|
313231
|
4.9 |
MEDIUM
Network
|
zyxel
|
zld_firmware
|
A buffer overflow vulnerability in the CGI program of Zyxel ATP series firmware versions from V4.32 through V5.38, USG FLEX series firmware versions from V4.50 through V5.38, USG FLEX 50(W) series fi…
|
CWE-120
Classic Buffer Overflow
|
CVE-2024-6343
|
2024-09-5 23:35 |
2024-09-3 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
313232
|
7.2 |
HIGH
Network
|
zyxel
|
zld_firmware
|
A post-authentication command injection vulnerability in Zyxel ATP series firmware versions from V4.60 through V5.38 and USG FLEX series firmware versions from V4.60 through V5.38 could allow an auth…
|
CWE-78
OS Command
|
CVE-2024-7203
|
2024-09-5 23:33 |
2024-09-3 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
313233
|
6.1 |
MEDIUM
Network
|
zyxel
|
zld_firmware
|
A reflected cross-site scripting (XSS) vulnerability in the CGI program "dynamic_script.cgi" of Zyxel ATP series firmware versions from V4.32 through V5.38, USG FLEX series firmware versions from V4.…
|
CWE-79
Cross-site Scripting
|
CVE-2024-42061
|
2024-09-5 23:32 |
2024-09-3 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
313234
|
9.8 |
CRITICAL
Network
|
linen
|
linen
|
Linen before cd37c3e does not verify that the domain is linen.dev or www.linen.dev when resetting a password. This occurs in create in apps/web/pages/api/forgot-password/index.ts.
|
NVD-CWE-Other
|
CVE-2024-45522
|
2024-09-5 23:29 |
2024-09-2 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
313235
|
7.5 |
HIGH
Network
|
linuxfoundation rdkcentral google
|
yocto rdk-b android
|
In wlan, there is a possible denial of service due to incorrect error handling. This could lead to remote denial of service with no additional execution privileges needed. User interaction is not nee…
|
CWE-754
Improper Check for Unusual or Exceptional Conditions
|
CVE-2024-20089
|
2024-09-5 23:28 |
2024-09-2 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
313236
|
4.4 |
MEDIUM
Local
|
google
|
android
|
In keyinstall, there is a possible out of bounds read due to a missing bounds check. This could lead to local information disclosure with System execution privileges needed. User interaction is not n…
|
CWE-125
Out-of-bounds Read
|
CVE-2024-20088
|
2024-09-5 23:27 |
2024-09-2 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
313237
|
6.7 |
MEDIUM
Local
|
google
|
android
|
In vdec, there is a possible out of bounds write due to a missing bounds check. This could lead to local escalation of privilege with System execution privileges needed. User interaction is not neede…
|
CWE-787
Out-of-bounds Write
|
CVE-2024-20087
|
2024-09-5 23:26 |
2024-09-2 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
313238
|
6.7 |
MEDIUM
Local
|
google
|
android
|
In vdec, there is a possible out of bounds write due to a missing bounds check. This could lead to local escalation of privilege with System execution privileges needed. User interaction is not neede…
|
CWE-787
Out-of-bounds Write
|
CVE-2024-20086
|
2024-09-5 23:26 |
2024-09-2 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
313239
|
7.5 |
HIGH
Network
|
abcd-community
|
abcd
|
A vulnerability classified as problematic was found in ABCD ABCD2 up to 2.2.0-beta-1. This vulnerability affects unknown code of the file /abcd/opac/php/otros_sitios.php. The manipulation of the argu…
|
CWE-22
Path Traversal
|
CVE-2024-8410
|
2024-09-5 23:20 |
2024-09-5 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
313240
|
7.5 |
HIGH
Network
|
abcd-community
|
abcd
|
A vulnerability classified as problematic has been found in ABCD ABCD2 up to 2.2.0-beta-1. This affects an unknown part of the file /common/show_image.php. The manipulation of the argument image lead…
|
CWE-22
Path Traversal
|
CVE-2024-8409
|
2024-09-5 23:20 |
2024-09-5 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|