1631
|
9.8 |
CRITICAL
Network
oretnom23
|
online_computer_and_laptop_store
|
Sourcecodester Online Computer and Laptop Store 1.0 is vulnerable to Incorrect Access Control, which allows remote attackers to elevate privileges to the administrator's role.
|
NVD-CWE-Other
|
CVE-2023-31704
|
2024-11-13 00:35 |
2023-07-14 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
1632
|
7.3 |
HIGH
Local
|
samsung
|
android
|
Out-of-bounds write in parsing subtitle file in libsubextractor.so prior to SMR Nov-2024 Release 1 allows local attackers to cause memory corruption. User interaction is required for triggering this …
|
CWE-787
Out-of-bounds Write
|
CVE-2024-34676
|
2024-11-13 00:31 |
2024-11-6 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
1633
|
7.8 |
HIGH
Local
|
samsung
|
android
|
Out-of-bounds write in libsapeextractor.so prior to SMR Nov-2024 Release 1 allows local attackers to cause memory corruption.
|
CWE-787
Out-of-bounds Write
|
CVE-2024-34678
|
2024-11-13 00:30 |
2024-11-6 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
1634
|
- |
|
-
|
-
|
In Gliffy Online an insecure configuration was discovered in versions before 4.14.0-6. Reported by Ather Iqbal.
|
-
|
CVE-2024-10315
|
2024-11-13 00:15 |
2024-11-12 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
1635
|
- |
|
-
|
-
|
A flaw was found in NetworkManager. When a system running NetworkManager with DEBUG logs enabled and an interface eth1 configured with LLDP enabled, a malicious user could inject a malformed LLDP pac…
|
CWE-400
Uncontrolled Resource Consumption
|
CVE-2024-6501
|
2024-11-13 00:15 |
2024-07-10 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
1636
|
- |
|
-
|
-
|
A flaw was found in the cockpit package. This flaw allows an authenticated user to kill any process when enabling the pam_env's user_readenv option, which leads to a denial of service (DoS) attack.
|
CWE-400
Uncontrolled Resource Consumption
|
CVE-2024-6126
|
2024-11-13 00:15 |
2024-07-4 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
1637
|
- |
|
-
|
-
|
A flaw was found in the github.com/containers/image library. This flaw allows attackers to trigger unexpected authenticated registry accesses on behalf of a victim user, causing resource exhaustion, …
|
CWE-354
Improper Validation of Integrity Check Value
|
CVE-2024-3727
|
2024-11-13 00:15 |
2024-05-15 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
1638
|
- |
|
-
|
-
|
A use-after-free vulnerability was found in the ProcRenderAddGlyphs() function of Xorg servers. This issue occurs when AllocateGlyph() is called to store new glyphs sent by the client to the X server…
|
CWE-416
Use After Free
|
CVE-2024-31083
|
2024-11-13 00:15 |
2024-04-5 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
1639
|
- |
|
-
|
-
|
A heap-based buffer over-read vulnerability was found in the X.org server's ProcXIPassiveGrabDevice() function. This issue occurs when byte-swapped length values are used in replies, potentially lead…
|
CWE-126
Buffer Over-read
|
CVE-2024-31081
|
2024-11-13 00:15 |
2024-04-4 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
1640
|
- |
|
-
|
-
|
A heap-based buffer over-read vulnerability was found in the X.org server's ProcXIGetSelectedEvents() function. This issue occurs when byte-swapped length values are used in replies, potentially lead…
|
CWE-126
Buffer Over-read
|
CVE-2024-31080
|
2024-11-13 00:15 |
2024-04-4 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|