VYPR

CVEs

114,220 total · page 932 of 2,285

  • CVE-2024-34587HigJul 2, 2024
    risk 0.49cvss 7.5epss 0.01

    Improper input validation in parsing application information from RTCP packet in librtp.so prior to SMR Jul-2024 Release 1 allows remote attackers to execute arbitrary code with system privilege. User interaction is required for triggering this vulnerability.

  • CVE-2024-34585HigJul 2, 2024
    risk 0.51cvss 7.8epss 0.00

    Improper access control in launchApp of SystemUI prior to SMR Jul-2024 Release 1 allows local attackers to launch privileged activities.

  • CVE-2024-20895HigJul 2, 2024
    risk 0.50cvss 7.7epss 0.00

    Improper access control in Dar service prior to SMR Jul-2024 Release 1 allows local attackers to bypass restriction for calling SDP features.

  • CVE-2024-20891HigJul 2, 2024
    risk 0.51cvss 7.8epss 0.00

    Improper access control in launchFullscreenIntent of SystemUI prior to SMR Jul-2024 Release 1 allows local attackers to launch privileged activities.

  • CVE-2024-20888HigJul 2, 2024
    risk 0.51cvss 7.8epss 0.00

    Improper access control in OneUIHome prior to SMR Jul-2024 Release 1 allows local attackers to launch privileged activities. User interaction is required for triggering this vulnerability.

  • CVE-2024-4836HigJul 2, 2024
    risk 0.49cvss 7.5epss 0.03

    Web services managed by Edito CMS (Content Management System) in versions from 3.5 through 3.25 leak sensitive data as they allow downloading configuration files by an unauthenticated user. The issue in versions 3.5 - 3.25 was removed in releases which dates from 10th of January…

  • CVE-2024-37185HigJul 2, 2024
    risk 0.53cvss 8.2epss 0.01

    in OpenHarmony v4.0.0 and prior versions allow a remote attacker arbitrary code execution in pre-installed apps through out-of-bounds write.

  • CVE-2024-37077HigJul 2, 2024
    risk 0.53cvss 8.2epss 0.01

    in OpenHarmony v4.0.0 and prior versions allow a remote attacker arbitrary code execution in pre-installed apps through out-of-bounds write.

  • CVE-2024-37030HigJul 2, 2024
    risk 0.53cvss 8.2epss 0.01

    in OpenHarmony v4.0.0 and prior versions allow a remote attacker arbitrary code execution in pre-installed apps through use after free.

  • CVE-2024-36260HigJul 2, 2024
    risk 0.53cvss 8.2epss 0.01

    in OpenHarmony v4.0.0 and prior versions allow a remote attacker arbitrary code execution in pre-installed apps through out-of-bounds write.

  • CVE-2024-36243HigJul 2, 2024
    risk 0.53cvss 8.2epss 0.01

    in OpenHarmony v4.0.0 and prior versions allow a remote attacker arbitrary code execution in pre-installed apps through out-of-bounds read and write.

  • CVE-2024-37479HigJul 2, 2024
    risk 0.55cvss 8.5epss 0.00

    Local File Inclusion vulnerability in LA-Studio LA-Studio Element Kit for Elementor via "LaStudioKit Progress Bar" widget in New Post, specifically in the "progress_type" attribute.This issue affects LA-Studio Element Kit for Elementor: from n/a through 1.3.8.1.

  • CVE-2023-41926HigJul 2, 2024
    risk 0.57cvss 8.8epss 0.00

    The webserver utilizes basic authentication for its user login to the configuration interface. As encryption is disabled on port 80, it enables potential eavesdropping on user traffic, making it possible to intercept their credentials.

  • CVE-2023-41923HigJul 2, 2024
    risk 0.47cvss 7.2epss 0.00

    The user management section of the web application permits the creation of user accounts with excessively weak passwords, including single-character passwords.

  • CVE-2023-41922HigJul 2, 2024
    risk 0.47cvss 7.2epss 0.00

    A 'Cross-site Scripting' (XSS) vulnerability, characterized by improper input neutralization during web page generation, has been discovered. This vulnerability allows for Stored XSS attacks to occur. Multiple areas within the administration interface of the webserver lack…

  • CVE-2024-5767HigJul 2, 2024
    risk 0.57cvss 8.8epss 0.00

    The sitetweet WordPress plugin through 0.2 does not have CSRF check in some places, and is missing sanitisation as well as escaping, which could allow attackers to make logged in admin add Stored XSS payloads via a CSRF attack

  • CVE-2024-5606HigJul 2, 2024
    risk 0.50cvss 8.8epss 0.01

    The Quiz and Survey Master (QSM) WordPress plugin before 9.0.2 is vulnerable does not validate and escape the question_id parameter in the qsm_bulk_delete_question_from_database AJAX action, leading to a SQL injection exploitable by Contributors and above role

  • CVE-2024-5349HigJul 2, 2024
    risk 0.50cvss 8.8epss 0.01

    The LA-Studio Element Kit for Elementor plugin for WordPress is vulnerable to Local File Inclusion in all versions up to, and including, 1.3.8.1 via the 'map_style' parameter. This makes it possible for authenticated attackers, with Contributor-level access and above, to include…

  • CVE-2024-4679HigJul 2, 2024
    risk 0.51cvss 7.8epss 0.00

    Incorrect Default Permissions vulnerability in Hitachi JP1/Extensible SNMP Agent for Windows, Hitachi JP1/Extensible SNMP Agent on Windows, Hitachi Job Management Partner1/Extensible SNMP Agent on Windows allows File Manipulation.This issue affects JP1/Extensible SNMP Agent for…

  • CVE-2024-37765HigJul 1, 2024
    risk 0.57cvss 8.8epss 0.01

    Machform up to version 19 is affected by an authenticated Blind SQL injection in the user account settings page.

  • CVE-2024-23736HigJul 1, 2024
    risk 0.57cvss 8.8epss 0.00

    Cross Site Request Forgery (CSRF) vulnerability in savignano S/Notify before 4.0.2 for Confluence allows attackers to manipulate a user's S/MIME certificate of PGP key via malicious link or email.

  • CVE-2024-38367HigJul 1, 2024
    risk 0.01cvss 8.2epss 0.11

    trunk.cocoapods.org is the authentication server for the CoacoaPods dependency manager. Prior to commit d4fa66f49cedab449af9a56a21ab40697b9f7b97, the trunk sessions verification step could be manipulated for owner session hijacking Compromising a victim’s session will result…

  • CVE-2024-32230HigJul 1, 2024
    risk 0.51cvss 7.8epss 0.00

    FFmpeg 7.0 is vulnerable to Buffer Overflow. There is a negative-size-param bug at libavcodec/mpegvideo_enc.c:1216:21 in load_input_picture in FFmpeg7.0

  • CVE-2024-32229HigJul 1, 2024
    risk 0.55cvss 8.4epss 0.00

    FFmpeg 7.0 contains a heap-buffer-overflow at libavfilter/vf_tiltandshift.c:189:5 in copy_column.

  • CVE-2024-39249HigJul 1, 2024
    risk 0.49cvss 7.5epss 0.01

    Async <= 2.6.4 and <= 3.2.5 are vulnerable to ReDoS (Regular Expression Denial of Service) while parsing function in autoinject function. NOTE: this is disputed by the supplier because there is no realistic threat model: regular expressions are not used with untrusted input.

  • CVE-2024-39573HigJul 1, 2024
    risk 0.45cvss 7.5epss 0.35

    Potential SSRF in mod_rewrite in Apache HTTP Server 2.4.59 and earlier allows an attacker to cause unsafe RewriteRules to unexpectedly setup URL's to be handled by mod_proxy. Users are recommended to upgrade to version 2.4.60, which fixes this issue.

  • CVE-2024-38477HigJul 1, 2024
    risk 0.42cvss 7.5epss 0.03

    null pointer dereference in mod_proxy in Apache HTTP Server 2.4.59 and earlier allows an attacker to crash the server via a malicious request. Users are recommended to upgrade to version 2.4.60, which fixes this issue.

  • CVE-2024-38473HigJul 1, 2024
    risk 0.48cvss 8.1epss 0.26

    Encoding problem in mod_proxy in Apache HTTP Server 2.4.59 and earlier allows request URLs with incorrect encoding to be sent to backend services, potentially bypassing authentication via crafted requests. Users are recommended to upgrade to version 2.4.60, which fixes this…

  • CVE-2024-38472HigJul 1, 2024
    risk 0.47cvss 7.5epss 0.69

    SSRF in Apache HTTP Server on Windows allows to potentially leak NTLM hashes to a malicious server via SSRF and malicious requests or content Users are recommended to upgrade to version 2.4.60 which fixes this issue.  Note: Existing configurations that access UNC paths will…

  • CVE-2024-37298HigJul 1, 2024
    risk 0.42cvss 7.5epss 0.01

    gorilla/schema converts structs to and from form values. Prior to version 1.4.1 Running `schema.Decoder.Decode()` on a struct that has a field of type `[]struct{...}` opens it up to malicious attacks regarding memory allocations, taking advantage of the sparse slice…

  • CVE-2024-36997HigJul 1, 2024
    risk 0.53cvss 8.1epss 0.01

    In Splunk Enterprise versions below 9.2.2, 9.1.5, and 9.0.10 and Splunk Cloud Platform versions below 9.1.2312, an admin user could store and execute arbitrary JavaScript code in the browser context of another Splunk user through the conf-web/settings REST endpoint. This could…

  • CVE-2024-36991HigJul 1, 2024
    risk 0.50cvss 7.5epss 0.13

    In Splunk Enterprise on Windows versions below 9.2.2, 9.1.5, and 9.0.10, an attacker could perform a path traversal on the /modules/messaging/ endpoint in Splunk Enterprise on Windows. This vulnerability should only affect Splunk Enterprise on Windows.

  • CVE-2024-36989HigJul 1, 2024
    risk 0.46cvss 7.1epss 0.00

    In Splunk Enterprise versions below 9.2.2, 9.1.5, and 9.0.10 and Splunk Cloud Platform versions below 9.1.2312.200, a low-privileged user that does not hold the admin or power Splunk roles could create notifications in Splunk Web Bulletin Messages that all users on the instance…

  • CVE-2024-36985HigJul 1, 2024
    risk 0.61cvss 8.8epss 0.06

    In Splunk Enterprise versions below 9.2.2, 9.1.5, and 9.0.10, a low-privileged user that does not hold the admin or power Splunk roles could cause a Remote Code Execution through an external lookup that references the “splunk_archiver“ application.

  • CVE-2024-36984HigJul 1, 2024
    risk 0.57cvss 8.8epss 0.01

    In Splunk Enterprise versions below 9.2.2, 9.1.5, and 9.0.10 on Windows, an authenticated user could execute a specially crafted query that they could then use to serialize untrusted data. The attacker could use the query to execute arbitrary code.

  • CVE-2024-36983HigJul 1, 2024
    risk 0.52cvss 8.0epss 0.01

    In Splunk Enterprise versions below 9.2.2, 9.1.5, and 9.0.10 and Splunk Cloud Platform versions below 9.1.2312.109 and 9.1.2308.207, an authenticated user could create an external lookup that calls a legacy internal function. The authenticated user could use this internal…

  • CVE-2024-36982HigJul 1, 2024
    risk 0.49cvss 7.5epss 0.00

    In Splunk Enterprise versions below 9.2.2, 9.1.5, and 9.0.10 and Splunk Cloud Platform versions below 9.1.2312.109 and 9.1.2308.207, an attacker could trigger a null pointer reference on the cluster/config REST endpoint, which could result in a crash of the Splunk daemon.

  • CVE-2024-21586HigJul 1, 2024
    risk 0.49cvss 7.5epss 0.01

    An Improper Check for Unusual or Exceptional Conditions vulnerability in the Packet Forwarding Engine (PFE) of Juniper Networks Junos OS on SRX Series and NFX Series allows an unauthenticated, network-based attacker to cause a Denial-of-Service (DoS). If an affected device…

  • CVE-2024-36421HigJul 1, 2024
    risk 0.49cvss 7.5epss 0.09

    Flowise is a drag & drop user interface to build a customized large language model flow. In version 1.4.3 of Flowise, A CORS misconfiguration sets the Access-Control-Allow-Origin header to all, allowing arbitrary origins to connect to the website. In the default configuration…

  • CVE-2024-36420HigJul 1, 2024
    risk 0.49cvss 7.5epss 0.02

    Flowise is a drag & drop user interface to build a customized large language model flow. In version 1.4.3 of Flowise, the `/api/v1/openai-assistants-file` endpoint in `index.ts` is vulnerable to arbitrary file read due to lack of sanitization of the `fileName` body parameter. No…

  • CVE-2024-6376HigJul 1, 2024
    risk 0.39cvss 7.0epss 0.00

    MongoDB Compass may be susceptible to code injection due to insufficient sandbox protection settings with the usage of ejson shell parser in Compass' connection handling. This issue affects MongoDB Compass versions prior to version 1.42.2

  • CVE-2024-23380HigJul 1, 2024
    risk 0.55cvss 8.4epss 0.00

    Memory corruption while handling user packets during VBO bind operation.

  • CVE-2024-23373HigJul 1, 2024
    risk 0.55cvss 8.4epss 0.00

    Memory corruption when IOMMU unmap operation fails, the DMA and anon buffers are getting released.

  • CVE-2024-23372HigJul 1, 2024
    risk 0.55cvss 8.4epss 0.00

    Memory corruption while invoking IOCTL call for GPU memory allocation and size param is greater than expected size.

  • CVE-2024-23368HigJul 1, 2024
    risk 0.51cvss 7.8epss 0.00

    Memory corruption when allocating and accessing an entry in an SMEM partition.

  • CVE-2024-21469HigJul 1, 2024
    risk 0.47cvss 7.3epss 0.00

    Memory corruption when an invoke call and a TEE call are bound for the same trusted application.

  • CVE-2024-21465HigJul 1, 2024
    risk 0.51cvss 7.8epss 0.00

    Memory corruption while processing key blob passed by the user.

  • CVE-2024-21462HigJul 1, 2024
    risk 0.46cvss 7.1epss 0.00

    Transient DOS while loading the TA ELF file.

  • CVE-2024-21461HigJul 1, 2024
    risk 0.55cvss 8.4epss 0.00

    Memory corruption while performing finish HMAC operation when context is freed by keymaster.

  • CVE-2024-21460HigJul 1, 2024
    risk 0.46cvss 7.1epss 0.00

    Information disclosure when ASLR relocates the IMEM and Secure DDR portions as one chunk in virtual address space.