|
313361
|
9.8 |
CRITICAL
Network
|
angeljudesuarez
|
billing_system
|
A vulnerability classified as critical has been found in itsourcecode Billing System 1.0. This affects an unknown part of the file addbill.php. The manipulation of the argument owners_id leads to sql…
|
CWE-89
SQL Injection
|
CVE-2024-7839
|
2024-08-20 06:18 |
2024-08-16 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
313362
|
5.4 |
MEDIUM
Network
|
jetbrains
|
teamcity
|
In JetBrains TeamCity before 2024.07.1 reflected XSS was possible in the AWS Core plugin
|
CWE-79
Cross-site Scripting
|
CVE-2024-43810
|
2024-08-20 06:11 |
2024-08-17 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
313363
|
6.1 |
MEDIUM
Network
|
jetbrains
|
teamcity
|
In JetBrains TeamCity before 2024.07.1 reflected XSS was possible on the agentPushPreset page
|
CWE-79
Cross-site Scripting
|
CVE-2024-43809
|
2024-08-20 06:11 |
2024-08-17 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
313364
|
5.4 |
MEDIUM
Network
|
jetbrains
|
teamcity
|
In JetBrains TeamCity before 2024.07.1 self XSS was possible in the HashiCorp Vault plugin
|
CWE-79
Cross-site Scripting
|
CVE-2024-43808
|
2024-08-20 06:10 |
2024-08-17 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
313365
|
5.4 |
MEDIUM
Network
|
jetbrains
|
teamcity
|
In JetBrains TeamCity before 2024.07.1 multiple stored XSS was possible on Clouds page
|
CWE-79
Cross-site Scripting
|
CVE-2024-43807
|
2024-08-20 06:09 |
2024-08-17 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
313366
|
5.5 |
MEDIUM
Local
|
linux
|
linux_kernel
|
In the Linux kernel, the following vulnerability has been resolved:
netfilter: iptables: Fix potential null-ptr-deref in ip6table_nat_table_init().
ip6table_nat_table_init() accesses net->gen->ptr[…
|
CWE-476
NULL Pointer Dereference
|
CVE-2024-42269
|
2024-08-20 05:53 |
2024-08-17 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
313367
|
5.5 |
MEDIUM
Local
|
linux
|
linux_kernel
|
In the Linux kernel, the following vulnerability has been resolved:
net/mlx5: Fix missing lock on sync reset reload
On sync reset reload work, when remote host updates devlink on reload
actions per…
|
CWE-667
Improper Locking
|
CVE-2024-42268
|
2024-08-20 05:52 |
2024-08-17 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
313368
|
5.5 |
MEDIUM
Local
|
linux
|
linux_kernel
|
In the Linux kernel, the following vulnerability has been resolved:
drm/v3d: Fix potential memory leak in the timestamp extension
If fetching of userspace memory fails during the main loop, all drm…
|
CWE-401
Missing Release of Memory after Effective Lifetime
|
CVE-2024-42263
|
2024-08-20 05:41 |
2024-08-17 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
313369
|
- |
|
-
|
-
|
In setTransactionState of SurfaceFlinger.cpp, there is a possible way to perform tapjacking due to a logic error in the code. This could lead to local escalation of privilege with no additional execu…
|
-
|
CVE-2024-34743
|
2024-08-20 05:35 |
2024-08-16 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
313370
|
- |
|
-
|
-
|
Rejected reason: This CVE ID has been rejected or withdrawn by its CVE Numbering Authority.
|
-
|
CVE-2024-7958
|
2024-08-20 05:15 |
2024-08-20 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|