231
|
5.5 |
MEDIUM
Local
|
apple
|
macos
|
The issue was addressed with improved checks. This issue is fixed in macOS Ventura 13.7.1, macOS Sequoia 15, macOS Sonoma 14.7.1. A sandboxed app may be able to access sensitive user data.
New
|
NVD-CWE-noinfo
|
CVE-2024-40855
|
2024-10-30 02:42 |
2024-10-29 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
232
|
2.4 |
LOW
Physics
|
apple
|
ipados iphone_os
|
This issue was addressed by restricting options offered on a locked device. This issue is fixed in iOS 18.1 and iPadOS 18.1. An attacker with physical access may be able to access contact photos from…
New
|
NVD-CWE-noinfo
|
CVE-2024-40851
|
2024-10-30 02:42 |
2024-10-29 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
233
|
9.6 |
CRITICAL
Network
|
apple
|
ipados iphone_os
|
A custom URL scheme handling issue was addressed with improved input validation. This issue is fixed in iOS 18.1 and iPadOS 18.1. A remote attacker may be able to break out of Web Content sandbox.
New
|
NVD-CWE-noinfo
|
CVE-2024-40867
|
2024-10-30 02:41 |
2024-10-29 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
234
|
8.8 |
HIGH
Local
|
apple
|
macos
|
A logic issue was addressed with improved checks. This issue is fixed in macOS Ventura 13.7.1, macOS Sequoia 15, macOS Sonoma 14.7.1. An application may be able to break out of its sandbox.
New
|
NVD-CWE-noinfo
|
CVE-2024-44122
|
2024-10-30 02:38 |
2024-10-29 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
235
|
5.5 |
MEDIUM
Local
|
hp
|
oneview
|
This vulnerability could be exploited, leading to unauthorized disclosure of information to authenticated users.
Update
|
NVD-CWE-noinfo
|
CVE-2024-42508
|
2024-10-30 02:38 |
2024-10-19 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
236
|
2.3 |
LOW
Local
|
apple
|
macos iphone_os ipados
|
A permissions issue was addressed with additional restrictions. This issue is fixed in macOS Sequoia 15, iOS 18 and iPadOS 18. A malicious app with root privileges may be able to access keyboard inpu…
New
|
NVD-CWE-noinfo
|
CVE-2024-44123
|
2024-10-30 02:37 |
2024-10-29 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
237
|
4.6 |
MEDIUM
Physics
|
apple
|
macos
|
The issue was addressed with improved checks. This issue is fixed in macOS Ventura 13.7.1, macOS Sequoia 15, macOS Sonoma 14.7.1. An attacker with physical access may be able to share items from the …
New
|
NVD-CWE-noinfo
|
CVE-2024-44137
|
2024-10-30 02:35 |
2024-10-29 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
238
|
7.8 |
HIGH
Local
|
apple
|
macos ipados iphone_os visionos
|
The issue was addressed with improved checks. This issue is fixed in macOS Ventura 13.7.1, macOS Sequoia 15, iOS 17.7 and iPadOS 17.7, macOS Sonoma 14.7, visionOS 2, iOS 18 and iPadOS 18. Processing …
New
|
CWE-787
Out-of-bounds Write
|
CVE-2024-44126
|
2024-10-30 02:35 |
2024-10-29 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
239
|
- |
|
-
|
-
|
Money Manager EX WebApp (web-money-manager-ex) 1.2.2 is vulnerable to SQL Injection in the `transaction_delete_group` function. The vulnerability is due to improper sanitization of user input in the …
Update
|
-
|
CVE-2024-41618
|
2024-10-30 02:35 |
2024-10-25 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
240
|
- |
|
-
|
-
|
Money Manager EX WebApp (web-money-manager-ex) 1.2.2 is vulnerable to Incorrect Access Control. The `redirect_if_not_loggedin` function in `functions_security.php` fails to terminate script execution…
Update
|
-
|
CVE-2024-41617
|
2024-10-30 02:35 |
2024-10-25 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|