|
312971
|
4.4 |
MEDIUM
Local
|
dell
|
emc_idrac_service_module
|
Dell iDRAC Service Module version 5.3.0.0 and prior, contain a Out of bound Read Vulnerability. A privileged local attacker could execute arbitrary code potentially resulting in a denial of service e…
|
CWE-125
Out-of-bounds Read
|
CVE-2024-38481
|
2024-08-2 22:54 |
2024-08-1 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
312972
|
5.3 |
MEDIUM
Network
|
-
|
-
|
The Comments – wpDiscuz plugin for WordPress is vulnerable to HTML Injection in all versions up to, and including, 7.6.21. This is due to a lack of filtering of HTML tags in comments. This makes it p…
|
-
|
CVE-2024-6704
|
2024-08-2 21:59 |
2024-08-2 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
312973
|
4.3 |
MEDIUM
Network
|
-
|
-
|
The specific API in HWATAIServiSign Windows Version from CHANGING Information Technology does not properly validate the length of server-side inputs. When a user visits a spoofed website, unauthentic…
|
-
|
CVE-2024-40723
|
2024-08-2 21:59 |
2024-08-2 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
312974
|
4.3 |
MEDIUM
Network
|
-
|
-
|
The specific API in TCBServiSign Windows Version from CHANGING Information Technology does does not properly validate the length of server-side input. When a user visits a spoofed website, unauthenti…
|
CWE-121
Stack-based Buffer Overflow
|
CVE-2024-40722
|
2024-08-2 21:59 |
2024-08-2 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
312975
|
8.8 |
HIGH
Network
|
-
|
-
|
The specific API in TCBServiSign Windows Version from CHANGING Information Technology does not properly validate server-side input. When a user visits a spoofed website, unauthenticated remote attack…
|
CWE-20
Improper Input Validation
|
CVE-2024-40721
|
2024-08-2 21:59 |
2024-08-2 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
312976
|
- |
|
-
|
-
|
The specific API in TCBServiSign Windows Version from CHANGING Information Technology does not properly validate server-side input. When a user visits a spoofed website, unauthenticated remote attack…
|
CWE-20
Improper Input Validation
|
CVE-2024-40720
|
2024-08-2 21:59 |
2024-08-2 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
312977
|
6.5 |
MEDIUM
Network
|
-
|
-
|
The encryption strength of the authorization keys in CHANGING Information Technology TCBServiSign Windows Version is insufficient. When a remote attacker tricks a victim into visiting a malicious web…
|
CWE-326
Inadequate Encryption Strength
|
CVE-2024-40719
|
2024-08-2 21:59 |
2024-08-2 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
312978
|
- |
|
-
|
-
|
Soft Serve is a self-hostable Git server for the command line. Prior to 0.7.5, it is possible for a user who can commit files to a repository hosted by Soft Serve to execute arbitrary code via enviro…
|
-
|
CVE-2024-41956
|
2024-08-2 21:59 |
2024-08-2 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
312979
|
- |
|
-
|
-
|
biscuit-rust is the Rust implementation of Biscuit, an authentication and authorization token for microservices architectures. Third-party blocks can be generated without transferring the whole token…
|
-
|
CVE-2024-41949
|
2024-08-2 21:59 |
2024-08-2 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
312980
|
- |
|
-
|
-
|
biscuit-java is the java implementation of Biscuit, an authentication and authorization token for microservices architectures. Third-party blocks can be generated without transferring the whole token…
|
-
|
CVE-2024-41948
|
2024-08-2 21:59 |
2024-08-2 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|