VYPR

CVEs

38,073 total · page 271 of 762

  • CVE-2024-48453CriDec 4, 2024
    risk 0.64cvss 9.8epss 0.01

    An issue in INOVANCE AM401_CPU1608TPTN allows a remote attacker to execute arbitrary code via the ExecuteUserProgramUpgrade function

  • CVE-2024-53138CriDec 4, 2024
    risk 0.64cvss 9.8epss 0.01

    In the Linux kernel, the following vulnerability has been resolved: net/mlx5e: kTLS, Fix incorrect page refcounting The kTLS tx handling code is using a mix of get_page() and page_ref_inc() APIs to increment the page reference. But on the release path…

  • CVE-2024-40744CriDec 4, 2024
    risk 0.64cvss 9.8epss 0.01

    Unrestricted file upload via security bypass in Convert Forms component for Joomla in versions before 4.4.8.

  • CVE-2024-10576CriDec 4, 2024
    risk 0.61cvss —epss 0.00

    Infinix devices contain a pre-loaded "com.transsion.agingfunction" application, that exposes an unsecured broadcast receiver. An attacker can communicate with the receiver and force the device to perform a factory reset without any Android system permissions.  After multiple…

  • CVE-2024-52275CriDec 4, 2024
    risk 0.64cvss 9.8epss 0.01

    Stack-based Buffer Overflow vulnerability in Shenzhen Tenda Technology Co Tenda AC6V2 (fromWizardHandle modules) allows Overflow Buffers.This issue affects Tenda AC6V2: through 15.03.06.50.

  • CVE-2024-52274CriDec 4, 2024
    risk 0.64cvss 9.8epss 0.00

    Stack-based Buffer Overflow vulnerability in Shenzhen Tenda Technology Co Tenda AC6V2 (setDoubleL2tpConfig->guest_ip_check(overflow arg: mask) modules) allows Overflow Buffers.This issue affects Tenda AC6V2: through 15.03.06.50

  • CVE-2024-52273CriDec 4, 2024
    risk 0.64cvss 9.8epss 0.00

    Stack-based Buffer Overflow vulnerability in Shenzhen Tenda Technology Co Tenda AC6V2 (setDoublePppoeConfig->guest_ip_check(overflow arg: mask) modules) allows Overflow Buffers.This issue affects Tenda AC6V2: through 15.03.06.50

  • CVE-2024-52272CriDec 4, 2024
    risk 0.64cvss 9.8epss 0.00

    Stack-based Buffer Overflow vulnerability in Shenzhen Tenda Technology Co Tenda AC6V2 (fromAdvSetLanip(overflow arg:lanMask) modules) allows Overflow Buffers.This issue affects Tenda AC6V2: through 15.03.06.50

  • CVE-2024-54661CriDec 4, 2024
    risk 0.64cvss 9.8epss 0.01

    readline.sh in socat before1.8.0.2 relies on the /tmp/$USER/stderr2 file.

  • CVE-2024-51363CriDec 3, 2024
    risk 0.64cvss 9.8epss 0.01

    Insecure deserialization in Hodoku v2.3.0 to v2.3.2 allows attackers to execute arbitrary code.

  • CVE-2024-52544CriDec 3, 2024
    risk 0.64cvss 9.8epss 0.01

    An unauthenticated attacker can trigger a stack based buffer overflow in the DP Service (TCP port 3500). This vulnerability has been resolved in firmware version 2.800.0000000.8.R.20241111.

  • CVE-2024-53863CriDec 3, 2024
    risk 0.59cvss 9.1epss 0.01

    Synapse is an open-source Matrix homeserver. In Synapse versions before 1.120.1, enabling the dynamic_thumbnails option or processing a specially crafted request could trigger the decoding and thumbnail generation of uncommon image formats, potentially invoking external tools…

  • CVE-2018-9430CriDec 2, 2024
    risk 0.64cvss 9.8epss 0.00

    In prop2cfg of btif_storage.cc, there is a possible out of bounds write due to an incorrect bounds check. This could lead to remote code execution with no additional execution privileges needed. User interaction is not needed for exploitation.

  • CVE-2018-9418CriDec 2, 2024
    risk 0.64cvss 9.8epss 0.00

    In handle_app_cur_val_response of dtif_rc.cc, there is a possible stack buffer overflow due to a missing bounds check. This could lead to remote code execution with no additional execution privileges needed. User interaction is not needed for exploitation.

  • CVE-2024-53477CriDec 2, 2024
    risk 0.64cvss 9.8epss 0.01

    JFinal CMS 5.1.0 is vulnerable to Command Execution via unauthorized execution of deserialization in the file ApiForm.java

  • CVE-2024-53900CriDec 2, 2024
    risk 0.52cvss 9.1epss 0.04

    Mongoose before 8.8.3 can improperly use $where in match, leading to search injection.

  • CVE-2024-52724CriDec 2, 2024
    risk 0.64cvss 9.8epss 0.01

    ZZCMS 2023 was discovered to contain a SQL injection vulnerability in /q/show.php.

  • CVE-2024-53990CriDec 2, 2024
    risk 0.53cvss —epss 0.01

    The AsyncHttpClient (AHC) library allows Java applications to easily execute HTTP requests and asynchronously process HTTP responses. When making any HTTP request, the automatically enabled and self-managed CookieStore (aka cookie jar) will silently replace explicitly defined…

  • CVE-2024-8785CriDec 2, 2024
    risk 0.64cvss 9.8epss 0.10

    In WhatsUp Gold versions released before 2024.0.1, a remote unauthenticated attacker could leverage NmAPI.exe to create or change an existing registry value in registry path HKEY_LOCAL_MACHINE\SOFTWARE\WOW6432Node\Ipswitch\.

  • CVE-2024-52732CriDec 2, 2024
    risk 0.59cvss 9.1epss 0.00

    Incorrect access control in wms-Warehouse management system-zeqp v2.20.9.1 due to the token value of the zeqp system being reused.

  • CVE-2024-46909CriDec 2, 2024
    risk 0.68cvss 9.8epss 0.49

    In WhatsUp Gold versions released before 2024.0.1, a remote unauthenticated attacker could leverage this vulnerability to execute code in the context of the service account.

  • CVE-2024-10905CriDec 2, 2024
    risk 0.65cvss 10.0epss 0.01

    IdentityIQ 8.4 and all 8.4 patch levels prior to 8.4p2, IdentityIQ 8.3 and all 8.3 patch levels prior to 8.3p5, IdentityIQ 8.2 and all 8.2 patch levels prior to 8.2p8, and all prior versions allow HTTP/HTTPS access to static content in the IdentityIQ application directory that…

  • CVE-2024-52476CriDec 2, 2024
    risk 0.65cvss 10.0epss 0.01

    Unrestricted Upload of File with Dangerous Type vulnerability in Stefan Bohacek Fediverse Embeds fediverse-embeds allows Upload a Web Shell to a Web Server.This issue affects Fediverse Embeds: from n/a through <= 1.5.3.

  • CVE-2024-53507CriNov 29, 2024
    risk 0.64cvss 9.8epss 0.01

    A SQL injection vulnerability was discovered in Siyuan 3.1.11 in /getHistoryItems.

  • CVE-2024-53506CriNov 29, 2024
    risk 0.64cvss 9.8epss 0.01

    A SQL injection vulnerability has been identified in Siyuan 3.1.11 via the ids array parameter in /batchGetBlockAttrs.

  • CVE-2024-53505CriNov 29, 2024
    risk 0.64cvss 9.8epss 0.01

    A SQL injection vulnerability has been identified in Siyuan 3.1.11 via the id parameter at /getAssetContent.

  • CVE-2024-53504CriNov 29, 2024
    risk 0.64cvss 9.8epss 0.01

    A SQL injection vulnerability has been identified in Siyuan 3.1.11 via the notebook parameter in /searchHistory.

  • CVE-2024-35368CriNov 29, 2024
    risk 0.00cvss 9.8epss 0.01

    FFmpeg n7.0 is affected by a Double Free via the rkmpp_retrieve_frame function within libavcodec/rkmppdec.c.

  • CVE-2024-35367CriNov 29, 2024
    risk 0.00cvss 9.1epss 0.01

    FFmpeg n6.1.1 has an Out-of-bounds Read via libavcodec/ppc/vp8dsp_altivec.c, static const vec_s8 h_subpel_filters_outer

  • CVE-2024-35366CriNov 29, 2024
    risk 0.00cvss 9.1epss 0.01

    FFmpeg n6.1.1 is Integer Overflow. The vulnerability exists in the parse_options function of sbgdec.c within the libavformat module. When parsing certain options, the software does not adequately validate the input. This allows for negative duration values to be accepted without…

  • CVE-2024-49360CriNov 29, 2024
    risk 0.60cvss 9.2epss 0.00

    Sandboxie is a sandbox-based isolation software for 32-bit and 64-bit Windows NT-based operating systems. An authenticated user (**UserA**) with no privileges is authorized to read all files created in sandbox belonging to other users in the sandbox folders…

  • CVE-2024-36622CriNov 29, 2024
    risk 0.00cvss 9.8epss 0.03

    In RaspAP raspap-webgui 3.0.9 and earlier, a command injection vulnerability exists in the clearlog.php script. The vulnerability is due to improper sanitization of user input passed via the logfile parameter.

  • CVE-2024-49806CriNov 29, 2024
    risk 0.61cvss 9.4epss 0.00

    IBM Security Verify Access Appliance 10.0.0 through 10.0.8 contains hard-coded credentials, such as a password or cryptographic key, which it uses for its own inbound authentication, outbound communication to external components, or encryption of internal data.

  • CVE-2024-49805CriNov 29, 2024
    risk 0.61cvss 9.4epss 0.00

    IBM Security Verify Access Appliance 10.0.0 through 10.0.8 contains hard-coded credentials, such as a password or cryptographic key, which it uses for its own inbound authentication, outbound communication to external components, or encryption of internal data.

  • CVE-2024-49803CriNov 29, 2024
    risk 0.64cvss 9.8epss 0.01

    IBM Security Verify Access Appliance 10.0.0 through 10.0.8 could allow a remote authenticated attacker to execute arbitrary commands on the system by sending a specially crafted request.

  • CVE-2024-52782CriNov 29, 2024
    risk 0.64cvss 9.8epss 0.01

    DCME-320 <=7.4.12.90, DCME-520 <=9.25.5.11, DCME-320-L <=9.3.5.26, and DCME-720 <=9.1.5.11 are vulnerable to Remote Code Execution via /function/audit/newstatistics/mon_stat_hist_new.php.

  • CVE-2024-52781CriNov 29, 2024
    risk 0.64cvss 9.8epss 0.01

    DCME-320 <=7.4.12.90, DCME-520 <=9.25.5.11, DCME-320-L <=9.3.5.26, and DCME-720 <=9.1.5.11 are vulnerable to Remote Code Execution via /function/system/tool/traceroute.php.

  • CVE-2024-52780CriNov 29, 2024
    risk 0.64cvss 9.8epss 0.01

    DCME-320 <=7.4.12.90, DCME-520 <=9.25.5.11, DCME-320-L <=9.3.5.26, and DCME-720 <=9.1.5.11 are vulnerable to Remote Code Execution via /function/system/basic/mgmt_edit.php.

  • CVE-2024-52779CriNov 29, 2024
    risk 0.64cvss 9.8epss 0.01

    DCME-320 <=7.4.12.90, DCME-520 <=9.25.5.11, DCME-320-L <=9.3.5.26, and DCME-720 <=9.1.5.11 are vulnerable to Remote Code Execution via /function/audit/newstatistics/mon_stat_top10.php.

  • CVE-2024-52778CriNov 29, 2024
    risk 0.64cvss 9.8epss 0.01

    DCME-320 <=7.4.12.90, DCME-520 <=9.25.5.11, DCME-320-L <=9.3.5.26, and DCME-720 <=9.1.5.11 are vulnerable to Remote Code Execution via /function/audit/newstatistics/mon_stat_hist.php.

  • CVE-2024-52777CriNov 29, 2024
    risk 0.64cvss 9.8epss 0.01

    DCME-320 <=7.4.12.90, DCME-520 <=9.25.5.11, DCME-320-L, <=9.3.5.26, and DCME-720 <=9.1.5.11 are vulnerable to Remote Code Execution via /function/system/basic/license_update.php.

  • CVE-2024-48406CriNov 29, 2024
    risk 0.64cvss 9.8epss 0.01

    Buffer Overflow vulnerability in SunBK201 umicat through v.0.3.2 and fixed in v.0.3.3 allows an attacker to execute arbitrary code via the power(uct_int_t x, uct_int_t n) in src/uct_upstream.c.

  • CVE-2024-36671CriNov 29, 2024
    risk 0.57cvss 9.8epss 0.01

    nodemcu before v3.0.0-release_20240225 was discovered to contain an integer overflow via the getnum function at /modules/struct.c.

  • CVE-2024-11992CriNov 29, 2024
    risk 0.59cvss 9.1epss 0.01

    Absolute path traversal vulnerability in Quick.CMS, version 6.7, the exploitation of which could allow remote users to bypass the intended restrictions and download any file if it has the appropriate permissions outside of documentroot configured on the server via the…

  • CVE-2024-50357CriNov 29, 2024
    risk 0.64cvss 9.8epss 0.01

    FutureNet NXR series routers provided by Century Systems Co., Ltd. have REST-APIs, which are configured as disabled in the initial (factory default) configuration. But, REST-APIs are unexpectedly enabled when the affected product is powered up, provided either http-server (GUI)…

  • CVE-2024-11482CriNov 29, 2024
    risk 0.64cvss 9.8epss 0.03

    A vulnerability in ESM 11.6.10 allows unauthenticated access to the internal Snowservice API and enables remote code execution through command injection, executed as the root user.

  • CVE-2024-11979CriNov 29, 2024
    risk 0.64cvss 9.8epss 0.01

    DreamMaker from Interinfo has a Path Traversal vulnerability and does not restrict the types of uploaded files. This allows unauthenticated remote attackers to upload arbitrary files to any directory, leading to arbitrary code execution by uploading webshells.

  • CVE-2024-52338CriNov 28, 2024
    risk 0.57cvss 9.8epss 0.02

    Deserialization of untrusted data in IPC and Parquet readers in the Apache Arrow R package versions 4.0.0 through 16.1.0 allows arbitrary code execution. An application is vulnerable if it reads Arrow IPC, Feather or Parquet data from untrusted sources (for example,…

  • CVE-2024-52490CriNov 28, 2024
    risk 0.65cvss 10.0epss 0.01

    Unrestricted Upload of File with Dangerous Type vulnerability in pathomation Pathomation pathomation allows Upload a Web Shell to a Web Server.This issue affects Pathomation: from n/a through <= 2.5.1.

  • CVE-2024-52475CriNov 28, 2024
    risk 0.64cvss 9.8epss 0.02

    Authentication Bypass Using an Alternate Path or Channel vulnerability in Information Technology Wawp automation-web-platform allows Authentication Bypass.This issue affects Wawp: from n/a through < 3.0.18.