921
|
- |
|
-
|
-
|
Out-of-bounds write in the PCX image codec in QNX SDP versions 8.0, 7.1 and 7.0 could allow an unauthenticated attacker to cause a denial-of-service condition or execute code in the context of the pr…
|
-
|
CVE-2024-48856
|
2025-01-15 04:15 |
2025-01-15 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
922
|
- |
|
-
|
-
|
Out-of-bounds read in the TIFF image codec in QNX SDP versions 8.0, 7.1 and 7.0 could allow an unauthenticated attacker to cause an information disclosure in the context of the process using the imag…
|
-
|
CVE-2024-48855
|
2025-01-15 04:15 |
2025-01-15 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
923
|
- |
|
-
|
-
|
Off-by-one error in the TIFF image codec in QNX SDP versions 8.0, 7.1 and 7.0 could allow an unauthenticated attacker to cause an information disclosure in the context of the process using the image …
|
-
|
CVE-2024-48854
|
2025-01-15 04:15 |
2025-01-15 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
924
|
- |
|
-
|
-
|
.NET Elevation of Privilege Vulnerability
|
CWE-379
Creation of Temporary File in Directory with Incorrect Permissions
|
CVE-2025-21173
|
2025-01-15 04:15 |
2025-01-15 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
925
|
6.5 |
MEDIUM
Network
|
-
|
-
|
A flaw was found in the HAL Console in the Wildfly component, which does not neutralize or incorrectly neutralizes user-controllable input before it is placed in output used as a web page that is ser…
|
CWE-79
Cross-site Scripting
|
CVE-2025-23366
|
2025-01-15 03:16 |
2025-01-15 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
926
|
- |
|
-
|
-
|
Authenticated command injection vulnerability in the command line interface of a network management service. Successful exploitation of this vulnerability could allow an attacker to execute arbitrary…
|
-
|
CVE-2025-23052
|
2025-01-15 03:16 |
2025-01-15 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
927
|
- |
|
-
|
-
|
An authenticated parameter injection vulnerability exists in the web-based management interface of the AOS-8 and AOS-10 Operating Systems. Successful exploitation could allow an authenticated user to…
|
-
|
CVE-2025-23051
|
2025-01-15 03:16 |
2025-01-15 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
928
|
- |
|
-
|
-
|
XWiki Platform is a generic wiki platform offering runtime services for applications built on top of it. NOTE: The Realtime WYSIWYG Editor extension was **experimental**, and thus **not recommended**…
|
CWE-862
Missing Authorization
|
CVE-2025-23025
|
2025-01-15 03:16 |
2025-01-15 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
929
|
6.4 |
MEDIUM
Network
|
-
|
-
|
On-Premises Data Gateway Information Disclosure Vulnerability
|
CWE-863
Incorrect Authorization
|
CVE-2025-21403
|
2025-01-15 03:16 |
2025-01-15 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
930
|
7.8 |
HIGH
Local
|
-
|
-
|
Microsoft Office OneNote Remote Code Execution Vulnerability
|
CWE-641
Improper Restriction of Names for Files and Other Resources
|
CVE-2025-21402
|
2025-01-15 03:16 |
2025-01-15 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|