|
312071
|
5.3 |
MEDIUM
Network
|
apple
|
visionos
|
The issue was addressed by suspending Persona when the virtual keyboard is active. This issue is fixed in visionOS 1.3. Inputs to the virtual keyboard may be inferred from Persona.
|
NVD-CWE-noinfo
|
CVE-2024-40865
|
2024-09-20 02:58 |
2024-09-6 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
312072
|
5.5 |
MEDIUM
Local
|
linux
|
linux_kernel
|
In the Linux kernel, the following vulnerability has been resolved:
nfsd: ensure that nfsd4_fattr_args.context is zeroed out
If nfsd4_encode_fattr4 ends up doing a "goto out" before we get to
check…
|
CWE-665
Improper Initialization
|
CVE-2024-46697
|
2024-09-20 02:53 |
2024-09-13 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
312073
|
9.8 |
CRITICAL
Network
|
flycass
|
flycass
|
FlyCASS CASS and KCM systems did not correctly filter SQL queries, which
made them vulnerable to attack by outside attackers with no
authentication.
|
CWE-89
SQL Injection
|
CVE-2024-8395
|
2024-09-20 02:53 |
2024-09-6 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
312074
|
4.4 |
MEDIUM
Local
|
tcpdump
|
libpcap
|
In affected libpcap versions during the setup of a remote packet capture the internal function sock_initaddress() calls getaddrinfo() and possibly freeaddrinfo(), but does not clearly indicate to the…
|
CWE-415
Double Free
|
CVE-2023-7256
|
2024-09-20 02:53 |
2024-08-31 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
312075
|
5.5 |
MEDIUM
Local
|
linux
|
linux_kernel
|
In the Linux kernel, the following vulnerability has been resolved:
tty: serial: fsl_lpuart: mark last busy before uart_add_one_port
With "earlycon initcall_debug=1 loglevel=8" in bootargs, kernel
…
|
NVD-CWE-noinfo
|
CVE-2024-46706
|
2024-09-20 02:51 |
2024-09-13 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
312076
|
4.4 |
MEDIUM
Local
|
tcpdump
|
libpcap
|
Remote packet capture support is disabled by default in libpcap. When a user builds libpcap with remote packet capture support enabled, one of the functions that become available is pcap_findalldevs…
|
CWE-476
NULL Pointer Dereference
|
CVE-2024-8006
|
2024-09-20 02:46 |
2024-08-31 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
312077
|
4.9 |
MEDIUM
Network
|
jpress
|
jpress
|
A vulnerability has been found in jpress up to 5.1.1 and classified as critical. Affected by this vulnerability is an unknown functionality of the file /admin/template/edit of the component Template …
|
CWE-22
Path Traversal
|
CVE-2024-8304
|
2024-09-20 02:39 |
2024-08-30 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
312078
|
6.5 |
MEDIUM
Network
|
openzeppelin
|
contracts
|
Cairo-Contracts are OpenZeppelin Contracts written in Cairo for Starknet, a decentralized ZK Rollup. This vulnerability can lead to unauthorized ownership transfer, contrary to the original owner's i…
|
CWE-670
Always-Incorrect Control Flow Implementation
|
CVE-2024-45304
|
2024-09-20 02:26 |
2024-08-31 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
312079
|
4.3 |
MEDIUM
Network
|
teamviewer
|
meeting teamviewer
|
Improper access control in the clipboard synchronization feature in TeamViewer Full Client prior version 15.57 and TeamViewer Meeting prior version 15.55.3 can lead to unintentional sharing of the cl…
|
NVD-CWE-Other
|
CVE-2024-6053
|
2024-09-20 02:22 |
2024-08-29 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
312080
|
5.3 |
MEDIUM
Network
|
shedaniel
|
roughlyenoughitems
|
Roughly Enough Items (REI) v.16.0.729 and before contains an Improper Validation of Specified Index, Position, or Offset in Input vulnerability. The specific issue is a failure to validate slot index…
|
CWE-129
Improper Validation of Array Index
|
CVE-2024-42698
|
2024-09-20 01:29 |
2024-08-29 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|