|
312791
|
5.5 |
MEDIUM
Local
|
linux
|
linux_kernel
|
In the Linux kernel, the following vulnerability has been resolved:
ixgbe: fix pci device refcount leak
As the comment of pci_get_domain_bus_and_slot() says, it
returns a PCI device with refcount i…
|
CWE-401
Missing Release of Memory after Effective Lifetime
|
CVE-2022-48896
|
2024-09-12 01:06 |
2024-08-21 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
312792
|
5.3 |
MEDIUM
Network
|
erjemin
|
roll_cms
|
A vulnerability was found in erjemin roll_cms up to 1484fe2c4e0805946a7bcf46218509fcb34883a9. It has been classified as problematic. This affects an unknown part of the file roll_cms/roll_cms/views.p…
|
CWE-209
Information Exposure Through an Error Message
|
CVE-2024-8571
|
2024-09-12 01:05 |
2024-09-8 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
312793
|
5.5 |
MEDIUM
Local
|
linux
|
linux_kernel
|
In the Linux kernel, the following vulnerability has been resolved:
iommu/arm-smmu: Don't unregister on shutdown
Michael Walle says he noticed the following stack trace while performing
a shutdown …
|
CWE-476
NULL Pointer Dereference
|
CVE-2022-48895
|
2024-09-12 01:01 |
2024-08-21 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
312794
|
6.1 |
MEDIUM
Network
|
gouniverse
|
golang_cms
|
A vulnerability was found in Gouniverse GoLang CMS 1.4.0. It has been declared as problematic. This vulnerability affects the function PageRenderHtmlByAlias of the file FrontendHandler.go. The manipu…
|
CWE-79
Cross-site Scripting
|
CVE-2024-8572
|
2024-09-12 00:59 |
2024-09-8 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
312795
|
5.5 |
MEDIUM
Local
|
linux
|
linux_kernel
|
In the Linux kernel, the following vulnerability has been resolved:
iommu/arm-smmu-v3: Don't unregister on shutdown
Similar to SMMUv2, this driver calls iommu_device_unregister() from the
shutdown …
|
CWE-476
NULL Pointer Dereference
|
CVE-2022-48894
|
2024-09-12 00:58 |
2024-08-21 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
312796
|
6.1 |
MEDIUM
Network
|
loway
|
queuemetrics
|
Loway - CWE-601: URL Redirection to Untrusted Site ('Open Redirect')
|
CWE-601
Open Redirect
|
CVE-2024-42341
|
2024-09-12 00:57 |
2024-09-8 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
312797
|
7.5 |
HIGH
Network
|
loway
|
queuemetrics
|
Loway - CWE-204: Observable Response Discrepancy
|
CWE-203
Information Exposure Through Discrepancy
|
CVE-2024-42343
|
2024-09-12 00:56 |
2024-09-8 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
312798
|
4.3 |
MEDIUM
Network
|
loway
|
queuemetrics
|
Loway - CWE-444: Inconsistent Interpretation of HTTP Requests ('HTTP Request/Response Smuggling')
|
CWE-444
HTTP Request Smuggling
|
CVE-2024-42342
|
2024-09-12 00:56 |
2024-09-8 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
312799
|
5.5 |
MEDIUM
Local
|
linux
|
linux_kernel
|
In the Linux kernel, the following vulnerability has been resolved:
drm/i915/gt: Cleanup partial engine discovery failures
If we abort driver initialisation in the middle of gt/engine discovery,
so…
|
CWE-459
Incomplete Cleanup
|
CVE-2022-48893
|
2024-09-12 00:55 |
2024-08-21 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
312800
|
6.5 |
MEDIUM
Network
|
learningdigital
|
orca_hcm
|
Orca HCM from LEARNING DIGITA does not properly restrict a specific parameter of the file download functionality, allowing a remote attacker with regular privileges to download arbitrary system files.
|
CWE-22
Path Traversal
|
CVE-2024-8585
|
2024-09-12 00:53 |
2024-09-9 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|