81
|
5.5 |
MEDIUM
Local
|
adobe
|
indesign
|
InDesign Desktop versions ID18.5.3, ID19.5 and earlier are affected by an out-of-bounds read vulnerability that could lead to disclosure of sensitive memory. An attacker could leverage this vulnerabi…
Update
|
CWE-125
Out-of-bounds Read
|
CVE-2024-49511
|
2024-11-16 09:34 |
2024-11-13 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
82
|
7.8 |
HIGH
Local
|
adobe
|
indesign
|
InDesign Desktop versions ID18.5.2, ID19.5 and earlier are affected by a Heap-based Buffer Overflow vulnerability that could result in arbitrary code execution in the context of the current user. Exp…
Update
|
CWE-787
Out-of-bounds Write
|
CVE-2024-49508
|
2024-11-16 09:33 |
2024-11-13 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
83
|
7.8 |
HIGH
Local
|
adobe
|
indesign
|
InDesign Desktop versions ID18.5.2, ID19.5 and earlier are affected by a Heap-based Buffer Overflow vulnerability that could result in arbitrary code execution in the context of the current user. Exp…
Update
|
CWE-787
Out-of-bounds Write
|
CVE-2024-49507
|
2024-11-16 09:33 |
2024-11-13 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
84
|
8.1 |
HIGH
Network
|
ibm
|
soar
|
IBM Security SOAR 51.0.1.0 and earlier contains a mechanism for users to recover or change their passwords without knowing the original password, but the user account must be compromised prior to the…
New
|
CWE-640
Weak Password Recovery Mechanism for Forgotten Password
|
CVE-2024-45670
|
2024-11-16 09:24 |
2024-11-14 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
85
|
5.3 |
MEDIUM
Network
ibm
|
security_qradar_edr
|
IBM Security ReaQta 3.12 is vulnerable to cross-site scripting. This vulnerability allows a privileged user to embed arbitrary JavaScript code in the Web UI thus altering the intended functionality p…
New
|
NVD-CWE-noinfo
|
CVE-2024-45642
|
2024-11-16 09:13 |
2024-11-14 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
86
|
4.8 |
MEDIUM
Network
|
ibm
|
security_qradar_edr
|
IBM Security ReaQta 3.12 is vulnerable to cross-site scripting. This vulnerability allows a privileged user to embed arbitrary JavaScript code in the Web UI thus altering the intended functionality p…
New
|
CWE-79
Cross-site Scripting
|
CVE-2024-45099
|
2024-11-16 09:11 |
2024-11-14 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
87
|
7.8 |
HIGH
Local
|
microsoft
|
excel office 365_apps office_long_term_servicing_channel
|
Microsoft Excel Remote Code Execution Vulnerability
Update
|
NVD-CWE-noinfo
|
CVE-2024-49027
|
2024-11-16 09:09 |
2024-11-13 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
88
|
7.8 |
HIGH
Local
|
microsoft
|
office_online_server excel office 365_apps office_long_term_servicing_channel
|
Microsoft Excel Remote Code Execution Vulnerability
Update
|
NVD-CWE-noinfo
|
CVE-2024-49026
|
2024-11-16 09:08 |
2024-11-13 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
89
|
7.8 |
HIGH
Local
|
microsoft
|
excel office 365_apps office_long_term_servicing_channel
|
Microsoft Excel Remote Code Execution Vulnerability
Update
|
NVD-CWE-noinfo
|
CVE-2024-49030
|
2024-11-16 09:06 |
2024-11-13 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
90
|
7.8 |
HIGH
Local
|
microsoft
|
excel office 365_apps office_long_term_servicing_channel
|
Microsoft Excel Remote Code Execution Vulnerability
Update
|
NVD-CWE-noinfo
|
CVE-2024-49029
|
2024-11-16 09:06 |
2024-11-13 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|