|
312771
|
5.5 |
MEDIUM
Local
|
wireshark
|
wireshark
|
NTLMSSP dissector crash in Wireshark 4.2.0 to 4.0.6 and 4.0.0 to 4.0.16 allows denial of service via packet injection or crafted capture file
|
CWE-787
Out-of-bounds Write
|
CVE-2024-8250
|
2024-08-31 01:32 |
2024-08-29 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
312772
|
6.1 |
MEDIUM
Network
|
nextbricks
|
bricksore
|
Improper Neutralization of Input During Web Page Generation (XSS or 'Cross-site Scripting') vulnerability in Nextbricks Brickscore allows Stored XSS.This issue affects Brickscore: from n/a through 1.…
|
CWE-79
Cross-site Scripting
|
CVE-2024-43950
|
2024-08-31 01:20 |
2024-08-30 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
312773
|
7.5 |
HIGH
Network
|
frrouting redhat
|
frrouting enterprise_linux
|
An issue was discovered in FRRouting (FRR) through 10.1. bgp_attr_encap in bgpd/bgp_attr.c does not check the actual remaining stream length before taking the TLV value.
|
NVD-CWE-noinfo
|
CVE-2024-44070
|
2024-08-31 01:19 |
2024-08-19 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
312774
|
5.4 |
MEDIUM
Network
|
cryoutcreations
|
tempera
|
Improper Neutralization of Input During Web Page Generation (XSS or 'Cross-site Scripting') vulnerability in CryoutCreations Tempera allows Stored XSS.This issue affects Tempera: from n/a through 1.8…
|
CWE-79
Cross-site Scripting
|
CVE-2024-43951
|
2024-08-31 01:17 |
2024-08-30 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
312775
|
5.4 |
MEDIUM
Network
|
cryoutcreations
|
esotera
|
Improper Neutralization of Input During Web Page Generation (XSS or 'Cross-site Scripting') vulnerability in CryoutCreations Esotera allows Stored XSS.This issue affects Esotera: from n/a through 1.2…
|
CWE-79
Cross-site Scripting
|
CVE-2024-43952
|
2024-08-31 01:16 |
2024-08-30 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
312776
|
- |
|
-
|
-
|
Rejected reason: This CVE ID has been rejected or withdrawn by its CVE Numbering Authority.
|
-
|
CVE-2024-8064
|
2024-08-31 01:15 |
2024-08-31 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
312777
|
- |
|
-
|
-
|
Rejected reason: This CVE ID has been rejected or withdrawn by its CVE Numbering Authority.
|
-
|
CVE-2024-7712
|
2024-08-31 01:15 |
2024-08-31 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
312778
|
- |
|
-
|
-
|
Rejected reason: This CVE ID has been rejected or withdrawn by its CVE Numbering Authority.
|
-
|
CVE-2024-7051
|
2024-08-31 01:15 |
2024-08-31 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
312779
|
6.1 |
MEDIUM
Network
|
gianniporto
|
intothedark
|
Improper Neutralization of Input During Web Page Generation (XSS or 'Cross-site Scripting') vulnerability in Gianni Porto IntoTheDark allows Reflected XSS.This issue affects IntoTheDark: from n/a thr…
|
CWE-79
Cross-site Scripting
|
CVE-2024-43958
|
2024-08-31 01:15 |
2024-08-30 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
312780
|
6.5 |
MEDIUM
Network
|
stitionai
|
devika
|
stitionai/devika main branch as of commit cdfb782b0e634b773b10963c8034dc9207ba1f9f is vulnerable to Local File Read (LFI) by Prompt Injection. The integration of Google Gimini 1.0 Pro with `HarmBlock…
|
CWE-74
Injection
|
CVE-2024-6331
|
2024-08-31 01:15 |
2024-08-4 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|