|
312041
|
- |
|
-
|
-
|
HPE has identified a denial of service vulnerability in HPE HP-UX System's Network File System (NFSv4) services.
|
-
|
CVE-2024-42500
|
2024-09-10 21:09 |
2024-09-10 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
312042
|
- |
|
-
|
-
|
path-to-regexp turns path strings into a regular expressions. In certain cases, path-to-regexp will output a regular expression that can be exploited to cause poor performance. Because JavaScript is …
|
CWE-1333
Inefficient Regular Expression Complexity
|
CVE-2024-45296
|
2024-09-10 21:09 |
2024-09-10 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
312043
|
6.1 |
MEDIUM
Network
|
incsub
|
forminator
|
Cross-site scripting vulnerability exists in Forminator versions prior to 1.34.1. If this vulnerability is exploited, an arbitrary script may be executed on the web browser of the user who follows a …
|
CWE-79
Cross-site Scripting
|
CVE-2024-45625
|
2024-09-10 20:19 |
2024-09-9 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
312044
|
- |
|
-
|
-
|
Dell ThinOS versions 2402 and 2405, contains an Improper Neutralization of Special Elements used in a Command ('Command Injection') vulnerability. An unauthenticated attacker with physical access cou…
|
-
|
CVE-2024-42427
|
2024-09-10 17:15 |
2024-09-10 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
312045
|
- |
|
-
|
-
|
Dell Precision Rack, 14G Intel BIOS versions prior to 2.22.2, contains an Improper Input Validation vulnerability. A high privileged attacker with local access could potentially exploit this vulnerab…
|
CWE-20
Improper Input Validation
|
CVE-2024-42424
|
2024-09-10 17:15 |
2024-09-10 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
312046
|
5.5 |
MEDIUM
Local
|
linux
|
linux_kernel
|
In the Linux kernel, the following vulnerability has been resolved:
netfilter: ctnetlink: use helper function to calculate expect ID
Delete expectation path is missing a call to the nf_expect_get_i…
|
CWE-401
Missing Release of Memory after Effective Lifetime
|
CVE-2024-44944
|
2024-09-10 17:15 |
2024-08-30 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
312047
|
5.5 |
MEDIUM
Local
|
-
|
-
|
Rejected reason: This CVE ID has been rejected or withdrawn by its CVE Numbering Authority.
|
-
|
CVE-2024-43898
|
2024-09-10 17:15 |
2024-08-26 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
312048
|
- |
|
-
|
-
|
OS command injection vulnerability exists in BUFFALO wireless LAN routers and wireless LAN repeaters. If a user logs in to the management page and sends a specially crafted request to the affected pr…
|
-
|
CVE-2024-44072
|
2024-09-10 16:15 |
2024-09-10 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
312049
|
- |
|
-
|
-
|
The Starbox WordPress plugin before 3.5.2 does not sanitise and escape some of its settings, which could allow high privilege users such as admin to perform Stored Cross-Site Scripting attacks even …
|
-
|
CVE-2024-7955
|
2024-09-10 15:15 |
2024-09-10 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
312050
|
- |
|
-
|
-
|
The RFC enabled function module allows a low privileged user to perform denial of service on any user and also change or delete favourite nodes. By sending a crafted packet in the function module tar…
|
CWE-862
Missing Authorization
|
CVE-2024-45285
|
2024-09-10 14:15 |
2024-09-10 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|