131
|
6.8 |
MEDIUM
Physics
|
microsoft
|
windows_server_2008 windows_server_2012 windows_server_2025 windows_10_1809 windows_server_2019 windows_server_2022 windows_10_21h2 windows_11_22h2 windows_10_22h2 windows_…
|
Windows USB Video Class System Driver Elevation of Privilege Vulnerability
Update
|
NVD-CWE-noinfo
|
CVE-2024-43449
|
2024-11-20 05:49 |
2024-11-13 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
132
|
7.5 |
HIGH
Network
|
microsoft
|
windows_server_2008 windows_server_2025 windows_10_1809 windows_server_2019 windows_server_2022 windows_10_21h2 windows_11_22h2 windows_10_22h2 windows_11_23h2 windows_serv…
|
Windows Registry Elevation of Privilege Vulnerability
Update
|
NVD-CWE-noinfo
|
CVE-2024-43452
|
2024-11-20 05:48 |
2024-11-13 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
133
|
8.8 |
HIGH
Network
|
microsoft
|
sql_server_2016 sql_server_2017 sql_server_2019
|
SQL Server Native Client Remote Code Execution Vulnerability
Update
|
NVD-CWE-noinfo
|
CVE-2024-43459
|
2024-11-20 05:43 |
2024-11-13 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
134
|
5.5 |
MEDIUM
Local
|
justdan96
|
tsmuxer
|
A heap-based buffer under-read in tsMuxer version nightly-2024-05-12-02-01-18 allows attackers to cause Denial of Service (DoS) via a crafted MOV video file.
Update
|
CWE-125
Out-of-bounds Read
|
CVE-2024-52613
|
2024-11-20 05:39 |
2024-11-15 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
135
|
- |
|
x.org
|
x11
|
Race condition in xterm allows local users to modify arbitrary files via the logging option.
Update
|
NVD-CWE-Other
|
CVE-1999-0965
|
2024-11-20 05:37 |
1997-09-19 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
136
|
- |
|
-
|
-
|
Powerjob >= 3.20 is vulnerable to SQL injection via the version parameter.
Update
|
-
|
CVE-2024-44546
|
2024-11-20 05:35 |
2024-11-12 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
137
|
- |
|
-
|
-
|
Insufficient validation performed on the REST API License file in Paxton Net2 before 6.07.14023.5015 (SR4) enables use of the REST API with an invalid License File. Attackers may be able to retrieve …
Update
|
-
|
CVE-2024-48939
|
2024-11-20 05:35 |
2024-11-11 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
138
|
- |
|
-
|
-
|
In Faust 2.23.1, an input file with the lines "// r visualisation tCst" and "//process = +: L: abM-^Q;" and "process = route(3333333333333333333,2,1,2,3,1) : *;" leads to stack consumption.
Update
|
-
|
CVE-2021-41737
|
2024-11-20 05:35 |
2024-11-11 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
139
|
- |
|
-
|
-
|
An issue was discovered in LemonLDAP::NG before 2.0.12. There is a missing expiration check in the OAuth2.0 handler, i.e., it does not verify access token validity. An attacker can use a expired acce…
Update
|
-
|
CVE-2021-35473
|
2024-11-20 05:35 |
2024-11-11 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
140
|
- |
|
-
|
-
|
OpenLiteSpeed before 1.8.1 mishandles chunked encoding.
Update
|
-
|
CVE-2024-31617
|
2024-11-20 05:35 |
2024-05-23 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|