611
|
- |
|
-
|
-
|
A heap buffer overflow in the XML Text Escaping component of Qualisys C++ SDK commit a32a21a allows attackers to cause Denial of Service (DoS) via escaping special XML characters.
|
-
|
CVE-2024-53319
|
2025-02-4 05:15 |
2025-02-1 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
612
|
- |
|
-
|
-
|
JFinalCMS 1.0 is vulnerable to SQL Injection in rc/main/java/com/cms/entity/Content.java. The cause of the vulnerability is that the title parameter is controllable and is concatenated directly into …
|
-
|
CVE-2024-57665
|
2025-02-4 05:15 |
2025-01-30 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
613
|
5.3 |
MEDIUM
Network
apple
|
macos
|
This issue was addressed through improved state management. This issue is fixed in macOS Sequoia 15.3. Files downloaded from the internet may not have the quarantine flag applied.
|
NVD-CWE-noinfo
|
CVE-2025-24140
|
2025-02-4 05:15 |
2025-01-28 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
614
|
5.5 |
MEDIUM
Local
|
linux
|
linux_kernel
|
In the Linux kernel, the following vulnerability has been resolved:
afs: Fix merge preference rule failure condition
syzbot reported a lock held when returning to userspace[1]. This is
because if …
|
CWE-667
Improper Locking
|
CVE-2025-21672
|
2025-02-4 05:04 |
2025-01-31 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
615
|
5.5 |
MEDIUM
Local
|
linux
|
linux_kernel
|
In the Linux kernel, the following vulnerability has been resolved:
bpf: Fix bpf_sk_select_reuseport() memory leak
As pointed out in the original comment, lookup in sockmap can return a TCP
ESTABLI…
|
CWE-401
Missing Release of Memory after Effective Lifetime
|
CVE-2025-21683
|
2025-02-4 05:01 |
2025-01-31 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
616
|
5.5 |
MEDIUM
Local
|
linux
|
linux_kernel
|
In the Linux kernel, the following vulnerability has been resolved:
iomap: avoid avoid truncating 64-bit offset to 32 bits
on 32-bit kernels, iomap_write_delalloc_scan() was inadvertently using a
3…
|
CWE-835
Loop with Unreachable Exit Condition ('Infinite Loop')
|
CVE-2025-21667
|
2025-02-4 05:00 |
2025-01-31 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
617
|
5.5 |
MEDIUM
Local
|
linux
|
linux_kernel
|
In the Linux kernel, the following vulnerability has been resolved:
vsock: prevent null-ptr-deref in vsock_*[has_data|has_space]
Recent reports have shown how we sometimes call vsock_*_has_data()
w…
|
CWE-476
NULL Pointer Dereference
|
CVE-2025-21666
|
2025-02-4 04:59 |
2025-01-31 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
618
|
5.5 |
MEDIUM
Local
|
linux
|
linux_kernel
|
In the Linux kernel, the following vulnerability has been resolved:
filemap: avoid truncating 64-bit offset to 32 bits
On 32-bit kernels, folio_seek_hole_data() was inadvertently truncating a
64-bi…
|
CWE-835
Loop with Unreachable Exit Condition ('Infinite Loop')
|
CVE-2025-21665
|
2025-02-4 04:57 |
2025-01-31 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
619
|
- |
|
-
|
-
|
Prolink 4G LTE Mobile Wi-Fi DL-7203E V4.0.0B05 is vulnerable to SQL Injection in in the /reqproc/proc_get endpoint. The vulnerability allows an attacker to manipulate SQL queries by injecting malicio…
|
-
|
CVE-2024-57238
|
2025-02-4 04:15 |
2025-02-4 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
620
|
- |
|
-
|
-
|
Prolink 4G LTE Mobile Wi-Fi DL-7203E V4.0.0B05 is vulnerable to Cross Site Scripting (XSS) in the /reqproc/proc_get endpoint. The vulnerability arises because the cmd parameter does not properly sani…
|
-
|
CVE-2024-57237
|
2025-02-4 04:15 |
2025-02-4 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|