS command injection vulnerability has been reported to affect several QNAP operating system versions. If exploited, the vulnerability could allow local network users to execute commands via unspe…
|
CWE-78 CWE-77
OS Command Command Injection
|
CVE-2024-38641
|
2024-09-16 21:35 |
2024-09-7 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
1896
|
7.8 |
HIGH
Local
|
qnap
|
qumagie
|
An improper certificate validation vulnerability has been reported to affect QuMagie. If exploited, the vulnerability could allow local network users to compromise the security of the system via unsp…
|
CWE-295
Improper Certificate Validation
|
CVE-2024-38642
|
2024-09-16 21:33 |
2024-09-7 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
1897
|
5.4 |
MEDIUM
Network
|
qnap
|
download_station
|
A cross-site scripting (XSS) vulnerability has been reported to affect Download Station. If exploited, the vulnerability could allow authenticated users to inject malicious code via a network.
We ha…
|
CWE-79
Cross-site Scripting
|
CVE-2024-38640
|
2024-09-16 21:27 |
2024-09-7 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
1898
|
5.5 |
MEDIUM
Local
|
linux
|
linux_kernel
|
In the Linux kernel, the following vulnerability has been resolved:
vsock: fix recursive ->recvmsg calls
After a vsock socket has been added to a BPF sockmap, its prot->recvmsg
has been replaced wi…
|
CWE-674
Uncontrolled Recursion
|
CVE-2024-44996
|
2024-09-16 21:21 |
2024-09-5 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
1899
|
5.5 |
MEDIUM
Local
|
adobe
|
illustrator
|
Illustrator versions 28.5, 27.9.4 and earlier are affected by an out-of-bounds read vulnerability that could lead to disclosure of sensitive memory. An attacker could leverage this vulnerability to b…
|
CWE-125
Out-of-bounds Read
|
CVE-2024-34134
|
2024-09-16 21:15 |
2024-08-15 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
1900
|
7.7 |
HIGH
Network
|
adobe
|
commerce magento
|
Adobe Commerce versions 2.4.7-p1, 2.4.6-p6, 2.4.5-p8, 2.4.4-p9 and earlier are affected by an Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal') vulnerability that could l…
|
CWE-22
Path Traversal
|
CVE-2024-39406
|
2024-09-16 21:15 |
2024-08-14 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|