2351
|
5.5 |
MEDIUM
Local
|
intel
|
raid_web_console
|
Improper access control in Intel(R) RAID Web Console all versions may allow an authenticated user to potentially enable information disclosure via local access.
|
NVD-CWE-noinfo
|
CVE-2024-28170
|
2024-09-23 23:49 |
2024-09-17 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
2352
|
5.5 |
MEDIUM
Local
|
intel
|
raid_web_console
|
NULL pointer dereference in Intel(R) RAID Web Console software for all versions may allow an authenticated user to potentially enable denial of service via local access.
|
CWE-476
NULL Pointer Dereference
|
CVE-2024-32666
|
2024-09-23 23:47 |
2024-09-17 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
2353
|
4.7 |
MEDIUM
Local
|
linux
|
linux_kernel
|
In the Linux kernel, the following vulnerability has been resolved:
ethtool: check device is present when getting link settings
A sysfs reader can race with a device reset or removal, attempting to…
|
NVD-CWE-noinfo
|
CVE-2024-46679
|
2024-09-23 23:47 |
2024-09-13 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
2354
|
5.5 |
MEDIUM
Local
|
linux
|
linux_kernel
|
In the Linux kernel, the following vulnerability has been resolved:
Bluetooth: btnxpuart: Fix random crash seen while removing driver
This fixes the random kernel crash seen while removing the driv…
|
NVD-CWE-noinfo
|
CVE-2024-46680
|
2024-09-23 23:45 |
2024-09-13 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
2355
|
5.7 |
MEDIUM
Adjacent
|
intel
|
raid_web_console
|
Improper access control in Intel(R) RAID Web Console software for all versions may allow an authenticated user to potentially enable denial of service via adjacent access.
|
NVD-CWE-noinfo
|
CVE-2024-32940
|
2024-09-23 23:44 |
2024-09-17 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
2356
|
5.5 |
MEDIUM
Local
|
linux
|
linux_kernel
|
In the Linux kernel, the following vulnerability has been resolved:
bonding: change ipsec_lock from spin lock to mutex
In the cited commit, bond->ipsec_lock is added to protect ipsec_list,
hence xd…
|
CWE-667
Improper Locking
|
CVE-2024-46678
|
2024-09-23 23:44 |
2024-09-13 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
2357
|
5.5 |
MEDIUM
Local
|
intel
|
raid_web_console
|
Uncaught exception in Intel(R) RAID Web Console software all versions may allow an authenticated user to potentially enable denial of service via local access.
|
NVD-CWE-Other
|
CVE-2024-33848
|
2024-09-23 23:43 |
2024-09-17 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
2358
|
5.5 |
MEDIUM
Local
|
linux
|
linux_kernel
|
In the Linux kernel, the following vulnerability has been resolved:
nfc: pn533: Add poll mod list filling check
In case of im_protocols value is 1 and tm_protocols value is 0 this
combination succe…
|
CWE-369
Divide By Zero
|
CVE-2024-46676
|
2024-09-23 23:42 |
2024-09-13 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
2359
|
5.4 |
MEDIUM
Network
|
cryoutcreations
|
mantra
|
Improper Neutralization of Input During Web Page Generation (XSS or 'Cross-site Scripting') vulnerability in CryoutCreations Mantra allows Stored XSS.This issue affects Mantra: from n/a through 3.3.2.
|
CWE-79
Cross-site Scripting
|
CVE-2024-44056
|
2024-09-23 23:39 |
2024-09-15 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
2360
|
7.8 |
HIGH
Local
|
intel
|
raid_web_console
|
Uncontrolled search path element in Intel(R) RAID Web Console software for all versions may allow an authenticated user to potentially enable escalation of privilege via local access.
|
CWE-427
Uncontrolled Search Path Element
|
CVE-2024-34153
|
2024-09-23 23:35 |
2024-09-17 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|