|
312281
|
7.1 |
HIGH
Local
|
huawei
|
emui harmonyos
|
Access control vulnerability in the security verification module
mpact: Successful exploitation of this vulnerability will affect integrity and confidentiality.
|
NVD-CWE-noinfo
|
CVE-2024-42033
|
2024-09-17 21:06 |
2024-08-8 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
312282
|
7.8 |
HIGH
Local
|
linux
|
linux_kernel
|
In the Linux kernel, the following vulnerability has been resolved:
netfilter: nfnetlink: Initialise extack before use in ACKs
Add missing extack initialisation when ACKing BATCH_BEGIN and BATCH_EN…
|
NVD-CWE-noinfo
|
CVE-2024-44945
|
2024-09-17 20:42 |
2024-08-31 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
312283
|
8.8 |
HIGH
Network
|
syscomgo
|
omflow
|
OMFLOW from The SYSCOM Group does not properly restrict access to the system settings modification functionality, allowing remote attackers with regular privileges to update system settings or create…
|
NVD-CWE-Other
|
CVE-2024-8779
|
2024-09-17 20:27 |
2024-09-16 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
312284
|
9.8 |
CRITICAL
Network
|
code-projects
|
crud_operation_system
|
A vulnerability was found in code-projects Crud Operation System 1.0. It has been rated as critical. This issue affects some unknown processing of the file savedata.php. The manipulation of the argum…
|
CWE-89
SQL Injection
|
CVE-2024-8868
|
2024-09-17 19:59 |
2024-09-15 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
312285
|
5.4 |
MEDIUM
Network
|
perfexcrm
|
perfex_crm
|
A vulnerability was found in Perfex CRM 3.1.6. It has been declared as problematic. This vulnerability affects unknown code of the file application/controllers/Clients.php of the component Parameter …
|
CWE-79
Cross-site Scripting
|
CVE-2024-8867
|
2024-09-17 19:55 |
2024-09-15 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
312286
|
4.9 |
MEDIUM
Network
|
composio
|
composio
|
A vulnerability was found in composiohq composio up to 0.5.8 and classified as problematic. Affected by this issue is the function path of the file composio\server\api.py. The manipulation of the arg…
|
CWE-22
Path Traversal
|
CVE-2024-8865
|
2024-09-17 19:50 |
2024-09-15 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
312287
|
8.8 |
HIGH
Network
|
composio
|
composio
|
A vulnerability has been found in composiohq composio up to 0.5.6 and classified as critical. Affected by this vulnerability is the function Calculator of the file python/composio/tools/local/mathema…
|
CWE-94
Code Injection
|
CVE-2024-8864
|
2024-09-17 19:38 |
2024-09-15 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
312288
|
- |
|
-
|
-
|
Improper permission configurationDomain configuration vulnerability of the mobile application (com.afmobi.boomplayer) can lead to account takeover risks.
|
-
|
CVE-2024-8039
|
2024-09-17 11:35 |
2024-09-14 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
312289
|
8.1 |
HIGH
Network
|
dell
|
smartfabric_os10
|
Dell SmartFabric OS10 Software, version(s) 10.5.5.4 through 10.5.5.10 and 10.5.6.x, contain(s) an Use of Hard-coded Password vulnerability. A low privileged attacker with remote access could potentia…
|
CWE-798
Use of Hard-coded Credentials
|
CVE-2024-39585
|
2024-09-17 11:15 |
2024-09-6 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
312290
|
8.8 |
HIGH
Network
|
-
|
-
|
Windows MSHTML Platform Spoofing Vulnerability
|
CWE-451
User Interface (UI) Misrepresentation of Critical Information
|
CVE-2024-43461
|
2024-09-17 10:00 |
2024-09-11 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|