431
|
- |
|
-
|
-
|
Linksys E8450 v1.2.00.360516 was discovered to contain a command injection vulnerability via userEmail.
New
|
-
|
CVE-2024-57539
|
2025-01-22 06:15 |
2025-01-22 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
432
|
- |
|
-
|
-
|
Linksys E8450 v1.2.00.360516 was discovered to contain a buffer overflow vulnerability. The parsed field (anonymous_protect_status) is copied to the stack without length verification.
New
|
-
|
CVE-2024-57538
|
2025-01-22 06:15 |
2025-01-22 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
433
|
6.1 |
MEDIUM
Network
|
-
|
-
|
Vulnerability in the Oracle Advanced Outbound Telephony product of Oracle E-Business Suite (component: Region Mapping). Supported versions that are affected are 12.2.3-12.2.10. Easily exploitable vu…
New
|
-
|
CVE-2025-21489
|
2025-01-22 06:15 |
2025-01-22 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
434
|
5.4 |
MEDIUM
Network
|
-
|
-
|
Vulnerability in the JD Edwards EnterpriseOne Tools product of Oracle JD Edwards (component: Business Logic Infra SEC). Supported versions that are affected are Prior to 9.2.9.0. Easily exploitable …
New
|
-
|
CVE-2024-21245
|
2025-01-22 06:15 |
2025-01-22 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
435
|
7.2 |
HIGH
Network
|
fortinet
|
fortimanager fortianalyzer
|
An improper limitation of a pathname to a restricted directory ('path traversal') in Fortinet FortiManager, FortiAnalyzer versions 7.4.0 through 7.4.2 and 7.2.0 through 7.2.5 and 7.0.0 through 7.0.12…
Update
|
CWE-22
Path Traversal
|
CVE-2024-33502
|
2025-01-22 06:03 |
2025-01-14 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
436
|
- |
|
-
|
-
|
Mjolnir is a moderation tool for Matrix. Mjolnir v1.9.0 responds to management commands from any room the bot is member of. This can allow users who aren't operators of the bot to use the bot's funct…
New
|
CWE-671
Lack of Administrator Control over Security
|
CVE-2025-24024
|
2025-01-22 05:15 |
2025-01-22 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
437
|
- |
|
-
|
-
|
Homarr before v0.14.0 was discovered to contain a stored cross-site scripting (XSS) vulnerability via the Notebook widget.
New
|
-
|
CVE-2023-45908
|
2025-01-22 05:15 |
2025-01-22 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
438
|
- |
|
-
|
-
|
Weak encryption algorithm in Easy-RSA version 3.0.5 through 3.1.7 allows a local attacker to more easily bruteforce the private CA key when created using OpenSSL 3
New
|
-
|
CVE-2024-13454
|
2025-01-22 05:15 |
2025-01-21 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
439
|
8.8 |
HIGH
Network
|
microsoft
|
windows_server_2008 windows_server_2012 windows_server_2022_23h2 windows_10_1607 windows_10_1507 windows_10_1809 windows_10_21h2 windows_10_22h2 windows_11_22h2 windows_11_…
|
Windows Telephony Service Remote Code Execution Vulnerability
Update
|
NVD-CWE-noinfo
|
CVE-2025-21339
|
2025-01-22 05:11 |
2025-01-15 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
440
|
7.8 |
HIGH
Local
|
microsoft
|
windows_server_2008 windows_server_2012 office windows_server_2022_23h2 windows_10_1507 windows_10_1607 windows_10_1809 windows_10_21h2 windows_10_22h2 windows_11_22h2 w…
|
GDI+ Remote Code Execution Vulnerability
Update
|
NVD-CWE-noinfo
|
CVE-2025-21338
|
2025-01-22 05:08 |
2025-01-15 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|