|
313381
|
7.8 |
HIGH
Local
|
linux
|
linux_kernel
|
In the Linux kernel, the following vulnerability has been resolved:
RDMA/iwcm: Fix a use-after-free related to destroying CM IDs
iw_conn_req_handler() associates a new struct rdma_id_private (conn_…
|
CWE-416
Use After Free
|
CVE-2024-42285
|
2024-08-20 04:45 |
2024-08-17 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
313382
|
5.5 |
MEDIUM
Local
|
linux
|
linux_kernel
|
In the Linux kernel, the following vulnerability has been resolved:
block: fix deadlock between sd_remove & sd_release
Our test report the following hung task:
[ 2538.459400] INFO: task "kworker/0…
|
CWE-667
Improper Locking
|
CVE-2024-42294
|
2024-08-20 04:43 |
2024-08-17 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
313383
|
9.8 |
CRITICAL
Network
|
projectworlds
|
online_examination_system
|
Projectworlds Online Examination System v1.0 is vulnerable to SQL Injection via the subject parameter in feed.php.
|
CWE-89
SQL Injection
|
CVE-2024-42843
|
2024-08-20 04:35 |
2024-08-16 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
313384
|
8.8 |
HIGH
Network
|
xuxueli
|
xxl-job
|
Insecure Permissions vulnerability in xxl-job v.2.4.1 allows a remote attacker to execute arbitrary code via the Sub-Task ID component.
|
CWE-276
Incorrect Default Permissions
|
CVE-2024-42681
|
2024-08-20 04:35 |
2024-08-16 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
313385
|
6.8 |
MEDIUM
Physics
|
dieboldnixdorf
|
vynamic_security_suite
|
Diebold Nixdorf Vynamic Security Suite (VSS) before 3.3.0 SR12, 4.0.0 SR04, 4.1.0 SR02, and 4.2.0 SR01 fails to validate the directory structure of the root file system during the Pre-Boot Authorizat…
|
NVD-CWE-noinfo
|
CVE-2023-24062
|
2024-08-20 04:05 |
2024-08-9 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
313386
|
6.8 |
MEDIUM
Physics
|
dieboldnixdorf
|
vynamic_security_suite
|
Diebold Nixdorf Vynamic Security Suite (VSS) before 3.3.0 SR16, 4.0.0 SR06, 4.1.0 SR04, 4.2.0 SR03, and 4.3.0 SR01 fails to validate symlinks during the Pre-Boot Authorization (PBA) process. This can…
|
CWE-354
Improper Validation of Integrity Check Value
|
CVE-2023-33206
|
2024-08-20 04:04 |
2024-08-9 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
313387
|
6.6 |
MEDIUM
Physics
|
dieboldnixdorf
|
vynamic_security_suite
|
Diebold Nixdorf Vynamic Security Suite (VSS) before 3.3.0 SR15, 4.0.0 SR05, 4.1.0 SR03, and 4.2.0 SR02 fails to validate the directory contents of certain directories (e.g., ensuring the expected has…
|
CWE-345
Insufficient Verification of Data Authenticity
|
CVE-2023-28865
|
2024-08-20 04:04 |
2024-08-9 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
313388
|
6.8 |
MEDIUM
Physics
|
dieboldnixdorf
|
vynamic_security_suite
|
Diebold Nixdorf Vynamic Security Suite (VSS) before 3.3.0 SR4 fails to validate /etc/initab during the Pre-Boot Authorization (PBA) process. This can be exploited by a physical attacker who is able t…
|
NVD-CWE-noinfo
|
CVE-2023-24064
|
2024-08-20 04:04 |
2024-08-9 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
313389
|
6.8 |
MEDIUM
Physics
|
dieboldnixdorf
|
vynamic_security_suite
|
Diebold Nixdorf Vynamic Security Suite (VSS) before 3.3.0 SR10 fails to validate /etc/mtab during the Pre-Boot Authorization (PBA) process. This can be exploited by a physical attacker who is able to…
|
CWE-354
Improper Validation of Integrity Check Value
|
CVE-2023-24063
|
2024-08-20 04:04 |
2024-08-9 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
313390
|
6.8 |
MEDIUM
Physics
|
dieboldnixdorf
|
vynamic_security_suite
|
Diebold Nixdorf Vynamic Security Suite (VSS) before 3.3.0 SR17, 4.0.0 SR07, 4.1.0 SR04, 4.2.0 SR04, and 4.3.0 SR02 fails to validate file attributes during the Pre-Boot Authorization (PBA) process. T…
|
CWE-665
Improper Initialization
|
CVE-2023-40261
|
2024-08-20 04:03 |
2024-08-9 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|